번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) |
15,361 | 2015/01/20 | 2018271 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,360 | 2015/01/20 | 2018270 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,359 | 2015/01/20 | 2018269 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,358 | 2015/01/20 | 2018268 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,357 | 2015/01/20 | 2018267 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,356 | 2015/01/20 | 2018266 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,355 | 2015/01/20 | 2018265 | ET TROJAN Perl/Calfbot C&C DNS request; [1,2] |
15,354 | 2015/01/20 | 2018264 | ET TROJAN Linux/Kimodin SSH backdoor activity; [1,2] |
15,353 | 2015/01/20 | 2018263 | ET CURRENT_EVENTS Dell Kace backdoor; [1] |
15,352 | 2015/01/20 | 2018262 | ET CURRENT_EVENTS DRIVEBY Nuclear EK IE Exploit CVE-2013-2551 March 12 2014; |
15,351 | 2015/01/20 | 2018261 | ET CURRENT_EVENTS DRIVEBY Nuclear EK Landing Page Mar 12 2014; |
15,350 | 2015/01/20 | 2018260 | ET CURRENT_EVENTS DRIVEBY Styx Landing Page Mar 08 2014; |
15,349 | 2015/01/20 | 2018259 | ET CURRENT_EVENTS DRIVEBY Nuclear EK CVE-2013-2551 URI Struct Nov 26 2013; |
15,348 | 2015/01/20 | 2018258 | ET CURRENT_EVENTS DRIVEBY Nuclear EK PDF URI Struct March 12 2014; |
15,347 | 2015/01/20 | 2018257 | ET CURRENT_EVENTS Gamut Spambot Checkin 2; [1] |
15,346 | 2015/01/20 | 2018256 | ET TROJAN TDLv4 SSL Cert; |
15,345 | 2015/01/20 | 2018255 | ET TROJAN Win32/Expiro.CD Check-in; |
15,344 | 2015/01/20 | 2018254 | ET TROJAN Possible Graftor EXE Download Common Header Order; |
15,343 | 2015/01/20 | 2018253 | ET TROJAN RDP Brute Force Bot Checkin; [1] |
15,342 | 2015/01/20 | 2018251 | ET DELETED Havex Rat Check-in URI Struct; |
15,341 | 2015/01/20 | 2018250 | ET TROJAN W32/PointOfSales.Misc CnC Activity; [1] |
15,340 | 2015/01/20 | 2018249 | ET TROJAN W32/PointOfSales.Misc CnC Beacon; [1] |
15,339 | 2015/01/20 | 2018248 | ET TROJAN Snake rootkit, usermode-centric encrypted command from server; [1] |
15,338 | 2015/01/20 | 2018247 | ET TROJAN Snake rootkit, usermode-centric client request; [1] |
15,337 | 2015/01/20 | 2018246 | ET CURRENT_EVENTS Gamut Spambot Checkin Response; [1] |
15,336 | 2015/01/20 | 2018245 | ET CURRENT_EVENTS Gamut Spambot Checkin; [1] |
15,335 | 2015/01/20 | 2018244 | ET TROJAN Havex RAT CnC Server Response HTML Tag; |
15,334 | 2015/01/20 | 2018243 | ET TROJAN Havex RAT CnC Server Response; |
15,333 | 2015/01/20 | 2018242 | ET TROJAN Possible Zeus GameOver Connectivity Check; |
15,332 | 2015/01/20 | 2018241 | ET TROJAN Possible Kelihos Infection Executable Download With Malformed Header; |
15,331 | 2015/01/20 | 2018240 | ET CURRENT_EVENTS Possible Safe/CritX/FlashPack Common Filename javarh.php; |
15,330 | 2015/01/20 | 2018239 | ET CURRENT_EVENTS Possible Safe/CritX/FlashPack Common Filename javaim.php; |
15,329 | 2015/01/20 | 2018238 | ET CURRENT_EVENTS Possible Safe/CritX/FlashPack Common Filename javadb.php; |
15,328 | 2015/01/20 | 2018237 | ET CURRENT_EVENTS CritX/SafePack/FlashPack SilverLight file as eot; |
15,327 | 2015/01/20 | 2018236 | ET CURRENT_EVENTS CritX/SafePack/FlashPack SilverLight Secondary Landing; |
15,326 | 2015/01/20 | 2018235 | ET CURRENT_EVENTS CritX/SafePack/FlashPack CVE-2013-2551; |
15,325 | 2015/01/20 | 2018234 | ET INFO JAR Sent Claiming To Be Text Content - Likely Exploit Kit; |
15,324 | 2015/01/20 | 2018233 | ET INFO JAR Sent Claiming To Be Image - Likely Exploit Kit; |
15,323 | 2015/01/20 | 2018232 | ET CURRENT_EVENTS Possible ZyXELs ZynOS Configuration Download Attempt (Contains Passwords); [1] |
15,322 | 2015/01/20 | 2018231 | ET INFO SUSPICIOUS .scr file download; |
15,321 | 2015/01/20 | 2018230 | ET TROJAN SMSHoax Riskware checkin; |
15,320 | 2015/01/20 | 2018229 | ET TROJAN Darkshell.A Checkin XOR C0 Win XP; |
15,319 | 2015/01/20 | 2018228 | ET TROJAN Possible PlugX Common Header Struct; [1,2,3,4] |
15,318 | 2015/01/20 | 2018227 | ET CURRENT_EVENTS Rawin Flash Landing URI Struct March 05 2014; |
15,317 | 2015/01/20 | 2018226 | ET CURRENT_EVENTS Possible Neutrino/Fiesta SilverLight Exploit March 05 2014 DLL Naming Convention; |
15,316 | 2015/01/20 | 2018225 | ET CURRENT_EVENTS Possible Fiesta Jar with four-letter class names; |
15,315 | 2015/01/20 | 2018224 | ET TROJAN Possible TorLocker Ransomware Downloading Tor; |
15,314 | 2015/01/20 | 2018223 | ET CURRENT_EVENTS SWF filename used in IE 2014-0322 Watering Hole Attacks; |
15,313 | 2015/01/20 | 2018222 | ET POLICY InstallIQ Updater Software request; |
15,312 | 2015/01/20 | 2018221 | ET INFO DYNAMIC_DNS HTTP Request to a *.ddns.name Domain; |
< 231 232 233 234 235 236 237 238 239 240 > |