번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) |
26,161 | 2018/07/18 | 2025722 | ET POLICY Powershell Command With No Profile Argument Over SMB - Likely Lateral Movement; |
26,160 | 2018/07/18 | 2025706 | ET POLICY SMB NT Create AndX Request For a .bat File; |
26,159 | 2018/07/18 | 2025708 | ET POLICY SMB NT Create AndX Request For a DLL File; |
26,158 | 2018/07/18 | 2025724 | ET POLICY Powershell Command With NonInteractive Argument Over SMB - Likely Lateral Movement; |
26,157 | 2018/07/18 | 2025715 | ET CURRENT_EVENTS Fake Adobe Software Update Landing; [1] |
26,156 | 2018/07/18 | 2025717 | ET WEB_SPECIFIC_APPS ELF file magic encoded Base64 Inbound Web Servers Likely Command Execution 2; |
26,155 | 2018/07/18 | 2025723 | ET POLICY Powershell Command With Execution Bypass Argument Over SMB - Likely Lateral Movement; |
26,154 | 2018/07/18 | 2025716 | ET WEB_SPECIFIC_APPS ELF file magic encoded Base64 Inbound Web Servers Likely Command Execution 1; |
26,153 | 2018/07/18 | 2025700 | ET POLICY SMB NT Create AndX Request For an Executable File; |
26,152 | 2018/07/18 | 2025707 | ET POLICY SMB2 NT Create AndX Request For a .bat File; |
26,151 | 2018/07/18 | 2025702 | ET POLICY SMB NT Create AndX Request For an Executable File In a Temp Directory; |
26,150 | 2018/07/18 | 2025710 | ET POLICY SMB NT Create AndX Request For a .sys File - Possible Lateral Movement; |
26,149 | 2018/07/18 | 2025721 | ET POLICY Powershell Command With Encoded Argument Over SMB - Likely Lateral Movement; |
26,148 | 2018/07/18 | 2025704 | ET POLICY SMB NT Create AndX Request For a Powershell .ps1 File; |
26,147 | 2018/07/18 | 2025705 | ET POLICY SMB2 NT Create AndX Request For a Powershell .ps1 File; |
26,146 | 2018/07/18 | 2025719 | ET POLICY Powershell Activity Over SMB - Likely Lateral Movement; |
26,145 | 2018/07/18 | 2025713 | ET POLICY SMB2 Remote AT Scheduled Job Create Request; |
26,144 | 2018/07/18 | 2025714 | ET POLICY SMB Remote AT Scheduled Job Pipe Creation; |
26,143 | 2018/07/18 | 2025699 | ET POLICY SMB Executable File Transfer; |
26,142 | 2018/07/18 | 2025720 | ET POLICY Powershell Command With Hidden Window Argument Over SMB - Likely Lateral Movement; |
26,141 | 2018/07/18 | 2025712 | ET POLICY SMB Remote AT Scheduled Job Create Request - Possible Lateral Movement; |
26,140 | 2018/07/18 | 2025697 | ET TROJAN Rostpay Downloader User-Agent; |
26,139 | 2018/07/18 | 2025701 | ET POLICY SMB2 NT Create AndX Request For an Executable File; |
26,138 | 2018/07/18 | 2025703 | ET POLICY SMB2 NT Create AndX Request For an Executable File In a Temp Directory; |
26,137 | 2018/07/18 | 2025711 | ET POLICY SMB2 NT Create AndX Request For a .sys File - Possible Lateral Movement; |
26,136 | 2018/07/18 | 2025718 | ET WEB_SPECIFIC_APPS ELF file magic encoded Base64 Inbound Web Servers Likely Command Execution 3; |
26,135 | 2018/07/18 | 2025709 | ET POLICY SMB2 NT Create AndX Request For a DLL File - Possible Lateral Movement; |
26,134 | 2018/07/18 | 2025698 | ET CURRENT_EVENTS Bank of America Phishing Landing; |
26,133 | 2018/07/15 | 2025696 | ET CURRENT_EVENTS Suspicious Wordpress Redirect - Possible Phishing Landing (set) Jan 7; |
26,132 | 2018/07/14 | 2025695 | ET SHELLCODE Execve(/bin/sh) Shellcode; |
26,131 | 2018/07/14 | 2025693 | ET CURRENT_EVENTS Apple Phishing Landing Nov 10 2017; |
26,130 | 2018/07/14 | 2025694 | ET CURRENT_EVENTS Adobe Online Document Phishing Landing M1 Mar 25 2017; |
26,129 | 2018/07/14 | 2025692 | ET CURRENT_EVENTS Chase Account Phish Landing Oct 22; |
26,128 | 2018/07/14 | 2025690 | ET CURRENT_EVENTS DHL Phish Landing Sept 14 2015; |
26,127 | 2018/07/14 | 2025691 | ET CURRENT_EVENTS Chase Mobile Phishing Landing M2; |
26,126 | 2018/07/14 | 2025689 | ET CURRENT_EVENTS Dropbox Phishing Landing Feb 27 2017; |
26,125 | 2018/07/14 | 2025687 | ET CURRENT_EVENTS Email Settings Error Phishing Landing Nov 16 2016; |
26,124 | 2018/07/14 | 2025688 | ET CURRENT_EVENTS Dropbox Shared Document Phishing Landing Feb 21 2017; |
26,123 | 2018/07/14 | 2025685 | ET CURRENT_EVENTS Generic Phishing Landing 2018-01-12; |
26,122 | 2018/07/14 | 2025686 | ET CURRENT_EVENTS Excel/Adobe Online Phishing Landing Nov 25 2015; |
26,121 | 2018/07/14 | 2025684 | ET CURRENT_EVENTS Google Drive Phish Landing Sept 1 2016; |
26,120 | 2018/07/14 | 2025683 | ET CURRENT_EVENTS Google Drive Phishing Landing Jul 10 2015; |
26,119 | 2018/07/14 | 2025677 | ET CURRENT_EVENTS Mailbox Update Phishing Landing M1 May 16; |
26,118 | 2018/07/14 | 2025673 | ET CURRENT_EVENTS Possible Office 365 Phishing Landing Aug 24 2016; |
26,117 | 2018/07/14 | 2025654 | ET CURRENT_EVENTS Chalbhai Phishing Landing Feb 18 2016; |
26,116 | 2018/07/14 | 2025674 | ET CURRENT_EVENTS Possible Chase Phishing Landing - Title over non SSL; |
26,115 | 2018/07/14 | 2025661 | ET CURRENT_EVENTS Dropbox Phishing Landing May 31 2017; |
26,114 | 2018/07/14 | 2025664 | ET CURRENT_EVENTS Microsoft Live Email Account Phishing Landing Mar 16 2017; |
26,113 | 2018/07/14 | 2025657 | ET CURRENT_EVENTS AES Crypto Observed in Javascript - Possible Phishing Landing M1 Dec 28 2015; |
26,112 | 2018/07/14 | 2025667 | ET CURRENT_EVENTS Apple Phishing Landing M2 Feb 13 2017; |
< 11 12 13 14 15 16 17 18 19 20 > |