[***] Summary: [***]
1 new Open, 23 new Pro (1 + 22). Supreme RAT, iSatSrv, MSIL/Peredozik/BALDR Stealer, Various Phishing.
TIIF, thanks @malwrhunterteam
[+++] Added rules: [+++]
Open:
2026893 - ET TROJAN Observed CDC Ransomware User-Agent (trojan.rules)
Pro:
2834794 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.Asacub.a Checkin 463 (mobile_malware.rules)
2834795 - ETPRO EXPLOIT Observed NoneCMS Code Execution Attempt (CVE-2018-20062) M3 (exploit.rules)
2834796 - ETPRO MALWARE PUA/PUP mTorrent Installer Checkin (malware.rules)
2834798 - ETPRO TROJAN Supreme RAT CnC Activity (connectiontest) (trojan.rules)
2834799 - ETPRO TROJAN Supreme RAT CnC Activity (getproclist) (trojan.rules)
2834800 - ETPRO TROJAN Supreme RAT CnC Response (trojan.rules)
2834801 - ETPRO TROJAN SSL/TLS Certificate Observed (Winscsi) (trojan.rules)
2834802 - ETPRO TROJAN iSatSrv CnC Heartbeat Request (trojan.rules)
2834803 - ETPRO TROJAN iSatSrv CnC Heartbeat Response (trojan.rules)
2834804 - ETPRO CURRENT_EVENTS Successful Spotify Phish 2019-02-08 (current_events.rules)
2834805 - ETPRO CURRENT_EVENTS Successful Generic Credit Card Information Phish 2019-02-08 (current_events.rules)
2834806 - ETPRO CURRENT_EVENTS Successful Outlook Web App Phish 2019-02-08 (current_events.rules)
2834807 - ETPRO CURRENT_EVENTS Successful Bank of America Phish 2019-02-08 (current_events.rules)
2834808 - ETPRO CURRENT_EVENTS Successful ING Phish 2019-02-08 (current_events.rules)
2834809 - ETPRO CURRENT_EVENTS Successful Fedex Phish 2019-02-08 (current_events.rules)
2834810 - ETPRO CURRENT_EVENTS Successful Generic Credit Card Information Phish 2019-02-08 (current_events.rules)
2834811 - ETPRO CURRENT_EVENTS Successful Generic Credit Card Information Phish 2019-02-08 (current_events.rules)
2834812 - ETPRO TROJAN Observed Malicious SSL Cert (Dridex CnC) (trojan.rules)
2834813 - ETPRO TROJAN MSIL/Peredozik/BALDR Stealer Exfiltrating Data to CnC M1 (trojan.rules)
2834814 - ETPRO TROJAN MSIL/Peredozik/BALDR Stealer Exfiltrating Data to CnC M2 (trojan.rules)
2834815 - ETPRO MOBILE_MALWARE Android Ransom/Extortion App Receiving Config from CnC (mobile_malware.rules)
2834816 - ETPRO TROJAN Win32/Unk.Downloader CnC Response (trojan.rules)