Ruleset Update Summary - 2024/12/05 - v10790

Summary:

0 new OPEN, 0 new PRO (0 + 0)


Modified inactive rules:

  • 2014066 - ET MALWARE Trojan-Clicker.Win32.VB.gnf Reporting (malware.rules)
  • 2014069 - ET ADWARE_PUP Win32-Adware.Hotclip.A Reporting (adware_pup.rules)
  • 2014084 - ET MALWARE TROJAN Win32.OnlineGames.Bft Reporting (malware.rules)
  • 2014093 - ET MALWARE Downloader.Win32.Nurech Checkin UA (malware.rules)
  • 2014097 - ET EXPLOIT_KIT Excessive new Array With Newline - Exploit Kit Behavior Flowbit Set (exploit_kit.rules)
  • 2014099 - ET EXPLOIT_KIT Exploit Kit Delivering Office File to Client (exploit_kit.rules)
  • 2014102 - ET POLICY FACEBOOK user id in http_client_body, lookup with Redirecting... (policy.rules)
  • 2014105 - ET MALWARE Zeus Bot GET to Google checking Internet connectivity using proxy (malware.rules)
  • 2014107 - ET MALWARE Zeus POST Request to CnC - cookie variation (malware.rules)
  • 2014113 - ET MALWARE Win32/Injector.MUD Variant Reporting (malware.rules)
  • 2014114 - ET MALWARE Delf/Troxen/Zema Reporting 1 (malware.rules)
  • 2014115 - ET MALWARE Delf/Troxen/Zema Reporting 2 (malware.rules)
  • 2014117 - ET ADWARE_PUP Win32/SmartTab PUP Install Activity (adware_pup.rules)
  • 2014118 - ET MALWARE Cythosia V2 DDoS WebPanel Hosted Locally (malware.rules)
  • 2014120 - ET ADWARE_PUP Win32/Eorezo-B Adware Checkin (adware_pup.rules)
  • 2014127 - ET POLICY Splashtop Remote Control Checkin (policy.rules)
  • 2014129 - ET POLICY Splashtop Remote Control Session Keepalive (policy.rules)
  • 2014135 - ET RETIRED Zeus/Reveton checkin to /images.rar (retired.rules)
  • 2014136 - ET EXPLOIT_KIT Unknown Java Exploit Version Check with hidden applet (exploit_kit.rules)
  • 2014150 - ET MALWARE Suspicious executable download possible Trojan NgrBot (malware.rules)
  • 2014151 - ET EXPLOIT_KIT Known Malicious Link Leading to Exploit Kits (t.php?id=is1) (exploit_kit.rules)
  • 2014152 - ET MALWARE Gozi Checkin to CnC (malware.rules)
  • 2014155 - ET CURRENT_EVENTS JavaScript Obfuscation JSXX Script (current_events.rules)
  • 2014172 - ET MALWARE TROJAN ClickCounter Connectivity Check (malware.rules)
  • 2014183 - ET ADWARE_PUP Malicious ad_track.php file Reporting (adware_pup.rules)
  • 2014197 - ET EXPLOIT_KIT Yang Pack Exploit Kit Landing Page Known JavaScript Function Detected (exploit_kit.rules)
  • 2014200 - ET MALWARE Dapato/Cleaman Checkin (malware.rules)
  • 2014203 - ET EXPLOIT_KIT CUTE-IE.html CutePack Exploit Kit Landing Page Request (exploit_kit.rules)
  • 2014204 - ET EXPLOIT_KIT CutePack Exploit Kit JavaScript Variable Detected (exploit_kit.rules)
  • 2014205 - ET EXPLOIT_KIT CUTE-IE.html CutePack Exploit Kit Iframe for Landing Page Detected (exploit_kit.rules)
  • 2014206 - ET EXPLOIT_KIT CutePack Exploit Kit Landing Page Detected (exploit_kit.rules)
  • 2014208 - ET MALWARE TLD4 Purple Haze Variant Initial CnC Request for Ad Servers (malware.rules)
  • 2014219 - ET MALWARE TSPY_SPCESEND.A Checkin (malware.rules)
  • 2014222 - ET MALWARE QDIGIT Trojan Protocol detected (malware.rules)
  • 2014223 - ET MALWARE UPDATE Protocol Trojan Communication detected on http ports (malware.rules)
  • 2014224 - ET MALWARE UPDATE Protocol Trojan Communication detected on non-http ports (malware.rules)
  • 2014229 - ET MALWARE NfLog Checkin (malware.rules)
  • 2014230 - ET MALWARE Karagany/Kazy Obfuscated Payload Download (malware.rules)
  • 2014234 - ET MALWARE Fareit/Pony Downloader Checkin 3 (malware.rules)
  • 2014247 - ET MALWARE Sefnit Checkin 4 (malware.rules)
  • 2014248 - ET MALWARE Sefnit Checkin 5 (malware.rules)
  • 2014263 - ET MALWARE W32/Pasta.IK Checkin (malware.rules)
  • 2014264 - ET POLICY IP Geo Location Request (policy.rules)
  • 2014265 - ET POLICY IP geo location service response (policy.rules)
  • 2014266 - ET MALWARE Trojan.Win32.NfLog Checkin (TTip) (malware.rules)
  • 2014276 - ET MALWARE W32/Rovnix Downloading Config File From CnC (malware.rules)
  • 2014300 - ET MALWARE Win32/Kryptik.ABUD Checkin (malware.rules)
  • 2014307 - ET MALWARE W32/SelfStarterInternet.InfoStealer Checkin (malware.rules)
  • 2014308 - ET CURRENT_EVENTS Obfuscated Content Using Dadongs JSXX 0.41 VIP Obfuscation Script (current_events.rules)
  • 2014309 - ET MALWARE W32/LockScreen Scareware Geolocation Request (malware.rules)
  • 2014317 - ET MALWARE ZeuS Clickfraud List Delivered To Client (malware.rules)
  • 2014318 - ET WEB_CLIENT Clickpayz redirection to *.clickpayz.com (web_client.rules)
  • 2014319 - ET EXPLOIT Dadong Java Exploit Requested (exploit.rules)
  • 2014347 - ET MALWARE Peed Checkin (malware.rules)
  • 2014356 - ET MALWARE W32/ProxyChanger.InfoStealer Checkin (malware.rules)
  • 2014357 - ET MALWARE W32/Kazy Checkin (malware.rules)
  • 2014358 - ET MALWARE Backdoor.Win32.Riern.K Checkin Off Port (malware.rules)
  • 2014361 - ET MALWARE Win32/Protux.B Download Update (malware.rules)
  • 2014364 - ET MALWARE W32.Blocker Checkin (malware.rules)
  • 2014383 - ET EXPLOIT Microsoft RDP Server targetParams Exploit Attempt (exploit.rules)
  • 2014384 - ET DOS Microsoft Remote Desktop (RDP) Syn then Reset 30 Second DoS Attempt (dos.rules)
  • 2014386 - ET DOS Microsoft Remote Desktop (RDP) Session Established Flowbit Set (dos.rules)
  • 2014387 - ET MALWARE Generic Dropper User-Agent (XXXwww) (malware.rules)
  • 2014399 - ET MALWARE Trojan-Spy.Win32.Zbot.djrm Checkin (malware.rules)
  • 2014401 - ET WORM W32/Rimecud /qvod/ff.txt Checkin (worm.rules)
  • 2014403 - ET ADWARE_PUP W32/PaPaPaEdge.Adware/Gambling Poker-Edge Checkin (adware_pup.rules)
  • 2014405 - ET MALWARE Cridex.B/Feodo Checkin (malware.rules)
  • 2014406 - ET MOBILE_MALWARE iOS Keylogger iKeyMonitor access (mobile_malware.rules)
  • 2014428 - ET MALWARE SpyEye Checkin version 1.3.25 or later 3 (malware.rules)
  • 2014429 - ET EXPLOIT Java Rhino Exploit Attempt - evilcode.class (exploit.rules)
  • 2014430 - ET DOS Microsoft Remote Desktop Protocol (RDP) maxChannelIds DoS Attempt Negative INT (dos.rules)
  • 2014431 - ET DOS Microsoft Remote Desktop Protocol (RDP) maxChannelIds DoS Attempt (dos.rules)
  • 2014435 - ET MALWARE Infostealer.Banprox Proxy.pac Download (malware.rules)
  • 2014437 - ET MALWARE FakeAV Landing Page - Initializing Protection System (malware.rules)
  • 2014458 - ET CURRENT_EVENTS Italian Spam Campaign (current_events.rules)
  • 2014464 - ET MALWARE DwnLdr-JMZ Downloading Binary (malware.rules)
  • 2014465 - ET MALWARE DwnLdr-JMZ Downloading Binary 2 (malware.rules)
  • 2014466 - ET MALWARE Win32.Datamaikon Checkin (malware.rules)
  • 2014467 - ET MALWARE Win32.Datamaikon Checkin NewAgent (malware.rules)
  • 2014476 - ET MALWARE HTTP Request to Zaletelly CnC Domain zaletellyxx.be (malware.rules)
  • 2014477 - ET MALWARE HTTP Request to Zaletelly CnC Domain atserverxx.info (malware.rules)
  • 2014508 - ET INFO DNS Query to a *.slyip.net Dynamic DNS Domain (info.rules)
  • 2014528 - ET MALWARE W32/Taidoor.Backdoor Command Request CnC Checkin (malware.rules)
  • 2014539 - ET EXPLOIT_KIT Malicious TDS /indigo? (exploit_kit.rules)
  • 2014561 - ET WEB_CLIENT landing page with malicious Java applet (web_client.rules)
  • 2014565 - ET CURRENT_EVENTS JavaScript Determining OS MAC and Serving Java Archive File (current_events.rules)
  • 2014568 - ET EXPLOIT_KIT Unkown exploit kit jar download (exploit_kit.rules)
  • 2014569 - ET EXPLOIT_KIT Unkown exploit kit version check (exploit_kit.rules)
  • 2014570 - ET MALWARE HTTP Request to a known malware domain (regicsgf.net) (malware.rules)
  • 2014577 - ET MALWARE Italian Spam Campaign ZIP with EXE Containing Many Underscores (malware.rules)
  • 2014578 - ET MALWARE Win32.Winwebsec.B Checkin (malware.rules)
  • 2014584 - ET ADWARE_PUP Win32/Pdfjsc.XD Related Checkin (microsoft_predator_client header field) (adware_pup.rules)
  • 2014599 - ET MALWARE Mac Flashback Checkin 3 (malware.rules)
  • 2014605 - ET ADWARE_PUP W32/GameVance Adware Server Reponse To Client Checkin (adware_pup.rules)
  • 2014606 - ET ADWARE_PUP W32/GameVance User-Agent (aw v3) (adware_pup.rules)
  • 2014607 - ET WEB_CLIENT Nikjju Mass Injection Compromised Site Served To Local Client (web_client.rules)
  • 2014608 - ET WEB_CLIENT Nikjju Mass Injection Internal WebServer Compromised (web_client.rules)
  • 2014615 - ET CURRENT_EVENTS Jembot PHP Webshell (hell.php) (current_events.rules)
  • 2014618 - ET MALWARE W32/Sogu Remote Access Trojan Social Media Embedded CnC Channel (malware.rules)
  • 2014619 - ET ACTIVEX Possible McAfee SaaS MyCioScan ShowReport Method Call Remote Command Execution (activex.rules)
  • 2014620 - ET ACTIVEX Possible McAfee SaaS MyCioScan ShowReport Method Call Remote Command Execution 2 (activex.rules)
  • 2014633 - ET WEB_SPECIFIC_APPS phpMyAdmin setup.php Remote File inclusion Attempt (CVE-2010-3055) (web_specific_apps.rules)
  • 2014637 - ET MALWARE Maljava Dropper for Windows (malware.rules)
  • 2014638 - ET MALWARE Maljava Dropper for OS X (malware.rules)
  • 2014640 - ET EXPLOIT_KIT Incognito Exploit Kit payload request to images.php?t=N (exploit_kit.rules)
  • 2014641 - ET EXPLOIT_KIT Incognito Exploit Kit landing page request to images.php?t=4xxxxxxx (exploit_kit.rules)
  • 2014658 - ET EXPLOIT_KIT Unkown exploit kit payload download (exploit_kit.rules)
  • 2014662 - ET DOS Microsoft Remote Desktop Protocol (RDP) maxChannelIds Integer indef DoS Attempt (dos.rules)
  • 2014663 - ET DOS Microsoft Remote Desktop Protocol (RDP) maxChannelIds Negative Integer indef DoS Attempt (dos.rules)
  • 2014701 - ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Opcode 6 or 7 set (dns.rules)
  • 2014702 - ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Opcode 8 through 15 set (dns.rules)
  • 2014703 - ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Reserved Bit Set (dns.rules)
  • 2014710 - ET ACTIVEX Possible Samsung NET-i Viewer Active-X SEH Overwrite (activex.rules)
  • 2014719 - ET MALWARE W32/Simbot.Backdoor Checkin (malware.rules)
  • 2014721 - ET MALWARE Boatz Checkin (malware.rules)
  • 2014723 - ET MALWARE Suspicious lcon http header in response seen with Medfos/Midhos downloader (malware.rules)
  • 2014729 - ET WEB_CLIENT FakeAV Landing Page - Viruses were found (web_client.rules)
  • 2014731 - ET MALWARE Snap Bot Checkin (malware.rules)
  • 2014732 - ET MALWARE Snap Bot Receiving Download Command (malware.rules)
  • 2014733 - ET MALWARE Snap Bot Receiving DDoS Command (malware.rules)
  • 2014735 - ET ADWARE_PUP Malicious file bitdefender_isecurity.exe download (adware_pup.rules)
  • 2014749 - ET EXPLOIT_KIT Redkit Java Exploit request to /24842.jar (exploit_kit.rules)
  • 2014750 - ET EXPLOIT_KIT Incognito/RedKit Exploit Kit vulnerable Java payload request to /1digit.html (exploit_kit.rules)
  • 2014755 - ET MALWARE W32/HupigonUser.Backdoor Rabclib UA Checkin (malware.rules)
  • 2014758 - ET MALWARE Trojan.BAT.Qhost - SET (malware.rules)
  • 2014759 - ET MALWARE Trojan.BAT.Qhost Response from Controller (malware.rules)
  • 2014760 - ET MALWARE W32/Votwup.Backdoor Checkin (malware.rules)
  • 2014777 - ET MALWARE Kazy/Kryptic Checkin with Opera/9 User-Agent (malware.rules)
  • 2014795 - ET MALWARE W32/Syndicasec.Backdoor Client POST CMD result (malware.rules)
  • 2014798 - ET ADWARE_PUP PCMightyMax Agent PCMM.Installer (adware_pup.rules)
  • 2014805 - ET MALWARE Unknown java_ara Bin Download (malware.rules)
  • 2014810 - ET ADWARE_PUP Malicious pusk.exe download (adware_pup.rules)
  • 2014818 - ET MALWARE Possible SKyWIper/Win32.Flame UA (malware.rules)
  • 2014826 - ET MALWARE Virus.Win32.Sality.aa Checkin (malware.rules)
  • 2014831 - ET ACTIVEX Possible Wireless Manager Sony VAIO SetTmpProfileOption Method Access Buffer Overflow (activex.rules)
  • 2014832 - ET ACTIVEX Possible Wireless Manager Sony VAIO ConnectToNetwork Method Access Buffer Overflow (activex.rules)
  • 2014841 - ET MALWARE Possible Feodo/Cridex Traffic Detected (malware.rules)
  • 2014848 - ET CURRENT_EVENTS webshell used In timthumb attacks GIF98a 16129xX with PHP (current_events.rules)
  • 2014849 - ET MALWARE Flamer WuSetupV module traffic 1 (malware.rules)
  • 2014850 - ET MALWARE Flamer WuSetupV module traffic 2 (malware.rules)
  • 2014853 - ET EXPLOIT_KIT Sakura Exploit Kit Version 1.1 Applet Value lxxt (exploit_kit.rules)
  • 2014864 - ET MALWARE W32.Gimemo/Aldibot CnC POST (malware.rules)
  • 2014884 - ET EXPLOIT_KIT Request to malicious SutraTDS - lonly= in cookie (exploit_kit.rules)
  • 2014891 - ET EXPLOIT RedKit - Java Exploit Requested - 5 digit jar (exploit.rules)
  • 2014892 - ET CURRENT_EVENTS RedKit - Jar File Naming Algorithm (current_events.rules)
  • 2014895 - ET WEB_CLIENT RedKit - Landing Page Received - applet and code (web_client.rules)
  • 2014927 - ET MALWARE Unknown Java Malicious Jar /eeltff.jar (malware.rules)
  • 2014928 - ET CURRENT_EVENTS Unknown - Java Request .jar from dl.dropbox.com (current_events.rules)
  • 2014929 - ET CURRENT_EVENTS Request to .in FakeAV Campaign June 19 2012 exe or zip (current_events.rules)
  • 2014930 - ET WEB_CLIENT Obfuscated Javascript redirecting to badness 21 June 2012 (web_client.rules)
  • 2014933 - ET MALWARE Win32/Bicololo.Dropper ne_unik CnC Server Response (malware.rules)
  • 2014935 - ET WEB_CLIENT FoxxySoftware - Landing Page Received - foxxysoftware (web_client.rules)
  • 2014936 - ET WEB_CLIENT FoxxySoftware - Landing Page Received - applet and 0px (web_client.rules)
  • 2014950 - ET WEB_SPECIFIC_APPS Nagios XI div parameter Cross-Site Scripting Attempt (web_specific_apps.rules)
  • 2014953 - ET MALWARE Capfire4 Checkin (update machine status) (malware.rules)
  • 2014957 - ET MALWARE Backdoor Win32/Hupigon.CK Client Idle (malware.rules)
  • 2014959 - ET EXPLOIT Base64 - Java Exploit Requested - /1Digit (exploit.rules)
  • 2014960 - ET WEB_CLIENT Base64 - Landing Page Received - base64encode(GetOs() (web_client.rules)
  • 2014961 - ET MALWARE W32/Scar CnC Checkin (malware.rules)
  • 2014966 - ET EXPLOIT Generic - PDF with NEW PDF EXPLOIT (exploit.rules)
  • 2014969 - ET EXPLOIT Unknown - Java Exploit Requested - 13-14Alpha.jar (exploit.rules)
  • 2014970 - ET CURRENT_EVENTS Runforestrun Malware Campaign Infected Website (current_events.rules)
  • 2014971 - ET CURRENT_EVENTS JS.Runfore Malware Campaign Request (current_events.rules)
  • 2014972 - ET CURRENT_EVENTS HeapLib JS Library (current_events.rules)
  • 2014982 - ET CURRENT_EVENTS Googlebot UA POST to /uploadify.php (current_events.rules)
  • 2014983 - ET CURRENT_EVENTS Scalaxy Jar file (current_events.rules)
  • 2014984 - ET CURRENT_EVENTS Hacked Website Response /km0ae9gr6m/ Jun 25 2012 (current_events.rules)
  • 2014985 - ET CURRENT_EVENTS Hacked Website Response /qhk6sa6g1c/ Jun 25 2012 (current_events.rules)
  • 2014991 - ET ACTIVEX Possible SonciWALL Aventail AuthCredential Format String Exploit 2 (activex.rules)
  • 2014992 - ET ACTIVEX Possible SonciWALL Aventail AuthCredential Format String Exploit (activex.rules)
  • 2014998 - ET WEB_CLIENT Runforestrun Malware Campaign Infected Website Landing Page Obfuscated String JavaScript DGA (web_client.rules)
  • 2015002 - ET MALWARE Pushbot User-Agent (malware.rules)
  • 2015003 - ET MALWARE Pushbot server response (malware.rules)
  • 2015010 - ET EXPLOIT_KIT g01pack exploit pack /mix/ Java exploit (exploit_kit.rules)
  • 2015018 - ET ADWARE_PUP W32/OnlineGames User Agent loadMM (adware_pup.rules)
  • 2015019 - ET MALWARE W32/Icoo CnC Checkin (malware.rules)
  • 2015022 - ET MALWARE W32/Zusy Gettime Checkin (malware.rules)
  • 2015024 - ET MALWARE Incognito - Malicious PDF Requested - /getfile.php (malware.rules)
  • 2015030 - ET EXPLOIT Incognito - Java Exploit Requested - /gotit.php by Java Client (exploit.rules)
  • 2015031 - ET CURRENT_EVENTS Incognito - Payload Request - /load.php by Java Client (current_events.rules)
  • 2015042 - ET CURRENT_EVENTS g01pack - 32Char.php by Java Client (current_events.rules)
  • 2015053 - ET WEB_CLIENT Unknown_s=1 - Landing Page - 10HexChar Title and applet (web_client.rules)
  • 2015054 - ET WEB_CLIENT Unknown_s=1 - Landing Page - 100HexChar value and applet (web_client.rules)
  • 2015055 - ET CURRENT_EVENTS Unknown_s=1 - Payload Requested - 32AlphaNum?s=1 Java Request (current_events.rules)
  • 2015479 - ET EXPLOIT_KIT Possible Unknown TDS /rem2.html (exploit_kit.rules)
  • 2015489 - ET MALWARE W32/OnlineGame.DaGame Variant CnC Checkin (malware.rules)
  • 2015516 - ET CURRENT_EVENTS RedKit PluginDetect Rename Saigon (current_events.rules)
  • 2015517 - ET MALWARE .HTM being served from WP 1-flash-gallery Upload DIR (likely malicious) (malware.rules)
  • 2015523 - ET MALWARE Pakes2 - Checkin - /test.php (malware.rules)
  • 2015526 - ET WEB_SERVER Fake Googlebot UA 1 Inbound (web_server.rules)
  • 2015528 - ET MALWARE Win32.Agent2.fher Related User-Agent (Microsoft Internet Updater) (malware.rules)
  • 2015529 - ET INFO Googlebot User-Agent Outbound (likely malicious) (info.rules)
  • 2015530 - ET MALWARE HTTP Request to RunForestRun DGA Domain 16-alpha.waw.pl (malware.rules)
  • 2015532 - ET MALWARE Generic - ProxyJudge Reverse Proxy Scoring Activity (malware.rules)
  • 2015533 - ET MALWARE Karagany checkin (sid5 1) (malware.rules)
  • 2015534 - ET MALWARE Karagany checkin (sid5 2) (malware.rules)
  • 2015535 - ET MALWARE ZeroAccess HTTP GET request (malware.rules)
  • 2015546 - ET MALWARE Trojan Cridex checkin (malware.rules)
  • 2015547 - ET MALWARE Pakes2 - EXE Download Request (malware.rules)
  • 2015553 - ET WEB_CLIENT Fake-AV Conditional Redirect (Blackmuscats) (web_client.rules)
  • 2015561 - ET INFO PDF Using CCITTFax Filter (info.rules)
  • 2015575 - ET EXPLOIT_KIT KaiXin Exploit Kit Java Class (exploit_kit.rules)
  • 2015578 - ET WEB_CLIENT Obfuscated Javascript redirecting to badness August 6 2012 (web_client.rules)
  • 2015583 - ET CURRENT_EVENTS FoxxySoftware - Comments (current_events.rules)
  • 2015584 - ET CURRENT_EVENTS FoxxySoftware - Comments(2) (current_events.rules)
  • 2015585 - ET CURRENT_EVENTS FoxxySoftware - Hit Counter Access (current_events.rules)
  • 2015587 - ET MALWARE MP-FormGrabber Checkin (malware.rules)
  • 2015594 - ET MALWARE FinFisher Malware Connection Initialization (malware.rules)
  • 2015600 - ET RETIRED DNS Query Gauss Domain *.dotnetadvisor.info (retired.rules)
  • 2015616 - ET MALWARE DOCHTML C&C http directive in HTML comments (malware.rules)
  • 2015617 - ET MALWARE Smardf/Boaxxe GET to cc.php3 (malware.rules)
  • 2015632 - ET MALWARE Shamoon/Wiper/DistTrack Checkin (malware.rules)
  • 2015635 - ET MALWARE Backdoor.Briba Checkin (malware.rules)
  • 2015646 - ET EXPLOIT_KIT Unknown Exploit Kit seen with O1/O2.class /form (exploit_kit.rules)
  • 2015647 - ET EXPLOIT_KIT Unknown Exploit Kit seen with O1/O2.class /search (exploit_kit.rules)
  • 2015653 - ET MALWARE Rogue.Win32/Winwebsec Install (malware.rules)
  • 2015666 - ET MALWARE NeoSploit - Version Enumerated - Java (malware.rules)
  • 2015667 - ET MALWARE NeoSploit - Version Enumerated - null (malware.rules)
  • 2015668 - ET WEB_CLIENT FlimKit/Other - Landing Page - 100HexChar value and applet (web_client.rules)
  • 2015669 - ET WEB_CLIENT Malicious Redirect n.php h=&s= (web_client.rules)
  • 2015672 - ET EXPLOIT_KIT Unknown Exploit Kit redirect (exploit_kit.rules)
  • 2015676 - ET EXPLOIT_KIT Unknown Java Exploit Kit Payload Download Request - Sep 04 2012 (exploit_kit.rules)
  • 2015678 - ET EXPLOIT_KIT Sakura exploit kit exploit download request /view.php (exploit_kit.rules)
  • 2015682 - ET EXPLOIT_KIT Unknown Java Exploit Kit with fast-flux like behavior static initial landing - Sep 05 2012 (exploit_kit.rules)
  • 2015683 - ET EXPLOIT_KIT Unknown Java Exploit Kit with fast-flux like behavior hostile java archive - Sep 05 2012 (exploit_kit.rules)
  • 2015688 - ET CURRENT_EVENTS Possible Remote PHP Code Execution (php.pjpg) (current_events.rules)
  • 2015690 - ET EXPLOIT_KIT NeoSploit - Obfuscated Payload Requested (exploit_kit.rules)
  • 2015691 - ET EXPLOIT_KIT NeoSploit - PDF Exploit Requested (exploit_kit.rules)
  • 2015694 - ET EXPLOIT_KIT NeoSploit - Version Enumerated - null (exploit_kit.rules)
  • 2015713 - ET MALWARE Dapato Checkin 8 (malware.rules)
  • 2015719 - ET MALWARE DNS Query to Unknown CnC DGA Domain palauone.com 09/20/12 (malware.rules)
  • 2015720 - ET MALWARE DNS Query to Unknown CnC DGA Domain traindiscover.com 09/20/12 (malware.rules)
  • 2015721 - ET MALWARE DNS Query to Unknown CnC DGA Domain manymanyd.com 09/20/12 (malware.rules)
  • 2015722 - ET MALWARE DNS Query to Unknown CnC DGA Domain whatandwhyeh.com 09/20/12 (malware.rules)
  • 2015724 - ET EXPLOIT_KIT pamdql Exploit Kit 09/25/12 Sending Jar (exploit_kit.rules)
  • 2015728 - ET MALWARE DNS Query to Unknown CnC DGA Domain bktwenty.com 09/20/12 (malware.rules)
  • 2015730 - ET MALWARE DNS Query to Unknown CnC DGA Domain sleeveblouse.com 09/20/12 (malware.rules)
  • 2015733 - ET EXPLOIT_KIT Sakura exploit kit exploit download request /sarah.php (exploit_kit.rules)
  • 2015736 - ET MALWARE DNS Query to Unknown CnC DGA Domain (defmaybe .com) 09/25/12 (malware.rules)
  • 2015738 - ET EXPLOIT_KIT pamdql obfuscated javascript — padding (exploit_kit.rules)
  • 2015741 - ET MALWARE DNS Query to Unknown CnC DGA Domain (adbullion .com) 09/26/12 (malware.rules)
  • 2015748 - ET MALWARE Fake Anti-Hacking Tool (malware.rules)
  • 2015753 - ET MALWARE Pincav.cjvb Checkin (malware.rules)
  • 2015758 - ET EXPLOIT_KIT g01pack Exploit Kit Landing Page (2) (exploit_kit.rules)
  • 2015782 - ET EXPLOIT_KIT Magnitude EK (formerly Popads) Other Java Exploit Kit 32-32 byte hex hostile jar (exploit_kit.rules)
  • 2015783 - ET EXPLOIT_KIT BegOp Exploit Kit Payload (exploit_kit.rules)
  • 2015792 - ET EXPLOIT_KIT Scalaxy Secondary Landing Page 10/11/12 (exploit_kit.rules)
  • 2015793 - ET EXPLOIT Scalaxy Java Exploit 10/11/12 (exploit.rules)
  • 2015805 - ET MALWARE Mini-Flame v 4.x C2 HTTP request (malware.rules)
  • 2015806 - ET MALWARE Mini-Flame v 5.x C2 HTTP request (malware.rules)
  • 2015812 - ET CURRENT_EVENTS SofosFO Jar file 10/17/12 (current_events.rules)
  • 2015818 - ET EXPLOIT_KIT g01pack Exploit Kit .homeip. Landing Page (exploit_kit.rules)
  • 2015819 - ET EXPLOIT_KIT g01pack Exploit Kit .homelinux. Landing Page (exploit_kit.rules)
  • 2015824 - ET MALWARE GeckaSeka User-Agent (malware.rules)
  • 2015825 - ET MALWARE Zeus/Citadel Control Panel Access (Outbound) (malware.rules)
  • 2015826 - ET MALWARE Zeus/Citadel Control Panel Access (Inbound) (malware.rules)
  • 2015827 - ET MALWARE Citadel API Access Iframer Controller (Outbound) (malware.rules)
  • 2015828 - ET MALWARE Citadel API Access IFramer Controller (Inbound) (malware.rules)
  • 2015829 - ET MALWARE Citadel API Access VNC Controller (Outbound) (malware.rules)
  • 2015830 - ET MALWARE Citadel API Access VNC Controller (Inbound) (malware.rules)
  • 2015831 - ET MALWARE Citadel API Access Bot Controller (Outbound) (malware.rules)
  • 2015832 - ET MALWARE Citadel API Access Bot Controller (Inbound) (malware.rules)
  • 2015834 - ET MALWARE Citadel API Access Video Controller (Inbound) (malware.rules)
  • 2015835 - ET MALWARE Smoke Loader C2 Response (malware.rules)
  • 2015840 - ET EXPLOIT_KIT Unknown Exploit Kit Landing Page (exploit_kit.rules)
  • 2015841 - ET EXPLOIT_KIT Unknown Exploit Kit Landing Page (exploit_kit.rules)
  • 2015847 - ET WEB_CLIENT SofosFO/NeoSploit possible second stage landing page (web_client.rules)
  • 2015866 - ET CURRENT_EVENTS Sophos PDF Standard Encryption Key Length Buffer Overflow (current_events.rules)
  • 2015867 - ET CURRENT_EVENTS Sophos PDF Standard Encryption Key Length Buffer Overflow (current_events.rules)
  • 2015868 - ET MALWARE Backdoor.ADDNEW (DarKDdoser) CnC 1 (malware.rules)
  • 2015869 - ET MALWARE Backdoor.ADDNEW (DarKDdoser) CnC 2 (malware.rules)
  • 2015873 - ET EXPLOIT_KIT Cool Exploit Kit Requesting Payload (exploit_kit.rules)
  • 2015874 - ET RETIRED Known Reveton Domain HTTP whatwillber.com (retired.rules)
  • 2015876 - ET CURRENT_EVENTS SofosFO Jar file 09 Nov 12 (current_events.rules)
  • 2015883 - ET EXPLOIT Java Exploit Campaign SetAttribute Java Applet (exploit.rules)
  • 2015888 - ET EXPLOIT_KIT Magnitude EK (formerly Popads) Java Exploit Kit 32 byte hex with trailing digit java payload request (exploit_kit.rules)
  • 2015894 - ET MALWARE Unknown FakeAV - /get/*.crp (malware.rules)
  • 2015897 - ET EXPLOIT_KIT Possible TDS Exploit Kit /flow redirect at .ru domain (exploit_kit.rules)
  • 2015901 - ET EXPLOIT_KIT Magnitude EK (formerly Popads) - Landing Page - Java ClassID and 32HexChar.jar (exploit_kit.rules)
  • 2015902 - ET MALWARE Win32/Kuluoz.B CnC (malware.rules)
  • 2015903 - ET MALWARE Win32/Kuluoz.B CnC 2 (malware.rules)
  • 2015904 - ET MALWARE Win32/Kuluoz.B CnC 3 (malware.rules)
  • 2015921 - ET PHISHING Spam Campaign JPG CnC Link (phishing.rules)
  • 2015922 - ET EXPLOIT_KIT Possible Glazunov Java exploit request /9-10-/4-5-digit (exploit_kit.rules)
  • 2015928 - ET EXPLOIT_KIT RedKit Exploit Kit Java Request to Recent jar (1) (exploit_kit.rules)
  • 2015929 - ET EXPLOIT_KIT RedKit Exploit Kit Java Request to Recent jar (2) (exploit_kit.rules)
  • 2015930 - ET EXPLOIT_KIT RedKit Exploit Kit Vulnerable Java Payload Request URI (1) (exploit_kit.rules)
  • 2015931 - ET EXPLOIT_KIT RedKit Exploit Kit vulnerable Java Payload Request to URI (2) (exploit_kit.rules)
  • 2015939 - ET EXPLOIT_KIT g01pack Exploit Kit .blogsite. Landing Page (exploit_kit.rules)
  • 2015941 - ET EXPLOIT_KIT CrimeBoss - Java Exploit - Recent Jar (1) (exploit_kit.rules)
  • 2015942 - ET EXPLOIT_KIT CrimeBoss - Java Exploit - Recent Jar (2) (exploit_kit.rules)
  • 2015943 - ET EXPLOIT_KIT Crimeboss - Java Exploit - Recent Jar (3) (exploit_kit.rules)
  • 2015944 - ET EXPLOIT_KIT CrimeBoss - Stats Access (exploit_kit.rules)
  • 2015945 - ET EXPLOIT_KIT CrimeBoss - Stats Java On (exploit_kit.rules)
  • 2015946 - ET EXPLOIT_KIT CrimeBoss - Setup (exploit_kit.rules)
  • 2015949 - ET EXPLOIT_KIT Propack Recent Jar (1) (exploit_kit.rules)
  • 2015950 - ET EXPLOIT_KIT Propack Payload Request (exploit_kit.rules)
  • 2015951 - ET CURRENT_EVENTS SibHost Jar Request (current_events.rules)
  • 2015955 - ET EXPLOIT_KIT PDF /FlateDecode and PDF version 1.1 (seen in pamdql EK) (exploit_kit.rules)
  • 2015956 - ET EXPLOIT_KIT Serenity Exploit Kit Landing Page HTML Header (exploit_kit.rules)
  • 2015962 - ET EXPLOIT_KIT CritXPack Payload Request (exploit_kit.rules)
  • 2015963 - ET PHISHING PHISH Generic - Bank and Routing (phishing.rules)
  • 2015970 - ET EXPLOIT_KIT Zuponcic EK Payload Request (exploit_kit.rules)
  • 2015971 - ET EXPLOIT_KIT Zuponcic EK Java Exploit Jar (exploit_kit.rules)
  • 2015974 - ET EXPLOIT_KIT Sibhost Status Check (exploit_kit.rules)
  • 2015975 - ET EXPLOIT MySQL Stack based buffer overrun Exploit Specific (exploit.rules)
  • 2015977 - ET EXPLOIT_KIT probable malicious Glazunov Javascript injection (exploit_kit.rules)
  • 2015979 - ET EXPLOIT_KIT CritXPack - Landing Page (exploit_kit.rules)
  • 2015981 - ET EXPLOIT_KIT Zuponcic Hostile Jar (exploit_kit.rules)
  • 2015983 - ET PHISHING PHISH Bank - York - Creds Phished (phishing.rules)
  • 2015987 - ET EXPLOIT MySQL Heap based buffer overrun Exploit Specific (exploit.rules)
  • 2015988 - ET EXPLOIT_KIT CrimeBoss - Stats Load Fail (exploit_kit.rules)
  • 2015989 - ET EXPLOIT_KIT RedKit - Potential Java Exploit Requested - 3 digit jar (exploit_kit.rules)
  • 2015991 - ET EXPLOIT_KIT Robopak - Landing Page Received (exploit_kit.rules)
  • 2015992 - ET EXPLOIT MySQL (Linux) Database Privilege Elevation (Exploit Specific) (exploit.rules)
  • 2015997 - ET CURRENT_EVENTS Fake Google Chrome Update/Install (current_events.rules)
  • 2015999 - ET MALWARE W32/Quarian HTTP Proxy Header (malware.rules)
  • 2016001 - ET EXPLOIT_KIT PDF /XFA and PDF-1.[0-4] Spec Violation (seen in pamdql and other EKs) (exploit_kit.rules)
  • 2016012 - ET EXPLOIT_KIT CritXPack PDF Request (2) (exploit_kit.rules)
  • 2016013 - ET EXPLOIT_KIT CritXPack Jar Request (2) (exploit_kit.rules)
  • 2016018 - ET EXPLOIT Embedded Open Type Font file .eot seeing at Cool Exploit Kit (exploit.rules)
  • 2016022 - ET WEB_CLIENT MALVERTISING FlashPost - Redirection IFRAME (web_client.rules)
  • 2016027 - ET EXPLOIT_KIT g01pack - Landing Page Received - applet and 32AlphaNum.jar (exploit_kit.rules)
  • 2016035 - ET CURRENT_EVENTS Possible SibHost PDF Request (current_events.rules)
  • 2016048 - ET MALWARE W32/Prinimalka Configuration Update Request (malware.rules)
  • 2016051 - ET MALWARE W32.Daws/Sanny CnC POST (malware.rules)
  • 2016052 - ET EXPLOIT_KIT Unknown_gmf EK - Payload Download Requested (exploit_kit.rules)
  • 2016053 - ET EXPLOIT_KIT Unknown_gmf EK - Payload Download Received (exploit_kit.rules)
  • 2016054 - ET EXPLOIT_KIT Unknown_gmf EK - Server Response - Application Error (exploit_kit.rules)
  • 2016056 - ET EXPLOIT_KIT Unknown_gmf EK - flsh.html (exploit_kit.rules)
  • 2016065 - ET EXPLOIT_KIT Magnitude EK (formerly Popads) Embedded Open Type Font file .eot (exploit_kit.rules)
  • 2016071 - ET EXPLOIT_KIT SofosFO 20 Dec 12 - .jar file request (exploit_kit.rules)
  • 2016072 - ET EXPLOIT_KIT SofosFO 20 Dec 12 - .pdf file request (exploit_kit.rules)
  • 2016073 - ET EXPLOIT_KIT SofosFO - possible second stage landing page (exploit_kit.rules)
  • 2016087 - ET MALWARE TROJAN Unk_Banker - Check In (malware.rules)
  • 2016090 - ET WEB_CLIENT Hostile Gate landing seen with pamdql/Sweet Orange /in.php?q= (web_client.rules)
  • 2016093 - ET EXPLOIT_KIT pamdql/Sweet Orange delivering exploit kit payload (exploit_kit.rules)
  • 2016098 - ET WEB_CLIENT Drupal Mass Injection Campaign Inbound (web_client.rules)
  • 2016099 - ET WEB_CLIENT Drupal Mass Injection Campaign Outbound (web_client.rules)
  • 2016103 - ET MALWARE DNS Reply Sinkhole - Microsoft - 207.46.90.0/24 (malware.rules)
  • 2016107 - ET EXPLOIT_KIT Topic EK Requesting Jar (exploit_kit.rules)
  • 2016108 - ET EXPLOIT_KIT Topic EK Requesting PDF (exploit_kit.rules)
  • 2016110 - ET MALWARE FakeAV Download antivirus-installer.exe (malware.rules)
  • 2016111 - ET EXPLOIT_KIT Sweet Orange Java payload request (1) (exploit_kit.rules)
  • 2016113 - ET EXPLOIT_KIT Redkit encrypted binary (1) (exploit_kit.rules)
  • 2016128 - ET WEB_CLIENT RedKit - Landing Page (web_client.rules)
  • 2016129 - ET EXPLOIT_KIT Unknown_gmf/Styx EK - fnts.html (exploit_kit.rules)
  • 2016133 - ET EXPLOIT Escaped Unicode Char in Location CVE-2012-4792 EIP (Exploit Specific replace) (exploit.rules)
  • 2016137 - ET EXPLOIT EIP in URI M1 (CVE-2012-4792) (exploit.rules)
  • 2016318 - ET MOBILE_MALWARE Android/Ksapp.A Checkin (mobile_malware.rules)
  • 2016450 - ET MALWARE Backdoor.Win32/Likseput.A Checkin (malware.rules)
  • 2016907 - ET MALWARE Trojan-Spy.Win32.Agent.byhm User-Agent (EMSCBVDFRT) (malware.rules)
  • 2016963 - ET MALWARE Trojan.Win32/Mutopy.A Checkin (malware.rules)
  • 2018050 - ET ADWARE_PUP Win32.Magania (adware_pup.rules)
  • 2018117 - ET MALWARE Possible Sinkhole banner (malware.rules)
  • 2018123 - ET MALWARE Win32/Almanahe.B Checkin (malware.rules)
  • 2018143 - ET MALWARE Backdoor.Win32.Popwin Checkin (malware.rules)
  • 2018200 - ET MALWARE Win32/Matsnu.L Checkin (malware.rules)
  • 2018208 - ET DOS Inbound GoldenEye DoS attack (dos.rules)
  • 2018281 - ET MALWARE Possible Netwire RAT Client HeartBeat C1 (no alert) (malware.rules)
  • 2018282 - ET MALWARE Possible Netwire RAT Client HeartBeat S1 (no alert) (malware.rules)
  • 2018344 - ET CURRENT_EVENTS Hikvision DVR Synology Recon Scan Checkin (current_events.rules)
  • 2018386 - ET MALWARE cryptodefense Checkin (malware.rules)
  • 2018481 - ET MALWARE Trojan.Win32.Webprefix checkin (malware.rules)
  • 2018579 - ET MALWARE Dyreza RAT Checkin (malware.rules)
  • 2018683 - ET MALWARE Dyreza RAT Checkin 2 (malware.rules)
  • 2018685 - ET MALWARE Win32/Aibatook checkin (malware.rules)
  • 2018687 - ET MALWARE Win32/Aibatook checkin 2 (malware.rules)
  • 2018749 - ET MALWARE Dyreza RAT Checkin 3 (malware.rules)
  • 2018769 - ET MOBILE_MALWARE Android ScarePakage checkin (mobile_malware.rules)
  • 2018774 - ET MOBILE_MALWARE Android ScarePakage checkin 2 (mobile_malware.rules)
  • 2018781 - ET MOBILE_MALWARE AndroidOS.Simplocker Checkin (mobile_malware.rules)
  • 2018876 - ET POLICY DNS Query to .onion proxy Domain (onion.cab) (policy.rules)
  • 2018884 - ET MALWARE Troj/ReRol.A Checkin 4 (malware.rules)
  • 2018888 - ET MOBILE_MALWARE Android/Spy.Kasandra.A Checkin (mobile_malware.rules)
  • 2018901 - ET MALWARE BITTERBUG Checkin 2 (malware.rules)
  • 2018904 - ET INFO Session Traversal Utilities for NAT (STUN Binding Request obsolete rfc 3489 CHANGE-REQUEST attribute change IP flag false change port flag false) (info.rules)
  • 2018905 - ET INFO Session Traversal Utilities for NAT (STUN Binding Request obsolete rfc 3489 CHANGE-REQUEST attribute change IP flag false change port flag true) (info.rules)
  • 2018906 - ET INFO Session Traversal Utilities for NAT (STUN Binding Request obsolete rfc 3489 CHANGE-REQUEST attribute change IP flag true change port flag false) (info.rules)
  • 2018907 - ET INFO Session Traversal Utilities for NAT (STUN Binding Request obsolete rfc 3489 CHANGE-REQUEST attribute change IP flag true change port flag true) (info.rules)
  • 2018908 - ET INFO Session Traversal Utilities for NAT (STUN Binding Response) (info.rules)
  • 2018928 - ET MALWARE Unknown Trojan Dropped By Archie.EK (malware.rules)
  • 2018949 - ET MALWARE Win32/PSW.Steam.NBP Checkin (malware.rules)
  • 2018951 - ET MALWARE Tor Based Locker Page (Torrentlocker) (malware.rules)
  • 2018962 - ET MALWARE ZeroLocker Activity (malware.rules)
  • 2018990 - ET EXPLOIT_KIT Unknown Malvertising EK Payload URI Sruct Aug 22 2014 (exploit_kit.rules)
  • 2018991 - ET EXPLOIT_KIT Unknown Malvertising EK Silverlight URI Sruct Aug 22 2014 (exploit_kit.rules)
  • 2018993 - ET EXPLOIT_KIT Unknown Malvertising EK Payload URI Sruct Aug 22 2014 (exploit_kit.rules)
  • 2018994 - ET MALWARE Win32/Xema dropping file (malware.rules)
  • 2019155 - ET MALWARE Possible Zeus GameOver Connectivity Check 2 (malware.rules)
  • 2019179 - ET MALWARE MSIL/Spy.RapidStealer.B Checkin (malware.rules)
  • 2019286 - ET MALWARE Job314 EK Payload Checkin (malware.rules)
  • 2019353 - ET MALWARE Cryptolocker Checkin (malware.rules)
  • 2019503 - ET CURRENT_EVENTS SSL SinkHole Cert Possible Infected Host (current_events.rules)
  • 2019518 - ET MALWARE Win32/Chanitor.A Domain in SNI (malware.rules)
  • 2019538 - ET MALWARE Ransom.Win32.Blocker.fwlm Checkin (malware.rules)
  • 2019543 - ET EXPLOIT_KIT Likely SweetOrange EK Flash Exploit URI Struct (exploit_kit.rules)
  • 2019544 - ET EXPLOIT_KIT Possible Sweet Orange Flash/IE Payload Request (exploit_kit.rules)
  • 2019607 - ET MALWARE CryptoBot Downloading Files (malware.rules)
  • 2019636 - ET MALWARE Backoff Variant Checkin (malware.rules)
  • 2019661 - ET MALWARE OSX/WireLurker Checkin (malware.rules)
  • 2019679 - ET MALWARE Archie EK Payload Checkin POST (malware.rules)
  • 2019688 - ET MALWARE Win32/Roficor.A (Darkhotel) Checkin 2 (malware.rules)
  • 2019697 - ET MALWARE Possible Dridex Campaign Download Nov 11 2014 (malware.rules)
  • 2019717 - ET MALWARE Alureon Checkin (malware.rules)
  • 2019752 - ET EXPLOIT Possible Sweet Orange CVE-2014-6332 Payload Request (exploit.rules)
  • 2019753 - ET CURRENT_EVENTS Possible FlashPack (FlashOnly) Payload Struct Nov 19 2014 (current_events.rules)
  • 2019759 - ET MALWARE Win32/Zemot Requesting PE (malware.rules)
  • 2019776 - ET MALWARE CoinVault POST M1 (malware.rules)
  • 2019800 - ET CURRENT_EVENTS Magnitude Flash Payload (current_events.rules)
  • 2019843 - ET MALWARE Vawtrak/NeverQuest Posting Data (malware.rules)
  • 2019877 - ET MALWARE MS Office Macro Dridex Download URI Dec 5 2014 (malware.rules)
  • 2019894 - ET EXPLOIT_KIT Probable malicious download from e-mail link /1.php (exploit_kit.rules)
  • 2019953 - ET WEB_CLIENT Upatre Redirector Dec 16 2014 set (web_client.rules)
  • 2020070 - ET MALWARE Unknown Dropped by RIG EK (malware.rules)
  • 2058056 - ET HUNTING JavaScript Engine JIT Forcing Observed - Investigate Possible Exploitation M10 (hunting.rules)
  • 2804242 - ETPRO MALWARE Malex.gen/Malware.GSFYd.ADE75676 Bot Checkin (malware.rules)
  • 2804244 - ETPRO MALWARE Hupigon.GVOY/Xema Checkin (malware.rules)
  • 2804252 - ETPRO MALWARE Bat/sdel Checkin (malware.rules)
  • 2804253 - ETPRO MALWARE Zugo Malware Installer Checkin (malware.rules)
  • 2804255 - ETPRO MALWARE Backdoor.Win32/Jukbot.B Checkin (malware.rules)
  • 2804256 - ETPRO MALWARE Backdoor.Win32/Jukbot.B CnC traffic (malware.rules)
  • 2804257 - ETPRO WEB_SERVER Jboss code execution via comment parameter (web_server.rules)
  • 2804258 - ETPRO WEB_SERVER Jboss code execution via comment parameter 2 (web_server.rules)
  • 2804259 - ETPRO WEB_SERVER Jboss code execution via comment parameter 3 (web_server.rules)
  • 2804260 - ETPRO MALWARE TrojanDownloader.Win32/Bredolab.AJ Checkin (malware.rules)
  • 2804262 - ETPRO MALWARE Trojan-Banker.Win32.Banbra.anpq Checkin (malware.rules)
  • 2804263 - ETPRO MALWARE Win32/Karagany.A Checkin (malware.rules)
  • 2804266 - ETPRO MALWARE Trojan.Win32.Scar.fsah Checkin (malware.rules)
  • 2804267 - ETPRO MALWARE TR/Crypt.XPACK.Gen Checkin (malware.rules)
  • 2804269 - ETPRO ADWARE_PUP RogueAntiSpyware Install (adware_pup.rules)
  • 2804270 - ETPRO MALWARE Trojan-Downloader.Win32.Agent.gyda Checkin (malware.rules)
  • 2804273 - ETPRO MALWARE Win32/Bancos.ACM Checkin (malware.rules)
  • 2804277 - ETPRO EXPLOIT CTEK SkyRouter 4200 and 4300 Command Execution (exploit.rules)
  • 2804279 - ETPRO MALWARE Backdoor.Win32/Smadow.gen!B Checkin (malware.rules)
  • 2804281 - ETPRO MALWARE W32.Harakit Checkin (malware.rules)
  • 2804283 - ETPRO MALWARE Backdoor.Hupigon Checkin (malware.rules)
  • 2804287 - ETPRO MALWARE Trojan.MulDrop3.23293 Checkin (malware.rules)
  • 2804289 - ETPRO MALWARE Trojan-Downloader.Win32.FraudLoad.zpaf Checkin (malware.rules)
  • 2804301 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QOM Checkin (malware.rules)
  • 2804303 - ETPRO MALWARE Win32/Klovbot.B Checkin (malware.rules)
  • 2804311 - ETPRO MALWARE Win32/Comroki Checkin (malware.rules)
  • 2804312 - ETPRO ADWARE_PUP NSIS.Adware-BC Install 2 (adware_pup.rules)
  • 2804313 - ETPRO MALWARE Trojan-Dropper.Win32.Agent.exc Checkin (malware.rules)
  • 2804315 - ETPRO MALWARE Trojan-Downloader.Win32.Banload!IK Checkin (malware.rules)
  • 2804320 - ETPRO MALWARE Trojan/Invader.ciy Checkin (malware.rules)
  • 2804321 - ETPRO ADWARE_PUP Adware DL.Fosniw!lhp5vDLfRus Checkin (adware_pup.rules)
  • 2804322 - ETPRO MALWARE Exploit.Win32/MS08067.gen!A Checkin (malware.rules)
  • 2804323 - ETPRO MALWARE Win32/Ransom.EJ checkin (malware.rules)
  • 2804329 - ETPRO MALWARE Virus.Win32.OnLineGames!IK Checkin (malware.rules)
  • 2804357 - ETPRO INFO DYNAMIC_DNS Request to a *.gr8domain.biz Domain (info.rules)
  • 2804385 - ETPRO MALWARE Win32/SouGouDownloader.A User-Agent (SouGouDownloader) (malware.rules)
  • 2804386 - ETPRO ADWARE_PUP Variant.Adware.Gabpath.2 Checkin (adware_pup.rules)
  • 2804399 - ETPRO EXPLOIT HP OpenView Network Node Manager ov.dll _OVBuildPath Buffer Overflow (exploit.rules)
  • 2804403 - ETPRO MALWARE Trojan.Win32.Menti.kgbj User-Agent (malware.rules)
  • 2804404 - ETPRO MALWARE Trojan/Genome.aieg Checkin (malware.rules)
  • 2804407 - ETPRO ADWARE_PUP Adware.Relevant.BH Install (adware_pup.rules)
  • 2804408 - ETPRO MALWARE Mal/Simda-C Install (malware.rules)
  • 2804409 - ETPRO MALWARE Variant.Kazy.51230 Checkin (malware.rules)
  • 2804410 - ETPRO MALWARE Win32/Banload.AGV User-Agent (BOTPA5BG8S) (malware.rules)
  • 2804411 - ETPRO MALWARE Trojan.Win32.Swisyn.mtz User-Agent (SALLAMAILZILLA) (malware.rules)
  • 2804417 - ETPRO MALWARE TrojanClicker.Win32/Towshin.A Checkin (malware.rules)
  • 2804418 - ETPRO MALWARE Trojan.Win32.Scar.facd Checkin (malware.rules)
  • 2804420 - ETPRO MALWARE Win32/TrojanDownloader.Adload.NJJ CnC Traffic (malware.rules)
  • 2804422 - ETPRO MALWARE Win32/Poison.BG Checkin (malware.rules)
  • 2804423 - ETPRO MALWARE TrojanDownloader.Win32/Banload.ACK receiving config (malware.rules)
  • 2804430 - ETPRO ADWARE_PUP PUP/Win32.UtilTop Install (adware_pup.rules)
  • 2804431 - ETPRO MALWARE Backdoor.Win32.Solidrat.A Checkin (INBOUND) (malware.rules)
  • 2804432 - ETPRO MALWARE Trojan-PSW.Win32.QQShou.aqr Checkin (malware.rules)
  • 2804440 - ETPRO MALWARE Downloader.a!kw Checkin (malware.rules)
  • 2804441 - ETPRO MALWARE TrojanDropper.Win32/Microjoin.gen!C Checkin (malware.rules)
  • 2804442 - ETPRO MALWARE TrojanDropper.Win32/Umrena.F Checkin (malware.rules)
  • 2804443 - ETPRO MALWARE Win32/Banload.gen!B Checkin (malware.rules)
  • 2804446 - ETPRO MALWARE Win32/Votead Checkin (malware.rules)
  • 2804448 - ETPRO MALWARE Trojan.Zlob Install (malware.rules)
  • 2804450 - ETPRO MALWARE Virus.Win32.Virut.ce Install (malware.rules)
  • 2804455 - ETPRO ADWARE_PUP Adware.Downware.23 Install (adware_pup.rules)
  • 2804457 - ETPRO MALWARE TrojanSpy.Win32/Bancos.gen!A sending info via smtp (malware.rules)
  • 2804458 - ETPRO ADWARE_PUP Win32/Adware.Kraddare.CZ Checkin (adware_pup.rules)
  • 2804462 - ETPRO ADWARE_PUP Mal/Emogen-E Install (adware_pup.rules)
  • 2804463 - ETPRO EXPLOIT libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0 and Cisco IronPort Appliances Buffer overflow (exploit.rules)
  • 2804464 - ETPRO ADWARE_PUP BHO.Win32.Zwangi!IK Install (adware_pup.rules)
  • 2804469 - ETPRO MALWARE Win32/Sality.R Checkin (malware.rules)
  • 2804472 - ETPRO MALWARE Trojan.Crypt.Delf.AH Checkin (malware.rules)
  • 2804474 - ETPRO MALWARE Win32/Spy.Banker.XBV Checkin (malware.rules)
  • 2804476 - ETPRO MALWARE Trojan.Win32.Jorik.Agent.ee Checkin (malware.rules)
  • 2804478 - ETPRO MALWARE W32/Autorun.worm.bbs Install (malware.rules)
  • 2804481 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QFP Checkin (malware.rules)
  • 2804483 - ETPRO MALWARE PWS-Zbot.gen.di Connectivity Check (malware.rules)
  • 2804497 - ETPRO MALWARE Trojan.Win32.Sasfis Checkin (malware.rules)
  • 2804501 - ETPRO ADWARE_PUP PAK_Generic.001 Checkin (adware_pup.rules)
  • 2804504 - ETPRO ADWARE_PUP rogue anti-spyware Soft-Cop (adware_pup.rules)
  • 2804512 - ETPRO WEB_SERVER Microsoft SharePoint Server XSS attempt 1 (web_server.rules)
  • 2804513 - ETPRO WEB_SERVER Microsoft SharePoint Server XSS attempt 2 (web_server.rules)
  • 2804514 - ETPRO WEB_SERVER Microsoft SharePoint Server XSS attempt 3 (web_server.rules)
  • 2804525 - ETPRO MALWARE Trojan-Dropper.Win32.Dapato.aafb Checkin (malware.rules)
  • 2804526 - ETPRO MALWARE Trojan-Dropper.Win32.Dapato.aafb User-Agent (cibabam) (malware.rules)
  • 2804527 - ETPRO MALWARE Trojan-Banker.Win32.Banbra.aocj Checkin (malware.rules)
  • 2804528 - ETPRO MALWARE Trojan.Win32.Pasta.oaf Checkin (malware.rules)
  • 2804529 - ETPRO ADWARE_PUP not-a-virus.PSWTool.Win32.Pwdspyhk (adware_pup.rules)
  • 2804531 - ETPRO MALWARE TrojanClicker.Win32/Agent.ABHQ Checkin (malware.rules)
  • 2804532 - ETPRO MALWARE TrojanClicker.Win32/Agent.ABHQ Checkin 2 (malware.rules)
  • 2804534 - ETPRO MALWARE worm.win32/duptwux.a Checkin - SET (malware.rules)
  • 2804535 - ETPRO MALWARE worm.win32/duptwux.a Checkin (malware.rules)
  • 2804536 - ETPRO ADWARE_PUP Adware.EoRezo.T User-Agent (EoEngine) (adware_pup.rules)
  • 2804538 - ETPRO MALWARE Trojan-Proxy.Win32.Xorpix.bh Checkin (malware.rules)
  • 2804542 - ETPRO ADWARE_PUP Generic.KDV.71846 INSTALL (adware_pup.rules)
  • 2804543 - ETPRO MALWARE Backdoor.Win32.Hupigon Checkin (malware.rules)
  • 2804551 - ETPRO ADWARE_PUP SweetIM Install in Progress 2 (adware_pup.rules)
  • 2804552 - ETPRO ADWARE_PUP SweetIM Install in Progress 3 (adware_pup.rules)
  • 2804553 - ETPRO ADWARE_PUP SweetIM Install in Progress 4 (adware_pup.rules)
  • 2804555 - ETPRO ADWARE_PUP SweetIM instant message redirect.php (adware_pup.rules)
  • 2804560 - ETPRO MALWARE TrojanClicker.Win32/Agent.ABHQ Checkin 3 (malware.rules)
  • 2804563 - ETPRO MALWARE Trojan-Downloader.Win32.Banload.bpbw Checkin (malware.rules)
  • 2804564 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QUC Checkin (malware.rules)
  • 2804565 - ETPRO MALWARE TrojanDropper.Win32/Buzus.B Checkin (malware.rules)
  • 2804566 - ETPRO MALWARE Generic.Zlob.E1632B6D Checkin (malware.rules)
  • 2804568 - ETPRO ADWARE_PUP Adware.Downware.193 Checkin (adware_pup.rules)
  • 2804569 - ETPRO MALWARE TrojanDownloader.Win32/Loakid.A Checkin (malware.rules)
  • 2804572 - ETPRO MALWARE Win32/Bucriv.B Checkin (malware.rules)
  • 2804574 - ETPRO MALWARE Win32/Heckyebo.A User-Agent (malware.rules)
  • 2804577 - ETPRO MALWARE TrojanDownloader.Win32/Waledac.C Checkin (malware.rules)
  • 2804578 - ETPRO ADWARE_PUP Adware.Win32/WindowLivePot.A Checkin (adware_pup.rules)
  • 2804579 - ETPRO EXPLOIT TrendMicro Control Manger <= v5.5 CmdProcessor.exe Stack Buffer Overflow (exploit.rules)
  • 2804580 - ETPRO EXPLOIT HP Data Protector Client EXEC_CMD Command Execution (ASCII) on Linux (exploit.rules)
  • 2804582 - ETPRO MALWARE Banker.Agent.byr/SMSHoax.55 Checkin (malware.rules)
  • 2804583 - ETPRO ADWARE_PUP Generic AdClicker.p Install - SET (adware_pup.rules)
  • 2804584 - ETPRO ADWARE_PUP Generic AdClicker.p Install (adware_pup.rules)
  • 2804590 - ETPRO MALWARE Trojan-Dropper.Win32.Agent.ficz Checkin (malware.rules)
  • 2804595 - ETPRO MALWARE Trojan-Downloader.Win32.FraudLoad.xdfp Checkin (malware.rules)
  • 2804596 - ETPRO MALWARE Trojan-Banker.Win32.Banbra.anwx Checkin (malware.rules)
  • 2804598 - ETPRO ADWARE_PUP Win32.Adware-gen Install (adware_pup.rules)
  • 2804599 - ETPRO ADWARE_PUP Win32/Adware.Kraddare.DB Install (adware_pup.rules)
  • 2804601 - ETPRO MALWARE Win32/Klovbot.E Checkin (malware.rules)
  • 2804605 - ETPRO MALWARE Trojan-Spy.Win32.Agent.byhm Checkin (malware.rules)
  • 2804607 - ETPRO MALWARE Net-Worm.Win32.Kolab.gen Checkin (malware.rules)
  • 2804608 - ETPRO MALWARE P2P-Worm.Win32.Palevo.bijc INSTALL (malware.rules)
  • 2804610 - ETPRO MALWARE Trojan.Win32.Chifrax.dgn Checkin (malware.rules)
  • 2804612 - ETPRO ADWARE_PUP Win32/Adware.WindowsLiveProtect.A Checkin (adware_pup.rules)
  • 2804621 - ETPRO MALWARE Worm.Win32/VB.BN Checkin 2 (malware.rules)
  • 2804624 - ETPRO ADWARE_PUP W32/WhiteSmoke.AY Install (adware_pup.rules)
  • 2804627 - ETPRO ADWARE_PUP HackTool.Win32/Adduser Install (adware_pup.rules)
  • 2804629 - ETPRO MALWARE Win32/Banker.VBY Checkin (malware.rules)
  • 2804630 - ETPRO MALWARE Win32/Delf.CM Checkin (malware.rules)
  • 2804632 - ETPRO MALWARE Proxy.Win32.Agent.bvy Checkin (malware.rules)
  • 2804637 - ETPRO INFO DNS Query to a *.coom .in Abused DNS Domain (info.rules)
  • 2804643 - ETPRO ADWARE_PUP Win32/Adware.Kraddare.AX Checkin (adware_pup.rules)
  • 2804653 - ETPRO MALWARE Win32/Rorpian.B Checkin (malware.rules)
  • 2804656 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QOT Checkin (malware.rules)
  • 2804659 - ETPRO MALWARE Variant.Graftor.8567 Checkin (malware.rules)
  • 2804661 - ETPRO MALWARE Win32/Spy.Banker.XAG Checkin (malware.rules)
  • 2804664 - ETPRO ADWARE_PUP Trackware.Dogpile Install (adware_pup.rules)
  • 2804665 - ETPRO MALWARE Backdoor.Win32.Hupigon.pdqt Checkin (malware.rules)
  • 2804666 - ETPRO MALWARE Khan DDoS Bot Checkin (malware.rules)
  • 2804669 - ETPRO MALWARE Bestvirus-protection FakeAV Checkin (malware.rules)
  • 2804671 - ETPRO EXPLOIT CheckPoint Firewall-1 SecuRemote Topology Service Hostname Disclosure (exploit.rules)
  • 2804673 - ETPRO MALWARE Win32/Busky.gen Checkin (malware.rules)
  • 2804674 - ETPRO MALWARE Trojan-Downloader.Win32.Delf.dpy Checkin (malware.rules)
  • 2804677 - ETPRO MALWARE Trojan-Downloader.BAT.Banload.d Checkin (malware.rules)
  • 2804678 - ETPRO ADWARE_PUP Spyware.Known_Bad_Sites Install (adware_pup.rules)
  • 2804680 - ETPRO MALWARE W32.Virut.CF CnC traffic (malware.rules)
  • 2804683 - ETPRO MALWARE FakeCloudAV2012 Checkin (malware.rules)
  • 2804684 - ETPRO MALWARE Trojan-Downloader.Win32.Agent.ujgh Checkin (malware.rules)
  • 2804685 - ETPRO MALWARE Trojan-Downloader.Win32.Geral.xit Checkin (malware.rules)
  • 2804686 - ETPRO MALWARE Win32/Masteseq.AC Checkin (malware.rules)
  • 2804689 - ETPRO MALWARE Win32/Stoberox.A Checkin (malware.rules)
  • 2804693 - ETPRO MALWARE Trojan-Banker.BAT.Banker.t Checkin (malware.rules)
  • 2804695 - ETPRO MALWARE Hutizu Rootkit Checkin User-Agent (malware.rules)
  • 2804697 - ETPRO MALWARE Trojan.Win32.Spy Checkin (malware.rules)
  • 2804699 - ETPRO EXPLOIT Google Talk gaiaserver Parameter Injection (exploit.rules)
  • 2804700 - ETPRO MALWARE Win32/Matsnu.gen!A Checkin (malware.rules)
  • 2804710 - ETPRO MALWARE Trojan-Banker.Win32.Banz.jpb Checkin 1 (malware.rules)
  • 2804711 - ETPRO MALWARE Trojan-Banker.Win32.Banz.jpb Checkin 2 (malware.rules)
  • 2804714 - ETPRO MALWARE Backdoor.Win32.Bredolab.ugk Checkin (malware.rules)
  • 2804716 - ETPRO MALWARE Trojan-Downloader.Win32.Dapato.fxd Checkin (malware.rules)
  • 2804717 - ETPRO MALWARE Backdoor.Win32.Koutodoor.aihc Checkin (malware.rules)
  • 2804721 - ETPRO ADWARE_PUP Adware.Kraddare!0+gdoqXqjww Checkin (adware_pup.rules)
  • 2804722 - ETPRO MALWARE /test.dll Access Possible Trojan.Win32.Sasfis.bqgl (malware.rules)
  • 2804725 - ETPRO ADWARE_PUP Adware.GreenIO Checkin (adware_pup.rules)
  • 2804726 - ETPRO MALWARE Trojan.Win32.Zapchast.ffs exe Download (malware.rules)
  • 2804727 - ETPRO ADWARE_PUP SmartSecure Checkin (adware_pup.rules)
  • 2804729 - ETPRO EXPLOIT_KIT Eleonore Exploit Kit (exploit_kit.rules)
  • 2804730 - ETPRO MALWARE Trojan-Downloader.Win32.Hacyayu.ep Checkin (malware.rules)
  • 2804734 - ETPRO USER_AGENTS User-Agent (GPRemove) (user_agents.rules)
  • 2804738 - ETPRO MALWARE Trojan-Dropper.Win32.Dapato.afwq Checkin (malware.rules)
  • 2804739 - ETPRO MALWARE Win32/Spy.Banker.VER Checkin (malware.rules)
  • 2804740 - ETPRO ADWARE_PUP Downloader.Generic10.BZSM Install (adware_pup.rules)
  • 2804741 - ETPRO MALWARE BScope.Trojan.Banker Checkin (malware.rules)
  • 2804743 - ETPRO MALWARE TrojanDropper.Injector.arw Checkin (malware.rules)
  • 2804744 - ETPRO MALWARE Win32/Alureon.V exe download 1 (malware.rules)
  • 2804746 - ETPRO ADWARE_PUP Rogue.Win32/Onescan Checkin (adware_pup.rules)
  • 2804747 - ETPRO MALWARE Rogue.Win32/Onescan User-Agent (fileboan_install) (malware.rules)
  • 2804748 - ETPRO MALWARE W32/Banker.JGT Checkin 2 (malware.rules)
  • 2804749 - ETPRO MALWARE Win32/Shodi.G Checkin (malware.rules)
  • 2804750 - ETPRO MALWARE Backdoor.Win32.VB.hes Checkin (malware.rules)
  • 2804751 - ETPRO MALWARE Win32/Bancos.AGN Checkin (malware.rules)
  • 2804752 - ETPRO MALWARE Trojan-Banker.Win32.Banker2.bwv Checkin (malware.rules)
  • 2804753 - ETPRO MALWARE Win32/Wadolin.A Checkin (malware.rules)
  • 2804755 - ETPRO MALWARE Sus/BancDl-A Checkin (malware.rules)
  • 2804757 - ETPRO ADWARE_PUP Adware/Kikin.A Checkin (adware_pup.rules)
  • 2804766 - ETPRO MALWARE Trojan.Win32.TDSS.iqjw Checkin (malware.rules)
  • 2804767 - ETPRO MALWARE Trojan-Spy.Win32.Agent.bxuh Checkin (malware.rules)
  • 2804779 - ETPRO MALWARE Win32/Comisproc Checkin (malware.rules)
  • 2804780 - ETPRO MALWARE Win32/Comisproc Checkin 2 (malware.rules)
  • 2804784 - ETPRO MALWARE W32/Spyrat.A Checkin (malware.rules)
  • 2804786 - ETPRO MALWARE Win32/Spy.VB.NJJ Checkin (malware.rules)
  • 2804787 - ETPRO MALWARE Win32/AgentBypass.gen!K Checkin (malware.rules)
  • 2804788 - ETPRO MALWARE Win32/Pilrurl.A Checkin (malware.rules)
  • 2804789 - ETPRO MALWARE Trojan-PSW.Win32.WebMoner.si Checkin (malware.rules)
  • 2804792 - ETPRO EXPLOIT WinVerifyTrust Signature Validation Bypass Attempt Filetype ZIPSFX (exploit.rules)
  • 2804793 - ETPRO EXPLOIT WinVerifyTrust Signature Validation Bypass Attempt Filetype RAR (exploit.rules)
  • 2804794 - ETPRO EXPLOIT WinVerifyTrust Signature Validation Bypass Attempt Filetype Lharc SFX (exploit.rules)
  • 2804801 - ETPRO MALWARE Win32/Bancos.AGP Checkin (malware.rules)
  • 2804803 - ETPRO MALWARE Trojan-Downloader.Win32.Adload.dats CnC Traffic (malware.rules)
  • 2804804 - ETPRO MALWARE Trojan.Win32.Swisyn.chxm Checkin (malware.rules)
  • 2804811 - ETPRO MALWARE P2P-Worm.Win32.Palevo.boxg Checkin (malware.rules)
  • 2804812 - ETPRO MALWARE Trojan-Banker.BAT.Banker.m Checkin (malware.rules)
  • 2804817 - ETPRO MALWARE Win32/Autoit.NJT Checkin (malware.rules)
  • 2804818 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QWQ Checkin (malware.rules)
  • 2804822 - ETPRO MALWARE Trojan.DownLoader Checkin (malware.rules)
  • 2804823 - ETPRO MALWARE Win32/Soft32Downloader User-Agent (Soft32 Downloader) (malware.rules)
  • 2804826 - ETPRO MALWARE Win32/Locotout.gen!A CnC Traffic (malware.rules)
  • 2804828 - ETPRO MALWARE Trojan/Buzus.hgv Checkin (malware.rules)
  • 2804831 - ETPRO MALWARE Win32.Injecter.fvp Checkin (malware.rules)
  • 2804837 - ETPRO MALWARE Downloader.Darkmegi Checkin (malware.rules)
  • 2804839 - ETPRO MALWARE Trojan-Dropper.Win32.Injector.dvnk Checkin - SET (malware.rules)
  • 2804840 - ETPRO MALWARE Trojan-Dropper.Win32.Injector.dvnk Checkin (malware.rules)
  • 2804841 - ETPRO MALWARE Win32/Opachki.F Checkin (malware.rules)
  • 2804842 - ETPRO MALWARE Trojan-FakeAV.Win32.SmartFortress2012.lw Checkin (malware.rules)
  • 2804844 - ETPRO MALWARE Trojan.Downloader.Agent-1187 Checkin (malware.rules)
  • 2804845 - ETPRO MALWARE Trojan.Win32.Vilsel Checkin (malware.rules)
  • 2804846 - ETPRO MALWARE Win32/Ponfoy.A Checkin (malware.rules)
  • 2804847 - ETPRO MALWARE Ransom.EJ/Winlock.5857 Checkin (malware.rules)
  • 2804848 - ETPRO MALWARE Trojan-Downloader.Win32.Adload.cfms Checkin (malware.rules)
  • 2804849 - ETPRO MALWARE Win32/Spy.Bancos.OMJ Checkin (malware.rules)
  • 2804852 - ETPRO MALWARE Backdoor.Win32/Simda.gen!A Checkin (malware.rules)
  • 2804854 - ETPRO MALWARE Trojan-Dropper.Win32.Agent.eoqo Checkin (malware.rules)
  • 2804863 - ETPRO MALWARE Trojan.Win32.Invader CnC Traffic (malware.rules)
  • 2804866 - ETPRO MALWARE Trojan-Banker.Win32.Banbra.alvy Checkin (malware.rules)
  • 2804867 - ETPRO MALWARE Trojan-Banker.Win32.Banker.srjp Checkin (malware.rules)
  • 2804870 - ETPRO MALWARE Backdoor.Win32.Autocrat.b Checkin (malware.rules)
  • 2804873 - ETPRO MALWARE Trojan-Dropper.Win32.Dapato.axvi Checkin (malware.rules)
  • 2804876 - ETPRO MALWARE Win32/Coswid.A Checkin (malware.rules)
  • 2804878 - ETPRO MALWARE Worm.Win32/Juched.A Retrieving PE file via FTP (malware.rules)
  • 2804881 - ETPRO MALWARE Trojan.Agent-275138 Checkin (malware.rules)
  • 2804884 - ETPRO MALWARE Win32/Bancos.DV Checkin (malware.rules)
  • 2804885 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QYJ Checkin (malware.rules)
  • 2804888 - ETPRO MALWARE Trojan.Win32.Buzus.lbxv CnC traffic - SET (malware.rules)
  • 2804901 - ETPRO MALWARE Trojan-Clicker.Win32.VB.alu Checkin (malware.rules)
  • 2804903 - ETPRO MALWARE W32/Troj_Generic.BNJME Checkin (malware.rules)
  • 2804904 - ETPRO MALWARE Trojan.Autoit-124 Checkin (malware.rules)
  • 2804905 - ETPRO MALWARE Win32/Horst.gen!C Checkin (malware.rules)
  • 2804914 - ETPRO MALWARE Potential Adobe Flash type confusion exploit attempt 1 (malware.rules)
  • 2804915 - ETPRO MALWARE Potential Adobe Flash type confusion exploit attempt 2 (malware.rules)
  • 2804916 - ETPRO MALWARE Potential Adobe Flash type confusion exploit attempt 3 (malware.rules)
  • 2804917 - ETPRO MALWARE Potential Adobe Flash type confusion exploit attempt 4 (malware.rules)
  • 2804919 - ETPRO MALWARE Win32.Swisyn.cioi Checkin (malware.rules)
  • 2804924 - ETPRO MALWARE Trojan-Downloader.Win32.Banload.buij Checkin (malware.rules)
  • 2804928 - ETPRO MALWARE W32.Philis.Q Checkin (malware.rules)
  • 2804929 - ETPRO MALWARE TrojanDownloader.Win32/Banload.ACI Checkin 2 (malware.rules)
  • 2804931 - ETPRO MALWARE W32.Colowned.A Checkin 1 (malware.rules)
  • 2804932 - ETPRO MALWARE W32.Colowned.A Checkin 2 (malware.rules)
  • 2804933 - ETPRO MALWARE Win32/Virut.BN Checkin 2 (malware.rules)
  • 2804934 - ETPRO MALWARE Dropper-FQE Checkin (malware.rules)
  • 2804940 - ETPRO MALWARE TrojanDownloader.Win32/Begger.A Checkin (malware.rules)
  • 2804941 - ETPRO MALWARE Win32/Karagany.E Checkin 1 (malware.rules)
  • 2804943 - ETPRO MALWARE Backdoor/Buterat.abl Checkin (malware.rules)
  • 2804944 - ETPRO MALWARE Win32/Simda.A CnC Traffic (malware.rules)
  • 2804945 - ETPRO MALWARE W32/Banload.XPX!tr Checkin (malware.rules)
  • 2804946 - ETPRO MALWARE WinNT/Nagyo.C!rootkit Checkin (malware.rules)
  • 2804947 - ETPRO MALWARE Backdoor.VB.5 CnC Traffic (malware.rules)
  • 2804948 - ETPRO MALWARE TrojanDownloader.Win32/Pluzoks.A Checkin 2 (malware.rules)
  • 2804949 - ETPRO MALWARE Fraudpack-356/RogueAntiSpyware.XPAntivirus Checkin (malware.rules)
  • 2804950 - ETPRO MALWARE Backdoor.Win32.Simda.kv/Proxyier Checkin (malware.rules)
  • 2804952 - ETPRO MALWARE Win32/Ofreayo.A Checkin (malware.rules)
  • 2804953 - ETPRO MALWARE Hupigon.68562 Checkin (malware.rules)
  • 2804954 - ETPRO MALWARE Trojan.Fadedoor.10B-1 Checkin (malware.rules)
  • 2804955 - ETPRO MALWARE Trojan-Downloader.Win32.Banload.arqa Checkin (malware.rules)
  • 2804956 - ETPRO MALWARE herpnet C&C (malware.rules)
  • 2804957 - ETPRO MALWARE Backdoor.Win32.Mnless.edr CnC Traffic (malware.rules)
  • 2804961 - ETPRO MALWARE W32/Karagany.TK Checkin (malware.rules)
  • 2804964 - ETPRO MALWARE Win32.Nitol.B/Ahea.gen Checkin (malware.rules)
  • 2804965 - ETPRO MALWARE Win32.Nitol.B/Ahea.gen DDoS Command from Server (malware.rules)
  • 2804967 - ETPRO MALWARE Win32/Bancos.AEW Checkin (malware.rules)
  • 2804969 - ETPRO MALWARE Mal/ZboCheMan-D Checkin (malware.rules)
  • 2804970 - ETPRO MALWARE Trojan.Win32.Inse.c Checkin (malware.rules)
  • 2804971 - ETPRO ADWARE_PUP Riskware/InstallBrain Install (adware_pup.rules)
  • 2804974 - ETPRO MALWARE Trojan.Win32.Spy!IK Checkin (malware.rules)
  • 2804975 - ETPRO MALWARE Trojan-Banker.Win32.Bancos.tge Checkin (malware.rules)
  • 2804976 - ETPRO MALWARE Trojan.Win32.Diple.deyt Checkin (malware.rules)
  • 2804985 - ETPRO MALWARE PSW.Banker6.ZXK Checkin (malware.rules)
  • 2804989 - ETPRO MALWARE Trojan-Dropper.Win32.Bina.f Checkin (malware.rules)
  • 2804990 - ETPRO MALWARE Trojan.FirewallBypass.VqX@aCTjNMlb Checkin (malware.rules)
  • 2804992 - ETPRO MALWARE Trojan-Downloader.Win32.Agent.tdzl Checkin (malware.rules)
  • 2804993 - ETPRO MALWARE Virus.Win32.Malware!IK CnC Traffic (malware.rules)
  • 2804994 - ETPRO MALWARE Mal/Autorun-G Checkin (malware.rules)
  • 2804996 - ETPRO MALWARE Trojan-Banker.Win32.Banker.ssqw Checkin (malware.rules)
  • 2804997 - ETPRO MALWARE Trojan/Swisyn.wvn User-Agent (Injection) (malware.rules)
  • 2804998 - ETPRO MALWARE Trojan.Downloader.gen.h Checkin (malware.rules)
  • 2805000 - ETPRO MALWARE HackTool.Win32.VKTools.na Checkin 2 (malware.rules)
  • 2805002 - ETPRO MALWARE HackTool.Win32.VKTools.na Checkin 4 (malware.rules)
  • 2805005 - ETPRO MALWARE TrojanDownloader.Win32/Banload.ZL Checkin 1 (malware.rules)
  • 2805009 - ETPRO MALWARE Gen.Win32.SMTP-Mailer.!GW@aG6DWHbc sending info via SMTP (malware.rules)
  • 2805011 - ETPRO MALWARE Win32/Banload.ALK Checkin (malware.rules)
  • 2805013 - ETPRO MALWARE Trojan-Banker.Win32.Banker.pcl Checkin (malware.rules)
  • 2805014 - ETPRO MALWARE Trojan-Banker.Win32.Banker.mpx sending info via SMTP (malware.rules)
  • 2805016 - ETPRO MALWARE Unknown Chinese Malware getting config INSTALL (malware.rules)
  • 2805017 - ETPRO MALWARE Unknown Chinese Malware getting config INSTALL (malware.rules)
  • 2805018 - ETPRO MALWARE Trojan.Win32.Buzus.liir Checkin (malware.rules)
  • 2805019 - ETPRO ADWARE_PUP Adware.CasinoClient Checkin (adware_pup.rules)
  • 2805020 - ETPRO ADWARE_PUP Adware.CasinoClient INSTALL (adware_pup.rules)
  • 2805021 - ETPRO ADWARE_PUP Adware.CasinoClient User-Agent(caszx) (adware_pup.rules)
  • 2805024 - ETPRO MALWARE PWS-Zbot.gen.hv CnC Traffic (malware.rules)
  • 2805027 - ETPRO MALWARE Win32/TrojanDownloader.Banload.RDL Checkin (malware.rules)
  • 2805028 - ETPRO MALWARE Flamer Blacklisted key 1 Seen over HTTP (malware.rules)
  • 2805029 - ETPRO MALWARE Flamer blacklisted key 2 Seen over HTTP (malware.rules)
  • 2805031 - ETPRO MALWARE Win32/Weelsof.A Checkin (malware.rules)
  • 2805033 - ETPRO WEB_SPECIFIC_APPS Ruby on Rails Active Record SQL-injection (web_specific_apps.rules)
  • 2805035 - ETPRO MALWARE Trojan-Dropper.Win32.Dinwod.cv CnC Traffic (malware.rules)
  • 2805036 - ETPRO MALWARE TrojanDownloader.Banload.brce Checkin (malware.rules)
  • 2805037 - ETPRO MALWARE Win32/Obvod.K Checkin (malware.rules)
  • 2805043 - ETPRO MALWARE Pcclient-85 Keepalive/Checkin (malware.rules)
  • 2805045 - ETPRO WEB_SPECIFIC_APPS DynamicsAx XSS to Server (web_specific_apps.rules)
  • 2805066 - ETPRO MALWARE WORM_SDBOT.GEN-1 CnC Traffic (malware.rules)
  • 2805068 - ETPRO MALWARE Backdoor.Win32.Poison Checkin (malware.rules)
  • 2805073 - ETPRO MALWARE Win32/Banker.AHM Checkin (malware.rules)
  • 2805075 - ETPRO MALWARE W32/VBKrypt.LYKL!tr Checkin (malware.rules)
  • 2805077 - ETPRO MALWARE W32/VB.POZ!tr.dldr Downloading exe file (malware.rules)
  • 2805078 - ETPRO MALWARE Ransom.Win32.ZedoPoo.aac Checkin (malware.rules)
  • 2805085 - ETPRO MALWARE W32/Banker.M!tr Checkin (malware.rules)
  • 2805086 - ETPRO MALWARE TrojWare.Win32.TrojanDownloader.Banload.gen.f Checkin (malware.rules)
  • 2805088 - ETPRO MALWARE Trojan-Spy.Win32.Delf.adpb checkin (malware.rules)
  • 2805090 - ETPRO MALWARE Win32/Sality.AT Checkin 3 (malware.rules)
  • 2805096 - ETPRO MALWARE Downloader.Win32.Knigsfot.ev Download Request (malware.rules)
  • 2805097 - ETPRO MALWARE Win32/Vbinder.CO Checkin (malware.rules)
  • 2805100 - ETPRO MALWARE Win32/Bancos.ACM Checkin 2 (malware.rules)
  • 2805101 - ETPRO MALWARE Trojan.Downloader.JOER Checkin (malware.rules)
  • 2805103 - ETPRO MALWARE Trojan.Win32.Vilsel.blgz .exe file download (malware.rules)
  • 2805104 - ETPRO MALWARE Win32/Malagent Checkin (malware.rules)
  • 2805108 - ETPRO MALWARE Trojan-Downloader.Win32.Apher.gen Checkin (malware.rules)
  • 2805109 - ETPRO MALWARE Win32/Hupigon.DZ User-Agent (IEFILES.INS) (malware.rules)
  • 2805110 - ETPRO MALWARE Trojan-Downloader.Banload Chekin (malware.rules)
  • 2805112 - ETPRO MALWARE Trojan.Buzus.lbfq Checkin (malware.rules)
  • 2805114 - ETPRO MALWARE HackTool.Win32/CCProxy.C .exe file Download (malware.rules)
  • 2805118 - ETPRO MALWARE SpyEyes FTP Channel (malware.rules)
  • 2805119 - ETPRO MALWARE HackTool.Win32.Binder.bs .exe file Download (malware.rules)
  • 2805131 - ETPRO MALWARE Win32/Banload.AMO Checkin (malware.rules)
  • 2805134 - ETPRO MALWARE NoBo Checkin (malware.rules)
  • 2805135 - ETPRO MALWARE NoBo Downloading TXT (malware.rules)
  • 2805141 - ETPRO EXPLOIT Possible WORM W32.Printlove spreading via cve 2010-2729 (SPOOLSS OpenPrinterEx request SET) (exploit.rules)
  • 2805142 - ETPRO EXPLOIT Possible WORM W32.Printlove spreading via cve 2010-2729 (SPOOLSS StartDocPrinter request SET) (exploit.rules)
  • 2805145 - ETPRO NETBIOS Microsoft Word Insecure imeshare.dll Library Loading - SMB ASCII (netbios.rules)
  • 2805150 - ETPRO WEB_SERVER Microsoft SharePoint XSS attempt (web_server.rules)
  • 2805151 - ETPRO MALWARE Win32/SSonce.A Checkin (malware.rules)
  • 2805152 - ETPRO MALWARE HackTool.MSIL.Flooder.gen Checkin (malware.rules)
  • 2805159 - ETPRO MALWARE Trojan.Agent-276095 Checkin (malware.rules)
  • 2805160 - ETPRO WEB_SERVER Microsoft SharePoint XSS attempt 2 (web_server.rules)
  • 2805167 - ETPRO MALWARE W32/Dapato.LUY!tr.dldr Checkin (malware.rules)
  • 2805168 - ETPRO ADWARE_PUP Adware.TimeSink.P Checkin (adware_pup.rules)
  • 2805171 - ETPRO MALWARE Trojan-Spy.Win32.Zbot.ecnq Checkin (malware.rules)
  • 2805172 - ETPRO MALWARE W32/Downloader.BEMB.dropper Checkin (malware.rules)
  • 2805173 - ETPRO MALWARE Trojan-PSW.Win32.Agent.ozr Checkin (malware.rules)
  • 2805174 - ETPRO MALWARE W32/Banbra.ASYO!tr Checkin (malware.rules)
  • 2805176 - ETPRO MALWARE Backdoor.Zemra Checkin (malware.rules)
  • 2805184 - ETPRO MALWARE Win32/Clidak.A Checkin (malware.rules)
  • 2805185 - ETPRO MALWARE Win32/Biloky.A Checkin (malware.rules)
  • 2805186 - ETPRO MALWARE Madhi Trojan checkin (malware.rules)
  • 2805187 - ETPRO MALWARE Rovnix bootkit DNS Query CnC Domain (rtttt-windows .com) (malware.rules)
  • 2805188 - ETPRO MALWARE PWS.Win32/Frethog.V checkin (malware.rules)
  • 2805189 - ETPRO MALWARE Graftor/General Downloader Checkin check_update.php (malware.rules)
  • 2805191 - ETPRO MALWARE Win32/TrojanDownloader.Banload.QYE Checkin (malware.rules)
  • 2805194 - ETPRO MALWARE PWS.Win32/Frethog.V requesting .exe file (malware.rules)
  • 2805198 - ETPRO MALWARE Trojan-PSW.Win32.LdPinch.awfp!A2 Checkin (malware.rules)
  • 2805199 - ETPRO MALWARE TrojanDownloader.Win32/Banload.AMU checkin (malware.rules)
  • 2805207 - ETPRO MALWARE Win32/Delf.W Checkin (malware.rules)
  • 2805209 - ETPRO MALWARE Trojan-Downloader.Win32.Karagany.pt Checkin (malware.rules)
  • 2805212 - ETPRO MALWARE Win32/Delf.DL Checkin (malware.rules)
  • 2805220 - ETPRO ADWARE_PUP Win-Adware/KorAd.138208 Checkin (adware_pup.rules)
  • 2805221 - ETPRO MALWARE Trojan.Generic.KDV.671881 TLSv1 Client Hello (malware.rules)
  • 2805222 - ETPRO MALWARE Trojan.Generic.KDV.671881 TLSv1 Server Hello Certificate (malware.rules)
  • 2805223 - ETPRO MALWARE W32/Scar.GKKK!tr Checkin (malware.rules)
  • 2805224 - ETPRO MALWARE Win32/TrojanDownloader.Banload.OKO Checkin (malware.rules)
  • 2805232 - ETPRO MALWARE Trojan.Win32.Meredrop request (malware.rules)
  • 2805234 - ETPRO MALWARE Win32/Banload.AMR Checkin (malware.rules)
  • 2805236 - ETPRO MALWARE DNS Query to FinFisher Spy Kit Domain (tiger .gamma-international .de) (malware.rules)
  • 2805237 - ETPRO MALWARE HTTP Request to FinFisher Spy Kit Domain (ff-demo.blogdns.org) (malware.rules)
  • 2805238 - ETPRO MALWARE DNS Query to FinFisher Spy Kit Domain (ff-demo .blogdns .org) (malware.rules)
  • 2805240 - ETPRO MALWARE Win32/Swisyn.J .dll request (malware.rules)
  • 2805245 - ETPRO MALWARE MAC OSX Trojan Campaign .jar file request 1 (malware.rules)
  • 2805246 - ETPRO MALWARE MAC OSX Trojan Campaign .jar file request 2 (malware.rules)
  • 2805247 - ETPRO MALWARE W32/Dapato.BLTR!tr Checkin (malware.rules)
  • 2805248 - ETPRO MALWARE Win32/ProxyChanger.EI Checkin (malware.rules)
  • 2805249 - ETPRO MALWARE Spy.Banker.QEP Checkin (malware.rules)
  • 2805250 - ETPRO MALWARE W32/Yoshi.X!tr Checkin (malware.rules)
  • 2805251 - ETPRO MALWARE Madhi Trojan Checkin 2 (malware.rules)
  • 2805253 - ETPRO ADWARE_PUP Win32/Adware.Kraddare.W Checkin (adware_pup.rules)
  • 2805255 - ETPRO MALWARE Trojan Madi/Mahdi Checkin (malware.rules)
  • 2805258 - ETPRO EXPLOIT Ubisoft/Uplay DRM Potential Launch of Arbitrary Executable (exploit.rules)
  • 2805259 - ETPRO MALWARE Win32/Zegost.AD CnC Traffic 2 (malware.rules)
  • 2805261 - ETPRO MALWARE Trojan.Win32.Jorik.Yoddos.no .exe request (malware.rules)
  • 2805262 - ETPRO ADWARE_PUP Win32/Adware-ABW INSTALL (adware_pup.rules)
  • 2805263 - ETPRO MALWARE Trojan.Win32.Workir.yf Checkin (malware.rules)
  • 2805264 - ETPRO MALWARE Trojan.Win32.S.Banker.167310 Checkin (malware.rules)
  • 2805267 - ETPRO ADWARE_PUP Adware.Casino-36 Checkin (adware_pup.rules)
  • 2805268 - ETPRO MALWARE Trojan-Banker.Win32.Banker.ju sending info via SMTP (malware.rules)
  • 2805274 - ETPRO MALWARE Trojan/Banker.Banbra.oyx Checkin (malware.rules)
  • 2805275 - ETPRO ADWARE_PUP Win32/Adware.Hebogo Checkin (adware_pup.rules)
  • 2805276 - ETPRO MALWARE Win32/AgentBypass.gen!G Checkin (malware.rules)
  • 2805278 - ETPRO MALWARE Win32/Weelsof.C Checkin (malware.rules)
  • 2805281 - ETPRO MALWARE Win32/Spy.Banker.TXN Checkin (malware.rules)
  • 2805282 - ETPRO ADWARE_PUP Adware.Casino-36 Checkin 2 (adware_pup.rules)
  • 2805284 - ETPRO ADWARE_PUP Win32/Pelfpoi.M Checkin (adware_pup.rules)
  • 2805285 - ETPRO ADWARE_PUP PUP/Win32.Micropop Checkin (adware_pup.rules)
  • 2805287 - ETPRO MALWARE W32/Jorik_Steckt.N!tr Checkin (malware.rules)
  • 2805288 - ETPRO MALWARE Win32/Hspam.A Checkin (malware.rules)
  • 2805290 - ETPRO MALWARE Win32/VBInject.QW User-Agent (Sek8War) (malware.rules)
  • 2805294 - ETPRO MALWARE Trojan.Mosucker-60 Checkin 2 (malware.rules)
  • 2805295 - ETPRO MALWARE TR/Pasta.A.152 Checkin (malware.rules)
  • 2805296 - ETPRO MALWARE Trojan-Dropper.Win32.VB.oo .exe request (malware.rules)
  • 2805300 - ETPRO MALWARE Win32/Harvester.0_9 Checkin (malware.rules)
  • 2805301 - ETPRO MALWARE Trojan.Banker Checkin (malware.rules)
  • 2805302 - ETPRO MALWARE Win32/Raven.gen!A Checkin (malware.rules)
  • 2805304 - ETPRO MALWARE TrojanDropper.Agent.axkq Checkin (malware.rules)
  • 2805307 - ETPRO MALWARE Trojan-Spy.Win32.Banker!IK Checkin (malware.rules)
  • 2805309 - ETPRO MALWARE Trojan-Dropper.Win32.Injector.fjzu Checkin (malware.rules)
  • 2805311 - ETPRO MALWARE Win32/Rustock.E Checkin (malware.rules)
  • 2805312 - ETPRO MALWARE Win32/VBInject.RT Checkin (malware.rules)
  • 2805313 - ETPRO MALWARE Trojan.Win32.Cossta.tnh Checkin (malware.rules)
  • 2805325 - ETPRO DOS Microsoft Remote Desktop Protocol (RDP) DoS 1 (dos.rules)
  • 2805326 - ETPRO DOS Microsoft Remote Desktop Protocol (RDP) DoS 2 (dos.rules)
  • 2805327 - ETPRO DOS Microsoft Remote Desktop Protocol (RDP) DoS 3 (dos.rules)
  • 2805328 - ETPRO MALWARE Tongjii/Linezing Related Trojan Checkin (malware.rules)
  • 2805329 - ETPRO MALWARE Trojan Elirks cyber-espionage campaign microblogging service Plurk known account (malware.rules)
  • 2805330 - ETPRO WEB_SPECIFIC_APPS EGallery PHP File Upload Attempt (web_specific_apps.rules)
  • 2805331 - ETPRO MALWARE W32/Hupigon.CI!genr Checkin (malware.rules)
  • 2805332 - ETPRO MALWARE Win32/Fragat.A Checkin (malware.rules)
  • 2805333 - ETPRO MALWARE Trojan.Win32.Generic! Checkin (malware.rules)
  • 2805334 - ETPRO MALWARE Trojan.Win32.Heur.089 Checkin (malware.rules)
  • 2805339 - ETPRO MALWARE Win32 Generic requesting .xml file (malware.rules)
  • 2805345 - ETPRO MALWARE Troj/Mdrop-DXT checkin 1 (malware.rules)
  • 2805352 - ETPRO MALWARE POST to a mp3 file (malware.rules)
  • 2805353 - ETPRO MALWARE POST to a rar file (malware.rules)
  • 2805355 - ETPRO MALWARE POST to a gif file (malware.rules)
  • 2805356 - ETPRO MALWARE POST to a bmp file (malware.rules)
  • 2805360 - ETPRO MALWARE Win32.Malware.rwx Checkin (malware.rules)
  • 2805361 - ETPRO MALWARE Win32/Vwealer.BQ Checkin (malware.rules)
  • 2805363 - ETPRO MALWARE DATCK/BYCC DDOS bot Checkin - SET (malware.rules)
  • 2805364 - ETPRO MALWARE DATCK/BYCC DDOS bot Checkin (malware.rules)
  • 2805368 - ETPRO MALWARE Win32/Pangu.A Checkin (malware.rules)
  • 2805374 - ETPRO MALWARE Trojan.Win32.VBKrypt.cugq Checkin (malware.rules)
  • 2805375 - ETPRO POLICY Skymonk File Sharing App User-Agent (Skymonk2) (policy.rules)
  • 2805376 - ETPRO MALWARE Win32/ProxyChanger.J Checkin (malware.rules)
  • 2805377 - ETPRO MALWARE Win32/Wadolin.A Checkin 2 (malware.rules)
  • 2805381 - ETPRO WEB_CLIENT Rebot JavaScript Injected Site inbound (web_client.rules)
  • 2805382 - ETPRO MALWARE Trojan-Dropper.Win32.Daws.atjm Checkin (malware.rules)
  • 2805383 - ETPRO MALWARE Trojan.Win32.Swisyn.bfua Checkin (malware.rules)
  • 2805386 - ETPRO WEB_CLIENT Possible Client requesting Rebot JavaScript Redirect (web_client.rules)
  • 2805387 - ETPRO MALWARE Win32/Banbot.A Checkin (malware.rules)
  • 2805388 - ETPRO MALWARE Win32/FakePlus Checkin (malware.rules)
  • 2805392 - ETPRO EXPLOIT_KIT Orange Exploit Kit Infector (exploit_kit.rules)
  • 2805394 - ETPRO MALWARE WORM_DISTTRACK.A Checkin (malware.rules)
  • 2805396 - ETPRO MALWARE Backdoor.Win32/Optix.W Checkin (malware.rules)
  • 2805397 - ETPRO MALWARE PWS.Win32/OnLineGames.KQ Checkin (malware.rules)
  • 2805398 - ETPRO MALWARE Trojan.Heur.hm0@fjz6PkS Checkin (malware.rules)
  • 2805399 - ETPRO MALWARE Win32/Rochap.A Checkin (malware.rules)
  • 2805400 - ETPRO MALWARE W32/Yakes.AP!tr Checkin (malware.rules)
  • 2805401 - ETPRO MALWARE Variant.Barys.4238 User-Agent (malware.rules)
  • 2805403 - ETPRO MALWARE Win32/Pift Drop/Checkin (malware.rules)
  • 2805405 - ETPRO MALWARE Win32/SchwarzeSonne.AP Checkin (malware.rules)
  • 2805406 - ETPRO MALWARE W32/DragonEye.C Checkin (malware.rules)
  • 2805407 - ETPRO ADWARE_PUP Adware/SnapDo Install (adware_pup.rules)
  • 2805412 - ETPRO MALWARE Win32/Spy.BZub CnC Response (malware.rules)
  • 2805414 - ETPRO MALWARE Win32/Vundo.HIY Checkin (malware.rules)
  • 2805415 - ETPRO MALWARE PSW.Banker6.AFNY Checkin (malware.rules)
  • 2805416 - ETPRO MALWARE Unknown dnsd.me Related Trojan Checkin a (malware.rules)
  • 2805417 - ETPRO MALWARE Win32/Vobfus Checkin (malware.rules)
  • 2805420 - ETPRO MALWARE Sality.IK!/Tedroo.AE Checkin (malware.rules)
  • 2805421 - ETPRO MALWARE IEXPL0RE RAT Checkin (malware.rules)
  • 2805423 - ETPRO MALWARE Worm.Win32.Flame.a Checkin (malware.rules)
  • 2805431 - ETPRO WEB_SERVER Visual Studio Team Web Access console XSS (web_server.rules)
  • 2805432 - ETPRO WEB_SERVER Microsoft System Center Configuration Manager XSS (web_server.rules)
  • 2805436 - ETPRO MALWARE W32/Delf.OND!tr Checkin (malware.rules)
  • 2805437 - ETPRO MALWARE Win32/PSW.VB.NIH Checkin (malware.rules)
  • 2805441 - ETPRO MALWARE W32.Tinba/Zusy Checkin (malware.rules)
  • 2805452 - ETPRO MALWARE Backdoor.Juasek Checkin (malware.rules)
  • 2805453 - ETPRO MALWARE W32/Hupigon.F.gen!Eldorado Checkin (malware.rules)
  • 2805455 - ETPRO MALWARE Trojan.Win32.Buzus.kmdt Checkin (malware.rules)
  • 2805459 - ETPRO MALWARE Win32/Punad.G infected system ad retrieve (malware.rules)
  • 2805461 - ETPRO MALWARE Backdoor.Java.KBP Checkin (malware.rules)
  • 2805465 - ETPRO MALWARE Win32/Agent.PBK Checkin (malware.rules)
  • 2805466 - ETPRO MALWARE Tilon Checkin (malware.rules)
  • 2805467 - ETPRO RETIRED Gauss CnC (retired.rules)
  • 2805470 - ETPRO MALWARE Win32/Zbot Checkin (malware.rules)
  • 2805471 - ETPRO MALWARE Win32/Opachki.I Checkin (malware.rules)
  • 2805473 - ETPRO MALWARE Downloader.MSIL.Tiny.bs Checkin (malware.rules)
  • 2805475 - ETPRO ADWARE_PUP AdWare.Win32.DirectDown.A checkin (adware_pup.rules)
  • 2805477 - ETPRO MALWARE Virus.Win32.Kate.a Checkin (malware.rules)
  • 2805482 - ETPRO MALWARE Trojan.StartPage.46660 Checkin (malware.rules)
  • 2805484 - ETPRO MALWARE Drop.Banker.Q MySQL connection (malware.rules)
  • 2805485 - ETPRO ADWARE_PUP Adware Win32/BlogChina Checkin (adware_pup.rules)
  • 2805488 - ETPRO MALWARE Ysreef DNS query to CnC Domain (atmportal .net .ru) (malware.rules)
  • 2805489 - ETPRO MALWARE Ysreef DNS query to CnC Domain (my-files-download .ru) (malware.rules)
  • 2805490 - ETPRO MALWARE Ysreef Checkin 1 (malware.rules)
  • 2805491 - ETPRO MALWARE Ysreef Checkin 2 (malware.rules)
  • 2805495 - ETPRO MOBILE_MALWARE Galaxy S3 USSD code to factory data reset (mobile_malware.rules)
  • 2805496 - ETPRO MALWARE Win32/Uosproy.A Checkin (hello) (malware.rules)
  • 2805498 - ETPRO MALWARE Backdoor.Win32.Rbot.gen Checkin (malware.rules)
  • 2805500 - ETPRO ADWARE_PUP Adware.MediaFinder Install (adware_pup.rules)
  • 2805503 - ETPRO MALWARE Win32/Wemosis.C CnC Response (malware.rules)
  • 2805504 - ETPRO MALWARE W32/Banload.RCI!tr.dldr Checkin (malware.rules)
  • 2805510 - ETPRO MALWARE Zeus Checkin (malware.rules)
  • 2805512 - ETPRO MALWARE PWS-Zbot.gen.anq Checkin (malware.rules)
  • 2805513 - ETPRO MALWARE Trojan.Win32.Pasta!IK Checkin (malware.rules)
  • 2805520 - ETPRO MALWARE Win32/Teazodo.A!dll Checkin (malware.rules)
  • 2805521 - ETPRO MALWARE W32/Gpcode.NAI Checkin (malware.rules)
  • 2805522 - ETPRO MALWARE W32/Gimemo.APVH!tr Checkin (malware.rules)
  • 2805524 - ETPRO MALWARE Trojan.Win32.Genome Checkin 1 (malware.rules)
  • 2805525 - ETPRO MALWARE Trojan.Win32.Genome Checkin 2 (malware.rules)
  • 2805528 - ETPRO MALWARE Backdoor.Win32.PcClient Tunnel 1 (malware.rules)
  • 2805529 - ETPRO MALWARE Backdoor.Win32.PcClient Tunnel 2 (malware.rules)
  • 2805530 - ETPRO MALWARE Win32/Busky.gen Checkin (malware.rules)
  • 2805531 - ETPRO MALWARE Win32/Small.AJI Checkin (malware.rules)
  • 2805533 - ETPRO MALWARE updmgr Checkin (malware.rules)
  • 2805534 - ETPRO MALWARE updmgr Checkin 2 (malware.rules)
  • 2805535 - ETPRO MALWARE Unknown blog.sina.com.cn CnC Embedded in HTML (malware.rules)
  • 2805541 - ETPRO SQL MSSQL Reporting Services XSS (sql.rules)
  • 2805542 - ETPRO MALWARE W32/Autorun.worm.zf.gen Checkin (malware.rules)
  • 2805543 - ETPRO MALWARE Trojan.KillFiles.9696 Checkin (malware.rules)
  • 2805545 - ETPRO MALWARE Trojan-Dropper.Win32.Smiscer.hf Checkin (malware.rules)
  • 2805546 - ETPRO ADWARE_PUP Adware.Win32.Facetheme Checkin (adware_pup.rules)
  • 2805547 - ETPRO MALWARE W32/Agent.SUTT!tr Checkin (malware.rules)
  • 2805551 - ETPRO MALWARE hanbi121b Checkin (malware.rules)
  • 2805556 - ETPRO WEB_SPECIFIC_APPS Zenworks RTRlet Applet Access With Harcoded Creds (web_specific_apps.rules)
  • 2805557 - ETPRO MALWARE Trojan.Generic.KD.697281 Checkin (malware.rules)
  • 2805558 - ETPRO ADWARE_PUP SmartTools Checkin (adware_pup.rules)
  • 2805559 - ETPRO MALWARE Spy.298841 Checkin (malware.rules)
  • 2805561 - ETPRO MALWARE W32/Banbra.AVBB!tr Checkin (malware.rules)
  • 2805562 - ETPRO MALWARE W32/VB.PGK!tr.dldr Checkin (malware.rules)
  • 2805569 - ETPRO ADWARE_PUP Win32/Adware.Kraddare.FS User-Agent(inter) (adware_pup.rules)
  • 2805575 - ETPRO MALWARE Win32/Chiviper.C Checkin (malware.rules)
  • 2805576 - ETPRO MALWARE Win32/Chiviper.C Checkin response (malware.rules)
  • 2805577 - ETPRO MALWARE W32/VBKrypt.MFXS!tr Checkin (malware.rules)
  • 2805579 - ETPRO MALWARE Trojan-Spy.Win32.Perfloger.ai Checkin (malware.rules)
  • 2805580 - ETPRO MALWARE Win32/Tufik.A Checkin (malware.rules)
  • 2805581 - ETPRO MALWARE W32.Theals.A@mm Checkin (malware.rules)
  • 2805584 - ETPRO SCADA Sinapsi eSolar Light Photovoltaic System Monitor Login with hard coded account (scada.rules)
  • 2805585 - ETPRO SCADA Sinapsi eSolar Light Photovoltaic System Monitor arbitrary command execution (scada.rules)
  • 2805586 - ETPRO MALWARE Trojan.Win32.Genome.aaxmm Checkin 1 (malware.rules)
  • 2805587 - ETPRO MALWARE Trojan.Win32.Genome.aaxmm Checkin 2 (malware.rules)
  • 2805589 - ETPRO MALWARE TR/Spy.Keylogg.AE.1 Checkin (malware.rules)
  • 2805590 - ETPRO MALWARE W32/AutoIt.OU!tr Checkin (malware.rules)
  • 2805594 - ETPRO MALWARE Exploit.PDF Checkin (malware.rules)
  • 2805595 - ETPRO MALWARE Banload.XP Checkin (malware.rules)
  • 2805600 - ETPRO MALWARE Win32.Agent.cuep Checkin (malware.rules)
  • 2805602 - ETPRO MALWARE Mal/Banspy-K sending info via SMTP (malware.rules)
  • 2805603 - ETPRO ADWARE_PUP Win32/Adware.WiseLook.C Checkin (adware_pup.rules)
  • 2805604 - ETPRO MALWARE Win32/Dunik!rts Checkin (malware.rules)
  • 2805605 - ETPRO MALWARE Hoax.Win32.FakeHack.bj Checkin (malware.rules)
  • 2805606 - ETPRO MALWARE Hotbar/Clickpotato.tv Checkin 2 (malware.rules)
  • 2805609 - ETPRO MALWARE Xtrat/xRAT Checkin (malware.rules)
  • 2805612 - ETPRO MALWARE Win32/Banload.ALA MySQL Login (malware.rules)
  • 2805613 - ETPRO MALWARE Trojan-DDoS.MSIL.Arcdoor.n Proxy Registration (malware.rules)
  • 2805614 - ETPRO MALWARE Troj/FakeAV-GBS Checkin (malware.rules)
  • 2805618 - ETPRO MALWARE Worm.Win32/Hamweq.A Checkin (malware.rules)
  • 2805621 - ETPRO MALWARE Trojan-Clicker.Win32.VB.gby Checkin (malware.rules)
  • 2805622 - ETPRO MALWARE Trojan.Downloader.JuW@aqhxAYdi Checkin (malware.rules)
  • 2805623 - ETPRO MALWARE Win32/Banload.ALA CnC Response (malware.rules)
  • 2805625 - ETPRO USER_AGENTS User-Agent (Kaka) (user_agents.rules)
  • 2805626 - ETPRO MALWARE Unknown Checkin (malware.rules)
  • 2805627 - ETPRO MALWARE Backdoor.Win32.EggDrop.v IRC request (malware.rules)
  • 2805630 - ETPRO MALWARE Email-Worm.Win32.Zhelatin.cj Checkin (malware.rules)
  • 2805633 - ETPRO ADWARE_PUP AdWare.Win32.Kwsearchguide!IK Install (adware_pup.rules)
  • 2805634 - ETPRO MALWARE TROJ_GEN.RCBH1JN Checkin (malware.rules)
  • 2805635 - ETPRO ADWARE_PUP Adware.DirectDownloader Checkin (adware_pup.rules)
  • 2805639 - ETPRO MALWARE Virus.Trojan.Win32.Agent.gam Checkin (malware.rules)
  • 2805640 - ETPRO MALWARE Backdoor.Win32.PcClient.cqm Checkin (malware.rules)
  • 2805645 - ETPRO MALWARE TROJ_GEN.F47V1005 CnC traffic (malware.rules)
  • 2805647 - ETPRO ADWARE_PUP Downloader.Genome.dbey Command receive (adware_pup.rules)
  • 2805648 - ETPRO ADWARE_PUP Adware.MWS Checkin (adware_pup.rules)
  • 2805650 - ETPRO MALWARE Downloader.Win32.Agent.afrw Checkin (malware.rules)
  • 2805652 - ETPRO MALWARE Variant.Kazy.95254 Checkin (malware.rules)
  • 2805654 - ETPRO MALWARE Trojan.Win32.Scar.gqqs Checkin (malware.rules)
  • 2805655 - ETPRO MALWARE Win32/Spy.Banker.XKV SQL Traffic (malware.rules)
  • 2805659 - ETPRO MALWARE Win32/Dofoil.R Checkin (malware.rules)
  • 2805662 - ETPRO ADWARE_PUP Unknown Malware Checkin (adware_pup.rules)
  • 2805666 - ETPRO MALWARE Trojan-Downloader.Win32.FraudLoad.zdmn Redirection (malware.rules)
  • 2805668 - ETPRO ADWARE_PUP Generic PUP.x!vi!1B41AF78BF55 Checkin (adware_pup.rules)
  • 2805669 - ETPRO MALWARE TROJ_DLOADER.ANP Checkin (malware.rules)
  • 2805671 - ETPRO MALWARE Variant.Barys.1820 Checkin (malware.rules)
  • 2805673 - ETPRO MALWARE Worm.Win32/Vobfus.GD Checkin (malware.rules)
  • 2805674 - ETPRO MALWARE Virus.Win32.Virut.a Proxy Registration (malware.rules)
  • 2805676 - ETPRO MALWARE Win32/FakeMSA.gen!A Checkin (malware.rules)
  • 2805677 - ETPRO MALWARE W32/VBNA.B!worm Checkin (malware.rules)
  • 2805678 - ETPRO MALWARE Worm.Win32/Vobfus.GD Checkin 2 (malware.rules)
  • 2805682 - ETPRO NETBIOS Microsoft Windows Explorer Briefcase Database File Integer Underflow (netbios.rules)
  • 2805684 - ETPRO NETBIOS Microsoft Windows Explorer Briefcase Database Integer Overflow (netbios.rules)
  • 2805695 - ETPRO MALWARE W32/Delfloader.B.gen!Eldorado Checkin 2 (malware.rules)
  • 2805696 - ETPRO MALWARE TR/Agent.1657856.1 Checkin (malware.rules)
  • 2805697 - ETPRO MALWARE Backdoor.Win32.Shiz.dkg Checkin (malware.rules)
  • 2805698 - ETPRO MALWARE WORM_MEDBOT.AI Checkin (malware.rules)
  • 2805699 - ETPRO MALWARE W32/Dropper.P!tr Checkin (malware.rules)
  • 2805700 - ETPRO MALWARE Trojan.Win32.Agent2.fjpq Checkin (malware.rules)
  • 2805701 - ETPRO MALWARE Win32/Phintok.A Checkin 1 (malware.rules)
  • 2805707 - ETPRO MALWARE Backdoor.Win32.DarkMoon.BE Checkin 1 (malware.rules)
  • 2805708 - ETPRO MALWARE Backdoor.Win32.DarkMoon.BE Checkin 2 (malware.rules)
  • 2805710 - ETPRO MALWARE PSW.LdPinch.NCB Reporting via SMTP (malware.rules)
  • 2805711 - ETPRO MALWARE Trojan.Win32.Llac.cxaz Checkin (malware.rules)
  • 2805712 - ETPRO MALWARE W32/Banker.ULW!tr Checkin (malware.rules)
  • 2805714 - ETPRO MALWARE Win32/Tinxy.A / Worm.Win32.Koobface Checkin (malware.rules)
  • 2805715 - ETPRO MALWARE Trojan.Win32.Agent.angq / Worm.Win32.Koobface Checkin (malware.rules)
  • 2805716 - ETPRO MALWARE Win32.Doldow Trojan Checkin (malware.rules)
  • 2805719 - ETPRO MALWARE Trojan-Proxy.Win32.Small.ai Checkin (malware.rules)
  • 2805721 - ETPRO MALWARE Win32.Winoff Checkin (malware.rules)
  • 2805724 - ETPRO MALWARE Win32/Small.gen!M js check-in (malware.rules)
  • 2805725 - ETPRO MALWARE Win32/Small.gen!M gif check (malware.rules)
  • 2805726 - ETPRO MALWARE Win32/Small.gen!M Possible js C2 (malware.rules)
  • 2805727 - ETPRO MALWARE Win32/Zlob.W Checkin (malware.rules)
  • 2805728 - ETPRO MALWARE Win32.VB.bec/Genlot.AZI Checkin (malware.rules)
  • 2805729 - ETPRO MALWARE liquid backdoor Checkin (malware.rules)
  • 2805731 - ETPRO MALWARE Trojan-PSW.Win32.QQDragon.y Checkin (malware.rules)
  • 2805732 - ETPRO MALWARE Backdoor Boomie.A Checkin Response/Egg Download Command (malware.rules)
  • 2805733 - ETPRO MALWARE Win32/Virut.BN Checkin 3 (malware.rules)
  • 2805734 - ETPRO MALWARE Win32.Virtob Trojan Checkin (malware.rules)
  • 2805735 - ETPRO MALWARE Backdoor Boomie.A Checkin Command 2 (malware.rules)
  • 2805737 - ETPRO MALWARE Win32.Worm.Winko.I Checkin (malware.rules)
  • 2805742 - ETPRO MALWARE Win32.HLLW.MyBot sending info (malware.rules)
  • 2805744 - ETPRO ADWARE_PUP Adware.Kraddare!11iB0o+IEDU CnC 1 (adware_pup.rules)
  • 2805745 - ETPRO ADWARE_PUP Adware.Kraddare!11iB0o+IEDU CnC 2 (adware_pup.rules)
  • 2805746 - ETPRO MALWARE W32/Onlinegames.QNT!tr Checkin (malware.rules)
  • 2805750 - ETPRO ADWARE_PUP Adware.Agent.FJ Checkin (adware_pup.rules)
  • 2805751 - ETPRO MALWARE Trojan-Proxy.Win32.Ranky Checkin (malware.rules)
  • 2805753 - ETPRO MALWARE Trojan/Genome.jpl Checkin (malware.rules)
  • 2805754 - ETPRO MALWARE Trojan.Fakealert Checkin (malware.rules)
  • 2805757 - ETPRO WEB_SPECIFIC_APPS Symantec Messaging Gateway 9.5.3-3 - Arbitrary file download 1 (web_specific_apps.rules)
  • 2805760 - ETPRO MALWARE Trojan.Win32.Besysad.a / TROJ_SMALL.AHF Checkin (malware.rules)
  • 2805763 - ETPRO MALWARE W32/Dloader.IRQ!tr Checkin (malware.rules)
  • 2805764 - ETPRO MALWARE Win32/Frethem.S@mm Checkin (malware.rules)
  • 2805766 - ETPRO MALWARE Win32/AgentBypass.gen!G Checkin 2 (malware.rules)
  • 2805767 - ETPRO MALWARE Win32/Spy.Agent.OBQ / Backdoor.Win32.Nosrawec Checkin (malware.rules)
  • 2805769 - ETPRO MALWARE Trojan.Win32.Klovbot Checkin (malware.rules)
  • 2805774 - ETPRO MALWARE Backdoor.Ceckno.A Checkin (1) (malware.rules)
  • 2805777 - ETPRO MALWARE Trojan-Proxy.Win32.Agent.di / TROJ_MSGINA.B Checkin (malware.rules)
  • 2805780 - ETPRO ADWARE_PUP AdWare.Win32.KSG.vl Checkin (adware_pup.rules)
  • 2805805 - ETPRO MALWARE Win32.Downloader-RGC Downloading executable (malware.rules)
  • 2805807 - ETPRO MALWARE Win32/Comisproc Checkin (malware.rules)
  • 2805810 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.GingerMaster.a Checkin 1 (mobile_malware.rules)
  • 2805811 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.GingerMaster.a Checkin 2 (mobile_malware.rules)
  • 2805813 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.GingerMaster.a Checkin 4 (mobile_malware.rules)
  • 2805822 - ETPRO MALWARE Android/Gmaster.A Checkin (malware.rules)
  • 2805823 - ETPRO MALWARE Win32/Injector.Autoit.CI Checkin (malware.rules)
  • 2805824 - ETPRO MALWARE Mal/FakeSg-B Checkin (malware.rules)
  • 2805825 - ETPRO MALWARE Backdoor.Win32.Rbot.kkw Checkin (malware.rules)
  • 2805836 - ETPRO MALWARE ponmocup Checkin 1 (malware.rules)
  • 2805837 - ETPRO MALWARE ponmocup Checkin 2 (malware.rules)
  • 2805838 - ETPRO MALWARE .Win32.Vobfus Trojan UA ???[A-F] (malware.rules)
  • 2805839 - ETPRO MALWARE Win32/Tibs.gen!G / Trojan-Downloader.Win32.Zlob.jsq Checkin (malware.rules)
  • 2805842 - ETPRO MALWARE Troj/Ransom-KS / Troj/Matsu-A Checkin (malware.rules)
  • 2805846 - ETPRO MALWARE Cryp_Xin2/Clicker.Win32.Small.zy Checkin 3 qfa (malware.rules)
  • 2805853 - ETPRO MOBILE_MALWARE Trojan/AndroidOS.eee Checkin (mobile_malware.rules)
  • 2805855 - ETPRO ADWARE_PUP Porn-Dialer.Win32.Agent.a / DIAL_RAS.IQ Checkin (adware_pup.rules)
  • 2805857 - ETPRO MALWARE Virus.Win32.Virut.a Proxy Registration 2 (malware.rules)
  • 2807424 - ETPRO MALWARE Trojan-Dropper.Win32.Dorifel.hlu Checkin (malware.rules)
  • 2807474 - ETPRO MALWARE Miniduke Checkin 2 (malware.rules)
  • 2807482 - ETPRO MALWARE Win32/Startpage.JT Checkin (malware.rules)
  • 2807490 - ETPRO MALWARE Trojan-Dropper.Win32.Sysn.aajj Checkin (malware.rules)
  • 2807494 - ETPRO MALWARE Trojan-Dropper.Win32.Sysn.aajj Checkin 2 (malware.rules)
  • 2807712 - ETPRO MALWARE Win32/Rovnix.J Checkin (malware.rules)
  • 2807793 - ETPRO MALWARE Win32/Rootkit.BlackEnergy.AG Checkin (malware.rules)
  • 2807817 - ETPRO MALWARE Trojan-Downloader.Win32.Agent.ybmu Checkin (malware.rules)
  • 2807859 - ETPRO MALWARE Variant.Symmi Checkin 3 (malware.rules)
  • 2807869 - ETPRO MALWARE Win32/Necurs Checkin 2 (malware.rules)
  • 2807878 - ETPRO MALWARE Trojan-Dropper.Win32.Dapato.dfmz Checkin (malware.rules)
  • 2807975 - ETPRO MALWARE Trojan.DownLoader9.54232 Checkin (malware.rules)
  • 2807984 - ETPRO MALWARE Trojan.Win32.Iframer.a Checkin (malware.rules)
  • 2808010 - ETPRO ADWARE_PUP Win32.Boaxxe.BL windowsupdate connectivity check (adware_pup.rules)
  • 2808018 - ETPRO MALWARE Win32.LockScreen.BHI checkin (malware.rules)
  • 2808249 - ETPRO MALWARE Win32/Gablrub Checkin (malware.rules)
  • 2808321 - ETPRO MALWARE Backdoor.Win32.Androm Download 1 (malware.rules)
  • 2808322 - ETPRO MALWARE Backdoor.Win32.Androm Download 2 (malware.rules)
  • 2808330 - ETPRO MALWARE Win32/SpamTool.Tedroo.BC Self-Signed Cert Serial Number (malware.rules)
  • 2808336 - ETPRO MALWARE Win32/Isnev Download (malware.rules)
  • 2808385 - ETPRO MALWARE Win32.Xema Checkin (malware.rules)
  • 2808393 - ETPRO MOBILE_MALWARE Android/Fakeinst.HX Checkin (mobile_malware.rules)
  • 2808407 - ETPRO MOBILE_MALWARE Android.Trojan.FakeInst.BX Checkin 2 (mobile_malware.rules)
  • 2808436 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Agent.aj Checkin (mobile_malware.rules)
  • 2808466 - ETPRO MOBILE_MALWARE AndroidOS/FakePlayer.A Checkin (mobile_malware.rules)
  • 2808479 - ETPRO MALWARE Trojan.Win32.Autoit.dbiolu Checkin (malware.rules)
  • 2808494 - ETPRO MOBILE_MALWARE Android.Gumen.A Checkin (mobile_malware.rules)
  • 2808524 - ETPRO MOBILE_MALWARE Android.Trojan.Gfs.A Checkin (mobile_malware.rules)
  • 2808530 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Univert.a Checkin (mobile_malware.rules)
  • 2808531 - ETPRO MALWARE Trojan-Downloader.Autoit.gen Checkin 2 (malware.rules)
  • 2808556 - ETPRO MOBILE_MALWARE Trojan-Ransom.AndroidOS.Cokri.a Checkin (mobile_malware.rules)
  • 2808557 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Waller.a Checkin (mobile_malware.rules)
  • 2808561 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Stealer.a Checkin 2 (mobile_malware.rules)
  • 2808566 - ETPRO MALWARE Win32/Rovnix.H Retrieving Fake User-Agent (malware.rules)
  • 2808569 - ETPRO MALWARE Win32/Zbot angryflo.ru GET Aug 14 2014 (malware.rules)
  • 2808572 - ETPRO ADWARE_PUP Win32/AdWare.Laban.G Checkin (adware_pup.rules)
  • 2808573 - ETPRO ADWARE_PUP PUP Win32/HiddenStart.B Checkin (adware_pup.rules)
  • 2808576 - ETPRO MALWARE Win32/Rovnix.H GET (malware.rules)
  • 2808591 - ETPRO ADWARE_PUP PUP.Optional.OneMoreGame.A checkin (adware_pup.rules)
  • 2808596 - ETPRO MALWARE Win32/Tiny.o Checkin (malware.rules)
  • 2808608 - ETPRO MOBILE_MALWARE Android.Riskware.SMSPay.AO Checkin 3 (mobile_malware.rules)
  • 2808623 - ETPRO ADWARE_PUP Adware C2 via Twitter (adware_pup.rules)
  • 2808641 - ETPRO MALWARE W32/Badur.ZYP Checkin (malware.rules)
  • 2808698 - ETPRO MALWARE Win32/Paskod.B Downloading Files (malware.rules)
  • 2808699 - ETPRO MALWARE Win32/KFTC.Downloader Checkin (malware.rules)
  • 2808700 - ETPRO MALWARE Win32/KFTC.Downloader Checkin 2 (malware.rules)
  • 2808708 - ETPRO MALWARE Win32.Farfli Requesting data 2 (malware.rules)
  • 2808711 - ETPRO MALWARE W32/VBCheMan.A Checkin 2 (malware.rules)
  • 2808724 - ETPRO MOBILE_MALWARE Android/Crosate.D Checkin (mobile_malware.rules)
  • 2808725 - ETPRO MOBILE_MALWARE Android/Crosate.D Checkin 2 (mobile_malware.rules)
  • 2808734 - ETPRO ADWARE_PUP PUA.DNWRandomHack Checkin (adware_pup.rules)
  • 2808752 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.MTK.e Checkin (mobile_malware.rules)
  • 2808754 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Krosec.a Checkin (mobile_malware.rules)
  • 2808769 - ETPRO MALWARE Backdoor.Win32.Androm Requesting payload 2 (malware.rules)
  • 2808770 - ETPRO MALWARE Backdoor.Win32.Androm Requesting payload (malware.rules)
  • 2808774 - ETPRO MALWARE Win32.Sasfis Checkin (malware.rules)
  • 2808776 - ETPRO MALWARE Win32/ProxyChanger.EO Checkin 2 (malware.rules)
  • 2808788 - ETPRO MOBILE_MALWARE RiskTool.AndroidOS.SMSreg.fb Checkin (mobile_malware.rules)
  • 2808799 - ETPRO MOBILE_MALWARE Android.Trojan.SMSSend.LJ Checkin (mobile_malware.rules)
  • 2808802 - ETPRO MOBILE_MALWARE RiskTool.AndroidOS.Zedat.a Checkin (mobile_malware.rules)
  • 2808806 - ETPRO MOBILE_MALWARE Android/FakeDefender.A Checkin (mobile_malware.rules)
  • 2808807 - ETPRO MALWARE Win32/PSWTool.WebBrowserPassView.B checkin (malware.rules)
  • 2808820 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.aq Checkin (mobile_malware.rules)
  • 2808822 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.a Checkin 4 (mobile_malware.rules)
  • 2808889 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Masnu.a Checkin (mobile_malware.rules)
  • 2808890 - ETPRO MOBILE_MALWARE Android.Trojan.SMSSend.CH Checkin (mobile_malware.rules)
  • 2808891 - ETPRO MOBILE_MALWARE AndroidOS/Agent.EJ Checkin (mobile_malware.rules)
  • 2808895 - ETPRO MOBILE_MALWARE Android.Trojan.Magwei.A Checkin 2 (mobile_malware.rules)
  • 2808967 - ETPRO MOBILE_MALWARE Android/Spyinfo.A Checkin (mobile_malware.rules)
  • 2808968 - ETPRO MOBILE_MALWARE Android/Spyinfo.A Checkin 2 (mobile_malware.rules)
  • 2808971 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Carej.b Checkin 2 (mobile_malware.rules)
  • 2808974 - ETPRO MALWARE Jaik Variant Checkin (malware.rules)
  • 2809006 - ETPRO MALWARE BackDoor.Tishop.2 Checkin (malware.rules)
  • 2809028 - ETPRO MOBILE_MALWARE Trojan-Downloader.AndroidOS.Fsm.b Checkin (mobile_malware.rules)
  • 2809061 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmForw.eg Checkin (mobile_malware.rules)
  • 2809072 - ETPRO MALWARE Win32.RShot Checkin (malware.rules)
  • 2809077 - ETPRO MALWARE JST Perl IrcBot v3.0 HTTP GET Request (malware.rules)
  • 2809107 - ETPRO MALWARE Win32/Spy.Banker.ABCO Checkin (malware.rules)
  • 2809115 - ETPRO MOBILE_MALWARE Android/Spy.Agent.DF Checkin 2 (mobile_malware.rules)
  • 2809122 - ETPRO MOBILE_MALWARE Android/Spy.SmsSpy.N Checkin (mobile_malware.rules)
  • 2809128 - ETPRO ADWARE_PUP SUSPICIOUS GEO IP Check (Optimizer Pro) (adware_pup.rules)
  • 2809138 - ETPRO MOBILE_MALWARE AndroidOS/FakeMarket.A Checkin (mobile_malware.rules)
  • 2809164 - ETPRO MOBILE_MALWARE AndroidOS/Aks.B Checkin (mobile_malware.rules)
  • 2809190 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.MTK.f Checkin (mobile_malware.rules)
  • 2809205 - ETPRO MALWARE Win32.Trojan.Win32/Agent.QRI (Korplug Related) Checkin (malware.rules)
  • 2809206 - ETPRO MALWARE FakeMS.abms Checkin (malware.rules)
  • 2809213 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Galf.a Checkin (mobile_malware.rules)
  • 2809215 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.Binv.a Checkin (mobile_malware.rules)
  • 2809251 - ETPRO MALWARE Win32/Notodar Checkin (malware.rules)
  • 2809252 - ETPRO MALWARE W32/Tepfer.InfoStealer Dropping Files (malware.rules)
  • 2809280 - ETPRO MALWARE Win32.Infostealer.Compfolder Checkin (malware.rules)
  • 2809289 - ETPRO MALWARE PWS.Win32.Blankit.A Checkin (malware.rules)
  • 2809319 - ETPRO MOBILE_MALWARE AndroidOS.Riskware.DroidCoupon Checkin (mobile_malware.rules)
  • 2809345 - ETPRO MOBILE_MALWARE Android/Agent.DE Checkin (mobile_malware.rules)
  • 2809368 - ETPRO MALWARE Dyre Keep-Alive POST (malware.rules)
  • 2809375 - ETPRO MOBILE_MALWARE AndroidOS.Riskware.DroidCoupon Checkin 2 (mobile_malware.rules)
  • 2809376 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.lt Checkin (mobile_malware.rules)
  • 2809378 - ETPRO MALWARE Autoit.F Checkin (malware.rules)