[Snort-sigs] ack! bad virus! bad bad!

Albers, Lucas luke at ...2068...
Mon Jun 28 07:51:02 EDT 2004

I configured oinkmaster to grab this, but I am unsure what settings I need
to change to have it read the included .map file.
How do you configure snort.conf to include a new *.map file?
I could not see any specific information on what the syntax is for including
a new .map file.
I easily saw how to include a new rule file, which I've done.

information appreciated.


-----Original Message-----
From: Matthew Jonkman
To: Bryan Irvine
Cc: snort-sigs mailinglist
Sent: 6/25/2004 5:12 PM
Subject: Re: [Snort-sigs] ack! bad virus! bad bad!



Bryan Irvine wrote:

> Is there any way to sniff for this?
> I have far too many machines to go patching and modifying security
> settings.
> --Bryan

This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 - 
digital self defense, top technical experts, no vendor pitches, 
unmatched networking opportunities. Visit www.blackhat.com
Snort-sigs mailing list
Snort-sigs at lists.sourceforge.net

More information about the Snort-sigs mailing list