alert tcp $HOME_NET any -> 61.218.38.35 $HTTP_PORTS (msg:"BLEEDING-EDGE TROJAN PossibleExploit?-W32/Ani.C Traffic"; flags:S,12; threshold:type limit, track by_src, count 1, seconds 60; classtype:trojan-activity; reference:url,www.f-secure.com/v-descs/trojan-downloader_w32_small_ekv.shtml; sid:2003522; rev:1;)

Added 2007-03-30 12:05:58 UTC


Topic revision: r1 - 2008-01-08 - TWikiGuest
 
This site is powered by the TWiki collaboration platform Powered by Perl This site is powered by the TWiki collaboration platformCopyright © Emerging Threats