[***] Summary: [***]
1 new OPEN, 8 new PRO (1 + 7) Netgear DGN RCE,
Win32/SimonsKeylogger, Gamaredon and various CoinMiners
We're hiring! https://t.co/rqnzCGdo7B
Please share issues, feedback, and requests at
https://feedback.emergingthreats.net/feedback
[+++] Added rules: [+++]
Open:
2034576 - ET EXPLOIT Netgear DGN Remote Code Execution (exploit.rules)
Pro:
2850618 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2021-12-01 1) (trojan.rules)
2850619 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2021-12-01 2) (trojan.rules)
2850620 - ETPRO TROJAN Win32/SimonsKeylogger CnC Activity (trojan.rules)
2850621 - ETPRO TROJAN Gamaredon Related Maldoc Activity (GET) (trojan.rules)
2850622 - ETPRO CURRENT_EVENTS Banca Monte dei Paschi di Siena Phish
Landing 2021-12-02 (current_events.rules)
2850623 - ETPRO CURRENT_EVENTS Successful Generic Phish 2021-12-02
(current_events.rules)
2850624 - ETPRO CURRENT_EVENTS Possible Generic Phish Redirect
2021-12-02 (current_events.rules)
[///] Modified active rules: [///]
2034467 - ET TROJAN Matanbuchus Loader CnC M2 (trojan.rules)
2837751 - ETPRO MALWARE Win32/Adposhel Adware Activity (malware.rules)