[Emerging-updates] Daily Ruleset Update Summary 2019/03/15

James Emery-Callcott jcallcott at emergingthreats.net
Fri Mar 15 13:35:47 HDT 2019


[***]            Summary:            [***]

  16 new Pro.  Win32/Emotet, Ololosher SQL Injection, Various Phish.

[+++]          Added rules:          [+++]

  2835386 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 1) (trojan.rules)
  2835387 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 2) (trojan.rules)
  2835388 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 3) (trojan.rules)
  2835389 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 4) (trojan.rules)
  2835390 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 5) (trojan.rules)
  2835391 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 6) (trojan.rules)
  2835392 - ETPRO TROJAN CoinMiner Known Malicious Stratum Authline
(2019-03-15 7) (trojan.rules)
  2835393 - ETPRO CURRENT_EVENTS Successful Apple Credit Card Information
Phish 2019-03-15 (current_events.rules)
  2835394 - ETPRO CURRENT_EVENTS Successful Bank of America Phish
2019-03-15 (current_events.rules)
  2835395 - ETPRO CURRENT_EVENTS Successful Paypal Phish 2019-03-15
(current_events.rules)
  2835396 - ETPRO CURRENT_EVENTS Successful Kraken Phish 2019-03-15
(current_events.rules)
  2835397 - ETPRO CURRENT_EVENTS Successful Adobe Phish 2019-03-15
(current_events.rules)
  2835398 - ETPRO CURRENT_EVENTS Successful Dropbox Business Phish
2019-03-15 (current_events.rules)
  2835399 - ETPRO CURRENT_EVENTS Successful Generic Credit Card Information
Phish 2019-03-15 (current_events.rules)
  2835400 - ETPRO TROJAN Win32/Emotet CnC Checkin (POST) M2 (trojan.rules)
  2835401 - ETPRO SCAN Ololosher SQL Injection Scanning with URI Constant
(scan.rules)

[///]     Modified active rules:     [///]

  2019181 - ET CURRENT_EVENTS Possible Android CVE-2014-6041
(current_events.rules)
  2020397 - ET CURRENT_EVENTS Possible Android CVE-2014-6041
(current_events.rules)
  2020398 - ET CURRENT_EVENTS Possible Android CVE-2014-6041
(current_events.rules)
  2835385 - ETPRO CURRENT_EVENTS Successful RedButton Phish 2019-03-14
(current_events.rules)


---------------------------------------

James Emery-Callcott
Security Researcher | ProofPoint Inc | Emerging Threats Team
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.emergingthreats.net/pipermail/emerging-updates/attachments/20190315/98d2029a/attachment.html>


More information about the Emerging-updates mailing list