번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) |
14,811 | 2015/01/20 | 2017712 | ET EXPLOIT Microsoft Outlook/Crypto API X.509 oid id-pe-authorityInfoAccessSyntax design bug allow blind HTTP requests attempt; [1,2] |
14,810 | 2015/01/20 | 2017711 | ET CURRENT_EVENTS Possible Fake Codec Download; |
14,809 | 2015/01/20 | 2017710 | ET TROJAN Bamital checkin; |
14,808 | 2015/01/20 | 2017709 | ET WEB_CLIENT Possible IE 0day CVE-2013-3918 4; [1] |
14,807 | 2015/01/20 | 2017708 | ET WEB_CLIENT Possible IE 0day CVE-2013-3918 3; [1] |
14,806 | 2015/01/20 | 2017707 | ET TROJAN Backdoor family PCRat/Gh0st CnC traffic (OUTBOUND) 4; [1,2] |
14,805 | 2015/01/20 | 2017706 | ET CURRENT_EVENTS Possible Sweet Orange IE Payload Request; |
14,804 | 2015/01/20 | 2017705 | ET WEB_CLIENT Possible IE 0day CVE-2013-3918 2; [1] |
14,803 | 2015/01/20 | 2017704 | ET WEB_CLIENT Possible IE 0day CVE-2013-3918 1; [1] |
14,802 | 2015/01/20 | 2017703 | ET CURRENT_EVENTS Angler EK Possible Flash/IE Payload; |
14,801 | 2015/01/20 | 2017702 | ET TROJAN Possible Trojan.APT.9002 POST; [1] |
14,800 | 2015/01/20 | 2017701 | ET CURRENT_EVENTS webr00t WebShell Access; [1] |
14,799 | 2015/01/20 | 2017700 | ET TROJAN Possible Stitur Secondary Download; |
14,798 | 2015/01/20 | 2017699 | ET CURRENT_EVENTS Grandsoft/SofosFO EK PDF URI Struct; |
14,797 | 2015/01/20 | 2017698 | ET CURRENT_EVENTS Magnitude Landing Nov 11 2013; |
14,796 | 2015/01/20 | 2017697 | ET TROJAN FaceBook IM & Web Driven Facebook Trojan Posting Data; [1] |
14,795 | 2015/01/20 | 2017696 | ET CURRENT_EVENTS FaceBook IM & Web Driven Facebook Trojan Download; [1] |
14,794 | 2015/01/20 | 2017695 | ET CURRENT_EVENTS Possible Angler EK Flash Exploit; |
14,793 | 2015/01/20 | 2017694 | ET CURRENT_EVENTS Possible Magnitude IE EK Payload Nov 8 2013; |
14,792 | 2015/01/20 | 2017693 | ET CURRENT_EVENTS Styx iframe with obfuscated CVE-2013-2551; |
14,791 | 2015/01/20 | 2017691 | ET TROJAN W32/Citadel.Arx Varient CnC Beacon 2; [1,2] |
14,790 | 2015/01/20 | 2017690 | ET TROJAN W32/Citadel.Arx Variant CnC Beacon 1; [1,2] |
14,789 | 2015/01/20 | 2017689 | ET TROJAN Possible Schneebly Posting ScreenShot; [1] |
14,788 | 2015/01/20 | 2017688 | ET WEB_SERVER Possible SUPERMICRO IPMI url_redirect.cgi Directory Traversal Attempt; [1] |
14,787 | 2015/01/20 | 2017687 | ET WEB_SERVER Possible SUPERMICRO IPMI close_window.cgi ACT Parameter Buffer Overflow Attempt CVE-2013-3623; [1] |
14,786 | 2015/01/20 | 2017686 | ET WEB_SERVER Possible SUPERMICRO IPMI close_window.cgi sess_sid Parameter Buffer Overflow Attempt CVE-2013-3623; [1] |
14,785 | 2015/01/20 | 2017685 | ET WEB_SERVER Possible SUPERMICRO IPMI login.cgi PWD Parameter Buffer Overflow Attempt CVE-2013-3621; [1] |
14,784 | 2015/01/20 | 2017684 | ET WEB_SERVER Possible SUPERMICRO IPMI login.cgi Name Parameter Buffer Overflow Attempt CVE-2013-3621; [1] |
14,783 | 2015/01/20 | 2017683 | ET CURRENT_EVENTS SUSPICIOUS winhosts.exe in URI Probable Process Dump/Trojan Download; [1] |
14,782 | 2015/01/20 | 2017682 | ET CURRENT_EVENTS SUSPICIOUS mssrs.exe in URI Probable Process Dump/Trojan Download; [1] |
14,781 | 2015/01/20 | 2017681 | ET CURRENT_EVENTS SUSPICIOUS alg.exe in URI Probable Process Dump/Trojan Download; [1] |
14,780 | 2015/01/20 | 2017680 | ET CURRENT_EVENTS SUSPICIOUS waulct.exe in URI Probable Process Dump/Trojan Download; [1] |
14,779 | 2015/01/20 | 2017679 | ET CURRENT_EVENTS SUSPICIOUS winlog.exe in URI Probable Process Dump/Trojan Download; [1] |
14,778 | 2015/01/20 | 2017678 | ET DELETED SUSPICIOUS lgfxsrvc.exe in URI Probable Process Dump/Trojan Download; |
14,777 | 2015/01/20 | 2017677 | ET CURRENT_EVENTS SUSPICIOUS wimhost.exe in URI Probable Process Dump/Trojan Download; [1] |
14,776 | 2015/01/20 | 2017676 | ET CURRENT_EVENTS SUSPICIOUS lgfxsrvc.exe in URI Probable Process Dump/Trojan Download; |
14,775 | 2015/01/20 | 2017675 | ET CURRENT_EVENTS SUSPICIOUS connhost.exe in URI Probable Process Dump/Trojan Download; [1] |
14,774 | 2015/01/20 | 2017674 | ET CURRENT_EVENTS SUSPICIOUS wsqmocn.exe in URI Probable Process Dump/Trojan Download; [1] |
14,773 | 2015/01/20 | 2017673 | ET CURRENT_EVENTS SUSPICIOUS taskmgr.exe in URI Probable Process Dump/Trojan Download; [1] |
14,772 | 2015/01/20 | 2017672 | ET CURRENT_EVENTS SUSPICIOUS msctcd.exe in URI Probable Process Dump/Trojan Download; [1] |
14,771 | 2015/01/20 | 2017671 | ET CURRENT_EVENTS Possible CVE-2013-3906 CnC Checkin; [1] |
14,770 | 2015/01/20 | 2017670 | ET CURRENT_EVENTS SUSPICIOUS Word DOCX with Many ActiveX Objects and Media; [1] |
14,769 | 2015/01/20 | 2017669 | ET INFO Zip File; |
14,768 | 2015/01/20 | 2017668 | ET TROJAN Possible Backdoor.Adwind Download; [1] |
14,767 | 2015/01/20 | 2017667 | ET CURRENT_EVENTS Nuclear EK Payload URI Struct Nov 05 2013; |
14,766 | 2015/01/20 | 2017666 | ET CURRENT_EVENTS Nuclear EK JAR URI Struct Nov 05 2013; |
14,765 | 2015/01/20 | 2017665 | ET CURRENT_EVENTS Fredcot campaign IRC CnC; [1] |
14,764 | 2015/01/20 | 2017664 | ET CURRENT_EVENTS Fredcot campaign payload download; [1] |
14,763 | 2015/01/20 | 2017663 | ET CURRENT_EVENTS Fredcot campaign php5-cgi initial exploit; [1] |
14,762 | 2015/01/20 | 2017662 | ET TROJAN Known Sinkhole Response Header; |
< 241 242 243 244 245 246 247 248 249 250 > |