[Snort-sigs] ack! bad virus! bad bad!

Albers, Lucas luke at ...2068...
Mon Jun 28 07:51:02 EDT 2004


I configured oinkmaster to grab this, but I am unsure what settings I need
to change to have it read the included .map file.
How do you configure snort.conf to include a new *.map file?
I could not see any specific information on what the syntax is for including
a new .map file.
I easily saw how to include a new rule file, which I've done.

information appreciated.

--Luke

-----Original Message-----
From: Matthew Jonkman
To: Bryan Irvine
Cc: snort-sigs mailinglist
Sent: 6/25/2004 5:12 PM
Subject: Re: [Snort-sigs] ack! bad virus! bad bad!

http://www.bleedingsnort.com

Matt

Bryan Irvine wrote:

> Is there any way to sniff for this?
> 
>
http://www.informationweek.com/story/showArticle.jhtml?articleID=2210205
2
> 
> I have far too many machines to go patching and modifying security
> settings.
> 
> --Bryan
> 
> 


-------------------------------------------------------
This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 - 
digital self defense, top technical experts, no vendor pitches, 
unmatched networking opportunities. Visit www.blackhat.com
_______________________________________________
Snort-sigs mailing list
Snort-sigs at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/snort-sigs




More information about the Snort-sigs mailing list