[***] Summary: [***]

4 new Open signatures, 20 new Pro (4+16). Various Android, HP Data Protector RCE (OSVDB-ID: 109069), Upatre.

Thanks: @EKWatcher

[+++] Added rules: [+++]

Open:

2018676 - ET TROJAN Win32.Sharik Adobe Connectivity check (trojan.rules)
2018677 - ET TROJAN Win32.Sharik Microsoft Connectivity check (trojan.rules)
2018678 - ET TROJAN Upatre Common URI Struct July 15 2014 (trojan.rules)
2018679 - ET TROJAN DNS Possible User trying to visit POSHCODER.A .onion link outside of torbrowser (trojan.rules)

Pro:

2808353 - ETPRO MOBILE_MALWARE Android.Trojan.FakeBank.I Checkin (mobile_malware.rules)
2808354 - ETPRO POLICY geo IP lookup service ip138.com (policy.rules)
2808355 - ETPRO TROJAN Win32/Vflooder.B Checkin (trojan.rules)
2808356 - ETPRO TROJAN Win32/Vflooder.B vtapi DOS (trojan.rules)
2808357 - ETPRO MOBILE_MALWARE Android/TelMan.A Checkin (mobile_malware.rules)
2808358 - ETPRO TROJAN Win32/Detroie.A Checkin via IRC (trojan.rules)
2808359 - ETPRO MALWARE Facemoi Adware Installer Download (malware.rules)
2808360 - ETPRO MALWARE PUP Win.Adware.PCFixSpeed Checkin (malware.rules)
2808361 - ETPRO TROJAN Win32/Startpage.WR CnC Request (trojan.rules)
2808362 - ETPRO TROJAN Win32/Zbot Aol.com Connectivity Check (trojan.rules)
2808363 - ETPRO MALWARE PUP Win32/Kuping.A Checkin (malware.rules)
2808364 - ETPRO MALWARE CheatEngine.AF Variant Checkin (malware.rules)
2808365 - ETPRO TROJAN Worm.Win32/Ganelp.G Possible FTP USER (trojan.rules)
2808366 - ETPRO TROJAN Win32/Bicololo.GC CnC Request (trojan.rules)
2808367 - ETPRO EXPLOIT HP Data Protector Remote command execution (exploit.rules)
2808368 - ETPRO EXPLOIT HP Data Protector Remote command execution (exploit.rules)

[///] Modified active rules: [///]

2008052 - ET MALWARE User-Agent (Internet Explorer) (malware.rules)
2011582 - ET POLICY Vulnerable Java Version 1.6.x Detected (policy.rules)
2011706 - ET P2P Bittorrent P2P Client User-Agent (uTorrent) (p2p.rules)
2012849 - ET MOBILE_MALWARE Possible Mobile Malware POST of IMSI International Mobile Subscriber Identity in URI (mobile_malware.rules)
2014297 - ET POLICY Vulnerable Java Version 1.7.x Detected (policy.rules)
2808279 - ETPRO EXPLOIT Cogent DataHub Command Injection (exploit.rules)

[---] Removed rules: [---]

2808351 - ETPRO TROJAN Win32.Sharik Adobe Connectivity check (trojan.rules)
Date: 
Monday, July 14, 2014 - 22:00