[***]            Summary:            [***]

1 new OPEN, 15 new PRO (1 + 14). Win32/Predator Variant, ELF/Gafygt Variant, Unicorn Stealer, Various SSL, Coinminers, VARIOUS PHISH.

Today it is Friday.

Please share issues, feedback, and requests at https://feedback.emergingthreats.net/feedback

[+++]          Added rules:          [+++]

Open:

  2030908 - ET TROJAN Win32/Predator Variant Dropper Activity (trojan.rules)

Pro:

  2844637 - ETPRO TROJAN ELF/Gafygt Variant CnC Checkin (trojan.rules)
  2844638 - ETPRO TROJAN Observed Malicious SSL Cert (AsyncRAT CnC)
(trojan.rules)
  2844639 - ETPRO TROJAN Observed Malicious SSL Cert (Cobalt Strike CnC)
(trojan.rules)
  2844640 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2020-09-25 1) (trojan.rules)
  2844641 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2020-09-25 2) (trojan.rules)
  2844642 - ETPRO CURRENT_EVENTS Successful Generic Credit Card Information
Phish 2020-09-25 (current_events.rules)
  2844643 - ETPRO CURRENT_EVENTS Successful Lloyds Bank Phish 2020-09-25
(current_events.rules)
  2844644 - ETPRO CURRENT_EVENTS Successful Primabanka Phish 2020-09-25
(current_events.rules)
  2844645 - ETPRO CURRENT_EVENTS Successful Primabanka Phish 2020-09-25
(current_events.rules)
  2844646 - ETPRO CURRENT_EVENTS Successful M&T Bank Phish 2020-09-25
(current_events.rules)
  2844647 - ETPRO TROJAN Observed YAHOOYLO Stealer CnC Domain in TLS SNI
(trojan.rules)
  2844648 - ETPRO TROJAN Observed FinderBot CnC Domain in TLS SNI
(trojan.rules)
  2844649 - ETPRO TROJAN Unicorn Stealer CnC Activity (trojan.rules)

[///]     Modified active rules:     [///]

  2012799 - ET TROJAN Ponmocup C2 Sending Data to Controller 1
(trojan.rules)
  2013378 - ET INFO HTTP Request to a *.de.ms domain (info.rules)
  2013828 - ET INFO HTTP Request to a *.eu.tf domain (info.rules)
  2013969 - ET INFO HTTP Request to a .noip.cn domain (info.rules)
  2015551 - ET INFO HTTP Request to a *.upas.su domain (info.rules)
  2015737 - ET WEB_SERVER PHPMyAdmin BackDoor Access (web_server.rules)
  2015756 - ET TROJAN Trojan Downloader GetBooks UA (trojan.rules)
  2016029 - ET TROJAN Kelihos.K Executable Download DGA (trojan.rules)
  2016509 - ET TROJAN W32/Zbot.Variant Fake MSIE 6.0 UA (trojan.rules)
  2018078 - ET TROJAN W32/Kbot.Backdoor Variant CnC Beacon (trojan.rules)
  2018082 - ET TROJAN W32/Zeus.InfoStealer Infection Campaign Wav.exe
Request (trojan.rules)
  2018083 - ET TROJAN W32/Zeus.InfoStealer Infection Campaign Heap.exe
Request (trojan.rules)
  2018109 - ET TROJAN vSkimmer.PoS Checkin (trojan.rules)
  2018183 - ET TROJAN Zeus.Downloader Campaign Unknown Initial CnC Beacon
(trojan.rules)
  2018453 - ET TROJAN Upatre Downloader 2p (Zeus) May 07 2014 (trojan.rules)
  2018649 - ET TROJAN Win32.Banload.BTQP Checkin 1 (trojan.rules)
  2018653 - ET TROJAN Downloader.Banload2.KZU Checkin 1 (trojan.rules)
  2018654 - ET TROJAN Downloader.Banload2.KZU Checkin 2 (trojan.rules)
  2018661 - ET TROJAN Win32/Zemot Config Download (trojan.rules)
  2018669 - ET TROJAN Uroburos/Turla CnC (OUTBOUND) 1 (trojan.rules)
  2018670 - ET TROJAN Uroburos/Turla CnC (OUTBOUND) 2 (trojan.rules)
  2018680 - ET TROJAN Soraya Credit Card Exfiltration (trojan.rules)
  2018750 - ET TROJAN Asterope Checkin (trojan.rules)
  2018754 - ET SCAN Possible WordPress xmlrpc.php wp.getUsersBlogs Flowbit
Set (scan.rules)
  2018792 - ET MOBILE_MALWARE Worm.AndroidOS.Selfmite.a Checkin
(mobile_malware.rules)
  2018809 - ET INFO DYNAMIC_DNS HTTP Request to *.passinggas.net Domain
(Sitelutions) (info.rules)
  2018811 - ET INFO DYNAMIC_DNS HTTP Request to *.myredirect.us Domain
(Sitelutions) (info.rules)
  2018813 - ET INFO DYNAMIC_DNS HTTP Request to *.rr.nu Domain
(Sitelutions) (info.rules)
  2018815 - ET INFO DYNAMIC_DNS HTTP Request to *.kwik.to Domain
(Sitelutions) (info.rules)
  2018817 - ET INFO DYNAMIC_DNS HTTP Request to *.myfw.us Domain
(Sitelutions) (info.rules)
  2018819 - ET INFO DYNAMIC_DNS HTTP Request to *.ontheweb.nu Domain
(Sitelutions) (info.rules)
  2018821 - ET INFO DYNAMIC_DNS HTTP Request to *.isthebe.st Domain
(Sitelutions) (info.rules)
  2018823 - ET INFO DYNAMIC_DNS HTTP Request to *.byinter.net Domain
(Sitelutions) (info.rules)
  2018825 - ET INFO DYNAMIC_DNS HTTP Request to *.findhere.org Domain
(Sitelutions) (info.rules)
  2018827 - ET INFO DYNAMIC_DNS HTTP Request to *.onthenetas.com Domain
(Sitelutions) (info.rules)
  2018829 - ET INFO DYNAMIC_DNS HTTP Request to *.uglyas.com Domain
(Sitelutions) (info.rules)
  2018831 - ET INFO DYNAMIC_DNS HTTP Request to *.assexyas.com Domain
(Sitelutions) (info.rules)
  2018833 - ET INFO DYNAMIC_DNS HTTP Request to *.passas.us Domain
(Sitelutions) (info.rules)
  2018835 - ET INFO DYNAMIC_DNS HTTP Request to *.athissite.com Domain
(Sitelutions) (info.rules)
  2018837 - ET INFO DYNAMIC_DNS HTTP Request to *.athersite.com Domain
(Sitelutions) (info.rules)
  2018839 - ET INFO DYNAMIC_DNS HTTP Request to *.isgre.at Domain
(Sitelutions) (info.rules)
  2018841 - ET INFO DYNAMIC_DNS HTTP Request to *.lookin.at Domain
(Sitelutions) (info.rules)
  2018843 - ET INFO DYNAMIC_DNS HTTP Request to *.bestdeals.at Domain
(Sitelutions) (info.rules)
  2018845 - ET INFO DYNAMIC_DNS HTTP Request to *.lowestprices.at Domain
(Sitelutions) (info.rules)
  2018857 - ET TROJAN Backoff POS Checkin (trojan.rules)
  2018869 - ET TROJAN W32/Pgift.Backdoor APT CnC Beacon (trojan.rules)
  2018882 - ET TROJAN Troj/ReRol.A Checkin 1 (trojan.rules)
  2018883 - ET TROJAN Troj/ReRol.A Checkin 2 (trojan.rules)
  2018889 - ET TROJAN Infostealer.Mysayad Checkin 1 (trojan.rules)
  2018890 - ET TROJAN Infostealer.Mysayad Checkin 2 (trojan.rules)
  2018891 - ET TROJAN Kronos Checkin (trojan.rules)
  2018894 - ET TROJAN Probable OneLouder downloader (Zeus P2P)
(trojan.rules)
  2018929 - ET TROJAN OneLouder Common URI Struct (trojan.rules)
  2018960 - ET TROJAN ZeroLocker Downloading Config (trojan.rules)
  2018961 - ET TROJAN ZeroLocker Activity (trojan.rules)
  2018968 - ET TROJAN Python.Ragua Checkin (trojan.rules)
  2018969 - ET WEB_CLIENT DRIVEBY Social Engineering Toolkit JAR Download
(web_client.rules)
  2018971 - ET TROJAN Probable OneLouder downloader (Zeus P2P)
(trojan.rules)
  2018984 - ET TROJAN PlugX variant (trojan.rules)
  2018999 - ET TROJAN Win32/Spy.Tuscas (trojan.rules)
  2019110 - ET WEB_SERVER Likely Malicious Request for /proc/self/fd/
(web_server.rules)
  2019127 - ET TROJAN W32/Bapy.Downloader PE Download Request (trojan.rules)
  2019138 - ET TROJAN Win32/Poweliks GET Request (trojan.rules)
  2019139 - ET WEB_SPECIFIC_APPS WordPress Huge IT Image Gallery 1.0.0 SQL
Injection (web_specific_apps.rules)
  2019140 - ET POLICY External IP Lookup maxmind.com (policy.rules)
  2019155 - ET TROJAN Possible Zeus GameOver Connectivity Check 2
(trojan.rules)
  2019157 - ET WEB_SPECIFIC_APPS Webmin Directory Traversal
(web_specific_apps.rules)
  2019164 - ET TROJAN JackPOS XOR Encoded HTTP Client Body (key AA)
(trojan.rules)
  2019182 - ET WEB_SERVER HTTP POST Generic eval of base64_decode
(web_server.rules)
  2019231 - ET WEB_SERVER Possible CVE-2014-6271 Attempt in URI
(web_server.rules)
  2019232 - ET WEB_SERVER Possible CVE-2014-6271 Attempt in Headers
(web_server.rules)
  2019234 - ET WEB_SERVER Possible CVE-2014-6271 Attempt in Client Body 2
(web_server.rules)
  2019241 - ET WEB_SERVER Possible CVE-2014-6271 Attempt in Client Body 3
(web_server.rules)
  2019281 - ET TROJAN BlackEnergy v2 POST Request (trojan.rules)
  2019308 - ET WEB_SERVER CURL Command Specifying Output in HTTP Headers
(web_server.rules)
  2019309 - ET WEB_SERVER WGET Command Specifying Output in HTTP Headers
(web_server.rules)
  2019310 - ET WEB_SERVER lwp-download Command Specifying Output in HTTP
Headers (web_server.rules)
  2019364 - ET WEB_SPECIFIC_APPS Bugzilla token.cgi HPP e-mail validation
bypass Attempt URI (web_specific_apps.rules)
  2019365 - ET WEB_SPECIFIC_APPS Bugzilla token.cgi HPP e-mail validation
bypass Attempt Client Body (web_specific_apps.rules)
  2019380 - ET TROJAN Gozi/Ursnif/Papras Connectivity Check (trojan.rules)
  2019384 - ET TROJAN Neverquest Request URI Struct (trojan.rules)
  2019412 - ET TROJAN W32/BlackEnergy Dirconf CnC Beacon (trojan.rules)
  2019422 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
1 (exploit.rules)
  2019423 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
2 (exploit.rules)
  2019424 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
3 (exploit.rules)
  2019425 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
4 (exploit.rules)
  2019426 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
5 (exploit.rules)
  2019427 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
6 (exploit.rules)
  2019428 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
7 (exploit.rules)
  2019429 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
8 (exploit.rules)
  2019430 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
9 (exploit.rules)
  2019431 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
10 (exploit.rules)
  2019432 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
11 (exploit.rules)
  2019433 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
12 (exploit.rules)
  2019434 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
13 (exploit.rules)
  2019435 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
14 (exploit.rules)
  2019436 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
15 (exploit.rules)
  2019437 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
16 (exploit.rules)
  2019438 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
17 (exploit.rules)
  2019439 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
18 (exploit.rules)
  2019440 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
19 (exploit.rules)
  2019441 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
20 (exploit.rules)
  2019442 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
21 (exploit.rules)
  2019443 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
22 (exploit.rules)
  2019444 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
23 (exploit.rules)
  2019445 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
24 (exploit.rules)
  2019446 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
25 (exploit.rules)
  2019447 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
26 (exploit.rules)
  2019448 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
27 (exploit.rules)
  2019449 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
28 (exploit.rules)
  2019450 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
29 (exploit.rules)
  2019451 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
30 (exploit.rules)
  2019452 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
31 (exploit.rules)
  2019453 - ET EXPLOIT Possible CVE-2014-3704 Drupal SQLi attempt URLENCODE
32 (exploit.rules)
  2019459 - ET TROJAN Win32/Zemot Requesting PE (trojan.rules)
  2019460 - ET WEB_SERVER MongoDB Negated Parameter Server Side JavaScript
Injection Attempt (web_server.rules)
  2019481 - ET TROJAN Orca RAT URI Struct 1 (trojan.rules)
  2019482 - ET TROJAN Orca RAT URI Struct 2 (trojan.rules)
  2019483 - ET TROJAN Orca RAT URI Struct 3 (trojan.rules)
  2019484 - ET TROJAN Orca RAT URI Struct 4 (trojan.rules)
  2019515 - ET TROJAN W32/Siggen.Dropper CnC Beacon (trojan.rules)
  2030894 - ET TROJAN Unicorn Stealer Activity (POST) (trojan.rules)
  2804188 - ETPRO INFO HTTP Request to a *.net.ms Free Domain (info.rules)
  2804189 - ETPRO INFO HTTP Request to a *.info.ms Free Domain (info.rules)
  2804190 - ETPRO INFO HTTP Request to a *.us.ms Free Domain (info.rules)
  2804191 - ETPRO INFO HTTP Request to a *.shop.ms Free Domain (info.rules)
  2804192 - ETPRO INFO HTTP Request to a *.au.ms Free Domain (info.rules)
  2804194 - ETPRO INFO HTTP Request to a *.fr.ms Free Domain (info.rules)
  2804195 - ETPRO INFO HTTP Request to a *.cn.ms Free Domain (info.rules)
  2804196 - ETPRO INFO HTTP Request to a *.hk.ms Free Domain (info.rules)
  2804197 - ETPRO INFO HTTP Request to a *.br.ms Free Domain (info.rules)
  2804452 - ETPRO TROJAN Worm.Win32/Mydoom.O at mm Conectivity Check
(trojan.rules)
  2804636 - ETPRO INFO HTTP Request to a *.coom.in Abused DNS Domain
(info.rules)
  2804644 - ETPRO TROJAN Email-Worm.Win32.Brontok.n Checkin (trojan.rules)
  2805629 - ETPRO POLICY TornTV data download starter (policy.rules)
  2805781 - ETPRO MOBILE_MALWARE AndroidOS/Kmin.A Checkin
(mobile_malware.rules)
  2805840 - ETPRO MOBILE_MALWARE Andr/FakeIns-B /
Trojan-SMS.AndroidOS.Agent.a Checkin (mobile_malware.rules)
  2805870 - ETPRO MOBILE_MALWARE Android/TrojanSMS.Placms.F Checkin
(mobile_malware.rules)
  2805900 - ETPRO MOBILE_MALWARE Android/Ksapp.A Checkin 2
(mobile_malware.rules)
  2806210 - ETPRO MOBILE_MALWARE AndroidOS/Gappusin.A Checkin
(mobile_malware.rules)
  2806250 - ETPRO MOBILE_MALWARE Android/Phonerecon.A Checkin
(mobile_malware.rules)
  2806332 - ETPRO MOBILE_MALWARE Android/JSmsHiderCS.A
(mobile_malware.rules)
  2806513 - ETPRO TROJAN Win32.Jadtre Checkin/exe Request (trojan.rules)
  2806647 - ETPRO MOBILE_MALWARE Android/Infostealer.IH Checkin
(mobile_malware.rules)
  2806675 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.Antammi.a Checkin
(mobile_malware.rules)
  2806783 - ETPRO TROJAN Win32.Xtrat.A (CnC & Exe Source) (trojan.rules)
  2807069 - ETPRO MOBILE_MALWARE AndroidOS.CardServ.D Checkin
(mobile_malware.rules)
  2807353 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.dn Checkin
(mobile_malware.rules)
  2807377 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Erop.a Checkin
(mobile_malware.rules)
  2807585 - ETPRO TROJAN Win32/TrojanClicker.Agent.NUM Checkin
(trojan.rules)
  2807692 - ETPRO TROJAN Trojan.Banker.ACF Checkin (trojan.rules)
  2807767 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.Wroba.c Checkin
(mobile_malware.rules)
  2807768 - ETPRO MOBILE_MALWARE Trojan-Banker.AndroidOS.Wroba.c Checkin 2
(mobile_malware.rules)
  2807788 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Blocal.a Checkin
(mobile_malware.rules)
  2807849 - ETPRO MOBILE_MALWARE Android/TrojanSMS.Agent.AAE Checkin
(mobile_malware.rules)
  2807921 - ETPRO MOBILE_MALWARE Android.Monitor.MobileSpy.I Checkin
(mobile_malware.rules)
  2808034 - ETPRO TROJAN Worm.Win32.Marag.f Checkin (trojan.rules)
  2808053 - ETPRO MOBILE_MALWARE Android/SmsSend.ET Checkin
(mobile_malware.rules)
  2808102 - ETPRO MOBILE_MALWARE Android/Uten.A Checkin
(mobile_malware.rules)
  2808103 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Vsas.a Checkin
(mobile_malware.rules)
  2808141 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmForw.u Checkin 3
(mobile_malware.rules)
  2808168 - ETPRO MOBILE_MALWARE Android.Riskware.SmsPay.C Checkin
(mobile_malware.rules)
  2808280 - ETPRO TROJAN Win32.Fsysna.acqf Checkin (trojan.rules)
  2808282 - ETPRO TROJAN Win32/Phelshap.A Checkin (trojan.rules)
  2808287 - ETPRO TROJAN Win32/Span.A Checkin (trojan.rules)
  2808292 - ETPRO MOBILE_MALWARE Android/Simplocker.B Checkin
(mobile_malware.rules)
  2808296 - ETPRO MOBILE_MALWARE Android/MobiStealth.E Checkin
(mobile_malware.rules)
  2808297 - ETPRO TROJAN Win32.Buzus.dxsr Checkin (trojan.rules)
  2808303 - ETPRO MOBILE_MALWARE Android.Riskware.SMSReg.BG Checkin
(mobile_malware.rules)
  2808311 - ETPRO MOBILE_MALWARE Android/Hyspu.A Checkin
(mobile_malware.rules)
  2808323 - ETPRO TROJAN Backdoor.Win32.Androm Checkin (trojan.rules)
  2808324 - ETPRO TROJAN Trojan.Win32.Autoit.ckc Download (trojan.rules)
  2808327 - ETPRO TROJAN Win32/Obfuscator.XZ Checkin 4 (trojan.rules)
  2808331 - ETPRO TROJAN Worm.Win32.Socks Checkin (trojan.rules)
  2808335 - ETPRO POLICY Win32/RemoteAdmin.RemoteUtilities.C Checkin
(policy.rules)
  2808344 - ETPRO TROJAN Win32.Ngrbot.dcejki Checkin (trojan.rules)
  2808349 - ETPRO MOBILE_MALWARE Android.Trojan.Voxv.A Checkin 2
(mobile_malware.rules)
  2808361 - ETPRO TROJAN Win32/Startpage.WR CnC Request (trojan.rules)
  2808366 - ETPRO TROJAN Win32/Bicololo.GC CnC Request (trojan.rules)
  2808378 - ETPRO MOBILE_MALWARE Android.Trojan.SMSSend.IA Checkin 2
(mobile_malware.rules)
  2808379 - ETPRO MOBILE_MALWARE Android.Trojan.SMSSend.IA Checkin 3
(mobile_malware.rules)
  2808380 - ETPRO TROJAN Trojan.Agent.10815 dropper (trojan.rules)
  2808384 - ETPRO MOBILE_MALWARE Android/Simplocker.D Checkin
(mobile_malware.rules)
  2808392 - ETPRO TROJAN Win32/Kanav.B Checkin (trojan.rules)
  2808419 - ETPRO TROJAN Win32/Multsarch.N Checkin (trojan.rules)
  2808423 - ETPRO MOBILE_MALWARE Android/SMSKey.L Checkin
(mobile_malware.rules)
  2808425 - ETPRO MOBILE_MALWARE AndroidOS/Denofow.B Checkin
(mobile_malware.rules)
  2808453 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.GingerMaster.a Checkin 6
(mobile_malware.rules)
  2808454 - ETPRO MOBILE_MALWARE Android/SMForw.CB Checkin
(mobile_malware.rules)
  2808456 - ETPRO MOBILE_MALWARE Android/Spy.GoldDream.C Checkin
(mobile_malware.rules)
  2808463 - ETPRO TROJAN Win32/Viknok.D Checkin 1 (trojan.rules)
  2808467 - ETPRO MOBILE_MALWARE Android/SMForw.BV Checkin
(mobile_malware.rules)
  2808473 - ETPRO MOBILE_MALWARE Android/SmsSend.EI Checkin
(mobile_malware.rules)
  2808481 - ETPRO MOBILE_MALWARE Android-Malicious/Pbstealer Checkin
(mobile_malware.rules)
  2808491 - ETPRO MOBILE_MALWARE AndroidOS/Apperhand.A Checkin
(mobile_malware.rules)
  2808505 - ETPRO TROJAN Autoit.LOX Checkin (trojan.rules)
  2808520 - ETPRO TROJAN Win32/Craq.A C2 traffic (trojan.rules)
  2808529 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Carej.b Checkin
(mobile_malware.rules)
  2808536 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.Recal.a Checkin
(mobile_malware.rules)
  2808554 - ETPRO MOBILE_MALWARE Android.Trojan.Vmvol.A Checkin
(mobile_malware.rules)
  2808555 - ETPRO MOBILE_MALWARE Android.Trojan.Vmvol.A Checkin 2
(mobile_malware.rules)
  2808560 - ETPRO TROJAN Win32.Neshta.A Checkin 3 (trojan.rules)
  2808564 - ETPRO MOBILE_MALWARE SMSPay.AO (mobile_malware.rules)
  2808565 - ETPRO TROJAN Win32/Banjori.A Checkin (trojan.rules)
  2808574 - ETPRO TROJAN Win32/Emogen-F Checkin (trojan.rules)
  2808590 - ETPRO MOBILE_MALWARE AndroidOS/Tetus.A Checkin 4
(mobile_malware.rules)
  2808593 - ETPRO MOBILE_MALWARE Android/FakeTimer.A Checkin 2
(mobile_malware.rules)
  2808601 - ETPRO TROJAN Win32/Qhost.PGZ Checkin (trojan.rules)
  2808605 - ETPRO TROJAN Rogue.Win32/Defru Checkin (trojan.rules)
  2808611 - ETPRO TROJAN Win32/Spy.Usteal.C Checkin (trojan.rules)
  2808619 - ETPRO TROJAN Win32/Meinhudong.A Checkin (trojan.rules)
  2808622 - ETPRO TROJAN W32/Sohanad.ax Downloading PE (trojan.rules)
  2808626 - ETPRO TROJAN Win32.Dapato.Ang Checkin (trojan.rules)
  2808628 - ETPRO TROJAN Win32/Asper.O Checkin (trojan.rules)
  2808631 - ETPRO TROJAN Variant.Kazy.365193(B) Checkin (trojan.rules)
  2808634 - ETPRO TROJAN MSIL/Injector.P Checkin (trojan.rules)
  2808639 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.SendPay.a Checkin
(mobile_malware.rules)
  2808645 - ETPRO TROJAN MSIL/Agent.RQ Checkin (trojan.rules)
  2808653 - ETPRO TROJAN Win32.Badur variant payload retrieval
(trojan.rules)
  2808663 - ETPRO MOBILE_MALWARE Android/Adware.MobWin.A Checkin
(mobile_malware.rules)
  2808667 - ETPRO TROJAN Win32/ProxyChanger.RD Checkin (trojan.rules)
  2808670 - ETPRO TROJAN POSCARDSTEALER.Q Checkin (trojan.rules)
  2808674 - ETPRO MOBILE_MALWARE Android/Spyoo.I Checkin 2
(mobile_malware.rules)
  2808675 - ETPRO MOBILE_MALWARE Android/Spyoo.I Checkin 3
(mobile_malware.rules)
  2808682 - ETPRO MOBILE_MALWARE AndroidOS/UUPay.B Checkin 2
(mobile_malware.rules)
  2808683 - ETPRO TROJAN Win32/VB.VX Checkin (trojan.rules)
  2808690 - ETPRO MOBILE_MALWARE DroidKungFu Checkin 4
(mobile_malware.rules)
  2808695 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.SpamSold.a Checkin
(mobile_malware.rules)
  2808721 - ETPRO MOBILE_MALWARE Android/Tekwon.A Checkin 2
(mobile_malware.rules)
  2808730 - ETPRO TROJAN Win32/Spy.Banker.AAXV Retrieving Key (trojan.rules)
  2808733 - ETPRO TROJAN Win32/Wobotork.A Checkin (trojan.rules)
  2808781 - ETPRO MOBILE_MALWARE Android.Riskware.SmsPay.AL Checkin
(mobile_malware.rules)
  2808790 - ETPRO MOBILE_MALWARE Android/Netisend.A Checkin 2
(mobile_malware.rules)
  2808791 - ETPRO TROJAN Win32/Xymne Checkin (trojan.rules)
  2808794 - ETPRO TROJAN Win32.Weelsof.qko Possible Connectivity Check
wikipedia.org (trojan.rules)
  2808803 - ETPRO MOBILE_MALWARE Android.Riskware.SMSReg.DB Checkin
(mobile_malware.rules)
  2808811 - ETPRO TROJAN Win32.SpyEyes.arbc Checkin 1 (trojan.rules)
  2808812 - ETPRO TROJAN Win32.SpyEyes.arbc Checkin 2 (trojan.rules)
  2808824 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Stealer.a Checkin 3
(mobile_malware.rules)
  2808829 - ETPRO MOBILE_MALWARE Android.Trojan.InfoStealer.DO Checkin
(mobile_malware.rules)
  2808830 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.Agent.ap Checkin
(mobile_malware.rules)
  2808832 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.eg Checkin
(mobile_malware.rules)
  2808833 - ETPRO POLICY Proxy.pac Download (policy.rules)
  2808841 - ETPRO MOBILE_MALWARE Android/JSmsHider.A Checkin 2
(mobile_malware.rules)
  2808850 - ETPRO TROJAN Troj/Buzus-CZ checkin (trojan.rules)
  2808860 - ETPRO TROJAN Win32/Ramnit.A Checkin (trojan.rules)
  2808862 - ETPRO MOBILE_MALWARE Android.Trojan.FakeInst.BX Checkin 4
(mobile_malware.rules)
  2808868 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Opfake.a Checkin 10
(mobile_malware.rules)
  2808870 - ETPRO MOBILE_MALWARE Android/MMarketPay.C Checkin
(mobile_malware.rules)
  2808873 - ETPRO TROJAN Win32.Themida Variant CnC (trojan.rules)
  2808875 - ETPRO TROJAN FakeAV.Malwaredoctor Checkin (trojan.rules)
  2808877 - ETPRO TROJAN Win32/Yeltminky.A Checkin (trojan.rules)
  2808879 - ETPRO TROJAN Win32/Spy.Banker.AAHF Checkin (trojan.rules)
  2808892 - ETPRO EXPLOIT Arris Cable Modem Backdoor GET request
(exploit.rules)
  2808893 - ETPRO TROJAN W32/Banker.AAUS!tr.spy Checkin (trojan.rules)
  2808898 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmForw.v Checkin
(mobile_malware.rules)
  2808902 - ETPRO TROJAN Win32/Rustock.G Checkin (trojan.rules)
  2808906 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Maxit.a Checkin
(mobile_malware.rules)
  2808914 - ETPRO TROJAN Win32/Banker-LAR Dropping Files (trojan.rules)
  2808922 - ETPRO TROJAN Win32.TrojanDropper.Startpage.klpp Checkin
(trojan.rules)
  2808935 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.Gomal.a Checkin
(mobile_malware.rules)
  2808941 - ETPRO TROJAN Win32/Spy.Bancos.ACW Checkin (trojan.rules)
  2808964 - ETPRO POLICY what-is-my-ip.net IP Check (policy.rules)
  2808965 - ETPRO TROJAN Win32/Bronzestatuen Checkin (trojan.rules)
  2809003 - ETPRO EXPLOIT Bosch Security Systems DVR 630/650/670 Exploit
Attempt (exploit.rules)
  2809004 - ETPRO EXPLOIT Bosch Security Systems DVR 630/650/670 Exploit
Attempt 2 (exploit.rules)
  2809005 - ETPRO EXPLOIT Bosch Security Systems DVR 630/650/670
Informatioon Disclosure (exploit.rules)
  2809025 - ETPRO TROJAN Win32/Agent.WMI Checkin (trojan.rules)
  2809050 - ETPRO MOBILE_MALWARE Monitoring-Tool Android/CellSpy.B Checkin
(mobile_malware.rules)
  2809052 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmForw.ep Checkin
(mobile_malware.rules)
  2809057 - ETPRO POLICY IP Check thinklabs-ltd.de (policy.rules)
  2809062 - ETPRO TROJAN Win32/Nioupale.A CnC (trojan.rules)
  2809065 - ETPRO TROJAN Backdoor.Kivars Checkin (trojan.rules)
  2809068 - ETPRO TROJAN Win32/Kilim.M Checkin (trojan.rules)
  2809081 - ETPRO MOBILE_MALWARE Android/Lxsj.A Checkin
(mobile_malware.rules)
  2809084 - ETPRO TROJAN Infostealer.Limitail Stealing Info Via HTTP
(trojan.rules)
  2809098 - ETPRO MOBILE_MALWARE Android/TheftSpy.C Checkin 2
(mobile_malware.rules)
  2809107 - ETPRO TROJAN Win32/Spy.Banker.ABCO Checkin (trojan.rules)
  2809124 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmForw.aj Checkin
(mobile_malware.rules)

[---]  Disabled and modified rules:  [---]

  2018081 - ET TROJAN W32/Zeus.InfoStealer Infection Campaign Kia.exe
Request (trojan.rules)
  2018384 - ET TROJAN Zeus.Downloader Campaign Unknown Initial CnC Beacon
10/4/2014 (trojan.rules)
  2018579 - ET TROJAN Dyreza RAT Checkin (trojan.rules)
  2018641 - ET TROJAN BANKER.WIN32.BANBRA.BEEC Checkin (trojan.rules)
  2018687 - ET TROJAN Win32/Aibatook checkin 2 (trojan.rules)
  2018739 - ET TROJAN Kuluoz / Asprox checkin (trojan.rules)
  2018763 - ET TROJAN Win.Trojan.Agent-29225 Checkin (trojan.rules)
  2018769 - ET MOBILE_MALWARE Android ScarePakage checkin
(mobile_malware.rules)
  2018774 - ET MOBILE_MALWARE Android ScarePakage checkin 2
(mobile_malware.rules)
  2018781 - ET MOBILE_MALWARE AndroidOS.Simplocker Checkin
(mobile_malware.rules)
  2018884 - ET TROJAN Troj/ReRol.A Checkin 4 (trojan.rules)
  2018901 - ET TROJAN  BITTERBUG Checkin 2 (trojan.rules)
  2018949 - ET TROJAN Win32/PSW.Steam.NBP Checkin (trojan.rules)
  2018962 - ET TROJAN ZeroLocker Activity (trojan.rules)
  2018994 - ET TROJAN Win32/Xema dropping file (trojan.rules)
  2019125 - ET MOBILE_MALWARE Android/Youmi.Adware Install Report CnC
Beacon (mobile_malware.rules)
  2019160 - ET TROJAN DecebalPOS Checkin (trojan.rules)
  2019174 - ET MOBILE_MALWARE iOS/AppBuyer Checkin 1 (mobile_malware.rules)
  2019175 - ET MOBILE_MALWARE iOS/AppBuyer Checkin 2 (mobile_malware.rules)
  2019179 - ET TROJAN MSIL/Spy.RapidStealer.B Checkin (trojan.rules)
  2019243 - ET TROJAN Infostealer.Boleteiro checking stolen boleto payment
information (trojan.rules)
  2019355 - ET TROJAN W32/SpyClicker.ClickFraud CnC Beacon (trojan.rules)
  2019607 - ET TROJAN CryptoBot Downloading Files (trojan.rules)
  2019636 - ET TROJAN Backoff Variant Checkin (trojan.rules)
  2806159 - ETPRO MOBILE_MALWARE AndroidOS_Adrd.VTD Checkin 2
(mobile_malware.rules)
  2806259 - ETPRO MOBILE_MALWARE Android/Joye.A Checkin
(mobile_malware.rules)
  2806667 - ETPRO TROJAN Win32.Jorik.Agent.mi 2 (trojan.rules)
  2806877 - ETPRO MOBILE_MALWARE Android/TheftSpy.C Checkin
(mobile_malware.rules)
  2807014 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.eh Checkin
(mobile_malware.rules)
  2807040 - ETPRO MOBILE_MALWARE Andr/DroidRt-A Checkin
(mobile_malware.rules)
  2807716 - ETPRO MOBILE_MALWARE AndroidOS/Sumzand.A Checkin
(mobile_malware.rules)
  2807984 - ETPRO TROJAN Trojan.Win32.Iframer.a Checkin (trojan.rules)
  2808178 - ETPRO MOBILE_MALWARE Android.Monitor.Spyera.A Checkin
(mobile_malware.rules)
  2808252 - ETPRO TROJAN W32.Injector.13824.C config update pull
(trojan.rules)
  2808265 - ETPRO TROJAN Trojan.Win32.FrauDrop.dbnyoz Checkin 2
(trojan.rules)
  2808286 - ETPRO TROJAN Passwrd Stealer Win32/Zediv.A Checkin
(trojan.rules)
  2808306 - ETPRO TROJAN Virus.Win32.Virut.ce Checkin 7 (trojan.rules)
  2808308 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Elpso.a Checkin
(mobile_malware.rules)
  2808321 - ETPRO TROJAN Backdoor.Win32.Androm Download 1 (trojan.rules)
  2808322 - ETPRO TROJAN Backdoor.Win32.Androm Download 2 (trojan.rules)
  2808326 - ETPRO TROJAN Trojan.Win32.Scar.hypv Checkin (trojan.rules)
  2808346 - ETPRO TROJAN CT RAT (trojan.rules)
  2808350 - ETPRO MOBILE_MALWARE Android.Trojan.Voxv.A Checkin 3
(mobile_malware.rules)
  2808353 - ETPRO MOBILE_MALWARE Android.Trojan.FakeBank.I Checkin
(mobile_malware.rules)
  2808374 - ETPRO MOBILE_MALWARE Android.Trojan.InfoStealer.CM Checkin
(mobile_malware.rules)
  2808376 - ETPRO MOBILE_MALWARE Android.Trojan.SMSSend.RZ Checkin 2
(mobile_malware.rules)
  2808377 - ETPRO MOBILE_MALWARE Android.Trojan.SMSSend.IA Checkin
(mobile_malware.rules)
  2808407 - ETPRO MOBILE_MALWARE Android.Trojan.FakeInst.BX Checkin 2
(mobile_malware.rules)
  2808409 - ETPRO MOBILE_MALWARE Android.Riskware.SmsPay.D Checkin
(mobile_malware.rules)
  2808417 - ETPRO MOBILE_MALWARE Android.Trojan.BaseBridge.A Checkin
(mobile_malware.rules)
  2808466 - ETPRO MOBILE_MALWARE AndroidOS/FakePlayer.A Checkin
(mobile_malware.rules)
  2808479 - ETPRO TROJAN Trojan.Win32.Autoit.dbiolu Checkin (trojan.rules)
  2808487 - ETPRO MOBILE_MALWARE Worm.AndroidOS.Samsapo Checkin
(mobile_malware.rules)
  2808494 - ETPRO MOBILE_MALWARE Android.Gumen.A Checkin
(mobile_malware.rules)
  2808513 - ETPRO MOBILE_MALWARE Android/SmsSpy.AS Checkin 2
(mobile_malware.rules)
  2808521 - ETPRO MOBILE_MALWARE Trojan-Ransom.AndroidOS.Aples.a Checkin
(mobile_malware.rules)
  2808523 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Ssucl.a Checkin
(mobile_malware.rules)
  2808524 - ETPRO MOBILE_MALWARE Android.Trojan.Gfs.A Checkin
(mobile_malware.rules)
  2808530 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Univert.a Checkin
(mobile_malware.rules)
  2808531 - ETPRO TROJAN Trojan-Downloader.Autoit.gen Checkin 2
(trojan.rules)
  2808535 - ETPRO TROJAN Win32.Symmi.dagurw Checkin (trojan.rules)
  2808553 - ETPRO MOBILE_MALWARE Android.Monitor.SMSUploader.A Checkin
(mobile_malware.rules)
  2808556 - ETPRO MOBILE_MALWARE Trojan-Ransom.AndroidOS.Cokri.a Checkin
(mobile_malware.rules)
  2808557 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Waller.a Checkin
(mobile_malware.rules)
  2808559 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Funtasy.a Checkin
(mobile_malware.rules)
  2808561 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Stealer.a Checkin 2
(mobile_malware.rules)
  2808562 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.Recal.a Checkin 2
(mobile_malware.rules)
  2808563 - ETPRO MOBILE_MALWARE Android/TrojanSMS.Agent.AHB Checkin
(mobile_malware.rules)
  2808583 - ETPRO MOBILE_MALWARE Android.Gabas.A Checkin
(mobile_malware.rules)
  2808589 - ETPRO MOBILE_MALWARE Android/Maver.A Checkin
(mobile_malware.rules)
  2808596 - ETPRO TROJAN Win32/Tiny.o Checkin (trojan.rules)
  2808606 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Wirec.a Checkin
(mobile_malware.rules)
  2808607 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Wirec.a Checkin 2
(mobile_malware.rules)
  2808615 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.MTK.d Checkin
(mobile_malware.rules)
  2808616 - ETPRO MOBILE_MALWARE Android/SMSreg.HS Checkin
(mobile_malware.rules)
  2808641 - ETPRO TROJAN W32/Badur.ZYP Checkin (trojan.rules)
  2808647 - ETPRO TROJAN Backdoor.Win32.Stantinko.A Checkin (trojan.rules)
  2808648 - ETPRO TROJAN Backdoor.Win32.Stantinko.A Checkin 2 (trojan.rules)
  2808652 - ETPRO TROJAN TROJAN-DROPPER.WIN32.DINWOD.SIL Checkin
(trojan.rules)
  2808673 - ETPRO MOBILE_MALWARE Android/Spyoo.I Checkin
(mobile_malware.rules)
  2808684 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Talp.a Checkin
(mobile_malware.rules)
  2808699 - ETPRO TROJAN Win32/KFTC.Downloader Checkin (trojan.rules)
  2808700 - ETPRO TROJAN Win32/KFTC.Downloader Checkin 2 (trojan.rules)
  2808705 - ETPRO MOBILE_MALWARE Android/SmsSpy.AH Checkin
(mobile_malware.rules)
  2808708 - ETPRO TROJAN Win32.Farfli Requesting data 2 (trojan.rules)
  2808720 - ETPRO MOBILE_MALWARE Android/Univert.B Checkin
(mobile_malware.rules)
  2808722 - ETPRO MOBILE_MALWARE Android/Tekwon.A Checkin 3
(mobile_malware.rules)
  2808724 - ETPRO MOBILE_MALWARE Android/Crosate.D Checkin
(mobile_malware.rules)
  2808725 - ETPRO MOBILE_MALWARE Android/Crosate.D Checkin 2
(mobile_malware.rules)
  2808747 - ETPRO MOBILE_MALWARE Android/Tekwon.A Checkin 4
(mobile_malware.rules)
  2808752 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.MTK.e Checkin
(mobile_malware.rules)
  2808769 - ETPRO TROJAN Backdoor.Win32.Androm Requesting payload 2
(trojan.rules)
  2808770 - ETPRO TROJAN Backdoor.Win32.Androm Requesting payload
(trojan.rules)
  2808773 - ETPRO MOBILE_MALWARE Android/Koler.B Checkin
(mobile_malware.rules)
  2808777 - ETPRO MOBILE_MALWARE Android.Svpeng.D Checkin
(mobile_malware.rules)
  2808784 - ETPRO MOBILE_MALWARE Android/TrojanSMS.Hippo.Q Checkin
(mobile_malware.rules)
  2808785 - ETPRO MOBILE_MALWARE RiskTool.AndroidOS.SMSreg.dc Checkin
(mobile_malware.rules)
  2808802 - ETPRO MOBILE_MALWARE RiskTool.AndroidOS.Zedat.a Checkin
(mobile_malware.rules)
  2808806 - ETPRO MOBILE_MALWARE Android/FakeDefender.A Checkin
(mobile_malware.rules)
  2808820 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.aq Checkin
(mobile_malware.rules)
  2808822 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.a Checkin 4
(mobile_malware.rules)
  2808842 - ETPRO MOBILE_MALWARE Android/Agent.FP Checkin
(mobile_malware.rules)
  2808843 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.kh Checkin 2
(mobile_malware.rules)
  2808846 - ETPRO TROJAN Win32.Banload Variant Checkin (trojan.rules)
  2808857 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.a Checkin 5
(mobile_malware.rules)
  2808882 - ETPRO MOBILE_MALWARE Android.Trojan.AutoSMS.BF Checkin
(mobile_malware.rules)
  2808889 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Masnu.a Checkin
(mobile_malware.rules)
  2808895 - ETPRO MOBILE_MALWARE Android.Trojan.Magwei.A Checkin 2
(mobile_malware.rules)
  2808897 - ETPRO MOBILE_MALWARE AndroidOS.Ifacefone.A Checkin
(mobile_malware.rules)
  2808910 - ETPRO TROJAN Trojan-Spy.MSIL.KeyLogger.babx Checkin
(trojan.rules)
  2808938 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Koler.d Checkin
(mobile_malware.rules)
  2808953 - ETPRO MOBILE_MALWARE Android.Trojan.FakeInst.DU Checkin
(mobile_malware.rules)
  2808954 - ETPRO MOBILE_MALWARE AndroidOS.GoldDream.U Checkin
(mobile_malware.rules)
  2808955 - ETPRO MOBILE_MALWARE Android/Ksapp.L Checkin
(mobile_malware.rules)
  2808956 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Helir.f Checkin
(mobile_malware.rules)
  2808961 - ETPRO TROJAN Mal/Emogen-R Checkin (trojan.rules)
  2808962 - ETPRO MOBILE_MALWARE Android/Pholoc.C Checkin
(mobile_malware.rules)
  2808963 - ETPRO MOBILE_MALWARE Android/Pholoc.C Checkin 2
(mobile_malware.rules)
  2808967 - ETPRO MOBILE_MALWARE Android/Spyinfo.A Checkin
(mobile_malware.rules)
  2808968 - ETPRO MOBILE_MALWARE Android/Spyinfo.A Checkin 2
(mobile_malware.rules)
  2808971 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Carej.b Checkin 2
(mobile_malware.rules)
  2808973 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.Agent.bo Checkin
(mobile_malware.rules)
  2808978 - ETPRO MOBILE_MALWARE Android/Selfmite.A Checkin 2
(mobile_malware.rules)
  2809008 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.op Checkin
(mobile_malware.rules)
  2809010 - ETPRO MOBILE_MALWARE Backdoor.AndroidOS.Zerat.a / DroidJack RAT
Checkin (mobile_malware.rules)
  2809020 - ETPRO TROJAN RDN/Spybot.bfr (trojan.rules)
  2809027 - ETPRO MOBILE_MALWARE Android.Fjcon.B Checkin
(mobile_malware.rules)
  2809028 - ETPRO MOBILE_MALWARE Trojan-Downloader.AndroidOS.Fsm.b Checkin
(mobile_malware.rules)
  2809059 - ETPRO TROJAN Spider Keylogger Checkin HTTP (trojan.rules)
  2809061 - ETPRO MOBILE_MALWARE Trojan-Spy.AndroidOS.SmForw.eg Checkin
(mobile_malware.rules)
  2809072 - ETPRO TROJAN Win32.RShot Checkin (trojan.rules)
  2809104 - ETPRO TROJAN HACKTOOL.WIN32.BRUTEFORCE.PRS Checkin 2
(trojan.rules)
  2809105 - ETPRO TROJAN HACKTOOL.WIN32.BRUTEFORCE.PRS Checkin
(trojan.rules)
  2809115 - ETPRO MOBILE_MALWARE Android/Spy.Agent.DF Checkin 2
(mobile_malware.rules)
  2809116 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.Agent.qe Checkin
(mobile_malware.rules)
  2809120 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.a Checkin 6
(mobile_malware.rules)
  2809121 - ETPRO MOBILE_MALWARE Trojan-SMS.AndroidOS.FakeInst.a Checkin 7
(mobile_malware.rules)
  2809122 - ETPRO MOBILE_MALWARE Android/Spy.SmsSpy.N Checkin
(mobile_malware.rules)

[---]         Disabled rules:        [---]

  2828734 - ETPRO TROJAN Powerstats C2 (trojan.rules)

Date:
Summary title:
1 new OPEN, 15 new PRO (1 + 14). Win32/Predator Variant, ELF/Gafygt Variant, Unicorn Stealer, Various SSL, Coinminers, VARIOUS PHISH.