CVS log for snort/Attic/backdoor.rules

(logo)

Help

(back) Up to [cvs] / snort

Request diff between arbitrary revisions


Default branch: MAIN
Bookmark a link to: HEAD / (download)

Revision 1.15.2.10 / (view) - annotate - [select for diffs] , Mon Aug 12 01:51:14 2002 UTC (6 years, 4 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15.2.9: +13 -13 lines
Diff to previous 1.15.2.9 to branch point 1.15 to next main 1.16
* massive sync from current

Revision 1.15.2.9 / (view) - annotate - [select for diffs] , Wed Jun 5 15:16:20 2002 UTC (6 years, 7 months ago) by cazz
Branch: SNORT_1_8
CVS Tags: version1-8-7-release
Changes since 1.15.2.8: +0 -0 lines
Diff to previous 1.15.2.8 to branch point 1.15
* massive sync from CURRENT

Revision 1.15.2.8 / (view) - annotate - [select for diffs] , Wed May 8 02:36:03 2002 UTC (6 years, 8 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15.2.7: +0 -0 lines
Diff to previous 1.15.2.7 to branch point 1.15
* massive sync.  everything has an sid, no flows in enabled signatures.

NOTE: Signatures within a .rules file that are disabled are disabled FOR A
REASON!  If you re-enable signatures, you run the risk of breaking things.
Don't re-enable signatures without knowing WHY you want to do this.

Revision 1.15.2.7 / (view) - annotate - [select for diffs] , Sun Apr 28 16:53:27 2002 UTC (6 years, 8 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15.2.6: +3 -1 lines
Diff to previous 1.15.2.6 to branch point 1.15
* massive sync from CURRENT

Revision 1.15.2.6 / (view) - annotate - [select for diffs] , Tue Apr 9 17:42:07 2002 UTC (6 years, 9 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15.2.5: +0 -0 lines
Diff to previous 1.15.2.5 to branch point 1.15
* massive backport of sigs
(NOTE: The REVS are the same as CURRENT.  From now on, we will be doing
       maintance of signatures in 1.9 and backporting sigs back to STABLE)

Revision 1.15.2.5 / (view) - annotate - [select for diffs] , Thu Mar 14 17:28:03 2002 UTC (6 years, 9 months ago) by chrisgreen
Branch: SNORT_1_8
CVS Tags: version1-8-1release
Changes since 1.15.2.4: +0 -0 lines
Diff to previous 1.15.2.4 to branch point 1.15
* resynch rules
* prep build # for 1.8.4
* change build name
* update ChangeLog/News
* boundary condition checks for frag2

Revision 1.15.2.4 / (view) - annotate - [select for diffs] , Sat Mar 2 05:33:01 2002 UTC (6 years, 10 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15.2.3: +3 -3 lines
Diff to previous 1.15.2.3 to branch point 1.15
* yet another synch of signatures

Revision 1.15.2.3 / (view) - annotate - [select for diffs] , Wed Feb 27 19:12:59 2002 UTC (6 years, 10 months ago) by chrisgreen
Branch: SNORT_1_8
Changes since 1.15.2.2: +2 -2 lines
Diff to previous 1.15.2.2 to branch point 1.15
* preliminary rule merge from the 1.9 branch ( sans experimental.rules )

Revision 1.15.2.2 / (view) - annotate - [select for diffs] , Wed Feb 13 19:39:11 2002 UTC (6 years, 10 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15.2.1: +2 -2 lines
Diff to previous 1.15.2.1 to branch point 1.15
* Massive sync of signatures from CURRENT

Revision 1.15.2.1 / (view) - annotate - [select for diffs] , Wed Jan 30 12:50:57 2002 UTC (6 years, 11 months ago) by cazz
Branch: SNORT_1_8
Changes since 1.15: +3 -4 lines
Diff to previous 1.15
* synched rules & all related cruft to the stable tree.
  (this does not include experimental.rules)

Revision 1.16 , Tue Dec 4 06:32:57 2001 UTC (7 years, 1 month ago) by natasha
Branch: MAIN
CVS Tags: HEAD
Changes since 1.15: +1 -1 lines
FILE REMOVED
*** empty log message ***

Revision 1.15 / (view) - annotate - [select for diffs] , Tue Oct 30 05:39:23 2001 UTC (7 years, 2 months ago) by cazz
Branch: MAIN
Branch point for: SNORT_1_8
Changes since 1.14: +105 -105 lines
Diff to previous 1.14
* oops. forgot the trailing ; after bumping the rev.

Revision 1.14 / (view) - annotate - [select for diffs] , Tue Oct 30 05:31:34 2001 UTC (7 years, 2 months ago) by cazz
Branch: MAIN
Changes since 1.13: +105 -105 lines
Diff to previous 1.13
* add a classification to those rules without.
  (used misc-activity as the default)

Revision 1.13 / (view) - annotate - [select for diffs] , Tue Oct 30 01:19:39 2001 UTC (7 years, 2 months ago) by cazz
Branch: MAIN
Changes since 1.12: +2 -2 lines
Diff to previous 1.12
* disabled a completely stupid rule

Revision 1.12 / (view) - annotate - [select for diffs] , Mon Oct 29 01:52:54 2001 UTC (7 years, 2 months ago) by roesch
Branch: MAIN
Changes since 1.11: +2 -1 lines
Diff to previous 1.11
* Added copyright notices so that the Intrusion.com people might take our intellectual
  property a bit more seriously

Revision 1.11 / (view) - annotate - [select for diffs] , Tue Sep 25 14:15:18 2001 UTC (7 years, 3 months ago) by cazz
Branch: MAIN
Changes since 1.10: +1 -2 lines
Diff to previous 1.10
* regen sid-msg.map
* correct a few msgs.
* add sid,rev to http dir listing
* corrected MSGs for a number of rules

Revision 1.10 / (view) - annotate - [select for diffs] , Tue Sep 25 04:07:41 2001 UTC (7 years, 3 months ago) by cazz
Branch: MAIN
Changes since 1.9: +2 -2 lines
Diff to previous 1.9
* Added descriptions to many of the .rules files.  (More to come soon)
* cleaned up a few any any rules
* cleaned up the name of a few rules
* Created attack-responces.rules (for generic responces of known attacks)
* Created bad-traffic.rules (for signatures that shouldn't happen on a
  'good' network)
* normalized a few msgs.
* changed order telnet.rules to speed up the exploit signatures
* added sml3com access signature (need to write an overflow attempt sig,
  but don't have a 3com router to test it.  any takers?)

Revision 1.9 / (view) - annotate - [select for diffs] , Sun Aug 26 00:02:00 2001 UTC (7 years, 4 months ago) by cazz
Branch: MAIN
Changes since 1.8: +1 -6 lines
Diff to previous 1.8
* cleaned up a huge amount of dup rules

Thanks to Jimmy Staggs for pointing out the duplicates

Revision 1.8 / (view) - annotate - [select for diffs] , Tue Jul 24 21:21:12 2001 UTC (7 years, 5 months ago) by cazz
Branch: MAIN
Changes since 1.7: +2 -2 lines
Diff to previous 1.7
* A couple of broken rules that Marty caught

Revision 1.7 / (view) - annotate - [select for diffs] , Tue Jun 26 20:42:24 2001 UTC (7 years, 6 months ago) by cazz
Branch: MAIN
Changes since 1.6: +2 -2 lines
Diff to previous 1.6
* Fixed typo
- noticed by Chad Dougherty

Revision 1.6 / (view) - annotate - [select for diffs] , Mon Jun 11 15:29:29 2001 UTC (7 years, 6 months ago) by cazz
Branch: MAIN
Changes since 1.5: +122 -122 lines
Diff to previous 1.5
* added support for SID and REV.
* added sid-msg.map (maps SID to MSG)

SID is a unique ID for each rule.  REV is the rule revision.

Revision 1.5 / (view) - annotate - [select for diffs] , Tue Apr 17 18:16:05 2001 UTC (7 years, 8 months ago) by cazz
Branch: MAIN
Changes since 1.4: +3 -3 lines
Diff to previous 1.4
Where did those come from?!?

Revision 1.4 / (view) - annotate - [select for diffs] , Tue Apr 17 03:32:46 2001 UTC (7 years, 8 months ago) by cazz
Branch: MAIN
Changes since 1.3: +13 -2 lines
Diff to previous 1.3
* Changed default $HOME_NET to any (watch as marty changes it right back :P)
* Added classifications to almost every rule

NOTE:
We are currently using IDMEF's classifications.  This may change soon.
This is an extremely SIMPLE and well defined set of rule classifications
and priorities.  It is completely changeable.  Read sp_priority and
classification.conf for more information.

Revision 1.3 / (view) - annotate - [select for diffs] , Thu Apr 5 15:24:11 2001 UTC (7 years, 9 months ago) by cazz
Branch: MAIN
Changes since 1.2: +3 -3 lines
Diff to previous 1.2
updated broken rules from last database export

Revision 1.2 / (view) - annotate - [select for diffs] , Wed Apr 4 23:07:50 2001 UTC (7 years, 9 months ago) by cazz
Branch: MAIN
Changes since 1.1: +32 -28 lines
Diff to previous 1.1
Added x11.rules, x11.rules, and virus.rules

Revision 1.1 / (view) - annotate - [select for diffs] , Sat Mar 10 15:42:09 2001 UTC (7 years, 10 months ago) by roesch
Branch: MAIN
* Disabled reseerved bits scan detection, false positives for ECN traffic
  aren't detectable with the current code and I'm seeing a lot of noise
  out there about this...
* committed the new rules set from Forster/Caswell

This form allows you to request diffs between any two revisions of a file. You may select a symbolic revision name using the selection box or you may type in a numeric name using the type-in text box.

Diffs between and
Type of Diff should be a

View only Branch:
Sort log by:

snort-team@sourcefire.com