|
|
|
번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) | 6,811 | 2015/01/20 | 2009037 | ET DELETED Vipdataend C&C Traffic - Checkin (variant 3); [1] | 6,810 | 2015/01/20 | 2009036 | ET DELETED Armitage Loader Check-in; [1] | 6,809 | 2015/01/20 | 2009035 | ET POLICY Suspicious Executable (PE offset 512); [1] | 6,808 | 2015/01/20 | 2009034 | ET POLICY Suspicious Executable (PE offset 160); [1] | 6,807 | 2015/01/20 | 2009033 | ET POLICY Suspicious Executable (Win exe under 128); [1] | 6,806 | 2015/01/20 | 2009032 | ET DELETED Armitage Exploit Request; [1] | 6,805 | 2015/01/20 | 2009029 | ET WEB_SERVER SQL Injection Attempt (Agent NV32ts); [1] | 6,804 | 2015/01/20 | 2009028 | ET MALWARE 404 Response with an EXE Attached - Likely Malware Drop; [1] | 6,803 | 2015/01/20 | 2009027 | ET MALWARE User-Agent (FileDownloader); [1] | 6,802 | 2015/01/20 | 2009026 | ET TROJAN Vipdataend C&C Traffic - Status OK (variant 2); [1] | 6,801 | 2015/01/20 | 2009025 | ET TROJAN Vipdataend C&C Traffic Checkin variant 2; [1] | 6,800 | 2015/01/20 | 2009024 | ET TROJAN Downadup/Conficker A or B Worm reporting; [1,2] | 6,799 | 2015/01/20 | 2009022 | ET TROJAN Zlob User Agent (securityinternet); [1,2] | 6,798 | 2015/01/20 | 2009021 | ET MALWARE User-Agent (IE_6.0); [1] | 6,797 | 2015/01/20 | 2009020 | ET POLICY Internal Host Retrieving External IP via ipchicken.com - Possible Infection; [1] | 6,796 | 2015/01/20 | 2009019 | ET TROJAN VMProtect Demo version Packed Binary - Likely Hostile; [1,2,3] | 6,795 | 2015/01/20 | 2009018 | ET WEB_SPECIFIC_APPS Text Lines Rearrange Script filename parameter File Disclosure; [1,2,3] | 6,794 | 2015/01/20 | 2009017 | ET WEB_SPECIFIC_APPS WebPhotoPro rubrika.php idr Parameter SQL Injection; [1,2] | 6,793 | 2015/01/20 | 2009016 | ET WEB_SPECIFIC_APPS WebPhotoPro galeri_info.php lang Parameter SQL Injection; [1,2] | 6,792 | 2015/01/20 | 2009015 | ET WEB_SPECIFIC_APPS WebPhotoPro galeri_info.php ida Parameter SQL Injection; [1,2] | 6,791 | 2015/01/20 | 2009014 | ET WEB_SPECIFIC_APPS WebPhotoPro rub.php idr Parameter SQL Injection; [1,2] | 6,790 | 2015/01/20 | 2009013 | ET WEB_SPECIFIC_APPS WebPhotoPro art.php idm Parameter SQL Injection; [1,2] | 6,789 | 2015/01/20 | 2009012 | ET WEB_SPECIFIC_APPS Rematic CMS produkte.php id parameter SQL Injection; [1,2,3] | 6,788 | 2015/01/20 | 2009011 | ET WEB_SPECIFIC_APPS Rematic CMS referenzdetail.php id parameter SQL Injection; [1,2,3] | 6,787 | 2015/01/20 | 2009010 | ET WEB_SPECIFIC_APPS Wordpress Plugin Page Flip Image Gallery getConfig.php book_id parameter Remote File Disclosure; [1,2] | 6,786 | 2015/01/20 | 2009009 | ET WEB_SPECIFIC_APPS ClaSS export.php ftype parameter Information Disclosure; [1,2] | 6,785 | 2015/01/20 | 2009005 | ET MALWARE Simbar Spyware User-Agent Detected; [1,2,3] | 6,784 | 2015/01/20 | 2009004 | ET POLICY Login Credentials Possibly Passed in POST Data; [1] | 6,783 | 2015/01/20 | 2009003 | ET TROJAN Win32/Korklic.A; [1] | 6,782 | 2015/01/20 | 2009002 | ET ACTIVEX Phoenician Casino FlashAX ActiveX Control Remote Buffer Overflow; [1,2] | 6,781 | 2015/01/20 | 2009001 | ET POLICY Login Credentials Possibly Passed in URI; [1] | 6,780 | 2015/01/20 | 2009000 | ET WEB_SPECIFIC_APPS RSS Simple News news.php pid parameter Remote SQL Injection; [1,2] | 6,779 | 2015/01/20 | 2008999 | ET ACTIVEX EvansFTP EvansFTP.ocx Remote Buffer Overflow; [1,2] | 6,778 | 2015/01/20 | 2008998 | ET WEB_SPECIFIC_APPS EvimGibi Pro Resim Galerisi kat_id parameter SQL Injection; [1,2,3] | 6,777 | 2015/01/20 | 2008997 | ET WEB_SPECIFIC_APPS icash Click&BaneX user_menu.asp ID parameter SQL Injection; [1,2] | 6,776 | 2015/01/20 | 2008996 | ET WEB_SPECIFIC_APPS Simple Text-File Login script slogin_path parameter remote file inclusion; [1,2] | 6,775 | 2015/01/20 | 2008995 | ET WEB_SPECIFIC_APPS CF_Calendar calid parameter SQL Injection; [1,2,3] | 6,774 | 2015/01/20 | 2008994 | ET WEB_SPECIFIC_APPS Multiple Membership Script id parameter SQL injection; [1,2,3] | 6,773 | 2015/01/20 | 2008993 | ET ACTIVEX Microsoft Visual Basic Common AVI ActiveX Control File Parsing Buffer Overflow; [1,2] | 6,772 | 2015/01/20 | 2008992 | ET WEB_SPECIFIC_APPS phpAddEdit editform parameter Local File Inclusion; [1,2] | 6,771 | 2015/01/20 | 2008989 | ET POLICY Internal Host Retrieving External IP via showmyip.com - Possible Infection; [1] | 6,770 | 2015/01/20 | 2008988 | ET POLICY Internal Host Retrieving External IP via cmyip.com - Possible Infection; [1] | 6,769 | 2015/01/20 | 2008987 | ET POLICY Internal Host Retrieving External IP via showip.net - Possible Infection; [1] | 6,768 | 2015/01/20 | 2008986 | ET POLICY Internal Host Retrieving External IP via whatismyip.com - Possible Infection; | 6,767 | 2015/01/20 | 2008985 | ET POLICY Internal Host Retrieving External IP via whatismyip.com Automation Page - Possible Infection; [1] | 6,766 | 2015/01/20 | 2008984 | ET TROJAN Trojan-GameThief.Win32.OnLineGames infection report; [1] | 6,765 | 2015/01/20 | 2008983 | ET USER_AGENTS Suspicious User Agent (BlackSun); [1,2] | 6,764 | 2015/01/20 | 2008977 | ET TROJAN Vundo Variant reporting to Controller via HTTP (2); [1] | 6,763 | 2015/01/20 | 2008976 | ET TROJAN Vundo Variant reporting to Controller via HTTP (1); [1] | 6,762 | 2015/01/20 | 2008975 | ET TROJAN Suspicious Malformed Double Accept Header; [1] | < 401 402 403 404 405 406 407 408 409 410 > |
|
Copyright ⓒ 2010 . All Rights Reserved.
|
|