New Filters:
43346: SMTP: Trojan.MSIL.G0ldStealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- Release Date: October 17, 2023
43347: HTTP: Trojan.MSIL.MillenuimRAT.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- Release Date: October 17, 2023
43349: IRC: Backdoor.Perl.ShellBot.NAT Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- Release Date: October 17, 2023
43352: HTTP: Worm.Linux.Skidfaibot.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- References:
- Common Vulnerabilities and Exposures: CVE-2017-17215
- Release Date: October 17, 2023
43353: HTTP: Trojan.JS.ROOTSAW.D4238943 Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- Release Date: October 17, 2023
43356: HTTP: Trojan.Python.Emanynotrm.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- Release Date: October 17, 2023
43357: HTTP: Worm.Linux.Mirai.IZ1H9 Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- References:
- Common Vulnerabilities and Exposures: CVE-2015-1187, CVE-2023-1389, CVE-2023-23295
- Release Date: October 17, 2023
43358: HTTP: Backdoor.Win64.BlackByteKovter.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- Release Date: October 17, 2023
43359: HTTP: Backdoor.Lua.Prioxvel.A Runtime Detection (POST Ingress)
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- References:
- Common Vulnerabilities and Exposures: CVE-2021-1435, CVE-2023-20198
- Release Date: October 17, 2023
43360: HTTP: Backdoor.Lua.Prioxvel.A Runtime Detection (Privilege Request - POST Egress)
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Category: Virus
- Severity: High
- Description: This filter is deployed in the Malware Filter Package.
- Deployments:
- Deployment: Default (Block / Notify)
- Deployment: Performance-Optimized (Disabled)
- References:
- Common Vulnerabilities and Exposures: CVE-2021-1435, CVE-2023-20198
- Release Date: October 17, 2023
Modified Filters (logic changes):
* = Enabled in Default deployments
* 41930: TCP: Ransomware.Win32.Zeppelin.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 15, 2022
- Last Modified Date: October 17, 2023
* 41971: HTTP: Trojan.Python.LimePad.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 15, 2022
- Last Modified Date: October 17, 2023
* 41996: SMTP: Trojan.MSIL.SpcAvviato.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 22, 2022
- Last Modified Date: October 17, 2023
* 42008: HTTP: Trojan-Downloader.Shell.BatLoader.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 22, 2022
- Last Modified Date: October 17, 2023
* 42020: HTTP: Trojan.Shell.ViperSoftShell.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42022: HTTP: Trojan.MSIL.Sygelgram.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42023: HTTP: Trojan.MSIL.Xeladedyscan.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42024: HTTP: Backdoor.Win32.Sagerunex.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42025: HTTP: Backdoor.Win32.Sagerunex.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42026: HTTP: Trojan.MSIL.Tobisoph.R002C0DKG22 Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42027: HTTP: Trojan.Linux.Kmsdbot.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: November 29, 2022
- Last Modified Date: October 17, 2023
* 42040: HTTP: Trojan.Win64.Xmirminer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42041: HTTP: Trojan.MSIL.CodeRAT.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42042: TCP: Trojan.MSIL.Vicinfoend.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42043: HTTP: Ransomware.MSIL.Punisher.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42045: HTTP: Trojan.MSIL.Geckfilstealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42050: HTTP: Trojan.MSIL.BobipixStealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42051: HTTP: Trojan.MSIL.Sakotikz.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
42052: HTTP: Trojan.Linux.Kmsdbot.B Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 06, 2022
- Last Modified Date: October 17, 2023
* 42066: HTTP: Trojan.MSIL.DuckLogs.R002C0DGU22 Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 13, 2022
- Last Modified Date: October 17, 2023
* 42119: HTTP: Ransomware.Win32.CiavogLocker.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: December 20, 2022
- Last Modified Date: October 17, 2023
* 42151: HTTP: Worm.Linux.Ascarisbot.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: January 10, 2023
- Last Modified Date: October 17, 2023
42160: UDP: Trojan.Linux.Rochparz.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: January 10, 2023
- Last Modified Date: October 17, 2023
* 42161: HTTP: Trojan.Linux.Potsemtel.USELVJ622 Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: January 10, 2023
- Last Modified Date: October 17, 2023
* 42250: HTTP: Trojan.MSIL.Saunbeget.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: January 31, 2023
- Last Modified Date: October 17, 2023
* 42251: HTTP: Backdoor.Python.PoweRAT.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: January 31, 2023
- Last Modified Date: October 17, 2023
* 42326: HTTP: Backdoor.Python.Pyration.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: February 07, 2023
- Last Modified Date: October 17, 2023
* 42327: HTTP: Trojan.Win32.TitanStealer.THABFBC Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: February 07, 2023
- Last Modified Date: October 17, 2023
* 42362: HTTP: Trojan.MSIL.TiggeStealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: February 14, 2023
- Last Modified Date: October 17, 2023
* 42366: HTTP: Backdoor.Win64.Brutel.B Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: February 14, 2023
- Last Modified Date: October 17, 2023
* 42376: HTTP: Backdoor.Win32.Newspenguin.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: February 21, 2023
- Last Modified Date: October 17, 2023
* 42436: HTTP: Trojan.Win32.Stealc.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 07, 2023
- Last Modified Date: October 17, 2023
* 42467: SMTP: Trojan.MSIL.Xkadenbot.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 07, 2023
- Last Modified Date: October 17, 2023
* 42468: TCP: Trojan.MSIL.Revrtobia.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 07, 2023
- Last Modified Date: October 17, 2023
42469: TCP: Trojan.Shell.EyeSpy.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 07, 2023
- Last Modified Date: October 17, 2023
* 42470: HTTP: Trojan-Downloader.Shell.SnipstLoader.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 07, 2023
- Last Modified Date: October 17, 2023
* 42494: HTTP: Backdoor.Python.ColourblindRat.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 14, 2023
- Last Modified Date: October 17, 2023
* 42502: HTTP: Worm.Python.Zuoratexp.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 14, 2023
- Last Modified Date: October 17, 2023
* 42511: HTTP: Trojan.Shell.Kimsuky.O Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 21, 2023
- Last Modified Date: October 17, 2023
* 42512: TCP: Backdoor.Win32.MQsTTang.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 21, 2023
- Last Modified Date: October 17, 2023
* 42513: HTTP: Trojan-Downloader.Shell.Powsflo.FL Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 21, 2023
- Last Modified Date: October 17, 2023
* 42514: HTTP: Trojan.Python.Conanylog.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 21, 2023
- Last Modified Date: October 17, 2023
* 42536: HTTP: Trojan.AutoIT.Mispadu.CH Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 28, 2023
- Last Modified Date: October 17, 2023
* 42550: HTTP: Trojan-Downloader.Win32.Zuoshecod.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: March 28, 2023
- Last Modified Date: October 17, 2023
42578: TCP: Worm.Linux.Bladeforebot.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: April 04, 2023
- Last Modified Date: October 17, 2023
* 42601: TCP: Trojan.Win64.ImBetter.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: April 11, 2023
- Last Modified Date: October 17, 2023
* 42635: UDP: Backdoor.Win64.SomniRecord.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: April 25, 2023
- Last Modified Date: October 17, 2023
* 42658: HTTP: Trojan.Win32.DevOpt.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: May 02, 2023
- Last Modified Date: October 17, 2023
42734: HTTP: Trojan-Downloader.MSIL.Drokbk.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: May 23, 2023
- Last Modified Date: October 17, 2023
* 42742: HTTP: Trojan.VBA.RooftopMelt.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: May 23, 2023
- Last Modified Date: October 17, 2023
* 42879: HTTP: Trojan.VBS.Downexscript.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: June 27, 2023
- Last Modified Date: October 17, 2023
* 42880: HTTP: Worm.Linux.Unhanaawbot.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: June 27, 2023
- Last Modified Date: October 17, 2023
* 42881: HTTP: Trojan.MSIL.LimeLogger.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: June 27, 2023
- Last Modified Date: October 17, 2023
* 42891: HTTP: Trojan-Downloader.Shell.Kinwup.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: June 27, 2023
- Last Modified Date: October 17, 2023
42905: HTTP: Trojan-Downloader.JS.PindOS.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: July 04, 2023
- Last Modified Date: October 17, 2023
* 43166: HTTP: Trojan.MSIL.Agniane.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: August 22, 2023
- Last Modified Date: October 17, 2023
43167: HTTP: Trojan-Downloader.VBS.Janeladow.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: August 22, 2023
- Last Modified Date: October 17, 2023
* 43168: HTTP: Trojan.MSIL.AnubisClipper.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: August 22, 2023
- Last Modified Date: October 17, 2023
* 43169: HTTP: Trojan.MSIL.BytexStealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Detection logic updated.
- Release Date: August 22, 2023
- Last Modified Date: October 17, 2023
* 43330: HTTP: Trojan.Python.TheMurkStealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Description updated.
- Detection logic updated.
- Release Date: October 10, 2023
- Last Modified Date: October 17, 2023
Modified Filters (metadata changes only): None
Removed Filters:
43329: HTTP: Trojan.Python.TheMurkStealer.A Runtime Detection
- IPS Version: 3.9.5 and after.
- TPS Version: 5.2.2 and after.
- vTPS Version: 5.2.2 and after.
- Release Date: October 10, 2023
|