[Snort-sigs] Bleedingsnort.com Daily Update

bleeding at ...2727... bleeding at ...2727...
Sat Jun 25 18:02:53 EDT 2005


[***] Results from Oinkmaster started Sat Jun 25 20:00:08 2005 [***]

[///]     Modified active rules:     [///]

 2000015 - BLEEDING-EDGE P2P Phatbot Control Connection (bleeding-p2p.rules)
 2000025 - BLEEDING-EDGE Malware Gator Cookie (bleeding-malware.rules)
 2000327 - BLEEDING-EDGE MALWARE Spyware 2020 (bleeding-malware.rules)
 2000330 - BLEEDING-EDGE P2P ed2k connection to server (bleeding-p2p.rules)
 2000331 - BLEEDING-EDGE P2P ed2k file search (bleeding-p2p.rules)
 2000332 - BLEEDING-EDGE P2P ed2k request part (bleeding-p2p.rules)
 2000333 - BLEEDING-EDGE P2P ed2k file request answer (bleeding-p2p.rules)
 2000334 - BLEEDING-EDGE P2P BitTorrent peer sync (bleeding-p2p.rules)
 2000335 - BLEEDING-EDGE P2P Overnet Server Announce (bleeding-p2p.rules)
 2000338 - BLEEDING-EDGE P2P iroffer IRC Bot help message (bleeding-p2p.rules)
 2000339 - BLEEDING-EDGE P2P iroffer IRC Bot offered files advertisement (bleeding-p2p.rules)
 2000340 - BLEEDING-EDGE P2P Kaaza Media desktop p2pnetworking.exe Activity (bleeding-p2p.rules)
 2000357 - BLEEDING-EDGE P2P BitTorrent Traffic (bleeding-p2p.rules)
 2000366 - BLEEDING-EDGE MALWARE Binet (bleeding-malware.rules)
 2000367 - BLEEDING-EDGE MALWARE Binet (bleeding-malware.rules)
 2000368 - BLEEDING-EDGE Malware Gator/Claria Agent Installed (bleeding-malware.rules)
 2000369 - BLEEDING-EDGE P2P BitTorrent Announce (bleeding-p2p.rules)
 2000371 - BLEEDING-EDGE MALWARE Binet (bleeding-malware.rules)
 2000514 - BLEEDING-EDGE IE homepage hijacking (bleeding-malware.rules)
 2000519 - BLEEDING-EDGE shell browser vulnerability W9x/XP (bleeding-malware.rules)
 2000520 - BLEEDING-EDGE shell browser vulnerability NT/2K (bleeding-malware.rules)
 2000574 - BLEEDING-EDGE MALWARE Bargain Buddy (bleeding-malware.rules)
 2000582 - BLEEDING-EDGE Malware F1Organizer Reporting (bleeding-malware.rules)
 2000583 - BLEEDING-EDGE Malware Mindset Interactive Install (bleeding-malware.rules)
 2000584 - BLEEDING-EDGE Malware Mindset Interactive Install (bleeding-malware.rules)
 2000585 - BLEEDING-EDGE Malware F1Organizer Install Attempt (bleeding-malware.rules)
 2000593 - BLEEDING-EDGE MALWARE Binet Ad Retrieval (bleeding-malware.rules)
 2000594 - BLEEDING-EDGE Malware Mindset Interactive Ad Retrieval (bleeding-malware.rules)
 2000595 - BLEEDING-EDGE Malware Gator Checkin (bleeding-malware.rules)
 2000596 - BLEEDING-EDGE Malware Gator/Claria Data Submission (bleeding-malware.rules)
 2000597 - BLEEDING-EDGE Malware Gator New Code Download (bleeding-malware.rules)
 2000598 - BLEEDING-EDGE MALWARE Altnet PeerPoints Manager Data Submission (bleeding-malware.rules)
 2000599 - BLEEDING-EDGE Malware Fun Web Products Install (bleeding-malware.rules)
 2000600 - BLEEDING-EDGE Malware MyWebSearch Toolbar Receiving Configuration (bleeding-malware.rules)
 2000900 - BLEEDING-EDGE Malware JoltID Agent Probing or Announcing UDP (bleeding-malware.rules)
 2000902 - BLEEDING-EDGE Malware MarketScore.com Spyware Configuration Access (bleeding-malware.rules)
 2000903 - BLEEDING-EDGE MALWARE Avres Agent Receiving Instructions (bleeding-malware.rules)
 2000904 - BLEEDING-EDGE MALWARE Amex.Ipsrime.com Unknown Malware Download (bleeding-malware.rules)
 2000905 - BLEEDING-EDGE Malware FlashPoint Agent Retrieving New Code (bleeding-malware.rules)
 2000906 - BLEEDING-EDGE MALWARE Altnet PeerPoints Manager Start (bleeding-malware.rules)
 2000907 - BLEEDING-EDGE MALWARE Altnet PeerPoints Manager Settings Download (bleeding-malware.rules)
 2000920 - BLEEDING-EDGE Malware Hotbar Install (bleeding-malware.rules)
 2000921 - BLEEDING-EDGE Malware Hotbar Install (bleeding-malware.rules)
 2000922 - BLEEDING-EDGE Malware Hotbar Install (bleeding-malware.rules)
 2000923 - BLEEDING-EDGE Malware Hotbar Agent Reporting Information (bleeding-malware.rules)
 2000924 - BLEEDING-EDGE Malware Hotbar Agent Upgrading (bleeding-malware.rules)
 2000925 - BLEEDING-EDGE Malware Hotbar Agent Partner Checkin (bleeding-malware.rules)
 2000926 - BLEEDING-EDGE Malware ISearchTech.com XXXPornToolbar Install (bleeding-malware.rules)
 2000927 - BLEEDING-EDGE Malware ISearchTech.com XXXPornToolbar Reporting (bleeding-malware.rules)
 2000928 - BLEEDING-EDGE Malware ISearchTech.com XXXPornToolbar Activity (bleeding-malware.rules)
 2000929 - BLEEDING-EDGE Malware Hotbar Agent Activity (bleeding-malware.rules)
 2000930 - BLEEDING-EDGE MALWARE 180solutions Update Engine (bleeding-malware.rules)
 2000931 - BLEEDING-EDGE Malware Comet Systems Spyware Traffic (bleeding-malware.rules)
 2000932 - BLEEDING-EDGE Malware Keenvalue Update Engine (bleeding-malware.rules)
 2000934 - BLEEDING-EDGE MALWARE 2020search Update Engine (bleeding-malware.rules)
 2000935 - BLEEDING-EDGE Malware EUniverse-thunderdownloads Update Engine (bleeding-malware.rules)
 2000936 - BLEEDING-EDGE Malware FlashTrack Agent Retrieving New App Code (bleeding-malware.rules)
 2001013 - BLEEDING-EDGE Malware Fun Web Products SmileyCentral (bleeding-malware.rules)
 2001015 - BLEEDING-EDGE Malware JoltID Agent Keep-Alive (bleeding-malware.rules)
 2001031 - BLEEDING-EDGE MALWARE Casino on Net Reporting Data (bleeding-malware.rules)
 2001032 - BLEEDING-EDGE MALWARE Casino on Net Ping Hit (bleeding-malware.rules)
 2001033 - BLEEDING-EDGE MALWARE Casino on Net Data Download (bleeding-malware.rules)
 2001034 - BLEEDING-EDGE Malware Fun Web Products Agent Traffic (bleeding-malware.rules)
 2001035 - BLEEDING-EDGE P2P Morpheus Install (bleeding-p2p.rules)
 2001036 - BLEEDING-EDGE P2P Morpheus Install ini Download (bleeding-p2p.rules)
 2001037 - BLEEDING-EDGE P2P Morpheus Update Request (bleeding-p2p.rules)
 2001038 - BLEEDING-EDGE Malware Ebates Install (bleeding-malware.rules)
 2001040 - BLEEDING-EDGE Malware My Search Bar Install (bleeding-malware.rules)
 2001041 - BLEEDING-EDGE MALWARE Casino on Net Install (bleeding-malware.rules)
 2001043 - BLEEDING-EDGE Malware Fun Web Products MyWay Agent Traffic (bleeding-malware.rules)
 2001050 - BLEEDING-EDGE Malware CometSystems Spyware (bleeding-malware.rules)
 2001059 - BLEEDING-EDGE P2P Ares traffic (bleeding-p2p.rules)
 2001060 - BLEEDING-EDGE P2P Ares GET (bleeding-p2p.rules)
 2001185 - BLEEDING-EDGE P2P Soulseek traffic (bleeding-p2p.rules)
 2001186 - BLEEDING-EDGE P2P Soulseek traffic (bleeding-p2p.rules)
 2001187 - BLEEDING-EDGE P2P Soulseek Filesearch Results (bleeding-p2p.rules)
 2001188 - BLEEDING-EDGE P2P Soulseek (bleeding-p2p.rules)
 2001198 - BLEEDING-EDGE MALWARE Twaintec Download Attempt (bleeding-malware.rules)
 2001199 - BLEEDING-EDGE MALWARE Twaintec Ad Retrieval (bleeding-malware.rules)
 2001216 - BLEEDING-EDGE MALWARE Twaintec Reporting Data (bleeding-malware.rules)
 2001221 - BLEEDING-EDGE Malware F1Organizer Config Download (bleeding-malware.rules)
 2001222 - BLEEDING-EDGE Malware Default-homepage-network.com Access (bleeding-malware.rules)
 2001226 - BLEEDING-EDGE MALWARE Unknown Advertising.com Agent (bleeding-malware.rules)
 2001228 - BLEEDING-EDGE MALWARE Unknown Advertising.com Data Post (bleeding-malware.rules)
 2001230 - BLEEDING-EDGE MALWARE Unknown Advertising.com Data Post (bleeding-malware.rules)
 2001266 - BLEEDING-EDGE MALWARE Browseraid.com Agent Reporting Data (bleeding-malware.rules)
 2001293 - BLEEDING-EDGE Malware Featured-Results.com Agent Reporting Data (bleeding-malware.rules)
 2001296 - BLEEDING-EDGE P2P eDonkey File Status (bleeding-p2p.rules)
 2001297 - BLEEDING-EDGE P2P eDonkey File Status Request (bleeding-p2p.rules)
 2001298 - BLEEDING-EDGE P2P eDonkey Server Status Request (bleeding-p2p.rules)
 2001299 - BLEEDING-EDGE P2P eDonkey Server Status (bleeding-p2p.rules)
 2001304 - BLEEDING-EDGE MALWARE Browseraid.com Agent Updating (bleeding-malware.rules)
 2001305 - BLEEDING-EDGE P2P eDonkey Search (bleeding-p2p.rules)
 2001306 - BLEEDING-EDGE Malware Gator/Clarian Agent (bleeding-malware.rules)
 2001308 - BLEEDING-EDGE Malware Internet Optomizer Reporting Data (bleeding-malware.rules)
 2001318 - BLEEDING-EDGE MALWARE Adwave Agent Access (bleeding-malware.rules)
 2001336 - BLEEDING-EDGE Malware Internet Optimizer Spyware Agent Upload (bleeding-malware.rules)
 2001339 - BLEEDING-EDGE MALWARE BInet Information Upload (bleeding-malware.rules)
 2001340 - BLEEDING-EDGE Malware LocalNRD Spyware Checkin (bleeding-malware.rules)
 2001345 - BLEEDING-EDGE MALWARE Bonziportal Traffic (bleeding-malware.rules)
 2001359 - BLEEDING-EDGE Malware MarketScore.com Spyware Access (bleeding-malware.rules)
 2001395 - BLEEDING-EDGE Malware ISearchTech.com XXXPornToolbar Activity (bleeding-malware.rules)
 2001396 - BLEEDING-EDGE Malware Internet Optimizer Spyware Install (bleeding-malware.rules)
 2001397 - BLEEDING-EDGE MALWARE 180solutions Spyware (bleeding-malware.rules)
 2001399 - BLEEDING-EDGE MALWARE 180solutions Spyware (bleeding-malware.rules)
 2001400 - BLEEDING-EDGE MALWARE 180solutions Spyware Reporting (bleeding-malware.rules)
 2001409 - BLEEDING-EDGE Malware Mastermind Related Reporting (bleeding-malware.rules)
 2001410 - BLEEDING-EDGE Malware Mastermind Related Reporting 8081 (bleeding-malware.rules)
 2001411 - BLEEDING-EDGE Malware Mastermind Related Downloading mm20.ocx (bleeding-malware.rules)
 2001412 - BLEEDING-EDGE Malware Mastermind Related Downloading Daily Executable (bleeding-malware.rules)
 2001413 - BLEEDING-EDGE Malware Medis-Motor Related Downloading ast_4_mm.exe (bleeding-malware.rules)
 2001414 - BLEEDING-EDGE Malware Media-Motor Related Downloading MediaMotor25.exe (bleeding-malware.rules)
 2001415 - BLEEDING-EDGE Malware E2give Related Downloading IeBHOs.dll (bleeding-malware.rules)
 2001416 - BLEEDING-EDGE Malware E2give Related Reporting Install (bleeding-malware.rules)
 2001417 - BLEEDING-EDGE Malware E2give Related Receiving Config (bleeding-malware.rules)
 2001418 - BLEEDING-EDGE Malware E2give Related Downloading Code (bleeding-malware.rules)
 2001419 - BLEEDING-EDGE Malware Avres.net Downloading cpr_mm2.exe (bleeding-malware.rules)
 2001420 - BLEEDING-EDGE Malware Avres.net Downloading ab1.exe (bleeding-malware.rules)
 2001421 - BLEEDING-EDGE Malware Avres.net Downloading tvm_bundle.exe (bleeding-malware.rules)
 2001422 - BLEEDING-EDGE Malware Avres.net Reporting Data (bleeding-malware.rules)
 2001423 - BLEEDING-EDGE Malware E2give Related Reporting (bleeding-malware.rules)
 2001440 - BLEEDING-EDGE MALWARE Abox Download (bleeding-malware.rules)
 2001441 - BLEEDING-EDGE MALWARE Abox Install Report (bleeding-malware.rules)
 2001447 - BLEEDING-EDGE MALWARE 2nd-thought (W32.Daqa.C) Download (bleeding-malware.rules)
 2001448 - BLEEDING-EDGE Malware MediaTickets Download (bleeding-malware.rules)
 2001450 - BLEEDING-EDGE MALWARE Wintools Download/Configure (bleeding-malware.rules)
 2001451 - BLEEDING-EDGE MALWARE Bundleware Spyware Download (bleeding-malware.rules)
 2001452 - BLEEDING-EDGE MALWARE Bundleware Spyware CHM Download (bleeding-malware.rules)
 2001453 - BLEEDING-EDGE Malware Couponage Download (bleeding-malware.rules)
 2001454 - BLEEDING-EDGE Malware Couponage Configure (bleeding-malware.rules)
 2001455 - BLEEDING-EDGE Malware Couponage Reporting (bleeding-malware.rules)
 2001456 - BLEEDING-EDGE Malware ContextPanel Reporting (bleeding-malware.rules)
 2001458 - BLEEDING-EDGE MALWARE Bundleware Spyware cab Download (bleeding-malware.rules)
 2001479 - BLEEDING-EDGE Malware Coolsearch Spyware Install (bleeding-malware.rules)
 2001481 - BLEEDING-EDGE Malware MediaTickets Spyware Install (bleeding-malware.rules)
 2001490 - BLEEDING-EDGE Malware ICQ-Update.biz Reporting Install (bleeding-malware.rules)
 2001494 - BLEEDING-EDGE Malware Clickspring.net Spyware Reporting Successful Install (bleeding-malware.rules)
 2001499 - BLEEDING-EDGE Malware Look2me Spyware Activity (bleeding-malware.rules)
 2001500 - BLEEDING-EDGE Malware Clickspring.net Spyware Reporting (bleeding-malware.rules)
 2001501 - BLEEDING-EDGE MALWARE Clickspring.net Spyware Reporting (bleeding-malware.rules)
 2001502 - BLEEDING-EDGE Malware Look2me Spyware Activity (bleeding-malware.rules)
 2001503 - BLEEDING-EDGE Malware Medialoads.com Spyware Config (bleeding-malware.rules)
 2001508 - BLEEDING-EDGE Malware Medialoads.com Spyware Reporting (bleeding-malware.rules)
 2001509 - BLEEDING-EDGE Malware Medialoads.com Spyware Reporting (bleeding-malware.rules)
 2001519 - BLEEDING-EDGE Malware ICQ-Update.biz Reporting Install (bleeding-malware.rules)
 2001521 - BLEEDING-EDGE MALWARE Spywaremover Activity (bleeding-malware.rules)
 2001528 - BLEEDING-EDGE MALWARE ak-networks.com Access, Likely Spyware (bleeding-malware.rules)
 2001529 - BLEEDING-EDGE MALWARE Casalemedia Access, Likely Spyware (bleeding-malware.rules)
 2001530 - BLEEDING-EDGE MALWARE ak-networks.com Spyware Code Download (bleeding-malware.rules)
 2001531 - BLEEDING-EDGE MALWARE C4tdoanload.com Access, Likely Spyware (bleeding-malware.rules)
 2001563 - BLEEDING-EDGE Malware MarketScore.com Spyware SSL Access (bleeding-malware.rules)
 2001564 - BLEEDING-EDGE Malware MarketScore.com Spyware Proxied Traffic (bleeding-malware.rules)
 2001576 - BLEEDING-EDGE MALWARE BInet Information Install Report (bleeding-malware.rules)
 2001586 - BLEEDING-EDGE Malware MarketScore.com Spyware Proxied Traffic (bleeding-malware.rules)
 2001587 - BLEEDING-EDGE Malware MarketScore.com Spyware Upgrading (bleeding-malware.rules)
 2001588 - BLEEDING-EDGE Malware MarketScore.com Spyware Activity (bleeding-malware.rules)
 2001589 - BLEEDING-EDGE Malware MarketScore.com Spyware Activity (bleeding-malware.rules)
 2001641 - BLEEDING-EDGE Malware Microgaming.com Spyware Installation (bleeding-malware.rules)
 2001643 - BLEEDING-EDGE Malware Microgaming.com Spyware Installation (bleeding-malware.rules)
 2001644 - BLEEDING-EDGE Malware Microgaming.com Spyware Reporting Installation (bleeding-malware.rules)
 2001645 - BLEEDING-EDGE Malware Microgaming.com Spyware Casino App Install (bleeding-malware.rules)
 2001655 - BLEEDING-EDGE Malware Comet Systems Spyware Traffic (bleeding-malware.rules)
 2001656 - BLEEDING-EDGE Malware GlobalPhon.com Dialer (bleeding-malware.rules)
 2001657 - BLEEDING-EDGE Malware GlobalPhon.com Dialer Download (bleeding-malware.rules)
 2001658 - BLEEDING-EDGE Malware Comet Systems Spyware Reporting (bleeding-malware.rules)
 2001659 - BLEEDING-EDGE Malware GlobalPhon.com Dialer (bleeding-malware.rules)
 2001660 - BLEEDING-EDGE Malware GlobalPhon.com Dialer (bleeding-malware.rules)
 2001661 - BLEEDING-EDGE Malware MyWebSearch Toolbar Traffic (bleeding-malware.rules)
 2001662 - BLEEDING-EDGE Malware MyWebSearch Toolbar Traffic (bleeding-malware.rules)
 2001663 - BLEEDING-EDGE Malware MyWebSearch Toolbar Traffic (bleeding-malware.rules)
 2001664 - BLEEDING-EDGE P2P Gnutella Connect (bleeding-p2p.rules)
 2001666 - BLEEDING-EDGE Malware Metarewards Spyware Activity (bleeding-malware.rules)
 2001679 - BLEEDING-EDGE Malware JoltID Agent P2P via Proxy Server (bleeding-malware.rules)
 2001684 - BLEEDING-EDGE Malware Windows executable sent when remote host claims to send image, Win32 (bleeding-malware.rules)
 2001685 - BLEEDING-EDGE Malware Possible Windows executable sent when remote host claims to send an image (bleeding-malware.rules)
 2001697 - BLEEDING-EDGE Malware ISearchTech.com XXXPornToolbar Data Submission (bleeding-malware.rules)
 2001704 - BLEEDING-EDGE Malware Context Plus Spyware Install (bleeding-malware.rules)
 2001705 - BLEEDING-EDGE Malware Flingstone Spyware Install (bleeding-malware.rules)
 2001710 - BLEEDING-EDGE Malware Flingstone Spyware Install (bleeding-malware.rules)
 2001730 - BLEEDING-EDGE MALWARE A-d-w-a-r-e.com Activity (bleeding-malware.rules)
 2001733 - BLEEDING-EDGE Malware CrazyWinnings.com Activity (bleeding-malware.rules)
 2001735 - BLEEDING-EDGE MALWARE A-d-w-a-r-e.com Activity (bleeding-malware.rules)
 2001737 - BLEEDING-EDGE MALWARE ak-networks.com Spyware Code Install (bleeding-malware.rules)
 2001747 - BLEEDING-EDGE Malware My-Stats.com Spyware Checkin (bleeding-malware.rules)
 2001756 - BLEEDING-EDGE P2P Ares File Upload (bleeding-p2p.rules)
 2001761 - BLEEDING-EDGE MALWARE ABX Toolbar ActiveX Install (bleeding-malware.rules)
 2001783 - BLEEDING-EDGE Malware Media Pass ActiveX Install (bleeding-malware.rules)
 2001793 - BLEEDING-EDGE Malware Incredisearch.com Spyware Ping (bleeding-malware.rules)
 2001794 - BLEEDING-EDGE Malware Incredisearch.com Spyware Activity (bleeding-malware.rules)
 2001796 - BLEEDING-EDGE P2P kazaa over UDP (bleeding-p2p.rules)
 2001808 - BLEEDING-EDGE P2P LimeWire P2P Traffic (bleeding-p2p.rules)
 2001809 - BLEEDING-EDGE P2P Limewire P2P UDP Traffic (bleeding-p2p.rules)
 2001812 - BLEEDING-EDGE KazaaClient P2P Traffic (bleeding-p2p.rules)
 2001841 - BLEEDING-EDGE P2P UDP traffic -- Likely Limewire (bleeding-p2p.rules)
 2001850 - BLEEDING-EDGE MALWARE Likely Trojan/Spyware Installer Requested (bleeding-malware.rules)
 2001884 - BLEEDING-EDGE MALWARE DesktopTraffic Toolbar Spyware (bleeding-malware.rules)
 2001885 - BLEEDING-EDGE MALWARE Begin2Search.com Spyware (bleeding-malware.rules)
 2001999 - BLEEDING-EDGE MALWARE BTGrab.com Spyware Downloading Ads (bleeding-malware.rules)
 2002001 - BLEEDING-EDGE MALWARE 180solutions Spyware Keywords Download (bleeding-malware.rules)
 2002003 - BLEEDING-EDGE MALWARE 180solutions Spyware Install (bleeding-malware.rules)
 2002009 - BLEEDING-EDGE Malware ESyndicate Spyware Install (bleeding-malware.rules)
 2002010 - BLEEDING-EDGE Malware ESyndicate Spyware Install (bleeding-malware.rules)
 2002012 - BLEEDING-EDGE Malware GrandstreetInteractive.com Install (bleeding-malware.rules)
 2002013 - BLEEDING-EDGE Malware GrandstreetInteractive.com Update (bleeding-malware.rules)
 2002015 - BLEEDING-EDGE Malware Internet Fuel.com Install (bleeding-malware.rules)
 2002016 - BLEEDING-EDGE Malware jmnad1.com Spyware Install (bleeding-malware.rules)
 2002019 - BLEEDING-EDGE Malware jmnad1.com Spyware Install (bleeding-malware.rules)
 2002048 - BLEEDING-EDGE MALWARE 180solutions Spyware Defs Download (bleeding-malware.rules)


[///]    Modified inactive rules:    [///]

 2000551 - BLEEDING-EDGE Malware Comet Cursor spyware detection (bleeding-malware.rules)
 2000901 - BLEEDING-EDGE Malware JoltID Agent Communicating TCP (bleeding-malware.rules)
 2001300 - BLEEDING-EDGE P2P eDonkey Hello Request (bleeding-p2p.rules)
 2001398 - BLEEDING-EDGE MALWARE Bfast.com Spyware (bleeding-malware.rules)
 2001527 - BLEEDING-EDGE MALWARE Casalemedia Access, Likely Spyware (bleeding-malware.rules)
 2001683 - BLEEDING-EDGE Malware Windows executable sent when remote host claims to send an image (bleeding-malware.rules)


[*] Non-rule line modifications: [*]
    None.





More information about the Snort-sigs mailing list