[Snort-sigs] Emerging Threats Daily Signature Changes

emerging at ...3335... emerging at ...3335...
Sun Feb 24 17:00:10 EST 2008


[***] Results from Oinkmaster started Sun Feb 24 17:00:10 2008 [***]

[+++]          Added rules:          [+++]

 2007880 - ET TROJAN Suspicious User-Agent - Possible Trojan Downloader (-) (bleeding-virus.rules)
 2007881 - ET MALWARE Mycomclean.com Spyware User Agent (HTTP_GET_COMM) (bleeding-malware.rules)
 2007882 - ET MALWARE Mycomclean.com Spyware User Agent (SHINI) (bleeding-malware.rules)
 2007883 - ET MALWARE Virusheat.com Fake Anti-Spyware User Agent (VirusHeat 4.3) (bleeding-malware.rules)
 2007884 - ET MALWARE Suspicious User Agent (Example) (bleeding-malware.rules)


[+++]      Added non-rule lines:     [+++]

     -> Added to bleeding-malware.rules (1):
        #check.mycomclean.com, by matt jonkman

     -> Added to bleeding-sid-msg.map (5):
        2007880 || ET TROJAN Suspicious User-Agent - Possible Trojan Downloader (-)
        2007881 || ET MALWARE Mycomclean.com Spyware User Agent (HTTP_GET_COMM)
        2007882 || ET MALWARE Mycomclean.com Spyware User Agent (SHINI)
        2007883 || ET MALWARE Virusheat.com Fake Anti-Spyware User Agent (VirusHeat 4.3)
        2007884 || ET MALWARE Suspicious User Agent (Example)

     -> Added to bleeding-sid-msg.map.txt (5):
        2007880 || ET TROJAN Suspicious User-Agent - Possible Trojan Downloader (-)
        2007881 || ET MALWARE Mycomclean.com Spyware User Agent (HTTP_GET_COMM)
        2007882 || ET MALWARE Mycomclean.com Spyware User Agent (SHINI)
        2007883 || ET MALWARE Virusheat.com Fake Anti-Spyware User Agent (VirusHeat 4.3)
        2007884 || ET MALWARE Suspicious User Agent (Example)





More information about the Snort-sigs mailing list