sigs/CURRENT_EVENTS/

Individual rules are under Sigs, rulesets under Rules.

Current directory: [Emerging Threats] / sigs / CURRENT_EVENTS


File Rev. Age Author Last log entry
[BACK] Parent Directory        
[DIR] Attic/ [show]        
[TXT] CURRENT_Activation_Key_Trojan[GRAPH] 1.3 4 months fknobbe SID 2008539 2008552 2008554 2008555 2008773 2008774 2008775: Missed unescaped co...
[TXT] CURRENT_Adobe[GRAPH] 1.2 4 months fknobbe SIDs 2009112 2009113: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Airmail_Express[GRAPH] 1.4 4 months fknobbe SID 2008539 2008552 2008554 2008555 2008773 2008774 2008775: Missed unescaped co...
[TXT] CURRENT_Asprox[GRAPH] 1.9 2 weeks jonkman : past its useful life, getting false positives now
[TXT] CURRENT_Conficker[GRAPH] 1.19 2 months jonkman 2009205 2009206 2009207 2009208: Use the preproc or so rules in favor of those j...
[TXT] CURRENT_DNS_Poisoning[GRAPH] 1.22 3 months jonkman 2001709 2001899 2001900 2001993 2002043 2002312 2002845 2002848 2002852 2003182 ...
[TXT] CURRENT_DNS_dot[GRAPH] 1.3 4 months jonkman 2009030: up'd the threshold
[TXT] CURRENT_Danmec[GRAPH] 1.3 4 months fknobbe SIDs 2008530: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Ecards[GRAPH] 1.2 4 months fknobbe SIDs 2008528: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Email_Worms[GRAPH] 1.4 4 months fknobbe SID 2008539 2008552 2008554 2008555 2008773 2008774 2008775: Missed unescaped co...
[TXT] CURRENT_Facebook[GRAPH] 1.3 3 months fknobbe SIDs 2001621 2001810 2001621 2001751 2001810 2002129 2002130 2002131 2002132 200...
[TXT] CURRENT_Fake_MS_Update[GRAPH] 1.5 4 months fknobbe SIDs 2008646: Fixed escaped semicolons...(sigh)
[TXT] CURRENT_Flash[GRAPH] 1.4 4 months fknobbe SIDs 2008845: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Fordo[GRAPH] 1.4 4 months fknobbe SID 2008539 2008552 2008554 2008555 2008773 2008774 2008775: Missed unescaped co...
[TXT] CURRENT_Gamersrb.com[GRAPH] 1.5 4 months fknobbe SID 2009105: Typo fix. (Removed :)
[TXT] CURRENT_Ghostnet[GRAPH] 1.6 3 months fknobbe SIDs 2009202: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Holmes[GRAPH] 1.2 4 months fknobbe SIDs 2008394: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_IE_0Day[GRAPH] 1.5 4 months fknobbe SIDs 2008876 2008877: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Iamleet.be[GRAPH] 1.2 4 months fknobbe SIDs 2008286: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Kernelbot[GRAPH] 1.6 4 months fknobbe SIDs 2008737 2008738 2008739: Scripted addition of Wiki and/or CVSweb references...
[TXT] CURRENT_MS08-067[GRAPH] 1.2 4 months fknobbe SIDs 2008799: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_MSSQL[GRAPH] 1.2 4 months fknobbe SIDs 2008909 2008910: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_MS_Snapshot[GRAPH] 1.2 4 months fknobbe SIDs 2008407 2008408 2008409: Scripted addition of Wiki and/or CVSweb references...
[TXT] CURRENT_Mac_DNSChanger[GRAPH] 1.6 4 months fknobbe SIDs 2008796: Fixed escaped semicolons.
[TXT] CURRENT_Mass_File_Injections[GRAPH] 1.3 4 months fknobbe SIDs 2008206 2008207: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_PDF_Malware[GRAPH] 1.4 4 months fknobbe SID 2008359 2008741: Missed unescaped colons.
[TXT] CURRENT_Possible_Malicious_PDF[GRAPH] 1.3 4 months fknobbe SID 2009076: Missed unescaped colons.
[TXT] CURRENT_Psybot[GRAPH] 1.3 3 months fknobbe SIDs 2009170 2009171 2009172: Scripted addition of Wiki and/or CVSweb references...
[TXT] CURRENT_Roundcube[GRAPH] 1.10 3 months jonkman 2008960: new
[TXT] CURRENT_Rusibank.com[GRAPH] 1.4 4 months fknobbe SIDs 2009092: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_SQL_Injections[GRAPH] 1.15 3 days jonkman 2008373: tweak
[TXT] CURRENT_Storm[GRAPH] 1.30 4 months fknobbe SIDs 2008193: Doh, missed one.
[TXT] CURRENT_Test_Suspicious_DL[GRAPH] 1.4 4 months fknobbe SIDs 2008014: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Tigger[GRAPH] 1.6 4 months jonkman updated to suit proxies too, thanks dxp
[TXT] CURRENT_Toata_UA[GRAPH] 1.3 3 months fknobbe SIDs 2009159: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Trojan_PWS_Onlinegamestealer[GRAPH] 1.2 4 months fknobbe SIDs 2008948: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Unknown_trojan[GRAPH] 1.14 3 months fknobbe SIDs 2001621 2001810 2001621 2001751 2001810 2002129 2002130 2002131 2002132 200...
[TXT] CURRENT_Unknown_trojan3[GRAPH] 1.4 4 months fknobbe SIDs 2008779 2008780: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_Worldpay[GRAPH] 1.3 7 weeks fknobbe SIDs 2009348: Scripted addition of Wiki and/or CVSweb references.
[TXT] CURRENT_santa-inbox.com[GRAPH] 1.2 4 months fknobbe SIDs 2008531: Scripted addition of Wiki and/or CVSweb references.


Download this directory in tarball or zip archive
General options
,

Emerging Threats Rulesets <threats@emergingthreats.net>