[Snort-sigs] Bleedingsnort.com Daily Update

bleeding at ...2727... bleeding at ...2727...
Wed Jan 19 17:01:14 EST 2005


[***] Results from Oinkmaster started Wed Jan 19 20:00:03 2005 [***]

[///]    Modified inactive rules:    [///]

     -> Modified inactive in bleeding-custom.rules (1):
        old: #alert tcp $HOME_NET any -> $EXTERNAL_NET 137 (msg:"BLEEDING-EDGE Behavioral Unusual Port 137 traffic, Potential Scan or Infection"; flags:@; threshold: type limit, track by_src, count 50 , seconds 60; sid:2001580; rev:2;)
        new: #alert tcp $HOME_NET any -> $EXTERNAL_NET 137 (msg:"BLEEDING-EDGE Behavioral Unusual Port 137 traffic, Potential Scan or Infection"; flags:S; threshold: type limit, track by_src, count 50 , seconds 60; sid:2001580; rev:2;)

[*] Non-rule line modifications: [*]
    None.

[*] Added files: [*]
    None.





More information about the Snort-sigs mailing list