Daily Ruleset Update Summary 2014/04/29

[***] Summary: [***]

6 new Open rules, 16 new Pro (6+10). Hicrazyk.A, Win32.VBNA.b, CVE-2014-0515.

[+++] Added rules: [+++]

Open:

2018430 - ET WEB_CLIENT SUSPICOUS Possible automated connectivity check (www.google.com) (web_client.rules)
2018431 - ET WEB_CLIENT SUSPICOUS Possible automated connectivity check (www.msn.com) (web_client.rules)
2018432 - ET WEB_CLIENT SUSPICOUS Possible automated connectivity check (www.bing.com) (web_client.rules)
2018433 - ET WEB_CLIENT SUSPICOUS Possible automated connectivity check (www.yahoo.com) (web_client.rules)
2018434 - ET WEB_CLIENT Microsoft Application Crash Report Indicates Potential VGX Memory Corruption (web_client.rules)
2018435 - ET TROJAN W32/Hicrazyk.A Downloader Install CnC Beacon (trojan.rules)

Pro:

2807990 - ETPRO MALWARE Win32.AirAdInstaller (malware.rules)
2807991 - ETPRO TROJAN Worm.Win32.VBNA.b Checkin 2 (trojan.rules)
2807992 - ETPRO TROJAN Trojan-Downloader.Win32.INService User-Agent (trojan.rules)
2807993 - ETPRO TROJAN Trojan-Downloader.Win32.Small.gri Checkin (trojan.rules)
2807994 - ETPRO TROJAN Trojan-Downloader.Win32.Zlob.aep Checkin (trojan.rules)
2807995 - ETPRO MOBILE_MALWARE Android.Trojan.SmsSpy.BS Checkin (mobile_malware.rules)
2807996 - ETPRO TROJAN Worm.Win32.VBNA.b Checkin 3 (trojan.rules)
2807997 - ETPRO TROJAN Worm.Win32.VBNA.b Checkin 5 (trojan.rules)
2807998 - ETPRO EXPLOIT Possible CVE-2014-0515 Flash Buffer Overflow (exploit.rules)
2807999 - ETPRO TROJAN Worm.Win32.VBNA.b Checkin 4 (trojan.rules)

[///] Modified active rules: [///]

2018418 - ET CURRENT_EVENTS Possible W32/Zbot.InfoStealer SSL Cert Parallels.com (current_events.rules)
2018419 - ET TROJAN W32/Zbot.InfoStealer WindowsUpdate Connectivity Check With Opera UA (trojan.rules)
2018422 - ET TROJAN Upatre Binary Download April 28 2014 (trojan.rules)
2806651 - ETPRO MOBILE_MALWARE Android/Spy.Agent.I Checkin (mobile_malware.rules)
2807616 - ETPRO TROJAN Win32/Spy.Agent.OIB Checkin (trojan.rules)
Date: 
Tuesday, April 29, 2014 - 00:00