⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 798.txt

📁 snort入侵检测规则文件2.4 Snort是众所周知的网络入侵检测工具
💻 TXT
字号:
Rule:  --Sid:798--Summary:This rule has been placed in deleted.rules. It has been superceded bysid 721.--Impact:Mail worms may spread rapidly because users execute them.--Detailed Information:Windows systems are often configured not to display file extensions.By adding a second extension, users get confused and think that anexecutable is a picture - e.g. nicegirl.gif.vbs gets displayed asnicegirl.gif but is a visual basic script and not a picture.--Affected Systems: --Attack Scenarios:Famous worms (ILOVEYOU, KOURNIKOVA) are based on this method.--Ease of Attack:Very easy. One needs to attach a file and hope that it gets executed.--False Positives:None KnownCould be an error on sender's side.--False Negatives:None Known---Corrective Action:Use antivirus software. Configure mail clients securely, especially whenusing windows desktops. Educate your mail users. Deny all attachments atthe gateway if you can.--Contributors:Original rule writer unknownSnort documentation contributed by tobias.haecker@to.comSourcefire Vulnerability Research TeamNigel Houghton <nigel.houghton@sourcefire.com>--Additional References:See websites of antivirus companies.--

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -