[Snort-sigs] 2383 FP " NETBIOS SMB-DS DCERPC NTLMSSP asn1 overflow attempt"

sekure sekure at ...2420...
Wed Aug 25 08:29:20 EDT 2004


I am using the newest 2.2 ruleset (as of yesterday) and seeing a fair
number of false positives on sid 2383 "NETBIOS SMB-DS DCERPC NTLMSSP
asn1 overflow attempt"

Anyone else?

I can provide pcaps to the snort/sourcefire team if need be.




More information about the Snort-sigs mailing list