Ruleset Update Summary - 2022/11/25 - v10182

Summary:

0 new OPEN, 9 new PRO (0 + 9)

The Emerging Threats mailing list is migrating to Discourse. Please visit us at https://community.emergingthreats.net

We will announce the mailing list retirement date in the near future.


Added rules:

Pro:

  • 2852885 - ETPRO MOBILE_MALWARE Android.Joker.1824 CnC Domain in DNS Lookup (mobile_malware.rules)
  • 2852886 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.Rewardsteal.e CnC Domain in DNS Lookup (mobile_malware.rules)
  • 2852887 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.Rewardsteal.e CnC Domain in DNS Lookup (mobile_malware.rules)
  • 2852888 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Terbod.a Checkin (mobile_malware.rules)
  • 2852889 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Terbod.a Checkin 2 (mobile_malware.rules)
  • 2852890 - ETPRO MOBILE_MALWARE Android/Spy.Agent.CKR CnC Domain in DNS Lookup (mobile_malware.rules)
  • 2852891 - ETPRO MOBILE_MALWARE Android/Spy.Banker.BPN CnC Domain in DNS Lookup (mobile_malware.rules)
  • 2852892 - ETPRO MOBILE_MALWARE Observed Android/Spy.Agent.CKR Domain in TLS SNI (mobile_malware.rules)
  • 2852893 - ETPRO COINMINER CoinMiner Known Malicious Stratum Authline (2022-11-25 1) (coinminer.rules)