[***]            Summary:            [***]

1 new Open, 16 new Pro (1 + 15). Mikrotik Winbox RCE, MSIL/Debirne Backdoor, Various Phishing.

[+++]          Added rules:          [+++]

Open:

2025972 - ET EXPLOIT Mikrotik Winbox RCE Attempt (exploit.rules)

Pro:

2832075 - ETPRO MALWARE Win32/FileTour Adware Activity (malware.rules)
2832076 - ETPRO TROJAN MSIL/Debirne Backdoor CnC Checkin (trojan.rules)
2832077 - ETPRO CURRENT_EVENTS Successful EC21 Phish 2018-08-06 (current_events.rules)
2832078 - ETPRO CURRENT_EVENTS MalDoc Requesting Ursnif Payload 2018-08-06 (current_events.rules)
2832079 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 1) (trojan.rules)
2832080 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 2) (trojan.rules)
2832081 - ETPRO CURRENT_EVENTS Successful Dropbox Phish 2018-08-06 (current_events.rules)
2832082 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 4) (trojan.rules)
2832083 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 5) (trojan.rules)
2832084 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 3) (trojan.rules)
2832085 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 6) (trojan.rules)
2832086 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 7) (trojan.rules)
2832087 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 8) (trojan.rules)
2832088 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline (2018-08-06 9) (trojan.rules)
2832089 - ETPRO CURRENT_EVENTS Successful Capital One Phish 2018-08-06 (current_events.rules)

[///]     Modified active rules:     [///]

2823937 - ETPRO CURRENT_EVENTS Successful Generic Phish (302) Dec 16 2016 (current_events.rules)
2832064 - ETPRO POLICY Hola VPN IP Check (lumtest .com) (policy.rules)
2832066 - ETPRO POLICY Possible IP Check (myip.json in URI) (policy.rules)

Date: 
Sunday, August 5, 2018 - 22:00