번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) | 8,561 | 2015/01/20 | 2010984 | ET WEB_SPECIFIC_APPS Joomla com_quicknews Component newsid Parameter INSERT INTO SQL Injection Attempt; [1] | 8,560 | 2015/01/20 | 2010983 | ET WEB_SPECIFIC_APPS Joomla com_quicknews Component newsid Parameter UNION SELECT SQL Injection Attempt; [1] | 8,559 | 2015/01/20 | 2010982 | ET WEB_SPECIFIC_APPS Joomla com_quicknews Component newsid Parameter DELETE FROM SQL Injection Attempt; [1] | 8,558 | 2015/01/20 | 2010981 | ET WEB_SPECIFIC_APPS Joomla com_quicknews Component newsid Parameter SELECT FROM SQL Injection Attempt; [1] | 8,557 | 2015/01/20 | 2010980 | ET WEB_SPECIFIC_APPS IBM ENOVIA SmarTeam v5 LoginPage.aspx Cross Site Scripting Attempt; [1,2] | 8,556 | 2015/01/20 | 2010979 | ET WEB_SPECIFIC_APPS ispCP Omega admin1.template.php Remote File Inclusion Attempt; [1,2] | 8,555 | 2015/01/20 | 2010978 | ET ACTIVEX IE ActiveX control Exec method Remote code execution Attempt; [1,2] | 8,554 | 2015/01/20 | 2010977 | ET ACTIVEX AOL 9.5 ActiveX control Import method Heap Overflow Attempt; [1,2] | 8,553 | 2015/01/20 | 2010976 | ET WEB_SPECIFIC_APPS JcomBand toolbar ActiveX Control isRegistered Property Buffer Overflow Attempt; [1,2,3] | 8,552 | 2015/01/20 | 2010975 | ET TROJAN Unruy Downloader Checkin; [1,2,3,4] | 8,551 | 2015/01/20 | 2010973 | ET TROJAN Vobfus/Changeup/Chinky Download Command; [1,2,3,4,5,6] | 8,550 | 2015/01/20 | 2010972 | ET POLICY Possible ProxyShell Hide IP Installation file download; [1,2] | 8,549 | 2015/01/20 | 2010970 | ET WEB_SERVER HP OpenView Network Node Manager OvWebHelp.exe Heap Buffer Overflow Attempt; [1] | 8,548 | 2015/01/20 | 2010969 | ET POLICY Possible ProxyShell Anonymous Access Connection; [1] | 8,547 | 2015/01/20 | 2010968 | ET WEB_CLIENT Possible Foxit/Adobe PDF Reader Launch Action Remote Code Execution Attempt; [1,2,3,4,5,6,7,8] | 8,546 | 2015/01/20 | 2010967 | ET WEB_SERVER SHOW TABLES SQL Injection Attempt in URI; [1,2,3] | 8,545 | 2015/01/20 | 2010966 | ET WEB_SERVER SHOW CURDATE/CURTIME SQL Injection Attempt in URI; [1,2,3,4] | 8,544 | 2015/01/20 | 2010965 | ET WEB_SERVER SHOW VARIABLES SQL Injection Attempt in URI; [1,2,3] | 8,543 | 2015/01/20 | 2010964 | ET WEB_SERVER SHOW CHARACTER SET SQL Injection Attempt in URI; [1,2,3] | 8,542 | 2015/01/20 | 2010963 | ET WEB_SERVER SELECT USER SQL Injection Attempt in URI; [1,2] | 8,541 | 2015/01/20 | 2010962 | ET ACTIVEX AOL 9.5 Phobos.Playlist Import ActiveX Buffer Overflow Attempt; [1,2] | 8,540 | 2015/01/20 | 2010961 | ET WEB_CLIENT Wscript Shell Run Attempt - Likely Hostile; [1,2] | 8,539 | 2015/01/20 | 2010960 | ET SCAN WhatWeb Web Application Fingerprint Scanner Default User-Agent Detected; [1,2] | 8,538 | 2015/01/20 | 2010959 | ET ACTIVEX Possible Symantec Antivirus 10.0 Client Proxy ActiveX Control Buffer Overflow Function Call Attempt; [1,2,3] | 8,537 | 2015/01/20 | 2010958 | ET ACTIVEX Possible Symantec Antivirus 10.0 Client Proxy ActiveX Control Buffer Overflow Attempt; [1,2,3] | 8,536 | 2015/01/20 | 2010957 | ET ACTIVEX SAP GUI SAPBExCommonResources ActiveX Insecure Method Code Execution Attempt; [1,2] | 8,535 | 2015/01/20 | 2010956 | ET SCAN Skipfish Web Application Scan Detected (2); [1,2,3] | 8,534 | 2015/01/20 | 2010954 | ET SCAN crimscanner User-Agent detected; [1] | 8,533 | 2015/01/20 | 2010953 | ET SCAN Skipfish Web Application Scan Detected; [1,2,3] | 8,532 | 2015/01/20 | 2010952 | ET DELETED facebook activity; [1,2] | 8,531 | 2015/01/20 | 2010951 | ET WEB_SPECIFIC_APPS Joomla com_hdflvplayer Component id Parameter UPDATE SET SQL Injection Attempt; [1,2] | 8,530 | 2015/01/20 | 2010950 | ET WEB_SPECIFIC_APPS Joomla com_hdflvplayer Component id Parameter INSERT INTO SQL Injection Attempt; [1,2] | 8,529 | 2015/01/20 | 2010949 | ET WEB_SPECIFIC_APPS Joomla com_hdflvplayer Component id Parameter UNION SELECT SQL Injection Attempt; [1,2] | 8,528 | 2015/01/20 | 2010948 | ET WEB_SPECIFIC_APPS Joomla com_hdflvplayer Component id Parameter DELETE FROM SQL Injection Attempt; [1,2] | 8,527 | 2015/01/20 | 2010947 | ET WEB_SPECIFIC_APPS Joomla com_hdflvplayer Component id Parameter SELECT FROM SQL Injection Attempt; [1,2] | 8,526 | 2015/01/20 | 2010946 | ET WEB_SPECIFIC_APPS Yahoo CD Player ActiveX Open Stack Overflow Function Call; [1,2] | 8,525 | 2015/01/20 | 2010945 | ET WEB_SPECIFIC_APPS Yahoo CD Player ActiveX Open Stack Overflow Attempt; [1,2] | 8,524 | 2015/01/20 | 2010944 | ET ACTIVEX Viscom Movie Player Pro SDK ActiveX DrawText method Buffer Overflow Function Call; [1,2,3] | 8,523 | 2015/01/20 | 2010943 | ET ACTIVEX SoftCab Sound Converter ActiveX SaveFormat File overwrite Attempt; [1,2] | 8,522 | 2015/01/20 | 2010942 | ET WEB_SPECIFIC_APPS Joomla Component com_jcollection controller Parameter Local File Inclusion Attempt; [1,2] | 8,521 | 2015/01/20 | 2010941 | ET EXPLOIT Possible Sendmail SpamAssassin Milter Plugin Remote Arbitrary Command Injection Attempt; [1,2,3] | 8,520 | 2015/01/20 | 2010939 | ET POLICY Suspicious inbound to PostgreSQL port 5432; [1] | 8,519 | 2015/01/20 | 2010938 | ET POLICY Suspicious inbound to mSQL port 4333; [1] | 8,518 | 2015/01/20 | 2010937 | ET POLICY Suspicious inbound to mySQL port 3306; [1] | 8,517 | 2015/01/20 | 2010936 | ET POLICY Suspicious inbound to Oracle SQL port 1521; [1] | 8,516 | 2015/01/20 | 2010935 | ET POLICY Suspicious inbound to MSSQL port 1433; [1] | 8,515 | 2015/01/20 | 2010934 | ET MALWARE Infobox3 Spyware User-Agent (InfoBox); [1] | 8,514 | 2015/01/20 | 2010932 | ET TROJAN Dropper Checkin 2 (often scripts.dlv4.com related); [1] | 8,513 | 2015/01/20 | 2010931 | ET WEB_CLIENT Possible IE iepeers.dll Use-after-free Code Execution Attempt; [1,2,3,4,5] | 8,512 | 2015/01/20 | 2010930 | ET ACTIVEX Foxit Reader ActiveX OpenFile method Remote Code Execution Function Call; [1,2] | < 371 372 373 374 375 376 377 378 379 380 > |
|