[***] Summary: [***]
5 new Open rules, 14 new Pro rules (5/9) Gh0st Rat, W32/FakeAlert, Win32/StoredBt.A, etc. Thanks to Kevin Ross and Travis Green.
[+++] Added rules: [+++]
Open:
2018069 – ET TROJAN Backdoor family PCRat/Gh0st CnC traffic (OUTBOUND) 22 (trojan.rules)
2018071 – ET MOBILE_MALWARE Android/DwnlAPK-A Configuration File Request (mobile_malware.rules)
2018072 – ET TROJAN W32/FakeAlert.FT.gen.Eldorado Downloading DLL (trojan.rules)
2018073 – ET TROJAN W32/FakeAlert.FT.gen.Eldorado Downloading VBS (trojan.rules)
2018074 – ET TROJAN Win32/StoredBt.A Activity (trojan.rules)
Pro:
2807600 – ETPRO TROJAN Trojan.Win32.IRCbot.bam IRC Checkin (trojan.rules)
2807601 – ETPRO TROJAN Trojan.Win32.Agent.adtqf Checkin (trojan.rules)
2807602 – ETPRO TROJAN Unknown Trojan Checkin (trojan.rules)
2807603 – ETPRO TROJAN Trojan-Dropper.Win32.Injector. ijtz Checkin (trojan.rules)
2807604 – ETPRO TROJAN W32/Jiwerks.A Checkin 2 (trojan.rules)
2807605 – ETPRO TROJAN Win32/Agent.UWF Checkin (trojan.rules)
2807607 – ETPRO TROJAN Worm.Win32/Krol.A IRC Checkin (trojan.rules)
2807608 – ETPRO TROJAN Backdoor/Ghost CnC (OUTBOUND) (trojan.rules)
2807609 – ETPRO WEB_CLIENT PDF Malformed Pattern Entry (web_client.rules)[///] Modified active rules: [///]
Open;
2014726 – ET POLICY Outdated Windows Flash Version IE (policy.rules)
2014727 – ET POLICY Outdated Mac Flash Version (policy.rules)
2018055 – ET TROJAN Upatre Binary Download Jan 02 2014 (trojan.rules)
Pro:
2805644 – ETPRO TROJAN Variant.Adware.SMSHoax.72 Checkin (trojan.rules)
2807546 – ETPRO TROJAN DDoS.Win32/Nitol.gen!A Checkin 2 (trojan.rules) [---] Removed rules: [---] 2014373 – ET CURRENT_EVENTS Possible Zeus .ru CnC Domain Generation Algorithm (DGA) Lookup NXDOMAIN Response (current_events.rules)
2014374 – ET CURRENT_EVENTS Possible Zeus .info CnC Domain Generation Algorithm (DGA) Lookup NXDOMAIN Response (current_events.rules)
2014375 – ET CURRENT_EVENTS Possible Zeus .biz CnC Domain Generation Algorithm (DGA) Lookup NXDOMAIN Response (current_events.rules)
Date: 
Monday, February 3, 2014 - 22:00