번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) |
23,511 | 2016/09/02 | 2023145 | ET CURRENT_EVENTS CVE-2014-6332 Sep 01 2016 (HFS Actor) M1; |
23,510 | 2016/09/02 | 2023144 | ET TROJAN AgentTesla PWS HTTP CnC Checkin; |
23,509 | 2016/09/02 | 2023146 | ET CURRENT_EVENTS CVE-2014-6332 Sep 01 2016 (HFS Actor) M2; |
23,508 | 2016/09/02 | 2023142 | ET TROJAN TorrentLocker DNS Lookup (bigcrashcar.net); [1] |
23,507 | 2016/09/02 | 2023143 | ET WEB_SERVER AnonGhost PHP Webshell; |
23,506 | 2016/09/02 | 2023147 | ET TROJAN Locky Ransomware Renaming File via SMB; |
23,505 | 2016/08/30 | 2023140 | ET EXPLOIT Possible Challack Tool in use; [1] |
23,504 | 2016/08/30 | 2023141 | ET EXPLOIT RST Flood With Window; [1] |
23,503 | 2016/08/27 | 2023137 | ET INFO Suspicious POST to .tk domain with Password; |
23,502 | 2016/08/27 | 2023134 | ET TROJAN Possible Pegasus/Trident Related HTTP Beacon 4; [1] |
23,501 | 2016/08/27 | 2023132 | ET TROJAN Possible Pegasus/Trident Related HTTP Beacon 2; [1] |
23,500 | 2016/08/27 | 2023136 | ET TROJAN Possible Pegasus/Trident Related HTTP Beacon 5; [1] |
23,499 | 2016/08/27 | 2023139 | ET INFO Form Data Submitted to yolasite.com - Possible Phishing; |
23,498 | 2016/08/27 | 2023138 | ET CURRENT_EVENTS Suspicious Proxifier DL (non-browser observed in maldoc campaigns); |
23,497 | 2016/08/27 | 2023131 | ET TROJAN Possible Pegasus/Trident Related HTTP Beacon 1; [1] |
23,496 | 2016/08/27 | 2023133 | ET TROJAN Possible Pegasus/Trident Related HTTP Beacon 3; [1] |
23,495 | 2016/08/26 | 2023092 | ET CURRENT_EVENTS Possible Google Drive Phishing Domain Aug 25 2016; |
23,494 | 2016/08/26 | 2023093 | ET TROJAN Possible Pegasus Related DNS Lookup (aalaan .tv); [1] |
23,493 | 2016/08/26 | 2023091 | ET TROJAN Backdoor.Win32.DarkComet Keepalive Outbound; |
23,492 | 2016/08/26 | 2023090 | ET TROJAN PNScan.2 CnC Beacon 2; [1,2] |
23,491 | 2016/08/26 | 2023085 | ET TROJAN R980/CRYPBEE.A Ransomware Activity; [1] |
23,490 | 2016/08/26 | 2023088 | ET TROJAN PNScan.2 Inbound Status Check Response; [1,2] |
23,489 | 2016/08/26 | 2023087 | ET TROJAN PNScan.2 Inbound Status Check - set; [1,2] |
23,488 | 2016/08/26 | 2023089 | ET TROJAN PNScan.2 CnC Beacon; [1,2] |
23,487 | 2016/08/26 | 2023086 | ET EXPLOIT CISCO FIREWALL SNMP Buffer Overflow Extrabacon (CVE-2016-6366); |
23,486 | 2016/08/25 | 2023084 | ET TROJAN Ransomware Locky .onion Payment Domain (5n7y4yihirccftc5); |
23,485 | 2016/08/24 | 2023083 | ET TROJAN Alfa/Alpha Ransomware Checkin; [1] |
23,484 | 2016/08/21 | 2023081 | ET TROJAN Curso Banker.BR Checkin; |
23,483 | 2016/08/21 | 2023082 | ET TROJAN Curso Banker Downloading Modules; |
23,482 | 2016/08/20 | 2023077 | ET TROJAN Aveo C2 Response; [1] |
23,481 | 2016/08/20 | 2023078 | ET TROJAN Aveo C2 Request; [1] |
23,480 | 2016/08/20 | 2023080 | ET CURRENT_EVENTS Fake Mobile Virus Scam M2 Aug 18 2016; |
23,479 | 2016/08/20 | 2023076 | ET TROJAN Aveo Checkin; [1] |
23,478 | 2016/08/20 | 2023079 | ET CURRENT_EVENTS Fake Mobile Virus Scam M1 Aug 18 2016; |
23,477 | 2016/08/18 | 2023069 | ET CURRENT_EVENTS SMS Fake Mobile Virus Scam Aug 16 2016; |
23,476 | 2016/08/18 | 2023072 | ET CURRENT_EVENTS Successful Netflix Phish Aug 17 2016; |
23,475 | 2016/08/18 | 2023070 | ET EXPLOIT Equation Group ExtraBacon Cisco ASA PMCHECK Disable; [1] |
23,474 | 2016/08/18 | 2023074 | ET CURRENT_EVENTS Evil Redirect Leading to EK Aug 17 2016; |
23,473 | 2016/08/18 | 2023067 | ET INFO Symantec Download Flowbit Set; |
23,472 | 2016/08/18 | 2023073 | ET CURRENT_EVENTS Netflix Phishing Landing Aug 17 2016; |
23,471 | 2016/08/17 | 2023064 | ET CURRENT_EVENTS Successful Credit Agricole Phish Aug 15 2016 M2; |
23,470 | 2016/08/17 | 2023065 | ET CURRENT_EVENTS Possible Square Enix Phishing Domain Aug 15 2016; |
23,469 | 2016/08/17 | 2023060 | ET TROJAN DarkHotel DNS Lookup (apply.ebizx.net); [1] |
23,468 | 2016/08/17 | 2023066 | ET CURRENT_EVENTS Possible Bank of America Phishing Domain Aug 15 2016; |
23,467 | 2016/08/17 | 2023062 | ET CURRENT_EVENTS Email Storage Upgrade Phishing Landing Aug 15 2016; |
23,466 | 2016/08/17 | 2023061 | ET CURRENT_EVENTS Successful Excel Phish Aug 15 2016; |
23,465 | 2016/08/17 | 2023059 | ET TROJAN DarkHotel DNS Lookup (apply-wsu.ebizx.net); [1] |
23,464 | 2016/08/17 | 2023063 | ET CURRENT_EVENTS Successful Credit Agricole Phish Aug 15 2016 M1; |
23,463 | 2016/08/14 | 2023053 | ET DOS DNS Amplification Attack Possible Inbound Windows Non-Recursive Root Hint Reserved Port; [1,2] |
23,462 | 2016/08/14 | 2023054 | ET DOS DNS Amplification Attack Possible Outbound Windows Non-Recursive Root Hint Reserved Port; [1,2] |
< 71 72 73 74 75 76 77 78 79 80 > |