亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频

? 歡迎來到蟲蟲下載站! | ?? 資源下載 ?? 資源專輯 ?? 關于我們
? 蟲蟲下載站

?? netbios.rules

?? snort入侵檢測規則文件2.4 Snort是眾所周知的網絡入侵檢測工具
?? RULES
?? 第 1 頁 / 共 5 頁
字號:
alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS SMB ADMIN$ share access"; flow:established,to_server; content:"|00|"; depth:1; content:"|FF|SMBu"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; byte_jump:2,7,little,relative; content:"ADMIN|24 00|"; distance:2; nocase; classtype:protocol-command-decode; sid:532; rev:12;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS SMB ADMIN$ unicode share access"; flow:established,to_server; content:"|00|"; depth:1; content:"|FF|SMBu"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; byte_jump:2,7,little,relative; content:"A|00|D|00|M|00|I|00|N|00 24 00 00 00|"; distance:2; nocase; classtype:protocol-command-decode; sid:2473; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS ADMIN$ share access"; flow:established,to_server; content:"|00|"; depth:1; content:"|FF|SMBu"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; byte_jump:2,7,little,relative; content:"ADMIN|24 00|"; distance:2; nocase; classtype:protocol-command-decode; sid:2474; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS ADMIN$ unicode share access"; flow:established,to_server; content:"|00|"; depth:1; content:"|FF|SMBu"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; byte_jump:2,7,little,relative; content:"A|00|D|00|M|00|I|00|N|00 24 00 00 00|"; distance:2; nocase; classtype:protocol-command-decode; sid:2475; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS SMB winreg create tree attempt"; flow:established,to_server; flowbits:isset,smb.tree.connect.ipc; content:"|00|"; depth:1; content:"|FF|SMB|A2|"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; content:"|5C|winreg|00|"; within:8; distance:51; nocase; flowbits:set,smb.tree.create.winreg; classtype:protocol-command-decode; sid:2174; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS SMB winreg unicode create tree attempt"; flow:established,to_server; flowbits:isset,smb.tree.connect.ipc; content:"|00|"; depth:1; content:"|FF|SMB|A2|"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; content:"|5C 00|w|00|i|00|n|00|r|00|e|00|g|00 00 00|"; within:16; distance:51; nocase; flowbits:set,smb.tree.create.winreg; classtype:protocol-command-decode; sid:2175; rev:8;)# where did these come from?  I don't know.  lets disable them for real for now# and deal with it later...### alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS winreg access"; flow:to_server,established; content:"|00|"; depth:1; content:"|FF|SMB|A2|"; depth:5; offset:4; content:"|5C|winreg|00|"; offset:85; nocase; classtype:attempted-recon; rev:2;)### alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS winreg unicode access"; flow:to_server,established; content:"|00|"; depth:1; content:"|FF|SMB|A2|"; depth:5; offset:4; content:"|5C 00|w|00|i|00|n|00|r|00|e|00|g|00|"; offset:85; nocase; classtype:attempted-recon; rev:2;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS winreg create tree attempt"; flow:established,to_server; flowbits:isset,smb.tree.connect.ipc; content:"|00|"; depth:1; content:"|FF|SMB|A2|"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; content:"|5C|winreg|00|"; within:8; distance:51; nocase; flowbits:set,smb.tree.create.winreg; classtype:protocol-command-decode; sid:2476; rev:6;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS winreg unicode create tree attempt"; flow:established,to_server; flowbits:isset,smb.tree.connect.ipc; content:"|00|"; depth:1; content:"|FF|SMB|A2|"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; content:"|5C 00|w|00|i|00|n|00|r|00|e|00|g|00 00 00|"; within:16; distance:51; nocase; flowbits:set,smb.tree.create.winreg; classtype:protocol-command-decode; sid:2477; rev:6;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS winreg bind attempt"; flow:established,to_server; flowbits:isset,smb.tree.create.winreg; content:"|00|"; depth:1; content:"|FF|SMB%"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; content:"&|00|"; within:2; distance:29; content:"|5C|PIPE|5C 00|"; distance:4; nocase; byte_jump:2,-10,relative,from_beginning; pcre:"/^.{4}/R"; content:"|05|"; within:1; content:"|0B|"; within:1; distance:1; content:"|01 D0 8C|3D|22 F1|1|AA AA 90 00|8|00 10 03|"; within:16; distance:29; flowbits:set,smb.tree.bind.winreg; classtype:protocol-command-decode; sid:2478; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS winreg unicode bind attempt"; flow:established,to_server; flowbits:isset,smb.tree.create.winreg; content:"|00|"; depth:1; content:"|FF|SMB%"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; content:"&|00|"; within:2; distance:29; content:"|5C 00|P|00|I|00|P|00|E|00 5C 00 00 00|"; distance:4; nocase; byte_jump:2,-10,relative,from_beginning; pcre:"/^.{4}/R"; content:"|05|"; within:1; content:"|0B|"; within:1; distance:1; content:"|01 D0 8C|3D|22 F1|1|AA AA 90 00|8|00 10 03|"; within:16; distance:29; flowbits:set,smb.tree.bind.winreg; classtype:protocol-command-decode; sid:2479; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS InitiateSystemShutdown unicode attempt"; flow:established,to_server; flowbits:isset,smb.tree.bind.winreg; content:"|00|"; depth:1; content:"|FF|SMB%"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; content:"&|00|"; within:2; distance:29; content:"|5C 00|P|00|I|00|P|00|E|00 5C 00 00 00|"; distance:4; nocase; byte_jump:2,-10,relative,from_beginning; pcre:"/^.{4}/R"; content:"|05|"; within:1; byte_test:1,&,16,3,relative; content:"|00|"; within:1; distance:1; content:"|00 18|"; within:2; distance:19; classtype:protocol-command-decode; sid:2480; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS InitiateSystemShutdown unicode little endian attempt"; flow:established,to_server; flowbits:isset,smb.tree.bind.winreg; content:"|00|"; depth:1; content:"|FF|SMB%"; within:5; distance:3; byte_test:1,&,128,6,relative; pcre:"/^.{27}/R"; content:"&|00|"; within:2; distance:29; content:"|5C 00|P|00|I|00|P|00|E|00 5C 00 00 00|"; distance:4; nocase; byte_jump:2,-10,relative,from_beginning; pcre:"/^.{4}/R"; content:"|05|"; within:1; byte_test:1,!&,16,3,relative; content:"|00|"; within:1; distance:1; content:"|18 00|"; within:2; distance:19; classtype:protocol-command-decode; sid:2481; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS InitiateSystemShutdown attempt"; flow:established,to_server; flowbits:isset,smb.tree.bind.winreg; content:"|00|"; depth:1; content:"|FF|SMB%"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; content:"&|00|"; within:2; distance:29; content:"|5C|PIPE|5C 00|"; distance:4; nocase; byte_jump:2,-10,relative,from_beginning; pcre:"/^.{4}/R"; content:"|05|"; within:1; byte_test:1,&,16,3,relative; content:"|00|"; within:1; distance:1; content:"|00 18|"; within:2; distance:19; classtype:protocol-command-decode; sid:2482; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 445 (msg:"NETBIOS SMB-DS InitiateSystemShutdown little endian attempt"; flow:established,to_server; flowbits:isset,smb.tree.bind.winreg; content:"|00|"; depth:1; content:"|FF|SMB%"; within:5; distance:3; byte_test:1,!&,128,6,relative; pcre:"/^.{27}/R"; content:"&|00|"; within:2; distance:29; content:"|5C|PIPE|5C 00|"; distance:4; nocase; byte_jump:2,-10,relative,from_beginning; pcre:"/^.{4}/R"; content:"|05|"; within:1; byte_test:1,!&,16,3,relative; content:"|00|"; within:1; distance:1; content:"|18 00|"; within:2; distance:19; classtype:protocol-command-decode; sid:2483; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS nimda .eml"; flow:to_server,established; content:"|00|.|00|E|00|M|00|L"; reference:url,www.f-secure.com/v-descs/nimda.shtml; classtype:bad-unknown; sid:1293; rev:10;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS nimda .nws"; flow:to_server,established; content:"|00|.|00|N|00|W|00|S"; reference:url,www.f-secure.com/v-descs/nimda.shtml; classtype:bad-unknown; sid:1294; rev:10;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS nimda RICHED20.DLL"; flow:to_server,established; content:"R|00|I|00|C|00|H|00|E|00|D|00|2|00|0"; reference:url,www.f-secure.com/v-descs/nimda.shtml; classtype:bad-unknown; sid:1295; rev:9;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS DOS RFPoison"; flow:to_server,established; content:"|5C 00 5C 00|*|00|S|00|M|00|B|00|S|00|E|00|R|00|V|00|E|00|R|00 00 00 00 00 01 00 00 00 01 00 00 00 00 00 00 00 FF FF FF FF 00 00 00 00|"; reference:arachnids,454; classtype:attempted-dos; sid:529; rev:7;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS NT NULL session"; flow:to_server,established; content:"|00 00 00 00|W|00|i|00|n|00|d|00|o|00|w|00|s|00| |00|N|00|T|00| |00|1|00|3|00|8|00|1"; reference:arachnids,204; reference:bugtraq,1163; reference:cve,2000-0347; classtype:attempted-recon; sid:530; rev:10;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS RFParalyze Attempt"; flow:to_server,established; content:"BEAVIS"; content:"yep yep"; reference:bugtraq,1163; reference:cve,2000-0347; reference:nessus,10392; classtype:attempted-recon; sid:1239; rev:9;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS SMB CD.."; flow:to_server,established; content:"|5C|../|00 00 00|"; reference:arachnids,338; classtype:attempted-recon; sid:534; rev:6;)alert tcp $EXTERNAL_NET any -> $HOME_NET 139 (msg:"NETBIOS SMB CD..."; flow:to_server,established; content:"|5C|...|00 00 00|"; reference:arachnids,337; classtype:attempted-recon; sid:535; rev:6;)

?? 快捷鍵說明

復制代碼 Ctrl + C
搜索代碼 Ctrl + F
全屏模式 F11
切換主題 Ctrl + Shift + D
顯示快捷鍵 ?
增大字號 Ctrl + =
減小字號 Ctrl + -
亚洲欧美第一页_禁久久精品乱码_粉嫩av一区二区三区免费野_久草精品视频
91精彩视频在线观看| 成人国产在线观看| 亚洲一区二区三区美女| 国产精品国产自产拍高清av| 日韩欧美国产一区二区三区| 欧美一区二区不卡视频| 欧美一区二区高清| 精品欧美黑人一区二区三区| 久久综合视频网| 久久精品日韩一区二区三区| 国产精品网友自拍| 亚洲欧美偷拍三级| 亚洲高清免费一级二级三级| 日韩高清电影一区| 日韩国产精品久久久| 久久se这里有精品| 国产一区二区电影| 91视频在线看| 在线成人高清不卡| 久久综合色婷婷| 亚洲欧美一区二区三区极速播放 | 欧美成人aa大片| www国产成人| 亚洲欧洲国产专区| 日韩高清一级片| 福利一区二区在线| 欧美日韩国产天堂| 久久久久国产精品厨房| 亚洲欧美精品午睡沙发| 天天综合日日夜夜精品| 国产曰批免费观看久久久| 99精品黄色片免费大全| 91精品国产aⅴ一区二区| 国产丝袜欧美中文另类| 亚洲高清免费观看高清完整版在线观看 | 欧美日韩高清在线| 精品国产99国产精品| 亚洲精选在线视频| 国内精品视频一区二区三区八戒 | 一区二区三区av电影| 日本欧美久久久久免费播放网| 夫妻av一区二区| 91精品国产丝袜白色高跟鞋| 国产日韩精品一区| 日韩成人午夜电影| 色呦呦日韩精品| 久久久久久久久免费| 视频在线观看91| 91香蕉视频mp4| 国产亚洲精久久久久久| 日本欧美一区二区在线观看| 色婷婷综合久久久中文字幕| 国产亚洲精品超碰| 日韩高清国产一区在线| 欧美日韩一级视频| 18欧美乱大交hd1984| 国产91在线|亚洲| 欧美一区二区三区免费在线看| 亚洲丝袜制服诱惑| 国产激情一区二区三区四区| 欧美一二三区精品| 亚洲成人动漫在线免费观看| 色综合夜色一区| 国产精品麻豆久久久| 国产不卡一区视频| 久久综合久久鬼色中文字| 麻豆91在线观看| 欧美日韩一区 二区 三区 久久精品| 亚洲男同性视频| av一区二区不卡| 国产精品不卡一区| bt7086福利一区国产| 中文欧美字幕免费| 成人av免费网站| 国产精品麻豆久久久| 99久久精品免费精品国产| 国产精品你懂的| 91丨九色porny丨蝌蚪| 亚洲欧美偷拍另类a∨色屁股| av中文字幕在线不卡| 亚洲欧洲精品成人久久奇米网| av网站免费线看精品| 亚洲免费观看高清完整版在线观看熊 | 亚洲高清视频在线| 欧美一区二区三区在线电影| 日本不卡一二三区黄网| 久久亚洲一级片| 国产美女一区二区三区| 国产精品你懂的在线| 欧美在线999| 日本伊人精品一区二区三区观看方式| 欧美精品久久久久久久久老牛影院| 午夜在线成人av| 精品国产伦一区二区三区观看方式| 国产一区二区三区精品欧美日韩一区二区三区| 欧美tickling挠脚心丨vk| 成人性生交大片免费看视频在线| 日韩美女精品在线| 欧美老肥妇做.爰bbww| 久久99国产精品麻豆| 亚洲视频一二区| 欧美一区二区在线免费播放| 国产成人a级片| 亚洲一二三四区| 久久综合一区二区| 色一情一伦一子一伦一区| 免费成人在线播放| 国产精品视频免费看| 欧美高清激情brazzers| 国产91高潮流白浆在线麻豆| 亚洲午夜一区二区| 久久久久国产免费免费| 欧美吞精做爰啪啪高潮| 国产精品一区二区你懂的| 一区二区在线看| 日韩欧美中文字幕一区| jlzzjlzz亚洲女人18| 国产综合色在线视频区| 亚洲香肠在线观看| 久久精品夜色噜噜亚洲a∨| 欧美午夜精品一区二区三区| 精品一区二区免费| 亚洲图片欧美一区| 国产精品久久毛片a| 日韩欧美的一区| 欧美在线一二三| 不卡高清视频专区| 国产麻豆视频精品| 日韩黄色小视频| 亚洲伦在线观看| 国产精品美女久久久久久久久久久| 欧美一区二区三区在线看| 欧美视频在线不卡| 91香蕉视频污在线| www.亚洲精品| 高清在线不卡av| 国产一区二区三区精品视频| 蜜桃av一区二区三区电影| 亚洲一区影音先锋| 一区二区激情小说| 亚洲欧美aⅴ...| 亚洲欧美色图小说| 中文字幕欧美一| 国产精品不卡在线| 综合色中文字幕| 国产精品久久久久三级| 中文字幕+乱码+中文字幕一区| 精品999在线播放| 精品国产制服丝袜高跟| 精品国产污网站| 精品卡一卡二卡三卡四在线| 欧美精品一区二区三区久久久| 欧美xxxxxxxxx| 久久亚洲精华国产精华液| 久久久久久综合| 久久久www成人免费无遮挡大片| 日韩精品一区国产麻豆| 日韩欧美激情在线| www久久精品| 中文在线资源观看网站视频免费不卡 | 精品国产乱码久久久久久久久 | 婷婷成人激情在线网| 午夜精品久久久久影视| 日本不卡中文字幕| 久久精品国产99| 国产精品资源在线观看| 粉嫩av一区二区三区| av在线一区二区三区| 日韩欧美激情在线| 精品少妇一区二区| 久久久久久一二三区| 亚洲国产精品高清| 亚洲蜜桃精久久久久久久| 亚洲h在线观看| 韩国欧美国产1区| 99精品视频一区| 欧美日韩一区小说| 精品免费国产二区三区| 国产精品白丝在线| 五月婷婷综合网| 国产精品综合av一区二区国产馆| 99久久精品国产麻豆演员表| 欧美视频在线观看一区| 精品乱人伦小说| 一区二区免费在线播放| 国产一本一道久久香蕉| 一本大道久久a久久综合婷婷| 69成人精品免费视频| 国产免费观看久久| 亚洲国产精品嫩草影院| 国产一区二区三区av电影 | 美女mm1313爽爽久久久蜜臀| 粉嫩一区二区三区性色av| 欧美亚日韩国产aⅴ精品中极品| 欧美一区二区在线视频| 中文字幕一区二区三区视频| 蜜臀国产一区二区三区在线播放| 成人黄色国产精品网站大全在线免费观看| 欧美日韩国产首页| 亚洲情趣在线观看|