[Snort-sigs] Bleedingsnort.com Daily Update

bleeding at ...2727... bleeding at ...2727...
Fri Jun 17 18:01:53 EDT 2005


[***] Results from Oinkmaster started Fri Jun 17 20:00:05 2005 [***]

[///]     Modified active rules:     [///]

 2001786 - BLEEDING-EDGE TROJAN potential update/download IRC Bot command (bleeding-virus.rules)
 2002003 - BLEEDING-EDGE MALWARE 180solutions Spyware Install (bleeding-malware.rules)


[---]         Removed rules:         [---]

 2001948 - BLEEDING-EDGE VIRUS W32.Mytob.CQ at ...110... Suspicious IRC attempt (bleeding.rules)


[---]     Removed non-rule lines:    [---]

     -> Removed from bleeding-sid-msg.map (1):
        2001948 || BLEEDING-EDGE VIRUS W32.Mytob.CQ at ...110... Suspicious IRC attempt || url,securityresponse.symantec.com/avcenter/venc/data/w32.mytob.cq at ...1512...

     -> Removed from bleeding.rules (2):
        #David Maciejak 5-25-05
        #Putting in current, this will be a dead issue once this irc server is cleaned up





More information about the Snort-sigs mailing list