[Emerging-updates] Daily Ruleset Update Summary 08/02/2013

Will Metcalf wmetcalf at emergingthreatspro.com
Fri Aug 2 16:20:42 HADT 2013


[***]          Summary:          [***]

4 new Open rules. 11 new Pro rules (4/7). Updates for various Exploit Kits,
etc.

[+++]          Added rules:          [+++]

  Open:
  2017270 - ET CURRENT_EVENTS Styx Exploit Kit Landing Applet With Payload Aug
02 2013 (current_events.rules)
  2017271 - ET CURRENT_EVENTS Plugin-Detect with global % replace on
unescaped string (Sakura) (current_events.rules)
  2017272 - ET CURRENT_EVENTS Rawin EK Java (Old) /golem.jar
(current_events.rules)
  2017273 - ET CURRENT_EVENTS Rawin EK Java 1.7 /caramel.jar
(current_events.rules)

  Pro:
  2806767 - ETPRO TROJAN Win32/Mosucker.0_7 (trojan.rules)
  2806768 - ETPRO TROJAN Unknown Trojan Checkin (trojan.rules)
  2806769 - ETPRO TROJAN Trojan-Ransom.Win32.CryFile.zc /
Win32/Filecoder.BF Checkin (trojan.rules)
  2806770 - ETPRO TROJAN BScope.Trojan.Banker Checkin 2 (trojan.rules)
  2806771 - ETPRO TROJAN
Trojan-Proxy.Win32.Agent.co<http://trojan-proxy.win32.agent.co/>
Checkin
(trojan.rules)
  2806772 - ETPRO TROJAN Packer.Win32.Agent.bk Checkin (trojan.rules)
  2806773 - ETPRO TROJAN Trojan.Killav-108 (trojan.rules)


 [///]     Modified active rules:     [///]

  2016129 - ET CURRENT_EVENTS Unknown_gmf/Styx EK - fnts.html
 (current_events.rules)
  2017100 - ET CURRENT_EVENTS /Styx EK - /jlnp.html (current_events.rules)
  2017101 - ET CURRENT_EVENTS /Styx EK - /jovf.html (current_events.rules)
  2017102 - ET CURRENT_EVENTS /Styx EK - /jorg.html (current_events.rules)
  2017115 - ET CURRENT_EVENTS Sweet Orange applet July 08 2013
(current_events.rules)

 [---]         Removed rules:         [---]

  2016066 - ET CURRENT_EVENTS CoolEK - Landing Page (2)
(current_events.rules)
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.emergingthreats.net/pipermail/emerging-updates/attachments/20130802/7fb0d8c1/attachment.html>


More information about the Emerging-updates mailing list