Summary:
2 new OPEN, 9 new PRO (2 + 7)
Added rules:
Open:
- 2046300 - ET MOBILE_MALWARE Android/Spy.Bahamut.I CnC Domain in DNS Lookup (mobile_malware.rules)
- 2046301 - ET MALWARE SocGholish CnC Domain in DNS Lookup (* .rfc .zitoprohealth .com) (malware.rules)
Pro:
- 2854641 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Piom.axah Checkin (mobile_malware.rules)
- 2854642 - ETPRO MOBILE_MALWARE Android/Spy.Agent.BCA Checkin (mobile_malware.rules)
- 2854643 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.BRats.d CnC Domain in DNS Lookup (mobile_malware.rules)
- 2854644 - ETPRO MOBILE_MALWARE Android/Spy.Agent.BCA CnC Beacon (mobile_malware.rules)
- 2854645 - ETPRO MOBILE_MALWARE Android/Spy.Agent.BCA CnC Beacon 2 (mobile_malware.rules)
- 2854646 - ETPRO MOBILE_MALWARE Android/Spy.Agent.BCA CnC Domain in DNS Lookup (mobile_malware.rules)
- 2854647 - ETPRO ATTACK_RESPONSE Obfuscated .bat File Inbound (attack_response.rules)