[***] Summary: [***]

2 new OPEN, 32 new PRO (2 +
30). Ousaban, Script/Woreflint.A!cl, DTLoader,
W32/GhostCloud, W32/Filecoder Variant, CoinMiners, VARIOUS PHISH.

Please share issues, feedback, and requests at
https://feedback.emergingthreats.net/feedback

[+++] Added rules: [+++]

Open:

2032355 - ET INFO Request for EXE via GO HTTP Client (info.rules)
2032356 - ET TROJAN Ousaban Related Maldoc Activity (trojan.rules)

Pro:

2847913 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Jocker.de
<http://trojan.androidos.jocker.de/&gt; Checkin (mobile_malware.rules)
2847914 - ETPRO MOBILE_MALWARE Trojan.AndroidOS.Boogr.C CnC Beacon
(mobile_malware.rules)
2847915 - ETPRO TROJAN Script/Woreflint.A!cl CnC Checkin (trojan.rules)
2847916 - ETPRO TROJAN DTLoader Obfuscated HTML Payload Inbound
(trojan.rules)
2847917 - ETPRO TROJAN Observed Malicious SSL Cert (AsyncRAT)
(trojan.rules)
2847918 - ETPRO TROJAN Observed Malicious SSL Cert (AsyncRAT)
(trojan.rules)
2847919 - ETPRO CURRENT_EVENTS Successful Banco de Brasil Phish
2021-03-31 (current_events.rules)
2847920 - ETPRO CURRENT_EVENTS Successful Banco de Brasil Phish
2021-03-31 (current_events.rules)
2847921 - ETPRO CURRENT_EVENTS Successful Instagram Phish 2021-03-31
(current_events.rules)
2847922 - ETPRO CURRENT_EVENTS Successful Generic Spox Phish 2021-03-31
(current_events.rules)
2847923 - ETPRO CURRENT_EVENTS Successful Microsoft Account Phish
2021-03-31 (current_events.rules)
2847924 - ETPRO CURRENT_EVENTS Successful Banque Nationale Phish
2021-03-31 (current_events.rules)
2847925 - ETPRO CURRENT_EVENTS Successful Santander Phish 2021-03-31
(current_events.rules)
2847926 - ETPRO CURRENT_EVENTS Successful Microsoft Account Phish
2021-03-31 (current_events.rules)
2847927 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2021-03-31 1) (trojan.rules)
2847928 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2021-03-31 2) (trojan.rules)
2847929 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2021-03-31 3) (trojan.rules)
2847930 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2021-03-31 4) (trojan.rules)
2847931 - ETPRO TROJAN W32/GhostCloud CnC Activity (trojan.rules)
2847932 - ETPRO TROJAN Win32/Injector.ELYP Variant CnC Activity
(trojan.rules)
2847933 - ETPRO TROJAN Win32/Injector.FUT Variant CnC Activity
(trojan.rules)
2847934 - ETPRO TROJAN Win32/Agent.AAVW CnC Activity (trojan.rules)
2847935 - ETPRO TROJAN Win32/Spy.Agent.QCJ Variant CnC Activity
(trojan.rules)
2847936 - ETPRO TROJAN MSIL/Spy.Agent.CVT Variant CnC Activity
(trojan.rules)
2847937 - ETPRO TROJAN W32/Filecoder Variant CnC Activity (trojan.rules)
2847938 - ETPRO TROJAN Win32/Remcos RAT Checkin 699 (trojan.rules)
2847939 - ETPRO TROJAN Win32/Remcos RAT Checkin 700 (trojan.rules)
2847940 - ETPRO TROJAN DTLoader Activity (trojan.rules)
2847941 - ETPRO USER_AGENTS Observed Malicious User-Agent
(user_agents.rules)
2847942 - ETPRO TROJAN Valyria Maldoc Activity (GET) (trojan.rules)

[///] Modified active rules: [///]

2032343 - ET TROJAN Valyria Maldoc Activity (GET) (trojan.rules)

Date:
Summary title:
2 new OPEN, 32 new PRO (2 + 30). Ousaban, Script/Woreflint.A!cl, DTLoader, W32/GhostCloud, W32/Filecoder Variant, CoinMiners, VARIOUS PHISH.