[Snort-sigs] Bleedingsnort.com Daily Update

bleeding at ...2727... bleeding at ...2727...
Sun Dec 12 18:01:03 EST 2004


[***] Results from Oinkmaster started Sun Dec 12 21:00:01 2004 [***]

[---]         Disabled rules:        [---]

     -> Disabled in bleeding-virus.rules (1):
        #alert tcp $HOME_NET any -> $EXTERNAL_NET 37 (msg:"BLEEDING-EDGE Virus Possible Sober.j Outbound"; reference:url,vil.mcafeesecurity.com/vil/content/v_130130.htm; classtype:trojan-activity; sid:2001542; rev:2;)

[+++]      Added non-rule lines:     [+++]

     -> Added to bleeding-virus.rules (1):
        #Disabling, too many falses. Run this if you don't have any time services on port 37

[*] Added files: [*]
    None.





More information about the Snort-sigs mailing list