Echida Botnet
|
|
3
|
386
|
September 11, 2023
|
JSCAPE MFT Binary Management Java Deserialization - CVE-2023-4528
|
|
0
|
310
|
September 8, 2023
|
SIG: ET MOBILE_MALWARE Android/InfamousChisel.InfoStealer APT28/SANDWORM Data Exfiltration
|
|
2
|
348
|
September 1, 2023
|
TheBoxClipper
|
|
2
|
455
|
August 30, 2023
|
RootTeam Stealer and overlap issues on Bandit Stealer rule detection
|
|
7
|
706
|
August 29, 2023
|
Mekotio
|
|
2
|
368
|
August 24, 2023
|
Parallax Rat
|
|
3
|
322
|
August 14, 2023
|
SIG: CloudFlare Tunnel DNS Query For argotunnel.com
|
|
2
|
225
|
August 14, 2023
|
DarkCloud
|
|
2
|
416
|
August 9, 2023
|
Phemedrone Stealer
|
|
1
|
258
|
August 7, 2023
|
Possible FP - JA3 Hash - [Abuse.ch] Possible Adware
|
|
1
|
343
|
August 1, 2023
|
PennyWise Stealer - Update on rules
|
|
2
|
431
|
July 28, 2023
|
Hydrochasma (Fast Reverse Proxy)
|
|
7
|
591
|
July 27, 2023
|
SIGNATURE: MalDoc/Gamaredon CnC: (ADMIN- prepend)
|
|
2
|
320
|
July 27, 2023
|
Lazarus APT Backdoor
|
|
5
|
704
|
July 27, 2023
|
Rockwell cve 2023-3595 and 2023-3596 signatures
|
|
0
|
633
|
July 20, 2023
|
Konni.APT
|
|
1
|
445
|
July 14, 2023
|
Possible FP: ET MALWARE Sourtoff Receiving Simda Payload
|
|
4
|
311
|
July 7, 2023
|
Mystic Stealer signature
|
|
6
|
670
|
June 28, 2023
|
StatusRecorder
|
|
1
|
381
|
June 27, 2023
|
ObserverStealer
|
|
5
|
571
|
June 23, 2023
|
GoodMorning Ransomware
|
|
7
|
471
|
June 23, 2023
|
FPs on new sig 2854494
|
|
2
|
219
|
June 20, 2023
|
SIG: MoveIt File Transfer WebShell Interaction
|
|
3
|
728
|
June 13, 2023
|
DynamicRAT
|
|
2
|
548
|
June 10, 2023
|
Gurcu stealer report outbound
|
|
7
|
415
|
May 30, 2023
|
New Signature: MalDoc/Gamaredon CnC Activity
|
|
1
|
199
|
May 19, 2023
|
Tracemap checkin
|
|
2
|
229
|
May 19, 2023
|
False positive for SID 2015813?: DNS Query Sinkhole Domain
|
|
1
|
320
|
May 15, 2023
|
Need a feedback about Kerio Control rule that's blocking the web, domen, even application
|
|
3
|
266
|
May 1, 2023
|