Ruleset Update Summary - 2024/10/21 - v10724

Summary:

10 new OPEN, 13 new PRO (10 + 3)


Added rules:

Open:

  • 2056734 - ET EXPLOIT_KIT ClickFix Domain in DNS Lookup (srftjwrty6kew .shop) (exploit_kit.rules)
  • 2056735 - ET EXPLOIT_KIT ClickFix Domain in TLS SNI (srftjwrty6kew .shop) (exploit_kit.rules)
  • 2056736 - ET MALWARE ClickFix Fake Browser Update Page Inbound M2 (malware.rules)
  • 2056737 - ET MALWARE ClickFix Domain in DNS Lookup (gertioma .top) (malware.rules)
  • 2056738 - ET MALWARE ClickFix Domain in TLS SNI (gertioma .top) (malware.rules)
  • 2056739 - ET HUNTING Single Character jpg Requested via PowerShell (hunting.rules)
  • 2056740 - ET EXPLOIT_KIT ClickFix Domain in DNS Lookup (dareka4te .shop) (exploit_kit.rules)
  • 2056741 - ET EXPLOIT_KIT ClickFix Domain in TLS SNI (dareka4te .shop) (exploit_kit.rules)
  • 2056742 - ET MALWARE SocGholish CnC Domain in DNS Lookup (* .house .zionanakwenze .com) (malware.rules)
  • 2056743 - ET MALWARE SocGholish CnC Domain in TLS SNI (* .house .zionanakwenze .com) (malware.rules)

Pro:

  • 2858738 - ETPRO MALWARE TA582 Domain in DNS Lookup (malware.rules)
  • 2858739 - ETPRO MALWARE TA582 Domain in DNS Lookup (malware.rules)
  • 2858740 - ETPRO MALWARE TA582 Domain in DNS Lookup (malware.rules)