Показать сообщение отдельно

  #2  
Старый 09.07.2009, 02:00
ettee
Administrator
Регистрация: 12.10.2006
Сообщений: 466
С нами: 10304966

Репутация: 5170
По умолчанию

Пример классификации по присваемым сигнатурам в IPS:
Код:
MSRPC_NTLM_Reset_DoS 
Oracle_One_Byte_Packet_DoS 
BlackBerry_SRP_DoS 
DCOM_SystemActivation_DoS 
DHCP_ClientID_DoS 
Email_Mailman_Date_DoS 
MSRPC_WksSvc_UserEnum_DoS 
NDMP_Veritas_BackupExec_ErrorField_BO 
Netbios_Flood_DoS 
Oracle_Listener_Services_DoS 
MSRPC_Spoolss_GetPrinterData_DoS 
Email_Exchange_Calendar_DoS 
OWA_Script_UTF_Encoding 
SIP_0_Response_Code 
BrightStor_Authentication_DoS 
HTTP_Apache_Header_Memory_DoS 
RPC_BrightStor_ARCserve_Dos 
UDP_Flood_DoS 
HTTP_Apache_LF_Memory_DoS 
HTTPS_Apache_ClearText_DoS 
MSRPC_PlugAndPlay_GetDevList_DoS 
RAR_Invalid_Header_Size 
HTTP_iManager_POST_DOS 
DNS_Malformed_Flood 
MSRPC_Netware_Get_User_DoS 
DPS_Magic_Number_DoS 
HTML_IE_Url_Overflow 
HTTP_MhtmlMid_Bo 
Chargen_Denial_of_Service 
Cisco_CallMgrDB_DoS 
Cisco_CR_DoS 
Cisco_IOS_IPV4_DoS 
DCOM_RemoteGetClassObject_DoS 
DNS_Bind_OPT_DoS 
DNS_WINS_DoS 
Echo_Denial_of_Service 
Email_ExchangeStore_DoS 
Finger_Forwarding_DOS 
Fraggle_Attack 
Fragment_Resources_Exhausted 
FTP_Floppy_DoS 
FTP_Pasv_DOS 
FTP_Wildcard_DoS 
Gauntlet_ICMP_DoS 
H225_Invalid_Field_DoS 
H225_Invalid_Length_DoS 
Helix_Server_DoS 
HTTP_Apache_Chunked_DoS 
HTTP_Apache_DOS 
HTTP_BadBlue_DOS 
HTTP_Cgiproc_DoS 
HTTP_Cisco_IOS_DOS 
HTTP_Cisco_IOS_Query_DOS 
HTTP_ColdFusion_SyntaxChecker_DOS 
HTTP_Compaq_Insight_DoS 
HTTP_CrystalReports_FileAccess_DoS 
HTTP_DosDevice 
HTTP_ECware_DOS 
HTTP_IIS_Host_DoS 
HTTP_IIS_ISAPI_Filter_Error_DoS 
HTTP_IISExAir_DOS 
HTTP_Lock_Method_DOS 
HTTP_MyDoom_DoS 
HTTP_PHPNuke_ModulesPhp_DOS 
HTTP_WebDAV_Long_Rqst_DOS 
HTTP_WebDAV_XML_Attribute_DoS 
HTTP_WhatsUp_Login_DoS 
ICMP_Flood 
ICMP_Modem_DoS 
ICMP_TCP_MTU_DoS 
ICMP6_BSD_Dos 
Ident_Flood 
IIS_FTP_Session_Status_DoS 
Image_ANI_RateNumber_DoS 
IP_Flushot 
IP_Ping_Of_Death_Jolt 
IP_PingOfDeath_Jolt2 
IP_SS_Ping 
IP_Timestamp_Not_Aligned 
IPV6_Bad_Fragment_Chain 
IRC_Trinity_Notification 
IRC_TrinityV3_Notification 
IRC_Vscan 
ISAKMP_Delete_SPI_DOS 
Land_Attack 
LDAP_BER_Sequence_Dos 
LDAP_Sun_Search_Dos 
MSRPC_LSA_Crash 
MSRPC_LSA_DoS 
MSRPC_Malformed_DOS 
MSRPC_MSDTC_Message_DoS 
MSRPC_MSDTC_VA_DoS 
MSRPC_Registry_Request_DoS 
MSRPC_RFPoison_Attack 
Mstream_Master 
Mstream_Zombie_Request 
Mstream_Zombie_Response 
MyDoom_SYNFlood 
Nestea 
NewTear 
Oracle_Listener_Debug_DoS 
Ping_Flood 
PingOfDeath 
PlugAndPlay_DoS 
POP_Retr_DoS 
Radius_AccessPacket_DoS 
Radius_AcctStatusType_Dos 
Saihyousen_Attack 
SMS_Remote_Service_DoS 
SMTP_Exchange_Verb_DoS 
Smurf_Attack 
SNMP_Cisco_Zero_Size_DOS 
Snork_Attack 
SOAP_ASPNet_RCP_Encode_DoS 
SQL_SSRP_DoS 
SSL_Hello_Msg_DoS 
Stacheldraht_Agent 
Stacheldraht_Handler 
Stream_DoS 
STUN_KPhone_DoS 
SynDrop 
SYNFlood 
Synthesized_Host_Attack_Flood 
Synthesized_Network_Attack_Flood 
Syslog_Cisco_Zero_Size_DoS 
TCP_Connection_Flood 
TCP_Flag_SynUrg 
TCP_Timestamp_DoS 
TCP_Urg_OutOfRange 
TCP_Within_Window_DoS 
TCP_Zero_Length_Option 
TearDrop 
TearDrop2 
Telnet_PolycomDoS 
TFN_Daemon 
TFN2K_ICMP_Command 
TFN2K_TCP_Command 
TFN2K_UDP_Command 
Trin00_Daemon_Request 
Trin00_Daemon_Response 
Trinoo_Master_Request 
Trinoo_Master_Response 
Twinge_Attack 
UDP_Bomb 
UDP_Port_Loopback 
UDP_Squid_WCCP_Cachelist_DOS 
VOIP_DRDoS 
VOIP_New_Call_Dos 
Win_IGMP_DOS 
Win_IGMP_Option_DoS 
Win2K_DomainController_DOS 
Windows_Printing_Service_DOS 
WinNuke_Attack 
WINS_DelAssoc_DoS 
WinTrin00_Daemon_Request 
WinTrin00_Daemon_Response 
XML_Document_Too_Large 
XML_EntityDecl_DoS 
XML_EntityRef_DoS
 
Ответить с цитированием