IDS / IPS
Network IDS rules
52,690 rules · Snort / Suricata signatures
Network intrusion-detection signatures from open rulesets (ET Open, Snort Community, abuse.ch). These match malicious traffic patterns on the wire. A rule name links to its upstream reference where the ruleset publishes one; rules without a public reference show as plain text.
◈
Rules
50 shown of 52,690
et-open
misc-activity
ET CHAT IRC PONG response
et-open
trojan-activity
ET MALWARE IRC Channel topic scan/exploit command
et-open
trojan-activity
ET MALWARE IRC Potential bot scan/exploit command
et-open
successful-recon-limited
ET ATTACK_RESPONSE Possible /etc/passwd via HTTP (linux style)
et-open
pup-activity
ET ADWARE_PUP Shopathomeselect .com Spyware User-Agent (WebDownloader)
et-open
misc-activity
ET POLICY Inbound Frequent Emails - Possible Spambot Inbound
et-open
policy-violation
ET GAMES Guild Wars connection
et-open
policy-violation
ET CHAT Skype User-Agent detected
et-open
pup-activity
ET ADWARE_PUP Casalemedia Spyware Reporting URL Visited 2
et-open
trojan-activity
ET MALWARE IRC potential reptile commands
et-open
unsuccessful-user
ET SCAN Potential FTP Brute-Force attempt response
et-open
trojan-activity
ET MALWARE IRC potential bot commands
et-open
trojan-activity
ET MALWARE IRC channel topic misc bot commands
et-open
trojan-activity
ET USER_AGENTS Suspicious User Agent (Microsoft Internet Explorer)
et-open
policy-violation
ET CHAT Yahoo IM Client Install
et-open
web-application-attack
ET WEB_SPECIFIC_APPS e107 resetcore.php SQL Injection attempt
et-open
web-application-attack
ET WEB_SPECIFIC_APPS Galerie ShowGallery.php SQL Injection attempt
et-open
web-application-attack
ET WEB_SPECIFIC_APPS Cyphor show.php SQL injection attempt
et-open
pup-activity
ET ADWARE_PUP iDownloadAgent Spyware User-Agent (iDownloadAgent)
et-open
policy-violation
ET P2P GnucDNA UDP Ultrapeer Traffic
et-open
policy-violation
ET P2P Gnutella TCP Ultrapeer Traffic
et-open
trojan-activity
ET ATTACK_RESPONSE Hostile FTP Server Banner (StnyFtpd)
et-open
trojan-activity
ET ATTACK_RESPONSE Hostile FTP Server Banner (Reptile)
et-open
trojan-activity
ET ATTACK_RESPONSE Hostile FTP Server Banner (Bot Server)
Showing 151-200 of 52,690