[prev in list] [next in list] [prev in thread] [next in thread] 

List:       emerging-sigs
Subject:    [Emerging-Sigs] Emerging Threats Daily Signature Changes
From:       emerging () emergingthreats ! net (emerging () emergingthreats ! net)
Date:       2008-06-30 20:00:08
Message-ID: 20080630200008.C678B45167 () goliath ! jonkmans ! com
[Download RAW message or body]


[***] Results from Oinkmaster started Mon Jun 30 16:00:08 2008 [***]

[+++]          Added rules:          [+++]

 2008358 - ET TROJAN Pakes/Cutwall/Kobcka Checkin Detected High Ports \
(emerging-virus.rules)


[///]     Modified active rules:     [///]

 2008061 - ET TROJAN LDPinch Checkin (4) (emerging-virus.rules)
 2008072 - ET TROJAN LDPinch Checkin (5) (emerging-virus.rules)


[+++]      Added non-rule lines:     [+++]

     -> Added to emerging-sid-msg.map (1):
        2008358 || ET TROJAN Pakes/Cutwall/Kobcka Checkin Detected High Ports

     -> Added to emerging-sid-msg.map.txt (1):
        2008358 || ET TROJAN Pakes/Cutwall/Kobcka Checkin Detected High Ports

     -> Added to emerging-virus.rules (1):
        #by Pedro Marinho, re d2d5bf2669edce3c71dc16c46e8a67f7

     -> Added to emerging.conf (2):
        #       include $RULE_PATH/emerging.conf
        # the emerging-sigs mailing list

[---]     Removed non-rule lines:    [---]

     -> Removed from emerging-dos.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-exploit.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-game.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-inappropriate.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-malware.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-p2p.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-policy.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-scan.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-virus.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-voip.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-web.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging-web_sql_injection.rules (1):
        # Only basic testing has been done. At this point all we guarantee is that \
they won't crash a recent snort release.

     -> Removed from emerging.conf (2):
        #       include $RULE_PATH/bleeding.conf
        # the bleeding-sigs mailing list


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic