번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) |
24,861 | 2017/07/26 | 2024494 | ET CURRENT_EVENTS EITest Keitaro Evil Redirect Leading to SocENG July 25 2017; |
24,860 | 2017/07/26 | 2024491 | ET TROJAN Shifr Ransomware CnC DNS Query (v5t5z6a55ksmt3oh); |
24,859 | 2017/07/26 | 2024495 | ET TROJAN CopyKittens Matryoshka DNS Lookup 1 (winupdate64 . com); [1] |
24,858 | 2017/07/26 | 2024492 | ET TROJAN Shifr Ransomware CnC DNS Query (ojdue4474qghybjb); |
24,857 | 2017/07/26 | 2024493 | ET CURRENT_EVENTS EITest Inject July 25 2017; |
24,856 | 2017/07/26 | 2024498 | ET TROJAN TDTESS Backdoor User-Agent; [1] |
24,855 | 2017/07/22 | 2024487 | ET TROJAN Possible NotPetya Related DNS query; [1] |
24,854 | 2017/07/22 | 2024490 | ET TROJAN HTTP Request with suspicious filename - myguy; [1] |
24,853 | 2017/07/22 | 2024489 | ET TROJAN Win32/Bitshifter Ransomware CnC Checkin; |
24,852 | 2017/07/22 | 2024486 | ET TROJAN Shifr Ransomware Malicious Domain in SNI Observed; |
24,851 | 2017/07/22 | 2024488 | ET TROJAN Possible NotPetya Related DNS query; [1] |
24,850 | 2017/07/21 | 2024482 | ET TROJAN DarkHotel Downloader CnC Beacon 1; [1] |
24,849 | 2017/07/21 | 2024483 | ET TROJAN DarkHotel Downloader CnC Beacon 2; [1] |
24,848 | 2017/07/21 | 2024484 | ET MALWARE ProxyGearPro Proxy Tool PUA; |
24,847 | 2017/07/21 | 2024485 | ET TROJAN Observed Malicious Domain SSL Cert in SNI (Unknown Stealer CnC); |
24,846 | 2017/07/20 | 2024480 | ET CURRENT_EVENTS Tech Support Scam Landing Jul 19 2017; |
24,845 | 2017/07/20 | 2024481 | ET TFTP Outbound TFTP Data Transfer With Cisco Config 2; |
24,844 | 2017/07/20 | 2024478 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,843 | 2017/07/20 | 2024475 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,842 | 2017/07/20 | 2024479 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,841 | 2017/07/20 | 2024473 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,840 | 2017/07/20 | 2024476 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,839 | 2017/07/20 | 2024477 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,838 | 2017/07/20 | 2024472 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,837 | 2017/07/20 | 2024474 | ET TROJAN CDT Credphish/Netwire Campaign DNS Lookup; [1] |
24,836 | 2017/07/19 | 2024471 | ET TROJAN CoinMiner Known Malicious Stratum Authline (2017-07-17 7); |
24,835 | 2017/07/19 | 2024470 | ET INFO HTTP POST to Free Webhost - Possible Successful Phish (site40.net) Jul 18 2017; |
24,834 | 2017/07/18 | 2024469 | ET TROJAN Observed Malicious DNS Query (Reyptson Ransomware CnC); |
24,833 | 2017/07/15 | 2024468 | ET WEB_SPECIFIC_APPS OGNL Expression Injection (CVE-2017-9791); [1] |
24,832 | 2017/07/15 | 2024467 | ET TROJAN Observed DNS Query to Known Fenrir Ransomware CnC Domain; |
24,831 | 2017/07/14 | 2024464 | ET CURRENT_EVENTS DNS Query to Generic 107 Phishing Domain; |
24,830 | 2017/07/14 | 2024466 | ET TROJAN Win32/Striked Ransomware CnC Checkin; |
24,829 | 2017/07/14 | 2024465 | ET TROJAN Win32/Striked Ransomware CnC Checkin; |
24,828 | 2017/07/14 | 2022967 | ET CURRENT_EVENTS Successful Google Drive/Dropbox Phish Nov 20; |
24,827 | 2017/07/14 | 2024462 | ET CURRENT_EVENTS Successful Netflix Payment Phish M1 Jan 04 2017; |
24,826 | 2017/07/14 | 2024463 | ET CURRENT_EVENTS Successful Generic 107 Phish Jul 13 2017; |
24,825 | 2017/07/13 | 2024457 | ET TROJAN Possible Winnti-related DNS Lookup (job .yoyakuweb .technology); [1] |
24,824 | 2017/07/13 | 2024458 | ET TROJAN Possible Winnti-related DNS Lookup (resume .immigrantlol .com); [1] |
24,823 | 2017/07/13 | 2024456 | ET TROJAN Possible Winnti-related DNS Lookup (vps2java .securitytactics .com); [1] |
24,822 | 2017/07/13 | 2024460 | ET TROJAN Possible Winnti-related DNS Lookup (css .google-statics .com); [1] |
24,821 | 2017/07/13 | 2024461 | ET TROJAN LockPOS CnC; [1] |
24,820 | 2017/07/13 | 2024459 | ET TROJAN Possible Winnti-related DNS Lookup (macos .exoticlol .com); [1] |
24,819 | 2017/07/12 | 2024452 | ET TROJAN Quant Loader v1.45 Download Request; |
24,818 | 2017/07/12 | 2024450 | ET CURRENT_EVENTS Possible Phishing Blockchain title over non SSL Jul 10 2017; |
24,817 | 2017/07/12 | 2024451 | ET CURRENT_EVENTS Possible Facebook Phishing Landing - Title over non SSL; |
24,816 | 2017/07/12 | 2024454 | ET TROJAN CoinMiner Known Malicious Stratum Authline (2017-07-11); |
24,815 | 2017/07/12 | 2024453 | ET CURRENT_EVENTS Possible Capitech Internet Banking Phishing Landing - Title over non SSL; |
24,814 | 2017/07/12 | 2024455 | ET TROJAN MSIL/Unk.Stealer Data Exfil Via HTTP; |
24,813 | 2017/07/09 | 2024447 | ET CURRENT_EVENTS Apple Tech Support Phone Scam Jul 07 2017; |
24,812 | 2017/07/09 | 2024446 | ET CURRENT_EVENTS Microsoft Tech Support Phone Scam M3 Jul 07 2017; |
< 41 42 43 44 45 46 47 48 49 50 > |