<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"><head><meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"></meta><title>Astaro IPS Rules</title><style type="text/css"><!--
.group {font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 12px}
.rules {
	font-family: Verdana, Arial, Helvetica, sans-serif;
	font-size: 10px;
	border: 2px solid #000000;
}
.header {
	font-family: Verdana, Arial, Helvetica, sans-serif;
	font-weight: bold;
	font-size: 16px;
}
.subheader {
	font-family: Verdana, Arial, Helvetica, sans-serif;
	font-size: 12px;
}
.groupheader {
	font-size: 14px;
	border-bottom: 2px solid #F78F20;
	font-family: Verdana, Arial, Helvetica, sans-serif;
}
.index {
	font-family: Verdana, Arial, Helvetica, sans-serif;
	font-size: 10px;
	border: 2px solid #000000;
}
.indextableheader {
	padding: 2px 4px; 
	color: white; 
	background-color: rgb(244, 141, 32); 
	border-left: 1px dotted #FFFFFF;
	border-bottom: 2px solid #000000;
	font-size: 12px; 
	font-weight: bold;
	font-family: Verdana, Arial, Helvetica, sans-serif;
}
.indextablebody {
	font-size: 11px; 
	font-family: Verdana, Arial, Helvetica, sans-serif;
	border-bottom: 1px solid #000000;
	border-left: 1px dotted #AAAAAA;
	padding:2px 4px 2px 4px;
}

.ruletableheader {
	padding: 2px 4px; 
	color: white; 
	background-color: rgb(244, 141, 32);
	border-left: 1px dotted #FFFFFF;
	border-bottom: 2px solid #000000;
	font-size: 12px; 
	font-weight: bold;
	font-family: Verdana, Arial, Helvetica, sans-serif;
}
.ruletablebody {
	font-size: 10px;
	border-bottom: 1px solid #000000;
	border-left: 1px dotted #AAAAAA;
	
	padding:2px 4px 2px 4px;
	font-family: Verdana, Arial, Helvetica, sans-serif;
}


--></style></head><body><span class="header">Detailed List of IPS rules used in ASG V8 and V7.508</span><br></br><span class="subheader">Last update: Wed Feb  2 16:11:36 2011</span><br></br><a name="topbanner"></a><br></br><table class="index" cellpadding="0" cellspacing="0" border="0"><tr><th align="left" class="indextableheader" style="border-left:0;">Group Name</th><th class="indextableheader"># of attack rules</th><th class="indextableheader"># of warning rules</th><th align="left" class="indextableheader">goto</th></tr><tr><td class="indextablebody" style="border-left:0;" colspan="4"> </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">OS</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">OS / Windows</td><td align="center" class="indextablebody"> 
	  2423
	 </td><td align="center" class="indextablebody"> 
	  709
	 </td><td align="center" class="indextablebody"> 
	  <a href="#110">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">OS / Linux</td><td align="center" class="indextablebody"> 
	  4
	 </td><td align="center" class="indextablebody"> 
	  19
	 </td><td align="center" class="indextablebody"> 
	  <a href="#120">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">OS / Other</td><td align="center" class="indextablebody"> 
	  30
	 </td><td align="center" class="indextablebody"> 
	  53
	 </td><td align="center" class="indextablebody"> 
	  <a href="#130">goto rules ...</a>
	 </td></tr><tr><td class="indextablebody" style="border-left:0;" colspan="4"> </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / Common</td><td align="center" class="indextablebody"> 
	  22
	 </td><td align="center" class="indextablebody"> 
	  70
	 </td><td align="center" class="indextablebody"> 
	  <a href="#211">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / Apache</td><td align="center" class="indextablebody"> 
	  10
	 </td><td align="center" class="indextablebody"> 
	  18
	 </td><td align="center" class="indextablebody"> 
	  <a href="#212">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / Microsoft IIS</td><td align="center" class="indextablebody"> 
	  17
	 </td><td align="center" class="indextablebody"> 
	  138
	 </td><td align="center" class="indextablebody"> 
	  <a href="#213">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / Other</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / Coldfusion</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / Frontpage</td><td align="center" class="indextablebody"> 
	  0
	 </td><td align="center" class="indextablebody"> 
	  38
	 </td><td align="center" class="indextablebody"> 
	  <a href="#216">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / PHP</td><td align="center" class="indextablebody"> 
	  25
	 </td><td align="center" class="indextablebody"> 
	  165
	 </td><td align="center" class="indextablebody"> 
	  <a href="#217">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / HTTP / CGI</td><td align="center" class="indextablebody"> 
	  21
	 </td><td align="center" class="indextablebody"> 
	  365
	 </td><td align="center" class="indextablebody"> 
	  <a href="#218">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Mail</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Mail / Microsoft Exchange</td><td align="center" class="indextablebody"> 
	  12
	 </td><td align="center" class="indextablebody"> 
	  5
	 </td><td align="center" class="indextablebody"> 
	  <a href="#221">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Mail / Sendmail</td><td align="center" class="indextablebody"> 
	  0
	 </td><td align="center" class="indextablebody"> 
	  21
	 </td><td align="center" class="indextablebody"> 
	  <a href="#222">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Mail / POP3</td><td align="center" class="indextablebody"> 
	  11
	 </td><td align="center" class="indextablebody"> 
	  29
	 </td><td align="center" class="indextablebody"> 
	  <a href="#223">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Mail / IMAP</td><td align="center" class="indextablebody"> 
	  34
	 </td><td align="center" class="indextablebody"> 
	  44
	 </td><td align="center" class="indextablebody"> 
	  <a href="#224">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Mail / SMTP</td><td align="center" class="indextablebody"> 
	  165
	 </td><td align="center" class="indextablebody"> 
	  45
	 </td><td align="center" class="indextablebody"> 
	  <a href="#225">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Database</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Database / Microsoft</td><td align="center" class="indextablebody"> 
	  10
	 </td><td align="center" class="indextablebody"> 
	  8
	 </td><td align="center" class="indextablebody"> 
	  <a href="#231">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Database / Oracle</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Database / MySQL</td><td align="center" class="indextablebody"> 
	  16
	 </td><td align="center" class="indextablebody"> 
	  19
	 </td><td align="center" class="indextablebody"> 
	  <a href="#233">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Database / Common SQL</td><td align="center" class="indextablebody"> 
	  60
	 </td><td align="center" class="indextablebody"> 
	  113
	 </td><td align="center" class="indextablebody"> 
	  <a href="#234">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Database / Common SQL</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / DNS</td><td align="center" class="indextablebody"> 
	  24
	 </td><td align="center" class="indextablebody"> 
	  265
	 </td><td align="center" class="indextablebody"> 
	  <a href="#241">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / FTP</td><td align="center" class="indextablebody"> 
	  39
	 </td><td align="center" class="indextablebody"> 
	  123
	 </td><td align="center" class="indextablebody"> 
	  <a href="#242">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / SSH</td><td align="center" class="indextablebody"> 
	  0
	 </td><td align="center" class="indextablebody"> 
	  8
	 </td><td align="center" class="indextablebody"> 
	  <a href="#243">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / Backup</td><td align="center" class="indextablebody"> 
	  19
	 </td><td align="center" class="indextablebody"> 
	  46
	 </td><td align="center" class="indextablebody"> 
	  <a href="#244">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / TFTP</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / SNMP</td><td align="center" class="indextablebody"> 
	  3
	 </td><td align="center" class="indextablebody"> 
	  4
	 </td><td align="center" class="indextablebody"> 
	  <a href="#246">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / Authentication</td><td align="center" class="indextablebody"> 
	  7
	 </td><td align="center" class="indextablebody"> 
	  12
	 </td><td align="center" class="indextablebody"> 
	  <a href="#247">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Server / Misc / CVS</td><td align="center" class="indextablebody"> 
	  1
	 </td><td align="center" class="indextablebody"> 
	  16
	 </td><td align="center" class="indextablebody"> 
	  <a href="#248">goto rules ...</a>
	 </td></tr><tr><td class="indextablebody" style="border-left:0;" colspan="4"> </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client / Office</td><td align="center" class="indextablebody"> 
	  281
	 </td><td align="center" class="indextablebody"> 
	  112
	 </td><td align="center" class="indextablebody"> 
	  <a href="#310">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client / Browser</td><td align="center" class="indextablebody"> 
	  246
	 </td><td align="center" class="indextablebody"> 
	  67
	 </td><td align="center" class="indextablebody"> 
	  <a href="#320">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client / Email</td><td align="center" class="indextablebody"> 
	  17
	 </td><td align="center" class="indextablebody"> 
	  3
	 </td><td align="center" class="indextablebody"> 
	  <a href="#330">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client / Multimedia</td><td align="center" class="indextablebody"> 
	  292
	 </td><td align="center" class="indextablebody"> 
	  34
	 </td><td align="center" class="indextablebody"> 
	  <a href="#340">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client / Peer to Peer</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Client / Instant Messenger</td><td align="center" class="indextablebody"> 
	  8
	 </td><td align="center" class="indextablebody"> 
	  2
	 </td><td align="center" class="indextablebody"> 
	  <a href="#360">goto rules ...</a>
	 </td></tr><tr><td class="indextablebody" style="border-left:0;" colspan="4"> </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Protocol Anomaly</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Protocol Anomaly / Invalid Traffic</td><td align="center" class="indextablebody"> 
	  7
	 </td><td align="center" class="indextablebody"> 
	  13
	 </td><td align="center" class="indextablebody"> 
	  <a href="#410">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Protocol Anomaly / ICMP</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Protocol Anomaly / IGMP</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Protocol Anomaly / RPC</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Protocol Anomaly / Misc</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td class="indextablebody" style="border-left:0;" colspan="4"> </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Malware</td><td align="center" class="indextablebody"> 
	  1789
	 </td><td align="center" class="indextablebody"> 
	  1827
	 </td><td align="center" class="indextablebody"> 
	  <a href="#500">goto rules ...</a>
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Malware / Trojans</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr><tr><td align="left" class="indextablebody" style="border-left:0;">Malware / DoS</td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td><td align="center" class="indextablebody"> 
	  
	 </td></tr></table><hr></hr><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="100"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: OS</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="110"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: OS / Windows</div></p><span class="group"># of attack rules in this group: 2423</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1239</td><td class="ruletablebody" valign="top">NETBIOS RFParalyze Attempt (<a href="http://www.snort.org/search/sid/1239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0347">2000-0347</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1163">1163</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10392">10392</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2005</td><td class="ruletablebody" valign="top">RPC portmap kcms_server request UDP (<a href="http://www.snort.org/search/sid/2005?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0027">2003-0027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/6665">6665</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/850785">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2007</td><td class="ruletablebody" valign="top">RPC kcms_server directory traversal attempt (<a href="http://www.snort.org/search/sid/2007?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0027">2003-0027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/6665">6665</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/850785">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2103</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 unicode maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/2103?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2123</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES Microsoft cmd.exe banner (<a href="http://www.snort.org/search/sid/2123?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11633">11633</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2176</td><td class="ruletablebody" valign="top">NETBIOS SMB startup folder access (<a href="http://www.snort.org/search/sid/2176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2252</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS DCERPC Remote Activation bind attempt (<a href="http://www.snort.org/search/sid/2252?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0715">2003-0715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8458">8458</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11835">11835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2255</td><td class="ruletablebody" valign="top">RPC sadmind query with root credentials attempt TCP (<a href="http://www.snort.org/search/sid/2255?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2256</td><td class="ruletablebody" valign="top">RPC sadmind query with root credentials attempt UDP (<a href="http://www.snort.org/search/sid/2256?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2257</td><td class="ruletablebody" valign="top">NETBIOS DCERPC Messenger Service buffer overflow attempt (<a href="http://www.snort.org/search/sid/2257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0717">2003-0717</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8826">8826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11890">11890</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2258</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS DCERPC Messenger Service buffer overflow attempt (<a href="http://www.snort.org/search/sid/2258?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0717">2003-0717</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8826">8826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11890">11890</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2349</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss EnumPrinters attempt (<a href="http://www.snort.org/search/sid/2349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6114">2006-6114</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21220">21220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2401</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup andx username overflow attempt (<a href="http://www.snort.org/search/sid/2401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2403</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup unicode username overflow attempt (<a href="http://www.snort.org/search/sid/2403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2435</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft emf metafile access (<a href="http://www.snort.org/search/sid/2435?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5746">2007-5746</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9707">9707</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2436</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft wmf metafile access (<a href="http://www.snort.org/search/sid/2436?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2508</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP lsass DsRolerUpgradeDownlevelServer overflow attempt (<a href="http://www.snort.org/search/sid/2508?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0533">2003-0533</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10108">10108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2511</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP lsass DsRolerUpgradeDownlevelServer overflow attempt (<a href="http://www.snort.org/search/sid/2511?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0533">2003-0533</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10108">10108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2942</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP winreg InitiateSystemShutdown attempt (<a href="http://www.snort.org/search/sid/2942?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://msdn.microsoft.com/library/default.asp?url=/library/en-us/shutdown/base/initiatesystemshutdown.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3018</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3018?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3019</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3019?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3020</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3020?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3021</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3021?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3022</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3022?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3023</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE andx oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3023?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3024</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3024?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3025</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode andx oversized Security Descriptor attempt (<a href="http://www.snort.org/search/sid/3025?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3026</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE SACL overflow attempt (<a href="http://www.snort.org/search/sid/3026?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3027</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/3027?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3028</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode SACL overflow attempt (<a href="http://www.snort.org/search/sid/3028?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3029</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/3029?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3030</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE SACL overflow attempt (<a href="http://www.snort.org/search/sid/3030?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3031</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/3031?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3032</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode SACL overflow attempt (<a href="http://www.snort.org/search/sid/3032?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3033</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/3033?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3034</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE DACL overflow attempt (<a href="http://www.snort.org/search/sid/3034?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3035</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/3035?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3036</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode DACL overflow attempt (<a href="http://www.snort.org/search/sid/3036?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3037</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/3037?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3038</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE DACL overflow attempt (<a href="http://www.snort.org/search/sid/3038?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3039</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/3039?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3079</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft ANI file parsing overflow (<a href="http://www.snort.org/search/sid/3079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1765">2007-1765</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3135</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 QUERY_FILE_INFO attempt (<a href="http://www.snort.org/search/sid/3135?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3136</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 QUERY_FILE_INFO andx attempt (<a href="http://www.snort.org/search/sid/3136?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3137</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 QUERY_FILE_INFO attempt (<a href="http://www.snort.org/search/sid/3137?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3138</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 QUERY_FILE_INFO andx attempt (<a href="http://www.snort.org/search/sid/3138?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3139</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 FIND_FIRST2 attempt (<a href="http://www.snort.org/search/sid/3139?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3140</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 FIND_FIRST2 andx attempt (<a href="http://www.snort.org/search/sid/3140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3141</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 FIND_FIRST2 attempt (<a href="http://www.snort.org/search/sid/3141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3142</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 FIND_FIRST2 andx attempt (<a href="http://www.snort.org/search/sid/3142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3143</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 FIND_FIRST2 command response overflow attempt (<a href="http://www.snort.org/search/sid/3143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0045">2005-0045</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12484">12484</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3144</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 FIND_FIRST2 response andx overflow attempt (<a href="http://www.snort.org/search/sid/3144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0045">2005-0045</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12484">12484</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3146</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 FIND_FIRST2 response andx overflow attempt (<a href="http://www.snort.org/search/sid/3146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0045">2005-0045</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12484">12484</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3158</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP ISystemActivator CoGetInstanceFromFile attempt (<a href="http://www.snort.org/search/sid/3158?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0715">2003-0715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3159</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP ISystemActivator CoGetInstanceFromFile attempt (<a href="http://www.snort.org/search/sid/3159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0715">2003-0715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3171</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msqueue function 4 overflow attempt (<a href="http://www.snort.org/search/sid/3171?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0059">2005-0059</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3397</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP ISystemActivator RemoteCreateInstance attempt (<a href="http://www.snort.org/search/sid/3397?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0352">2003-0352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8205">8205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-026.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3398</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP ISystemActivator RemoteCreateInstance attempt (<a href="http://www.snort.org/search/sid/3398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0352">2003-0352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8205">8205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-026.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3409</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP IActivation remoteactivation overflow attempt (<a href="http://www.snort.org/search/sid/3409?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0715">2003-0715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8205">8205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3552</td><td class="ruletablebody" valign="top">WEB-CLIENT OLE32 microsoft MSHTA masquerade attempt (<a href="http://www.snort.org/search/sid/3552?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0063">2005-0063</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13132">13132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3967</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_QueryResConfList attempt (<a href="http://www.snort.org/search/sid/3967?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1983">2005-1983</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14513">14513</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4072</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_DetectResourceConflict attempt (<a href="http://www.snort.org/search/sid/4072?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1983">2005-1983</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14513">14513</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4145</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Trouble Shooter ActiveX Object Access (<a href="http://www.snort.org/search/sid/4145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0662">2003-0662</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8833">8833</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4146</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Share Point Portal Services Log Sink ActiveX Object Access (<a href="http://www.snort.org/search/sid/4146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14515">14515</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/default.aspx?scid=kb\;en-us\;KB837253">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4147</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ActiveLabel ActiveX Object Access (<a href="http://www.snort.org/search/sid/4147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0647">2002-0647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5558">5558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4148</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DHTML Editing ActiveX clsid access (<a href="http://www.snort.org/search/sid/4148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2519">2009-2519</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1474">1474</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4151</td><td class="ruletablebody" valign="top">WEB-ACTIVEX System Monitor Source Properties ActiveX Object Access (<a href="http://www.snort.org/search/sid/4151?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7384">7384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4153</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Eyedog ActiveX Object Access (<a href="http://www.snort.org/search/sid/4153?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0669">1999-0669</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/619">619</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4154</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Active Setup ActiveX Object Access (<a href="http://www.snort.org/search/sid/4154?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0329">2000-0329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/775">775</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4155</td><td class="ruletablebody" valign="top">WEB-ACTIVEX htmlfile ActiveX Object Access (<a href="http://www.snort.org/search/sid/4155?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0149">2001-0149</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1718">1718</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS01-015.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4157</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Setup BBS 4.71.0.10 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4157?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1484">1999-1484</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/668">668</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4159</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Multimedia File Property Sheet ActiveX Object Access (<a href="http://www.snort.org/search/sid/4159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5094">5094</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4160</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Reporting Tool ActiveX Object Access (<a href="http://www.snort.org/search/sid/4160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0530">2003-0530</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8454">8454</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4161</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DigWebX MSN ActiveX Object Access (<a href="http://www.snort.org/search/sid/4161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13946">13946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4162</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DigWebX MSN ActiveX Object Access (<a href="http://www.snort.org/search/sid/4162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13946">13946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4163</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DigWebX MSN ActiveX Object Access (<a href="http://www.snort.org/search/sid/4163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13946">13946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4164</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DigWebX MSN ActiveX Object Access (<a href="http://www.snort.org/search/sid/4164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13946">13946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4165</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Image Control 1.0 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12477">12477</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4167</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Heartbeat ActiveX clsid access (<a href="http://www.snort.org/search/sid/4167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11367">11367</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4168</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell Automation Service ActiveX Object Access (<a href="http://www.snort.org/search/sid/4168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9335">9335</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4171</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Registration Wizard ActiveX Object Access (<a href="http://www.snort.org/search/sid/4171?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/671">671</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4172</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v1.5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/4172?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4173</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MsnPUpld ActiveX Object Access (<a href="http://www.snort.org/search/sid/4173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4174</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec RuFSI registry Information Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0470">2003-0470</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8008">8008</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4179</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectX Files Viewer ActiveX Object Access (<a href="http://www.snort.org/search/sid/4179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0975">2002-0975</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5489">5489</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-066.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4180</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kodak Image Scan Control ActiveX Object Access (<a href="http://www.snort.org/search/sid/4180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4181</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Smartcard Enrollment ActiveX Object Access (<a href="http://www.snort.org/search/sid/4181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0699">2002-0699</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4182</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Chat v4.5, 4.6 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0155">2002-0155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4707">4707</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-022.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4183</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Help ActiveX Object Access (<a href="http://www.snort.org/search/sid/4183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1208">2005-1208</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13953">13953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4184</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Certificate Enrollment ActiveX Object Access (<a href="http://www.snort.org/search/sid/4184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0699">2002-0699</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5593">5593</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4185</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Terminal Services Advanced Client ActiveX Object Access (<a href="http://www.snort.org/search/sid/4185?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0726">2002-0726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5554">5554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4186</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kodak Image Editing ActiveX Object Access (<a href="http://www.snort.org/search/sid/4186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4187</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Terminal Services Advanced Client ActiveX Object Access (<a href="http://www.snort.org/search/sid/4187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0726">2002-0726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5554">5554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4188</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RAV Online Scanner ActiveX Object Access (<a href="http://www.snort.org/search/sid/4188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0936">2004-0936</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11448">11448</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4189</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Third-Party Plugin ActiveX Object Access (<a href="http://www.snort.org/search/sid/4189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0233">2003-0233</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-015.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4190</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kodak Thumbnail Image ActiveX Object Access (<a href="http://www.snort.org/search/sid/4190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4191</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MsnPUpld ActiveX Object Access (<a href="http://www.snort.org/search/sid/4191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4192</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HHOpen ActiveX Object Access (<a href="http://www.snort.org/search/sid/4192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/669">669</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4193</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kodak Image Editing ActiveX Object Access (<a href="http://www.snort.org/search/sid/4193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4197</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DigWebX MSN ActiveX Object Access (<a href="http://www.snort.org/search/sid/4197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13946">13946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4200</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Index Server Scope Administration ActiveX Object Access (<a href="http://www.snort.org/search/sid/4200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4201</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Queued Components Recorder ActiveX Object Access (<a href="http://www.snort.org/search/sid/4201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4202</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation ActiveX Object Access (<a href="http://www.snort.org/search/sid/4202?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4203</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Marquee Control ActiveX Object Access (<a href="http://www.snort.org/search/sid/4203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4204</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT PolyLine Control 2 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4204?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4205</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Database Tools Database Designer v7.0 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4205?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4206</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MPEG-4 Video Decompressor Property Page ActiveX Object Access (<a href="http://www.snort.org/search/sid/4206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4207</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MS Audio Decompressor Control Property Page ActiveX Object Access (<a href="http://www.snort.org/search/sid/4207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4208</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LexRefStEsObject Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4208?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4209</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LexRefStFrObject Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4211</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DDS Library Shape Control ActiveX Object Access (<a href="http://www.snort.org/search/sid/4211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4212</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DDS Generic Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4213</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DDS Picture Shape Control ActiveX Object Access (<a href="http://www.snort.org/search/sid/4213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4214</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft TipGW Init ActiveX Object Access (<a href="http://www.snort.org/search/sid/4214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4215</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HTML Popup Window ActiveX Object Access (<a href="http://www.snort.org/search/sid/4215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4216</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_CComAcctImport ActiveX Object Access (<a href="http://www.snort.org/search/sid/4216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4219</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Network Connections Tray ActiveX Object Access (<a href="http://www.snort.org/search/sid/4219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4220</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Network and Dial-Up Connections ActiveX Object Access (<a href="http://www.snort.org/search/sid/4220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4221</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft ProxyStub Dispatch ActiveX Object Access (<a href="http://www.snort.org/search/sid/4221?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4223</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft OpenCable Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4224</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft VideoPort ActiveX Object Access (<a href="http://www.snort.org/search/sid/4224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4225</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository ActiveX Object Access (<a href="http://www.snort.org/search/sid/4225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4226</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DocHost User Interface Handler ActiveX Object Access (<a href="http://www.snort.org/search/sid/4226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4227</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Network Connections ActiveX Object Access (<a href="http://www.snort.org/search/sid/4227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4228</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Start Menu ActiveX Object Access (<a href="http://www.snort.org/search/sid/4228?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4229</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSAPP Export Support for Microsoft Access ActiveX Object Access (<a href="http://www.snort.org/search/sid/4229?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4230</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Search Assistant UI ActiveX Object Access (<a href="http://www.snort.org/search/sid/4230?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4231</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SysTray ActiveX Object Access (<a href="http://www.snort.org/search/sid/4231?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4232</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SysTray Invoker ActiveX Object Access (<a href="http://www.snort.org/search/sid/4232?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4233</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Database Tools Query Designer v7.0 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4234</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MSVTDGridCtrl7 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4234?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4236</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMI ASDI Extension ActiveX Object Access (<a href="http://www.snort.org/search/sid/4236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4245</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msdtc BuildContextW overflow attempt (<a href="http://www.snort.org/search/sid/4245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2119">2005-2119</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15056">15056</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4246</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msdtc BuildContextW overflow attempt (<a href="http://www.snort.org/search/sid/4246?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2119">2005-2119</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15056">15056</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4358</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceListSize attempt (<a href="http://www.snort.org/search/sid/4358?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2120">2005-2120</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15065">15065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4648</td><td class="ruletablebody" valign="top">WEB-CLIENT wang image admin activex object access (<a href="http://www.snort.org/search/sid/4648?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4754</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP locator nsi_binding_lookup_begin overflow attempt (<a href="http://www.snort.org/search/sid/4754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0003">2003-0003</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/6666">6666</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4755</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP locator nsi_binding_lookup_begin overflow attempt (<a href="http://www.snort.org/search/sid/4755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0003">2003-0003</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/6666">6666</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4890</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IAVIStream &amp; IAVIFile Proxy ActiveX Object Access (<a href="http://www.snort.org/search/sid/4890?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4891</td><td class="ruletablebody" valign="top">WEB-ACTIVEX cfw Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4891?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4892</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MTSEvents Class ActiveX Object Access (<a href="http://www.snort.org/search/sid/4892?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4893</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trident HTMLEditor ActiveX Object Access (<a href="http://www.snort.org/search/sid/4893?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4894</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PSEnumVariant ActiveX Object Access (<a href="http://www.snort.org/search/sid/4894?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4895</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PSTypeInfo ActiveX Object Access (<a href="http://www.snort.org/search/sid/4895?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4896</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PSTypeLib ActiveX Object Access (<a href="http://www.snort.org/search/sid/4896?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4897</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PSOAInterface ActiveX Object Access (<a href="http://www.snort.org/search/sid/4897?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4898</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PSTypeComp ActiveX Object Access (<a href="http://www.snort.org/search/sid/4898?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4899</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ISupportErrorInfo Interface ActiveX Object Access (<a href="http://www.snort.org/search/sid/4899?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4901</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMR Allocator Presenter 9 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4901?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4902</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Video Mixing Renderer 9 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4902?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4903</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMR ImageSync 9 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4903?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4904</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Alias ActiveX Object Access (<a href="http://www.snort.org/search/sid/4904?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4905</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Object ActiveX Object Access (<a href="http://www.snort.org/search/sid/4905?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4906</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Interface Definition ActiveX Object Access (<a href="http://www.snort.org/search/sid/4906?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4907</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Collection Definition ActiveX Object Access (<a href="http://www.snort.org/search/sid/4907?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4908</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Method Definition ActiveX Object Access (<a href="http://www.snort.org/search/sid/4908?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4909</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Property Definition ActiveX Object Access (<a href="http://www.snort.org/search/sid/4909?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4910</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Relationship Definition ActiveX Object Access (<a href="http://www.snort.org/search/sid/4910?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4911</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Type Library ActiveX Object Access (<a href="http://www.snort.org/search/sid/4911?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4912</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Root ActiveX Object Access (<a href="http://www.snort.org/search/sid/4912?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4913</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Workspace ActiveX Object Access (<a href="http://www.snort.org/search/sid/4913?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4914</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Repository Script Definition ActiveX Object Access (<a href="http://www.snort.org/search/sid/4914?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4915</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shortcut Handler ActiveX Object Access (<a href="http://www.snort.org/search/sid/4915?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4982</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Adodb.Stream ActiveX Object Access (<a href="http://www.snort.org/search/sid/4982?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0549">2004-0549</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10514">10514</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms04-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4983</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Adodb.Stream ActiveX Object Access CreateObject Function (<a href="http://www.snort.org/search/sid/4983?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0549">2004-0549</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10514">10514</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms04-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5485</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP llsrpc2 LlsrLicenseRequestW overflow attempt (<a href="http://www.snort.org/search/sid/5485?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0050">2005-0050</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12481">12481</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5677</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup username overflow attempt (<a href="http://www.snort.org/search/sid/5677?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5682</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup unicode andx username overflow attempt (<a href="http://www.snort.org/search/sid/5682?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5740</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft HTML help workshop file .hhp download attempt (<a href="http://www.snort.org/search/sid/5740?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5741</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft HTML help workshop buffer overflow attempt (<a href="http://www.snort.org/search/sid/5741?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0564">2006-0564</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.frsirt.com/english/advisories/2006/0446">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6002</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT DDS Rectilinear GDD Layout ActiveX Object Access (<a href="http://www.snort.org/search/sid/6002?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6003</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT DDS Rectilinear GDD Route ActiveX Object Access (<a href="http://www.snort.org/search/sid/6003?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6004</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT DDS Circular Auto Layout Logic 2 ActiveX Object Access (<a href="http://www.snort.org/search/sid/6004?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6005</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT DDS Straight Line Routing Logic 2 ActiveX Object Access (<a href="http://www.snort.org/search/sid/6005?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6006</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT Icon Control ActiveX Object Access (<a href="http://www.snort.org/search/sid/6006?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6007</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT DDS OrgChart GDD Layout ActiveX Object Access (<a href="http://www.snort.org/search/sid/6007?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6008</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DT DDS OrgChart GDD Route ActiveX Object Access (<a href="http://www.snort.org/search/sid/6008?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1186">2006-1186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6009</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RDS.Dataspace ActiveX Object Access (<a href="http://www.snort.org/search/sid/6009?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0003">2006-0003</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17462">17462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6419</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msdtc BuildContextW invalid uuid size attempt (<a href="http://www.snort.org/search/sid/6419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1184">2006-1184</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17905">17905</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6420</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msdtc BuildContextW invalid uuid size attempt (<a href="http://www.snort.org/search/sid/6420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1184">2006-1184</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17905">17905</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6431</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msdtc BuildContextW invalid second uuid size attempt (<a href="http://www.snort.org/search/sid/6431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1184">2006-1184</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17905">17905</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6432</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msdtc BuildContextW invalid second uuid size attempt (<a href="http://www.snort.org/search/sid/6432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1184">2006-1184</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17905">17905</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6443</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msdtc BuildContextW heap overflow attempt (<a href="http://www.snort.org/search/sid/6443?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0034">2006-0034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17906">17906</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6444</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msdtc BuildContextW heap overflow attempt (<a href="http://www.snort.org/search/sid/6444?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0034">2006-0034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17906">17906</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6455</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msdtc BuildContext heap overflow attempt (<a href="http://www.snort.org/search/sid/6455?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0034">2006-0034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17906">17906</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6456</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msdtc BuildContext heap overflow attempt (<a href="http://www.snort.org/search/sid/6456?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0034">2006-0034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17906">17906</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6516</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Light ActiveX function call access (<a href="http://www.snort.org/search/sid/6516?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2383">2006-2383</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6517</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Light ActiveX CLSID access (<a href="http://www.snort.org/search/sid/6517?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2383">2006-2383</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6518</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Light ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/6518?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2383">2006-2383</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6682</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MMSpecialEffect2Inputs ActiveX function call access (<a href="http://www.snort.org/search/sid/6682?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6683</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MMSpecialEffect1Input ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/6683?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6684</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MMSpecialEffect1Input ActiveX CLSID access (<a href="http://www.snort.org/search/sid/6684?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6685</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MMSpecialEffect2Inputs ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/6685?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6686</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MMSpecialEffect2Inputs ActiveX CLSID access (<a href="http://www.snort.org/search/sid/6686?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6687</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MMSpecialEffect1Input ActiveX function call access (<a href="http://www.snort.org/search/sid/6687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6714</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP rras RasRpcSetUserPreferences phonebook mode overflow attempt (<a href="http://www.snort.org/search/sid/6714?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2371">2006-2371</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18358">18358</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6906</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP rras RasRpcSetUserPreferences callback number overflow attempt (<a href="http://www.snort.org/search/sid/6906?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2371">2006-2371</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18358">18358</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7003</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Recordset ActiveX function call access (<a href="http://www.snort.org/search/sid/7003?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5559">2006-5559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20704">20704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/26834">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7004</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet.HHCtrl.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/7004?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3357">2006-3357</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18769">18769</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7006</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ASControls.InstallEngineCtl ActiveX function call access (<a href="http://www.snort.org/search/sid/7006?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7007</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AxDebugger.Document.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/7007?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7008</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAUserData ActiveX function call access (<a href="http://www.snort.org/search/sid/7008?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7009</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.StructuredGraphicsControl ActiveX function call access (<a href="http://www.snort.org/search/sid/7009?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7010</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HtmlDlgSafeHelper.HtmlDlgSafeHelper.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/7010?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7011</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HtmlDlgSafeHelper.HtmlDlgSafeHelper ActiveX function call access (<a href="http://www.snort.org/search/sid/7011?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7012</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet.PopupMenu.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/7012?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7013</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft.ISCatAdm ActiveX function call access (<a href="http://www.snort.org/search/sid/7013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7014</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NMSA.ASFSourceMediaDescription.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/7014?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3897">2006-3897</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19114">19114</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7015</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NMSA.MediaDescription ActiveX function call access (<a href="http://www.snort.org/search/sid/7015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7016</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Object.Microsoft.DXTFilter ActiveX function call access (<a href="http://www.snort.org/search/sid/7016?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3512">2006-3512</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18903">18903</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7017</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RDS.DataControl ActiveX function call access (<a href="http://www.snort.org/search/sid/7017?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3510">2006-3510</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18900">18900</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7018</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sysmon ActiveX function call access (<a href="http://www.snort.org/search/sid/7018?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7026</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RDS.Dataspace ActiveX function call access (<a href="http://www.snort.org/search/sid/7026?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0003">2006-0003</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17462">17462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7035</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7035?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7036</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7036?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7039</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans andx mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7039?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7040</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode andx mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7040?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7041</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans andx mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7041?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7209</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP srvsvc NetrPathCanonicalize overflow attempt (<a href="http://www.snort.org/search/sid/7209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3439">2006-3439</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19409">19409</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7210</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP srvsvc NetrPathCanonicalize overflow attempt (<a href="http://www.snort.org/search/sid/7210?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3439">2006-3439</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19409">19409</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7425</td><td class="ruletablebody" valign="top">WEB-ACTIVEX 9x8Resize ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7426</td><td class="ruletablebody" valign="top">WEB-ACTIVEX 9x8Resize ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7426?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7427</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Allocator Fix ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7427?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7428</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Allocator Fix ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7429</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Bitmap ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7430</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Bitmap ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7431</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectFrame.DirectControl.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7432</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectFrame.DirectControl.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7433</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectX Transform Wrapper Property Page ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7433?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7434</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectX Transform Wrapper Property Page ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7434?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7435</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dynamic Casts ActiveX clsid access (<a href="http://www.snort.org/search/sid/7435?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7436</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dynamic Casts ActiveX function call (<a href="http://www.snort.org/search/sid/7436?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7437</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Frame Eater ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7437?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7438</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Frame Eater ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7438?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7439</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Help ActiveX clsid access (<a href="http://www.snort.org/search/sid/7439?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0214">2007-0214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7440</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Help ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7440?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0214">2007-0214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7441</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Help ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7441?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1208">2005-1208</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13953">13953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7442</td><td class="ruletablebody" valign="top">WEB-ACTIVEX mmAEPlugIn.AEPlugIn.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7442?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7443</td><td class="ruletablebody" valign="top">WEB-ACTIVEX mmAEPlugIn.AEPlugIn.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7443?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7444</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Mmedia.AsyncMHandler.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7444?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7445</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Mmedia.AsyncMHandler.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7445?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7446</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Record Queue ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7446?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7447</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Record Queue ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7447?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7448</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShotDetect ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7448?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7449</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShotDetect ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7449?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7450</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Stetch ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7450?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7451</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Stetch ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7451?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7452</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WM Color Converter Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7452?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7453</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WM Color Converter Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7453?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7454</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Wmm2ae.dll ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7454?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7455</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Wmm2ae.dll ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7455?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7456</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Wmm2fxa.dll ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7456?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7457</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Wmm2fxa.dll ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7457?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7458</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Wmm2fxb.dll ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7458?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7459</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Wmm2fxb.dll ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7459?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7460</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Audio Analyzer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7460?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7461</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Audio Analyzer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7462</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Black Frame Generator ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7462?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7463</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Black Frame Generator ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7463?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7464</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DeInterlace Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7464?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7465</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DeInterlace Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7466</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DeInterlace Prop Page ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7467</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DeInterlace Prop Page ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7468</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DirectX Transform Wrapper ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7468?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7469</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DirectX Transform Wrapper ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7470</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DV Extract Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7471</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT DV Extract Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7472</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT FormatConversion Prop Page ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7473</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT FormatConversion Prop Page ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7474</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT FormatConversion ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7475</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT FormatConversion ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7475?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7476</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Import Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7476?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7477</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Import Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7477?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7478</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Interlacer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7479</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Interlacer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7479?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7480</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Log Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7480?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7481</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Log Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7481?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7482</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT MuxDeMux Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7482?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7483</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT MuxDeMux Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7483?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7484</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Sample Info Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7484?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7485</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Sample Info Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7485?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7486</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Screen Capture Filter Task Page ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7486?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7487</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Screen Capture Filter Task Page ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7487?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7488</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Screen capture Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7488?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7489</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Screen capture Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7489?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7490</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Switch Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7491</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Switch Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7491?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7492</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Virtual Renderer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7493</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Virtual Renderer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7493?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7494</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Virtual Source ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7494?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7495</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Virtual Source ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7495?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7496</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Volume ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7496?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7497</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMT Volume ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7498</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WM TV Out Smooth Picture Filter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7499</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WM TV Out Smooth Picture Filter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7499?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7500</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WM VIH2 Fix ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7500?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7501</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WM VIH2 Fix ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7501?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7502</td><td class="ruletablebody" valign="top">WEB-ACTIVEX tsuserex.ADsTSUserEx.1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/7502?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4219">2006-4219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19570">19570</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=14">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7503</td><td class="ruletablebody" valign="top">WEB-ACTIVEX tsuserex.ADsTSUserEx.1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7503?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4219">2006-4219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19570">19570</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=14">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7856</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware winsysba-a runtime detection - track surfing activity (<a href="http://www.snort.org/search/sid/7856?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/virus_information/26844/winsysba-a/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7862</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McSubMgr.IsAppExpired ActiveX function call access (<a href="http://www.snort.org/search/sid/7862?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3961">2006-3961</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19265">19265</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7863</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McSubMgr.IsOldAppInstalled ActiveX function call access (<a href="http://www.snort.org/search/sid/7863?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3961">2006-3961</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19265">19265</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7864</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McSubMgr ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7864?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3961">2006-3961</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19265">19265</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7865</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McSubMgr ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7865?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3961">2006-3961</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19265">19265</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7866</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Connection ActiveX clsid access (<a href="http://www.snort.org/search/sid/7866?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5559">2006-5559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7867</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Connection ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7867?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5559">2006-5559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7868</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Recordset ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7868?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5559">2006-5559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20704">20704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7869</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Recordset ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7869?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5559">2006-5559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20704">20704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7878</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AxMetaStream.MetaStreamCtl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7878?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_137262.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7879</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AxMetaStream.MetaStreamCtl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7879?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_137262.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7880</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AxMetaStream.MetaStreamCtlSecondary ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7880?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7881</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AxMetaStream.MetaStreamCtlSecondary ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7881?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7882</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AccSync.AccSubNotHandler ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7882?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7883</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AccSync.AccSubNotHandler ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7883?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7884</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AolCalSvr.ACCalendarListCtrl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7884?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7885</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AolCalSvr.ACCalendarListCtrl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7885?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7886</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AolCalSvr.ACDictionary ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7886?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7887</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AolCalSvr.ACDictionary ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7887?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7890</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.MemExpWz ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7890?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7891</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.MemExpWz ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7891?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7892</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Phobos Class ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7892?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7893</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Phobos Class ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7893?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7894</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.PicDownloadCtrl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7894?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7895</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.PicDownloadCtrl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7895?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7896</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.PicEditCtrl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7896?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7897</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.PicEditCtrl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7897?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7898</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.PicSsvrCtrl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7898?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7899</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.PicSsvrCtrl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7899?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7900</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.UPFCtrl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7900?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7901</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL.UPFCtrl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7901?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7902</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDDBControlAOL.CDDBAOLControl ActiveX clsid access (<a href="http://www.snort.org/search/sid/7902?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3134">2006-3134</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23567">23567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/701121">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7903</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDDBControlAOL.CDDBAOLControl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7903?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3134">2006-3134</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23567">23567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/701121">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7904</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDL Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7904?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7905</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDL Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7905?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7906</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDO.KnowledgeSearchFolder ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7906?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7907</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDO.KnowledgeSearchFolder ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7907?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7908</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Chroma ActiveX clsid access (<a href="http://www.snort.org/search/sid/7908?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24188">24188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7909</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Chroma ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7909?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24188">24188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7910</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.DropShadow ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7910?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7911</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.DropShadow ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7911?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7912</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DX3DTransform.Microsoft.Shapes ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7912?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7913</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DX3DTransform.Microsoft.Shapes ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7913?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7914</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.NDFXArtEffects ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7914?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19340">19340</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7915</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.NDFXArtEffects ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7915?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19340">19340</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7916</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_IMimeInternational ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7916?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7917</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_IMimeInternational ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7917?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7918</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CoAxTrackVideo Class ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7918?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7919</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CoAxTrackVideo Class ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7919?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7920</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DsPropertyPages.OU ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7920?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7921</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DsPropertyPages.OU ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7921?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7922</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.RevealTrans ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7922?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27057">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7923</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.RevealTrans ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7923?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27057">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7924</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Shadow ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7924?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7925</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Shadow ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7925?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7926</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXTFilter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7926?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7927</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXTFilter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7927?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7928</td><td class="ruletablebody" valign="top">WEB-ACTIVEX file or local Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7928?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7929</td><td class="ruletablebody" valign="top">WEB-ACTIVEX file or local Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7929?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7930</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FolderItem2 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7930?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://browserfun.blogspot.com/2006/07/mobb-15-folderitem-access.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7931</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FolderItem2 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7931?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://browserfun.blogspot.com/2006/07/mobb-15-folderitem-access.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7932</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FolderItems3 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7932?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7933</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FolderItems3 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7933?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7936</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Glow ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7936?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7937</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Glow ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7937?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7938</td><td class="ruletablebody" valign="top">WEB-ACTIVEX gopher Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7938?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7939</td><td class="ruletablebody" valign="top">WEB-ACTIVEX gopher Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7939?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7940</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Gradient ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7940?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27109">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7941</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Gradient ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7941?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27109">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7942</td><td class="ruletablebody" valign="top">WEB-ACTIVEX http Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7942?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7943</td><td class="ruletablebody" valign="top">WEB-ACTIVEX http Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7943?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7944</td><td class="ruletablebody" valign="top">WEB-ACTIVEX https Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7944?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7945</td><td class="ruletablebody" valign="top">WEB-ACTIVEX https Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7945?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7946</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MaskFilter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7946?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7947</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.MaskFilter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7947?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7948</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Common Browser Architecture ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7948?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7949</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Common Browser Architecture ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7949?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7950</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectAnimation Control ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7950?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7951</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectAnimation Control ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7951?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7952</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectAnimation Windowed Control ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7952?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7953</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectAnimation Windowed Control ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7953?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7954</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ComboBox ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7954?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0384">1999-0384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms99-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7955</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ComboBox ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7955?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0384">1999-0384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms99-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7956</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ListBox ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7956?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27372">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7957</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ListBox ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7957?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27372">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7958</td><td class="ruletablebody" valign="top">WEB-ACTIVEX mk Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7958?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7959</td><td class="ruletablebody" valign="top">WEB-ACTIVEX mk Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7959?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7970</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PostBootReminder object ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7970?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7971</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PostBootReminder object ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7971?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7974</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Rendezvous Class ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7974?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7975</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Rendezvous Class ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7975?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7976</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShellFolder for CD Burning ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7976?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7977</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShellFolder for CD Burning ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7977?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7981</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Snapshot Viewer General Property Page Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/7981?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7982</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Snapshot Viewer General Property Page Object ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7982?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7983</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SuperBuddy Class ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7983?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7984</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SuperBuddy Class ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7984?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7985</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebViewFolderIcon.WebViewFolderIcon.1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/7985?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3730">2006-3730</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19030">19030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7986</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebViewFolderIcon.WebViewFolderIcon.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7986?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3730">2006-3730</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19030">19030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7987</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebViewFolderIcon.WebViewFolderIcon.2 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7987?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7988</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebViewFolderIcon.WebViewFolderIcon.2 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7988?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7989</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WIA FileSystem USD ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7989?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7990</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WIA FileSystem USD ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7990?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7991</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ACM Class Manager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7991?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7992</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ACM Class Manager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7992?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7993</td><td class="ruletablebody" valign="top">WEB-ACTIVEX clbcatex.dll ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7993?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7994</td><td class="ruletablebody" valign="top">WEB-ACTIVEX clbcatex.dll ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7994?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7995</td><td class="ruletablebody" valign="top">WEB-ACTIVEX clbcatq.dll ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7995?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7996</td><td class="ruletablebody" valign="top">WEB-ACTIVEX clbcatq.dll ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7996?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7997</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_ApprenticeICW ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7997?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7998</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_ApprenticeICW ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7998?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7999</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_CDIDeviceActionConfigPage ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7999?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8000</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CLSID_CDIDeviceActionConfigPage ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8000?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8001</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CommunicationManager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8001?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8002</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CommunicationManager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8002?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8003</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Content.mbcontent.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8003?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8004</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Content.mbcontent.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8004?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8005</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DiskManagement.Connection ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8005?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8006</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DiskManagement.Connection ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8006?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8007</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dutch_Dutch Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8007?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8008</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dutch_Dutch Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8008?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8009</td><td class="ruletablebody" valign="top">WEB-ACTIVEX English_UK Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8009?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8010</td><td class="ruletablebody" valign="top">WEB-ACTIVEX English_UK Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8010?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8011</td><td class="ruletablebody" valign="top">WEB-ACTIVEX English_US Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8011?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8012</td><td class="ruletablebody" valign="top">WEB-ACTIVEX English_US Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8012?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8013</td><td class="ruletablebody" valign="top">WEB-ACTIVEX French_French Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8014</td><td class="ruletablebody" valign="top">WEB-ACTIVEX French_French Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8014?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8015</td><td class="ruletablebody" valign="top">WEB-ACTIVEX German_German Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8016</td><td class="ruletablebody" valign="top">WEB-ACTIVEX German_German Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8016?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8017</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICM Class Manager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8017?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8018</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICM Class Manager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8018?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8021</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ISSimpleCommandCreator.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8021?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8022</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ISSimpleCommandCreator.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8022?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8023</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Italian_Italian Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8023?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8024</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Italian_Italian Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8024?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8025</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HTML Window Security Proxy ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8025?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8026</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HTML Window Security Proxy ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8026?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8027</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft WBEM Event Subsystem ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8027?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8028</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft WBEM Event Subsystem ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8028?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8029</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MidiOut Class Manager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8029?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8030</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MidiOut Class Manager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8030?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8031</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Mslablti.MarshalableTI.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8031?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8032</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Mslablti.MarshalableTI.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8032?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8033</td><td class="ruletablebody" valign="top">WEB-ACTIVEX QC.MessageMover.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8033?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8034</td><td class="ruletablebody" valign="top">WEB-ACTIVEX QC.MessageMover.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8034?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8035</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Spanish_Modern Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8035?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8036</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Spanish_Modern Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8036?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8037</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Swedish_Default Stemmer ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8037?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8038</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Swedish_Default Stemmer ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8038?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8039</td><td class="ruletablebody" valign="top">WEB-ACTIVEX syncui.dll ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8039?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8040</td><td class="ruletablebody" valign="top">WEB-ACTIVEX syncui.dll ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8040?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8041</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VFW Capture Class Manager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8041?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8042</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VFW Capture Class Manager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8042?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8043</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Video Effect Class Manager 1 Input ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8043?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8044</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Video Effect Class Manager 1 Input ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8044?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8045</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Video Effect Class Manager 2 Input ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8045?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8046</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Video Effect Class Manager 2 Input ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8046?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8047</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WaveIn Class Manager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8047?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8048</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WaveIn Class Manager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8048?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8049</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WaveOut and DSound Class Manager ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8049?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8050</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WaveOut and DSound Class Manager ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8050?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8051</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WDM Instance Provider ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8051?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8052</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WDM Instance Provider ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8052?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8053</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.PathControl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8053?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19738">19738</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8054</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.PathControl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8054?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19738">19738</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8055</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.PathControl ActiveX function call access (<a href="http://www.snort.org/search/sid/8055?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19738">19738</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8062</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Stream ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8062?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0549">2004-0549</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10514">10514</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms04-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8063</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Stream ActiveX function call access (<a href="http://www.snort.org/search/sid/8063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0549">2004-0549</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10514">10514</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms04-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8064</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Scriptlet.Typelib ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1061">2000-1061</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/598">598</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS00-075.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8065</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Scriptlet.Typelib ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8065?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1061">2000-1061</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/598">598</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS00-075.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8066</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Scripting Host Shell ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8066?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0532">2003-0532</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8456">8456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8067</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Scripting Host Shell ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0532">2003-0532</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8456">8456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8068</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Scripting Host Shell ActiveX function call access (<a href="http://www.snort.org/search/sid/8068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8069</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Virtual Machine ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1061">2000-1061</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1754">1754</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms00-075.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8070</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Virtual Machine ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8070?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1061">2000-1061</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1754">1754</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms00-075.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8253</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP webdav DavrCreateConnection username overflow attempt (<a href="http://www.snort.org/search/sid/8253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0013">2006-0013</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16636">16636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8363</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Business Object Factory ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8363?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8364</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Business Object Factory ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8364?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8365</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DExplore.AppObj.8.0 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8365?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8366</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DExplore.AppObj.8.0 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8367</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft.DbgClr.DTE.8.0 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8368</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft.DbgClr.DTE.8.0 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8368?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8369</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMIScriptUtils.WMIObjectBroker2.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8369?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4704">2006-4704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8370</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WMIScriptUtils.WMIObjectBroker2.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8370?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4704">2006-4704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8373</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VsmIDE.DTE ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8374</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VsmIDE.DTE ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8379</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xml2Dex ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8380</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xml2Dex ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8380?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8391</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RFXInstMgr Class ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8391?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8392</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RFXInstMgr Class ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8393</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebDetectFrm ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8393?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8394</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebDetectFrm ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8394?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8395</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DX3DTransform.Microsoft.CrShatter ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8396</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DX3DTransform.Microsoft.CrShatter ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8396?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8399</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft.WebCapture ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8399?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8400</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft.WebCapture ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8400?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8403</td><td class="ruletablebody" valign="top">WEB-ACTIVEX XML Schema Cache 6.0 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8404</td><td class="ruletablebody" valign="top">WEB-ACTIVEX XML Schema Cache 6.0 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8405</td><td class="ruletablebody" valign="top">WEB-ACTIVEX  ActiveX clsid access (<a href="http://www.snort.org/search/sid/8405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5745">2006-5745</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20915">20915</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8406</td><td class="ruletablebody" valign="top">WEB-ACTIVEX  ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8406?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5745">2006-5745</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20915">20915</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8407</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VisualExec Control ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8407?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8408</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VisualExec Control ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8408?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8411</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DocFind Command ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8411?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8412</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DocFind Command ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8417</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TriEditDocument.TriEditDocument ActiveX function call access (<a href="http://www.snort.org/search/sid/8417?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3591">2006-3591</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18946">18946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27056">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8418</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.RevealTrans ActiveX function call access (<a href="http://www.snort.org/search/sid/8418?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27057">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8419</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebViewFolderIcon.WebViewFolderIcon.1 ActiveX function call (<a href="http://www.snort.org/search/sid/8419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3730">2006-3730</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19030">19030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8420</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Gradient ActiveX function call access (<a href="http://www.snort.org/search/sid/8420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27109">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8421</td><td class="ruletablebody" valign="top">WEB-ACTIVEX OWC11.DataSourceControl.11 ActiveX function call access (<a href="http://www.snort.org/search/sid/8421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27111">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8423</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CEnroll.CEnroll.2 ActiveX function call access (<a href="http://www.snort.org/search/sid/8423?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27230">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8424</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ListBox ActiveX function call access (<a href="http://www.snort.org/search/sid/8424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27372">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8425</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.NDFXArtEffects ActiveX function call access (<a href="http://www.snort.org/search/sid/8425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3638">2006-3638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19340">19340</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8478</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Publisher file download attempt (<a href="http://www.snort.org/search/sid/8478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0001">2006-0001</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8717</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VsaIDE.DTE ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8717?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8718</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VsaIDE.DTE ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8718?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8719</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VisualStudio.DTE.8.0 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8719?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8720</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VisualStudio.DTE.8.0 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8720?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8725</td><td class="ruletablebody" valign="top">WEB-ACTIVEX System Monitor ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8725?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1034">2000-1034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1899">1899</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS00-085.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8726</td><td class="ruletablebody" valign="top">WEB-ACTIVEX System Monitor ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8726?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1034">2000-1034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1899">1899</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS00-085.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8727</td><td class="ruletablebody" valign="top">WEB-ACTIVEX XMLHTTP 4.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/8727?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5745">2006-5745</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20915">20915</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8728</td><td class="ruletablebody" valign="top">WEB-ACTIVEX XMLHTTP 4.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8728?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5745">2006-5745</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20915">20915</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8735</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BOWebAgent.Webagent.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8735?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8736</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BOWebAgent.Webagent.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8736?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8737</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BOWebAgent.Webagent.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8737?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8741</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAFontStyle.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8741?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8742</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAFontStyle.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8742?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8743</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAFontStyle.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8743?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8744</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAEvent.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8744?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8745</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAEvent.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8746</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAEvent.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8747</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAEndStyle.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8748</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAEndStyle.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8748?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8749</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAEndStyle.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8749?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8750</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LM.LMBehaviorFactory.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8750?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8751</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LM.LMBehaviorFactory.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8751?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8752</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LM.LMBehaviorFactory.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8752?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8753</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LM.AutoEffectBvr.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8753?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8754</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LM.AutoEffectBvr.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8755</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LM.AutoEffectBvr.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8756</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.SpriteControl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8757</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.SpriteControl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8758</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.SpriteControl ActiveX function call access (<a href="http://www.snort.org/search/sid/8758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8759</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.SequencerControl ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8760</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.SequencerControl ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8761</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.SequencerControl ActiveX function call access (<a href="http://www.snort.org/search/sid/8761?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8762</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.Sequence ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8763</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.Sequence ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8764</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.Sequence ActiveX function call access (<a href="http://www.snort.org/search/sid/8764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8765</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAView.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8765?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8766</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAView.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8766?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8767</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAView.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8767?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8768</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAVector3.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8768?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8769</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAVector3.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8769?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8770</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAVector3.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8770?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8771</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAVector2.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8772</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAVector2.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8772?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8773</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAVector2.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8774</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAUserData.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8774?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8775</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAUserData.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8775?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8776</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAUserData.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8776?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8777</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DATransform3.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8777?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8778</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DATransform3.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8778?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8779</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DATransform3.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8779?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8780</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DATransform2.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8780?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8781</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DATransform2.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8781?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8782</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DATransform2.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8782?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8783</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAString.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8783?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8784</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAString.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8784?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8785</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAString.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8785?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8786</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DASound.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8786?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8787</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DASound.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8787?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8788</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DASound.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8788?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8789</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPoint3.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8789?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8790</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPoint3.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8790?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8791</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPoint3.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8791?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8792</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPoint2.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8792?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8793</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPoint2.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8793?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8794</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPoint2.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8794?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8795</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPath2.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8795?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8796</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPath2.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8796?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8797</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPath2.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8797?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8798</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPair.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8798?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8799</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPair.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8799?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8800</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAPair.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8800?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8801</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DANumber.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8801?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8802</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DANumber.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8802?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8803</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DANumber.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8804</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMontage.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8804?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8805</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMontage.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8805?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8806</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMontage.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8806?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8807</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMicrophone.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8807?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8808</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMicrophone.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8808?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8809</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMicrophone.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8809?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8810</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMatte.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8810?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8811</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMatte.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8811?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8812</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAMatte.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8812?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8813</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DALineStyle.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8813?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8814</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DALineStyle.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8814?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8815</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DALineStyle.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8815?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8816</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAJoinStyle.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8816?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8817</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAJoinStyle.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8817?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8818</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAJoinStyle.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8818?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8819</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAImage.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8819?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8820</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAImage.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8820?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8821</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAImage.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8821?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8822</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAGeometry.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8823</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAGeometry.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8823?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8824</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAGeometry.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8824?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8825</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DADashStyle.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8825?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8826</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DADashStyle.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8826?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8827</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DADashStyle.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8827?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8828</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAColor.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8828?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8829</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAColor.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8829?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8830</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAColor.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8830?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8831</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DACamera.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8831?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8832</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DACamera.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8832?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8833</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DACamera.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8833?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8834</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABoolean.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8834?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8835</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABoolean.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8835?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8836</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABoolean.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8836?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8837</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABbox3.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8837?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8838</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABbox3.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8838?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8839</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABbox3.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8839?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8840</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABbox2.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8840?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8841</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABbox2.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8841?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8842</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DABbox2.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8842?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8843</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAArray.1 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8843?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8844</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAArray.1 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8844?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8845</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAArray.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/8845?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4777">2006-4777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8846</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Character Custom Proxy Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/8846?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8847</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Character Custom Proxy Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8847?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8848</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Notify Sink Custom Proxy Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/8848?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8849</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Notify Sink Custom Proxy Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8849?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8850</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Custom Proxy Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/8850?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8851</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Custom Proxy Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8851?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8852</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v2.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/8852?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8853</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v2.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8853?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8854</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v2.0 ActiveX function call access (<a href="http://www.snort.org/search/sid/8854?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8855</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v1.5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8855?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8856</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v1.5 ActiveX function call access (<a href="http://www.snort.org/search/sid/8856?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9027</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP wkssvc NetrJoinDomain2 overflow attempt (<a href="http://www.snort.org/search/sid/9027?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4691">2006-4691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11921">11921</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9129</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WinZip FileView 6.1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/9129?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5198">2006-5198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21108">21108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.winzip.com/wz7245.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9130</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WinZip FileView 6.1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9130?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5198">2006-5198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21108">21108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.winzip.com/wz7245.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9131</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WinZip FileView 6.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/9131?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5198">2006-5198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21108">21108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.winzip.com/wz7245.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9427</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Acer LunchApp.APlunch ActiveX clsid access (<a href="http://www.snort.org/search/sid/9427?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9428</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Acer LunchApp.APlunch ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9433</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Agent buffer overflow attempt (<a href="http://www.snort.org/search/sid/9433?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3445">2006-3445</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21034">21034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9626</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX clsid access (<a href="http://www.snort.org/search/sid/9626?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6236">2006-6236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21155">21155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa06-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9627</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9627?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6236">2006-6236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21155">21155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa06-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9629</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Citrix.ICAClient ActiveX clsid access (<a href="http://www.snort.org/search/sid/9629?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6334">2006-6334</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23246">23246</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.citrix.com/article/CTX111827">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9630</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Citrix.ICAClient ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9630?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6334">2006-6334</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23246">23246</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.citrix.com/article/CTX111827">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9631</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Citrix.ICAClient ActiveX function call access (<a href="http://www.snort.org/search/sid/9631?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6334">2006-6334</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23246">23246</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.citrix.com/article/CTX111827">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9640</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ADODB.Connection ActiveX function call access (<a href="http://www.snort.org/search/sid/9640?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5559">2006-5559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9769</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msqueue function 4 overflow attempt (<a href="http://www.snort.org/search/sid/9769?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0059">2005-0059</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9793</td><td class="ruletablebody" valign="top">WEB-ACTIVEX YMMAPI.YMailAttach ActiveX clsid access (<a href="http://www.snort.org/search/sid/9793?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6603">2006-6603</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21607">21607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=120806">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9794</td><td class="ruletablebody" valign="top">WEB-ACTIVEX YMMAPI.YMailAttach ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9794?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6603">2006-6603</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21607">21607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=120806">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9795</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Panda ActiveScan ActiveScan.1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/9795?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5966">2006-5966</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21132">21132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9796</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Panda ActiveScan ActiveScan.1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9796?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5966">2006-5966</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21132">21132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9797</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Panda ActiveScan ActiveScan.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/9797?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9798</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Panda ActiveScan PAVPZ.SOS.1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/9798?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5966">2006-5966</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21132">21132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9799</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Panda ActiveScan PAVPZ.SOS.1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9799?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5966">2006-5966</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21132">21132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9800</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Panda ActiveScan PAVPZ.SOS.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/9800?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9806</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc GetGroupStatus overflow attempt (<a href="http://www.snort.org/search/sid/9806?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6076">2006-6076</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21221">21221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.lssec.com/advisories/LS-20060908.pdf">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9812</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger YMailAttach ActiveX function call access (<a href="http://www.snort.org/search/sid/9812?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6603">2006-6603</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21607">21607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=120806">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9814</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQPhone.SipxPhoneManager ActiveX clsid access (<a href="http://www.snort.org/search/sid/9814?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5650">2006-5650</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20930">20930</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9815</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQPhone.SipxPhoneManager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9815?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5650">2006-5650</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20930">20930</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9816</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQPhone.SipxPhoneManager ActiveX function call access (<a href="http://www.snort.org/search/sid/9816?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5650">2006-5650</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20930">20930</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9817</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CEnroll.CEnroll.2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/9817?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27230">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9818</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CEnroll.CEnroll.2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9818?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27230">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9820</td><td class="ruletablebody" valign="top">WEB-ACTIVEX OWC11.DataSourceControl.11 ActiveX function call access (<a href="http://www.snort.org/search/sid/9820?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3729">2006-3729</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19069">19069</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27111">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9821</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TriEditDocument.TriEditDocument ActiveX clsid access (<a href="http://www.snort.org/search/sid/9821?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3591">2006-3591</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18946">18946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27056">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9822</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TriEditDocument.TriEditDocument ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3591">2006-3591</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18946">18946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27056">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9824</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Rediff Bol Downloader ActiveX clsid access (<a href="http://www.snort.org/search/sid/9824?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6838">2006-6838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21831">21831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9825</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Rediff Bol Downloader ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9825?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6838">2006-6838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21831">21831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9826</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Rediff Bol Downloader ActiveX function call access (<a href="http://www.snort.org/search/sid/9826?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6838">2006-6838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21831">21831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10013</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CCRP FolderTreeView ActiveX clsid access (<a href="http://www.snort.org/search/sid/10013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22092">22092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://ccrp.mvps.org/index.html?controls/ccrpftv6.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10014</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CCRP FolderTreeView ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10014?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22092">22092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://ccrp.mvps.org/index.html?controls/ccrpftv6.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10015</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle ORADC ActiveX clsid access (<a href="http://www.snort.org/search/sid/10015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22026">22026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10016</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle ORADC ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10016?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22026">22026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10017</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle ORADC ActiveX function call access (<a href="http://www.snort.org/search/sid/10017?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22026">22026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10018</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc ReserveGroup attempt (<a href="http://www.snort.org/search/sid/10018?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6917">2006-6917</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.lssec.com/advisories/LS-20061001.pdf">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10050</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc2 ASDBLoginToComputer overflow attempt (<a href="http://www.snort.org/search/sid/10050?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0169">2007-0169</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22005">22005</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/180336">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10084</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioFile2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/10084?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0018">2007-0018</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33469">33469</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/292713">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10085</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioFile2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10085?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0018">2007-0018</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33469">33469</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/292713">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10086</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioFile2 ActiveX function call access (<a href="http://www.snort.org/search/sid/10086?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0018">2007-0018</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33469">33469</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/292713">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10115</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft WMF denial of service attempt (<a href="http://www.snort.org/search/sid/10115?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4071">2006-4071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21992">21992</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10128</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aliplay ActiveX clsid access (<a href="http://www.snort.org/search/sid/10128?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22446">22446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10129</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aliplay ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10129?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22446">22446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10137</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor ActiveX clsid access (<a href="http://www.snort.org/search/sid/10137?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4697">2006-4697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10138</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10138?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4697">2006-4697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10139</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor ActiveX function call access (<a href="http://www.snort.org/search/sid/10139?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4697">2006-4697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10140</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/10140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4697">2006-4697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10141</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4697">2006-4697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10142</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LexRefBilingualTextContext ActiveX clsid access (<a href="http://www.snort.org/search/sid/10142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10143</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LexRefBilingualTextContext ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10144</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LexRefBilingualTextContext ActiveX function call access (<a href="http://www.snort.org/search/sid/10144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10145</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Inline Sound Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/10145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10146</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Inline Sound Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10147</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Inline Sound Control ActiveX function call access (<a href="http://www.snort.org/search/sid/10147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10148</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Inline Movie Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/10148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10149</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Inline Movie Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10149?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10150</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HTML Inline Movie Control ActiveX function call access (<a href="http://www.snort.org/search/sid/10150?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10151</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BlnSetUser Proxy ActiveX clsid access (<a href="http://www.snort.org/search/sid/10151?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10152</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BlnSetUser Proxy ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10152?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10153</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BlnSetUser Proxy ActiveX function call access (<a href="http://www.snort.org/search/sid/10153?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10154</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BlnSetUser Proxy 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/10154?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10155</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BlnSetUser Proxy 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10155?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0219">2007-0219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10156</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ActiveX Soft DVD Tools ActiveX clsid access (<a href="http://www.snort.org/search/sid/10156?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22558">22558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-bonus-actsoft-dvd-tools.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10157</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ActiveX Soft DVD Tools ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10157?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22558">22558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-bonus-actsoft-dvd-tools.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10162</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BrowseDialog ActiveX clsid access (<a href="http://www.snort.org/search/sid/10162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22110">22110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10163</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BrowseDialog ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22110">22110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10170</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Verisign ConfigCHK ActiveX clsid access (<a href="http://www.snort.org/search/sid/10170?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22676">22676</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10171</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Verisign ConfigCHK ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10171?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22676">22676</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10176</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Shell User Enumeration Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/10176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10177</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Shell User Enumeration Object ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10178</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Shell User Enumeration Object ActiveX function call access (<a href="http://www.snort.org/search/sid/10178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10189</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivXBrowserPlugin ActiveX clsid access (<a href="http://www.snort.org/search/sid/10189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10190</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivXBrowserPlugin ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10191</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivXBrowserPlugin ActiveX function call access (<a href="http://www.snort.org/search/sid/10191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10214</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shockwave ActiveX Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/10214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6885">2006-6885</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22842">22842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10215</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shockwave ActiveX Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6885">2006-6885</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22842">22842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10216</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shockwave ActiveX Control ActiveX function call access (<a href="http://www.snort.org/search/sid/10216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6885">2006-6885</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22842">22842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10387</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee ePolicy Orchestrator ActiveX clsid access (<a href="http://www.snort.org/search/sid/10387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22952">22952</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://knowledge.mcafee.com/SupportSite/search.do?cmd=displayKC&amp;docType=kc&amp;sliceId=SAL_Public&amp;externalId=612496">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10388</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee ePolicy Orchestrator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10388?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22952">22952</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://knowledge.mcafee.com/SupportSite/search.do?cmd=displayKC&amp;docType=kc&amp;sliceId=SAL_Public&amp;externalId=612496">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10389</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee ePolicy Orchestrator ActiveX function call access (<a href="http://www.snort.org/search/sid/10389?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22952">22952</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://knowledge.mcafee.com/SupportSite/search.do?cmd=displayKC&amp;docType=kc&amp;sliceId=SAL_Public&amp;externalId=612496">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10390</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Support Controls SmartIssue ActiveX clsid access (<a href="http://www.snort.org/search/sid/10390?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10391</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Support Controls SmartIssue ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10391?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10392</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Support Controls SmartIssue ActiveX function call access (<a href="http://www.snort.org/search/sid/10392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10404</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SignKorea SKCommAX ActiveX clsid access (<a href="http://www.snort.org/search/sid/10404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10405</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SignKorea SKCommAX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10406</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SignKorea SKCommAX ActiveX function call access (<a href="http://www.snort.org/search/sid/10406?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10412</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus SameTime STJNILoader Alt CLSID ActiveX clsid access (<a href="http://www.snort.org/search/sid/10412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1784">2007-1784</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23201">23201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/464185">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10413</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus SameTime STJNILoader Alt CLSID ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10413?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23201">23201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/464185">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10414</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus SameTime STJNILoader Alt CLSID ActiveX function call access (<a href="http://www.snort.org/search/sid/10414?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23201">23201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/464185">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10415</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus SameTime STJNILoader ActiveX clsid access (<a href="http://www.snort.org/search/sid/10415?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23201">23201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/464185">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10416</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus SameTime STJNILoader ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10416?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23201">23201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/464185">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10417</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus SameTime STJNILoader ActiveX function call access (<a href="http://www.snort.org/search/sid/10417?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23201">23201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/464185">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10419</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Mercury Quality Center SPIDERLib ActiveX clsid access (<a href="http://www.snort.org/search/sid/10419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1819">2007-1819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23239">23239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00901872">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10420</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Mercury Quality Center SPIDERLib ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1819">2007-1819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23239">23239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00901872">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10421</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Mercury Quality Center SPIDERLib ActiveX function call access (<a href="http://www.snort.org/search/sid/10421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1819">2007-1819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23239">23239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00901872">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10422</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Mercury Quality Center SPIDERLib ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10422?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1819">2007-1819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23239">23239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00901872">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10423</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Audio Conferencing ActiveX clsid access (<a href="http://www.snort.org/search/sid/10423?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1680">2007-1680</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23291">23291</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=031207">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10424</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Audio Conferencing ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1680">2007-1680</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23291">23291</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=031207">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10425</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Audio Conferencing ActiveX function call access (<a href="http://www.snort.org/search/sid/10425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1680">2007-1680</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23291">23291</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=031207">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10426</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Audio Conferencing ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10426?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1680">2007-1680</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23291">23291</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://messenger.yahoo.com/security_update.php?id=031207">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10427</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus SysInfo ActiveX clsid access (<a href="http://www.snort.org/search/sid/10427?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23325">23325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10428</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus SysInfo ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23325">23325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10429</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus SysInfo ActiveX function call access (<a href="http://www.snort.org/search/sid/10429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23325">23325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10430</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus SysInfo ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23325">23325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10431</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus KAV60Info ActiveX clsid access (<a href="http://www.snort.org/search/sid/10431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23345">23345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038693">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10432</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus KAV60Info ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23345">23345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038693">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10433</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus KAV60Info ActiveX function call access (<a href="http://www.snort.org/search/sid/10433?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23345">23345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038693">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10434</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky AntiVirus KAV60Info ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10434?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1112">2007-1112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23345">23345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/technews?id=203038693">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10465</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent v1.5 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1205">2007-1205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10466</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Image Well ActiveX clsid access (<a href="http://www.snort.org/search/sid/10466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10467</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Image Well ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10468</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Image Well ActiveX function call access (<a href="http://www.snort.org/search/sid/10468?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10469</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Image Well ActiveX function call access (<a href="http://www.snort.org/search/sid/10469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10470</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Media Send Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/10470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10471</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Media Send Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10472</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Media Send Class ActiveX function call access (<a href="http://www.snort.org/search/sid/10472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10473</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Media Send Class ActiveX function call access (<a href="http://www.snort.org/search/sid/10473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10474</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iPIX Media Send Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1687">2007-1687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23379">23379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/958609">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10476</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MarkAny MaPrintModule_WORK ActiveX clsid access (<a href="http://www.snort.org/search/sid/10476?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23420">23420</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10477</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MarkAny MaPrintModule_WORK ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10477?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23420">23420</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10478</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MarkAny MaPrintModule_WORK ActiveX function call access (<a href="http://www.snort.org/search/sid/10478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23420">23420</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10479</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MarkAny MaPrintModule_WORK ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10479?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23420">23420</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10978</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveGS ActiveX clsid access (<a href="http://www.snort.org/search/sid/10978?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1690">2007-1690</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/118737">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10979</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveGS ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10979?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1690">2007-1690</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/118737">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10980</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveGS ActiveX function call access (<a href="http://www.snort.org/search/sid/10980?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1690">2007-1690</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/118737">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10981</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveGS ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10981?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1690">2007-1690</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/118737">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10982</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveMod ActiveX clsid access (<a href="http://www.snort.org/search/sid/10982?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1691">2007-1691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/962305">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10983</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveMod ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10983?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1691">2007-1691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/962305">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10984</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveMod ActiveX function call access (<a href="http://www.snort.org/search/sid/10984?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1691">2007-1691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/962305">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10985</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Second Sight Software ActiveMod ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10985?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1691">2007-1691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23554">23554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/962305">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10986</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GraceNote CDDB ActiveX clsid access (<a href="http://www.snort.org/search/sid/10986?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0443">2007-0443</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23567">23567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/701121">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10987</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GraceNote CDDB ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10987?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0443">2007-0443</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23567">23567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/701121">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10988</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GraceNote CDDB ActiveX function call access (<a href="http://www.snort.org/search/sid/10988?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0443">2007-0443</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23567">23567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/701121">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10989</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GraceNote CDDB ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10989?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0443">2007-0443</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23567">23567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/701121">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10991</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microgaming Download Helper ActiveX clsid access (<a href="http://www.snort.org/search/sid/10991?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23595">23595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/184473">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10992</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microgaming Download Helper ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10992?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23595">23595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/184473">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10993</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microgaming Download Helper ActiveX function call access (<a href="http://www.snort.org/search/sid/10993?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23595">23595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/184473">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10994</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microgaming Download Helper ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/10994?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23595">23595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/184473">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11176</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PowerPoint Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-01-powerpointviewerocx-31.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11177</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PowerPoint Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-01-powerpointviewerocx-31.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11178</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PowerPoint Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/11178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-01-powerpointviewerocx-31.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11179</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PowerPoint Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-01-powerpointviewerocx-31.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11197</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ActiveX Soft DVD Tools ActiveX function call access (<a href="http://www.snort.org/search/sid/11197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22558">22558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-bonus-actsoft-dvd-tools.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11198</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ActiveX Soft DVD Tools ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22558">22558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-bonus-actsoft-dvd-tools.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11206</td><td class="ruletablebody" valign="top">WEB-ACTIVEX East Wind Software ADVDAUDIO ActiveX clsid access (<a href="http://www.snort.org/search/sid/11206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23833">23833</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-05-east-wind-software.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11207</td><td class="ruletablebody" valign="top">WEB-ACTIVEX East Wind Software ADVDAUDIO ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23833">23833</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-05-east-wind-software.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11208</td><td class="ruletablebody" valign="top">WEB-ACTIVEX East Wind Software ADVDAUDIO ActiveX function call access (<a href="http://www.snort.org/search/sid/11208?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23833">23833</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-05-east-wind-software.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11209</td><td class="ruletablebody" valign="top">WEB-ACTIVEX East Wind Software ADVDAUDIO ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23833">23833</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-05-east-wind-software.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11210</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sienzo Digital Music Mentor ActiveX clsid access (<a href="http://www.snort.org/search/sid/11210?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23838">23838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-06-sienzo-digital-music-mentor.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11211</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sienzo Digital Music Mentor ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23838">23838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-06-sienzo-digital-music-mentor.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11212</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sienzo Digital Music Mentor ActiveX function call access (<a href="http://www.snort.org/search/sid/11212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23838">23838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-06-sienzo-digital-music-mentor.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11213</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sienzo Digital Music Mentor ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23838">23838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-06-sienzo-digital-music-mentor.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11214</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeralSoft HTTP File Uploader ActiveX clsid access (<a href="http://www.snort.org/search/sid/11214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23853">23853</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-07-versalsoft-http-file-uploader.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11215</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeralSoft HTTP File Uploader ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23853">23853</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-07-versalsoft-http-file-uploader.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11216</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeralSoft HTTP File Uploader ActiveX function call access (<a href="http://www.snort.org/search/sid/11216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23853">23853</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-07-versalsoft-http-file-uploader.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11217</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeralSoft HTTP File Uploader ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11217?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23853">23853</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-07-versalsoft-http-file-uploader.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11218</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SmartCode VNC Manager ActiveX clsid access (<a href="http://www.snort.org/search/sid/11218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23869">23869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-08-smartcode-vnc-manager-36.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11219</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SmartCode VNC Manager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23869">23869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-08-smartcode-vnc-manager-36.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11220</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SmartCode VNC Manager ActiveX function call access (<a href="http://www.snort.org/search/sid/11220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23869">23869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-08-smartcode-vnc-manager-36.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11221</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SmartCode VNC Manager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11221?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23869">23869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-08-smartcode-vnc-manager-36.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11224</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSAuth ActiveX clsid access (<a href="http://www.snort.org/search/sid/11224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2221">2007-2221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11225</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSAuth ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2221">2007-2221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11226</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSAuth ActiveX function call access (<a href="http://www.snort.org/search/sid/11226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2221">2007-2221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11227</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSAuth ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2221">2007-2221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11228</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/11228?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0942">2007-0942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=releases&amp;act=view&amp;type=1&amp;id=9">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11229</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11229?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0942">2007-0942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=releases&amp;act=view&amp;type=1&amp;id=9">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11230</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Cryptographic API COM 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/11230?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0940">2007-0940</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11231</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Cryptographic API COM 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11231?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0940">2007-0940</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11232</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Cryptographic API COM 1 ActiveX function call access (<a href="http://www.snort.org/search/sid/11232?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0940">2007-0940</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11233</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Cryptographic API COM 1 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0940">2007-0940</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11234</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Cryptographic API COM 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/11234?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0940">2007-0940</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11235</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Cryptographic API COM 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0940">2007-0940</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11239</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Redirect ActiveX clsid access (<a href="http://www.snort.org/search/sid/11239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11240</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Redirect ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11240?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11241</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Redirect ActiveX function call access (<a href="http://www.snort.org/search/sid/11241?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11242</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Redirect ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11242?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11243</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAstatics ActiveX clsid access (<a href="http://www.snort.org/search/sid/11243?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11244</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAstatics ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11244?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11245</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAstatics ActiveX function call access (<a href="http://www.snort.org/search/sid/11245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11246</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DirectAnimation.DAstatics ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11246?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11247</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Research In Motion TeamOn Import ActiveX clsid access (<a href="http://www.snort.org/search/sid/11247?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23331">23331</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11248</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Research In Motion TeamOn Import ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11248?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23331">23331</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11249</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IE Address ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11249?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11250</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sony Rootkit Uninstaller ActiveX clsid access (<a href="http://www.snort.org/search/sid/11250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11251</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sony Rootkit Uninstaller ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11251?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11252</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IE Address ActiveX clsid access (<a href="http://www.snort.org/search/sid/11252?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11253</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MciWndx ActiveX clsid access (<a href="http://www.snort.org/search/sid/11253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11254</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MciWndx ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11254?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11255</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MciWndx ActiveX function call access (<a href="http://www.snort.org/search/sid/11255?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11256</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MciWndx ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11256?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11259</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BarcodeWiz ActiveX clsid access (<a href="http://www.snort.org/search/sid/11259?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23891">23891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-09-barcodewiz-activex-control-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11260</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BarcodeWiz ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11260?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23891">23891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-09-barcodewiz-activex-control-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11261</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BarcodeWiz ActiveX function call access (<a href="http://www.snort.org/search/sid/11261?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23891">23891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-09-barcodewiz-activex-control-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11262</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BarcodeWiz ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11262?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23891">23891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-09-barcodewiz-activex-control-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11268</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton AntiVirus ActiveX clsid access (<a href="http://www.snort.org/search/sid/11268?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3456">2006-3456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23822">23822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2007.05.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11269</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton AntiVirus ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11269?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3456">2006-3456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23822">23822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2007.05.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11270</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton AntiVirus ActiveX function call access (<a href="http://www.snort.org/search/sid/11270?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3456">2006-3456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23822">23822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2007.05.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11271</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton AntiVirus ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11271?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3456">2006-3456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23822">23822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2007.05.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11274</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RControl ActiveX clsid access (<a href="http://www.snort.org/search/sid/11274?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23914">23914</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-10-rcontroldll-v-1210-denial-of.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11275</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RControl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11275?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23914">23914</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-10-rcontroldll-v-1210-denial-of.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11276</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GDivX Zenith Player AVI Fixer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11276?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23907">23907</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11277</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GDivX Zenith Player AVI Fixer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11277?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23907">23907</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11278</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GDivX Zenith Player AVI Fixer ActiveX function call access (<a href="http://www.snort.org/search/sid/11278?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23907">23907</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11279</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GDivX Zenith Player AVI Fixer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11279?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23907">23907</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11280</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FlexLabel ActiveX clsid access (<a href="http://www.snort.org/search/sid/11280?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/468070">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11281</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FlexLabel ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11281?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/468070">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11282</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FlexLabel ActiveX function call access (<a href="http://www.snort.org/search/sid/11282?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/468070">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11283</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FlexLabel ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11283?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/468070">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11284</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AudioCDRipper ActiveX clsid access (<a href="http://www.snort.org/search/sid/11284?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23900">23900</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11285</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AudioCDRipper ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23900">23900</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11286</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AudioCDRipper ActiveX function call access (<a href="http://www.snort.org/search/sid/11286?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23900">23900</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11287</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AudioCDRipper ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11287?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23900">23900</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11291</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Hewlett Packard HPQVWOCX.DL ActiveX clsid access (<a href="http://www.snort.org/search/sid/11291?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24793">24793</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11292</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Hewlett Packard HPQVWOCX.DL ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11292?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24793">24793</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11293</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IDAutomation Linear Bar Code ActiveX clsid access (<a href="http://www.snort.org/search/sid/11293?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23954">23954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-13-id-automation-linear-barcode.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11294</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IDAutomation Linear Bar Code ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11294?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23954">23954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-13-id-automation-linear-barcode.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11295</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IDAutomation Linear Bar Code ActiveX function call access (<a href="http://www.snort.org/search/sid/11295?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23954">23954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-13-id-automation-linear-barcode.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11296</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IDAutomation Linear Bar Code ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11296?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23954">23954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-13-id-automation-linear-barcode.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11297</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Database Comparer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11297?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23969">23969</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-14-clever-database-comparer.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11298</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Database Comparer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11298?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23969">23969</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-14-clever-database-comparer.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11299</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Database Comparer ActiveX function call access (<a href="http://www.snort.org/search/sid/11299?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23969">23969</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-14-clever-database-comparer.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11300</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Database Comparer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11300?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23969">23969</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-14-clever-database-comparer.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11301</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory DeWizardX ActiveX clsid access (<a href="http://www.snort.org/search/sid/11301?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23986">23986</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11302</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory DeWizardX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11302?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23986">23986</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11303</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory DeWizardX ActiveX function call access (<a href="http://www.snort.org/search/sid/11303?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23986">23986</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11304</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory DeWizardX ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23986">23986</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11324</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor 3 ActiveX function call access (<a href="http://www.snort.org/search/sid/11324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0942">2007-0942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=releases&amp;act=view&amp;type=1&amp;id=9">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11325</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Input Method Editor 3 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11325?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0942">2007-0942</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=releases&amp;act=view&amp;type=1&amp;id=9">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11618</td><td class="ruletablebody" valign="top">EXPLOIT Trend Micro ServerProtect EarthAgent DCE-RPC Stack overflow (<a href="http://www.snort.org/search/sid/11618?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2508">2007-2508</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23866">23866</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11822</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Upload ActiveX clsid access (<a href="http://www.snort.org/search/sid/11822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3147">2007-3147</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11823</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Upload ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11823?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3147">2007-3147</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11824</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Upload ActiveX function call access (<a href="http://www.snort.org/search/sid/11824?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3147">2007-3147</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11825</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Upload ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11825?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3147">2007-3147</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12010</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RKD Software BarCode ActiveX clsid access (<a href="http://www.snort.org/search/sid/12010?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3435">2007-3435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24596">24596</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12011</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RKD Software BarCode ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12011?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3435">2007-3435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24596">24596</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12012</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RKD Software BarCode ActiveX function call access (<a href="http://www.snort.org/search/sid/12012?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3435">2007-3435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24596">24596</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12013</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RKD Software BarCode ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3435">2007-3435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24596">24596</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12069</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows Active Directory Crafted LDAP ModifyRequest (<a href="http://www.snort.org/search/sid/12069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0040">2007-0040</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12144</td><td class="ruletablebody" valign="top">BACKDOOR access remote pc runtime detection - rpc setup (<a href="http://www.snort.org/search/sid/12144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12187</td><td class="ruletablebody" valign="top">RPC portmap 2112 tcp rename_principal attempt (<a href="http://www.snort.org/search/sid/12187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2798">2007-2798</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24653">24653</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-005.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12188</td><td class="ruletablebody" valign="top">RPC portmap 2112 udp rename_principal attempt (<a href="http://www.snort.org/search/sid/12188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2798">2007-2798</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24653">24653</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-005.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12279</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft XML substringData integer overflow attempt (<a href="http://www.snort.org/search/sid/12279?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1442">2008-1442</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-031.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12307</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect _SetPagerNotifyConfig attempt (<a href="http://www.snort.org/search/sid/12307?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12317</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect-earthagent RPCFN_CopyAUSrc attempt (<a href="http://www.snort.org/search/sid/12317?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12326</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect _AddTaskExportLogItem attempt (<a href="http://www.snort.org/search/sid/12326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12332</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect _TakeActionOnAFile attempt (<a href="http://www.snort.org/search/sid/12332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12335</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect Trent_req_num_30010 overflow attempt (<a href="http://www.snort.org/search/sid/12335?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12341</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect Trent_req_num_a0030 attempt (<a href="http://www.snort.org/search/sid/12341?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12347</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect _SetSvcImpersonateUser attempt (<a href="http://www.snort.org/search/sid/12347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4218">2007-4218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25395">25395</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12393</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12393?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12394</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12394?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12395</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12396</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12396?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12397</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12397?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12398</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12399</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12399?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12400</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12400?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12401</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12402</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12402?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12403</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12404</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12405</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12406</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12406?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12407</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 8 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12407?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12408</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 8 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12408?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12409</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 9 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12409?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12410</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 9 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12410?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12411</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 10 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12411?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12412</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Edition 10 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4471">2007-4471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25544">25544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12417</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro ActiveX clsid access (<a href="http://www.snort.org/search/sid/12417?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5322">2007-5322</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25977">25977</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12418</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12418?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5322">2007-5322</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25977">25977</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12419</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro ActiveX function call access (<a href="http://www.snort.org/search/sid/12419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5322">2007-5322</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25977">25977</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12420</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5322">2007-5322</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25977">25977</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12466</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies QRCode ActiveX clsid access (<a href="http://www.snort.org/search/sid/12466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4982">2007-4982</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25702">25702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12467</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies QRCode ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4982">2007-4982</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25702">25702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12489</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP wkssvc NetrWkstaGetInfo attempt (<a href="http://www.snort.org/search/sid/12489?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6723">2006-6723</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12612</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows MFC Library ActiveX clsid access (<a href="http://www.snort.org/search/sid/12612?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4916">2007-4916</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25697">25697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12613</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows MFC Library ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12613?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4916">2007-4916</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25697">25697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12614</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows MFC Library ActiveX function call access (<a href="http://www.snort.org/search/sid/12614?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4916">2007-4916</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25697">25697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12615</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows MFC Library ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12615?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4916">2007-4916</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25697">25697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12664</td><td class="ruletablebody" valign="top">MISC Microsoft Windows ShellExecute and IE7 url handling code execution attempt (<a href="http://www.snort.org/search/sid/12664?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3896">2007-3896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25945">25945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12687</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ShellExecute and IE7 url handling code execution attempt (<a href="http://www.snort.org/search/sid/12687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3896">2007-3896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25945">25945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12688</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ShellExecute and IE7 url handling code execution attempt (<a href="http://www.snort.org/search/sid/12688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3896">2007-3896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25945">25945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12751</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RichFX Basic Player ActiveX clsid access (<a href="http://www.snort.org/search/sid/12751?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26573">26573</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12752</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RichFX Basic Player ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12752?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26573">26573</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12753</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RichFX Basic Player ActiveX function call access (<a href="http://www.snort.org/search/sid/12753?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26573">26573</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12754</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RichFX Basic Player ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26573">26573</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12755</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PowerList ActiveX clsid access (<a href="http://www.snort.org/search/sid/12755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26580">26580</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12756</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PowerList ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26580">26580</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12762</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar Helper Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/12762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6228">2007-6228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26656">26656</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12763</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar Helper Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6228">2007-6228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26656">26656</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12764</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar Helper Class ActiveX function call access (<a href="http://www.snort.org/search/sid/12764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6228">2007-6228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26656">26656</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12765</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar Helper Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12765?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6228">2007-6228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26656">26656</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12770</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS obfuscated RDS.Dataspace ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/12770?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0003">2006-0003</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17462">17462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12771</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS obfuscated BaoFeng Storm MPS.dll ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/12771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4816">2007-4816</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25601">25601</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12772</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS obfuscated PPStream PowerPlayer ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/12772?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4748">2007-4748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25502">25502</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12773</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS obfuscated Xunlei Thunder PPLAYER.DLL ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/12773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6144">2007-6144</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26536">26536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12774</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS obfuscated GlobalLink ConnectAndEnterRoom ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/12774?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5722">2007-5722</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26244">26244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12803</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VideoLAN VLC ActiveX clsid access (<a href="http://www.snort.org/search/sid/12803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6262">2007-6262</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26675">26675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.videolan.org/sa0703.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12804</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VideoLAN VLC ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12804?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6262">2007-6262</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26675">26675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.videolan.org/sa0703.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12805</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VideoLAN VLC ActiveX function call access (<a href="http://www.snort.org/search/sid/12805?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6262">2007-6262</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26675">26675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.videolan.org/sa0703.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12806</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VideoLAN VLC ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12806?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6262">2007-6262</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26675">26675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.videolan.org/sa0703.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12808</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss OpenPrinter overflow attempt (<a href="http://www.snort.org/search/sid/12808?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5854">2006-5854</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21220">21220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12910</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc3 CA opcode 4 attempt (<a href="http://www.snort.org/search/sid/12910?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5329">2007-5329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26015">26015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12916</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc3 CA opcode 12 attempt (<a href="http://www.snort.org/search/sid/12916?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5329">2007-5329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26015">26015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12922</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc3 CA opcode 16 attempt (<a href="http://www.snort.org/search/sid/12922?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5329">2007-5329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26015">26015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12928</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc3 CA opcode 18 attempt (<a href="http://www.snort.org/search/sid/12928?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5329">2007-5329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26015">26015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12934</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc3 CA opcode 19 attempt (<a href="http://www.snort.org/search/sid/12934?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5329">2007-5329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26015">26015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12946</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS SMBv2 protocol negotiation attempt (<a href="http://www.snort.org/search/sid/12946?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5351">2007-5351</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12947</td><td class="ruletablebody" valign="top">NETBIOS SMB SMBv2 protocol negotiation attempt (<a href="http://www.snort.org/search/sid/12947?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5351">2007-5351</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12948</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vantage Linguistics 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12948?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vantagelinguistics.com/answerworks/release/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12949</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vantage Linguistics 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12949?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vantagelinguistics.com/answerworks/release/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12950</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vantage Linguistics 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12950?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vantagelinguistics.com/answerworks/release/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12951</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vantage Linguistics 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12951?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vantagelinguistics.com/answerworks/release/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12952</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vantage Linguistics 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12952?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vantagelinguistics.com/answerworks/release/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12953</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vantage Linguistics 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12953?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vantagelinguistics.com/answerworks/release/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12954</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXLTPI.DLL ActiveX clsid access (<a href="http://www.snort.org/search/sid/12954?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12955</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXLTPI.DLL ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12955?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12956</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Heartbeat ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12956?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11367">11367</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12957</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Heartbeat 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12957?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12958</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Heartbeat 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12958?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12959</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Heartbeat 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12959?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12960</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MSN Heartbeat 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12960?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12961</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12961?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12962</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12962?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12963</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12963?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12964</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12964?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12965</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12965?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12966</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12966?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12967</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12967?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12968</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12968?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12969</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12969?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12970</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Intuit QuickBooks Online Import 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12970?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12971</td><td class="ruletablebody" valign="top">EXPLOIT microsoft directshow wav file overflow attempt (<a href="http://www.snort.org/search/sid/12971?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3895">2007-3895</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-064.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12972</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Media Player .asf markers detected (<a href="http://www.snort.org/search/sid/12972?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0064">2007-0064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13158</td><td class="ruletablebody" valign="top">WEB_CLIENT Microsoft Media Player asf streaming format interchange data integer overflow attempt (<a href="http://www.snort.org/search/sid/13158?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0064">2007-0064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13159</td><td class="ruletablebody" valign="top">WEB_CLIENT Microsoft Media Player asf streaming format audio error masking integer overflow attempt (<a href="http://www.snort.org/search/sid/13159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0064">2007-0064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13162</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss EnumPrinters overflow attempt (<a href="http://www.snort.org/search/sid/13162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6114">2006-6114</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21220">21220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13219</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Software Update RulesEngine.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/13219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6506">2007-6506</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26950">26950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13220</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Software Update RulesEngine.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6506">2007-6506</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26950">26950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13224</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar YShortcut ActiveX clsid access (<a href="http://www.snort.org/search/sid/13224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6535">2007-6535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26956">26956</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13225</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar YShortcut ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6535">2007-6535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26956">26956</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13226</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar YShortcut ActiveX function call access (<a href="http://www.snort.org/search/sid/13226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6535">2007-6535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26956">26956</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13227</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Toolbar YShortcut ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6535">2007-6535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26956">26956</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13250</td><td class="ruletablebody" valign="top">RPC portmap 390113 tcp request (<a href="http://www.snort.org/search/sid/13250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13251</td><td class="ruletablebody" valign="top">RPC portmap 390113 udp request (<a href="http://www.snort.org/search/sid/13251?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13252</td><td class="ruletablebody" valign="top">RPC portmap 390113 tcp procedure 4 attempt (<a href="http://www.snort.org/search/sid/13252?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13253</td><td class="ruletablebody" valign="top">RPC portmap 390113 udp procedure 4 attempt (<a href="http://www.snort.org/search/sid/13253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13254</td><td class="ruletablebody" valign="top">RPC portmap 390113 tcp request (<a href="http://www.snort.org/search/sid/13254?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13255</td><td class="ruletablebody" valign="top">RPC portmap 390113 udp request (<a href="http://www.snort.org/search/sid/13255?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13256</td><td class="ruletablebody" valign="top">RPC portmap 390113 tcp procedure 5 attempt (<a href="http://www.snort.org/search/sid/13256?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13257</td><td class="ruletablebody" valign="top">RPC portmap 390113 udp procedure 5 attempt (<a href="http://www.snort.org/search/sid/13257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3618">2007-3618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25375">25375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13266</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SkyFex Client ActiveX clsid access (<a href="http://www.snort.org/search/sid/13266?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27059">27059</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13267</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SkyFex Client ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13267?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27059">27059</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13273</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivX Web Player ActiveX clsid access (<a href="http://www.snort.org/search/sid/13273?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27106">27106</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13274</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivX Web Player ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13274?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27106">27106</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13275</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivX Web Player ActiveX function call access (<a href="http://www.snort.org/search/sid/13275?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27106">27106</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13276</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DivX Web Player ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13276?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27106">27106</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13289</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Gatway CWebLaunchCtl ActiveX clsid access (<a href="http://www.snort.org/search/sid/13289?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0220">2008-0220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27193">27193</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/735441">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13290</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Gatway CWebLaunchCtl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0220">2008-0220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27193">27193</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/735441">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13294</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Rich TextBox ActiveX clsid access (<a href="http://www.snort.org/search/sid/13294?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0237">2008-0237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27201">27201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13295</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Rich TextBox ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13295?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0237">2008-0237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27201">27201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13296</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Rich TextBox ActiveX clsid access (<a href="http://www.snort.org/search/sid/13296?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0237">2008-0237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27201">27201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13297</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Rich TextBox ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13297?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0237">2008-0237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27201">27201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13298</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Rich TextBox ActiveX function call access (<a href="http://www.snort.org/search/sid/13298?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0237">2008-0237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27201">27201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13299</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Rich TextBox ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13299?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0237">2008-0237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27201">27201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13303</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13303?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0236">2008-0236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27205">27205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13304</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0236">2008-0236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27205">27205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13305</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro 2 ActiveX function call access (<a href="http://www.snort.org/search/sid/13305?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0236">2008-0236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27205">27205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13306</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro 2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13306?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0236">2008-0236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27205">27205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13312</td><td class="ruletablebody" valign="top">WEB-ACTIVEX StreamAudio ProxyManager ActiveX clsid access (<a href="http://www.snort.org/search/sid/13312?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0248">2008-0248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27247">27247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13313</td><td class="ruletablebody" valign="top">WEB-ACTIVEX StreamAudio ProxyManager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13313?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0248">2008-0248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27247">27247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13314</td><td class="ruletablebody" valign="top">WEB-ACTIVEX StreamAudio ProxyManager ActiveX function call access (<a href="http://www.snort.org/search/sid/13314?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0248">2008-0248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27247">27247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13315</td><td class="ruletablebody" valign="top">WEB-ACTIVEX StreamAudio ProxyManager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13315?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0248">2008-0248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27247">27247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13321</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Package and Deployment Wizard ActiveX clsid access (<a href="http://www.snort.org/search/sid/13321?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25295">25295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13322</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Package and Deployment Wizard ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13322?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25295">25295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13323</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Package and Deployment Wizard ActiveX function call access (<a href="http://www.snort.org/search/sid/13323?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25295">25295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13324</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Package and Deployment Wizard ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25295">25295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13329</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Toshiba Surveillance Surveillix DVR ActiveX clsid access (<a href="http://www.snort.org/search/sid/13329?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0399">2008-0399</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27360">27360</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13330</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Toshiba Surveillance Surveillix DVR ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0399">2008-0399</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27360">27360</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13331</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Toshiba Surveillance Surveillix DVR ActiveX function call access (<a href="http://www.snort.org/search/sid/13331?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0399">2008-0399</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27360">27360</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13332</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Toshiba Surveillance Surveillix DVR ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0399">2008-0399</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27360">27360</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13333</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Virtual Rooms ActiveX clsid access (<a href="http://www.snort.org/search/sid/13333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0437">2008-0437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27384">27384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13334</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Virtual Rooms ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0437">2008-0437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27384">27384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13335</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Lycos File Upload Component ActiveX clsid access (<a href="http://www.snort.org/search/sid/13335?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27411">27411</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13336</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Lycos File Upload Component ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13336?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27411">27411</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13337</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Comodo AntiVirus ActiveX clsid access (<a href="http://www.snort.org/search/sid/13337?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27424">27424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13338</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Comodo AntiVirus ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13338?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27424">27424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13348</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Move Networks Media Player ActiveX clsid access (<a href="http://www.snort.org/search/sid/13348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27438">27438</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13349</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Move Networks Media Player ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27438">27438</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13350</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Move Networks Media Player ActiveX function call access (<a href="http://www.snort.org/search/sid/13350?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27438">27438</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13351</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Move Networks Media Player ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13351?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27438">27438</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13352</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Lycos File Upload Component ActiveX function call access (<a href="http://www.snort.org/search/sid/13352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27411">27411</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13353</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Lycos File Upload Component ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13353?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27411">27411</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13354</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Virtual Rooms ActiveX function call access (<a href="http://www.snort.org/search/sid/13354?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0437">2008-0437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27384">27384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13355</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Virtual Rooms ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13355?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0437">2008-0437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27384">27384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13367</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss GetPrinterData attempt (<a href="http://www.snort.org/search/sid/13367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6296">2006-6296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21401">21401</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13419</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Facebook Photo Uploader ActiveX clsid access (<a href="http://www.snort.org/search/sid/13419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5711">2008-5711</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27756">27756</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13420</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Facebook Photo Uploader ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5711">2008-5711</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27756">27756</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13421</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Facebook Photo Uploader ActiveX function call access (<a href="http://www.snort.org/search/sid/13421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5711">2008-5711</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27756">27756</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13422</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Facebook Photo Uploader ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13422?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5711">2008-5711</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27756">27756</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13423</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SwiftView ActiveX clsid access (<a href="http://www.snort.org/search/sid/13423?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5602">2007-5602</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27527">27527</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.swiftview.com/tech/security/bulletins/SBSV-07-10-02.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13424</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SwiftView ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5602">2007-5602</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27527">27527</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.swiftview.com/tech/security/bulletins/SBSV-07-10-02.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13426</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox DataGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/13426?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27579">27579</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13427</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox DataGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13427?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27579">27579</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13428</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox DataGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/13428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27579">27579</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13429</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox DataGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27579">27579</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13430</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox MediaGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/13430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27578">27578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13431</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox MediaGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27578">27578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13432</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox MediaGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/13432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27578">27578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13433</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Music JukeBox MediaGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13433?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27578">27578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13446</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GlobalLink HanGamePlugin ActiveX clsid access (<a href="http://www.snort.org/search/sid/13446?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27626">27626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13447</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GlobalLink HanGamePlugin ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13447?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27626">27626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13453</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DXLUTBuilder ActiveX clsid access (<a href="http://www.snort.org/search/sid/13453?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0078">2008-0078</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13455</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DXLUTBuilder ActiveX function call access (<a href="http://www.snort.org/search/sid/13455?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0078">2008-0078</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13457</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13457?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0065">2007-0065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13459</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ActiveX function call access (<a href="http://www.snort.org/search/sid/13459?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0065">2007-0065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13465</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Works file download request (<a href="http://www.snort.org/search/sid/13465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13466</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Works file converter file section length headers memory corruption attempt (<a href="http://www.snort.org/search/sid/13466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0216">2007-0216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27657">27657</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13471</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Publisher invalid pathname overwrite (<a href="http://www.snort.org/search/sid/13471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0104">2008-0104</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13473</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Publisher file download (<a href="http://www.snort.org/search/sid/13473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13474</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft WebDAV MiniRedir remote code execution attempt (<a href="http://www.snort.org/search/sid/13474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0080">2008-0080</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13523</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX clsid access (<a href="http://www.snort.org/search/sid/13523?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31370">31370</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5028061.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13524</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13524?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31370">31370</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5028061.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13525</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX function call access (<a href="http://www.snort.org/search/sid/13525?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31370">31370</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5028061.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13526</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13526?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31370">31370</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5028061.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13527</td><td class="ruletablebody" valign="top">WEB-ACTIVEX D-Link MPEG4 SHM Audio Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/13527?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13528</td><td class="ruletablebody" valign="top">WEB-ACTIVEX D-Link MPEG4 SHM Audio Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13528?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13529</td><td class="ruletablebody" valign="top">WEB-ACTIVEX D-Link MPEG4 SHM Audio Control ActiveX function call access (<a href="http://www.snort.org/search/sid/13529?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13530</td><td class="ruletablebody" valign="top">WEB-ACTIVEX D-Link MPEG4 SHM Audio Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13530?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13531</td><td class="ruletablebody" valign="top">WEB-ACTIVEX 4xem VatCtrl ActiveX clsid access (<a href="http://www.snort.org/search/sid/13531?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13532</td><td class="ruletablebody" valign="top">WEB-ACTIVEX 4xem VatCtrl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13532?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13533</td><td class="ruletablebody" valign="top">WEB-ACTIVEX 4xem VatCtrl ActiveX function call access (<a href="http://www.snort.org/search/sid/13533?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13534</td><td class="ruletablebody" valign="top">WEB-ACTIVEX 4xem VatCtrl ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13534?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13535</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vivotek RTSP MPEG4 SP Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/13535?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13536</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vivotek RTSP MPEG4 SP Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13536?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13537</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vivotek RTSP MPEG4 SP Control ActiveX function call access (<a href="http://www.snort.org/search/sid/13537?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13538</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vivotek RTSP MPEG4 SP Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13538?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28010">28010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13539</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Backup Exec ActiveX clsid access (<a href="http://www.snort.org/search/sid/13539?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6016">2007-6016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26904">26904</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2008.02.28.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13540</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Backup Exec ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13540?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6016">2007-6016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26904">26904</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2008.02.28.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13541</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Backup Exec ActiveX function call access (<a href="http://www.snort.org/search/sid/13541?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6016">2007-6016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26904">26904</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2008.02.28.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13542</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Backup Exec ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6016">2007-6016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26904">26904</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2008.02.28.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13543</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Learn2 STRunner ActiveX clsid access (<a href="http://www.snort.org/search/sid/13543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28058">28058</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13544</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Learn2 STRunner ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13544?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28058">28058</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13545</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Learn2 STRunner ActiveX function call access (<a href="http://www.snort.org/search/sid/13545?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28058">28058</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13546</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Learn2 STRunner ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13546?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28058">28058</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13547</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sony ImageStation ActiveX clsid access (<a href="http://www.snort.org/search/sid/13547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0748">2008-0748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27715">27715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13548</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sony ImageStation ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0748">2008-0748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27715">27715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13549</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sony ImageStation ActiveX function call access (<a href="http://www.snort.org/search/sid/13549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0748">2008-0748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27715">27715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13550</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sony ImageStation ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13550?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0748">2008-0748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27715">27715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13572</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint malformed shapeid arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/13572?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0118">2008-0118</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13583</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft SYmbolic LinK file download request (<a href="http://www.snort.org/search/sid/13583?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0112">2008-0112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13585</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft SYmbolic LinK file download (<a href="http://www.snort.org/search/sid/13585?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0112">2008-0112</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13595</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQ Toolbar toolbaru.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/13595?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28118">28118</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13596</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQ Toolbar toolbaru.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13596?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28118">28118</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13597</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQ Toolbar toolbaru.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/13597?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28118">28118</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13598</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ICQ Toolbar toolbaru.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13598?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28118">28118</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13599</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kingsoft Antivirus Online Update Module ActiveX clsid access (<a href="http://www.snort.org/search/sid/13599?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1307">2008-1307</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28172">28172</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13600</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kingsoft Antivirus Online Update Module ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13600?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1307">2008-1307</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28172">28172</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13601</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kingsoft Antivirus Online Update Module ActiveX function call access (<a href="http://www.snort.org/search/sid/13601?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1307">2008-1307</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28172">28172</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13602</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kingsoft Antivirus Online Update Module ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13602?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1307">2008-1307</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28172">28172</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13619</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft getBulkRequest memory corruption attempt (<a href="http://www.snort.org/search/sid/13619?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5583">2006-5583</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-074.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13621</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA BrightStor ListCtrl ActiveX clsid access (<a href="http://www.snort.org/search/sid/13621?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1472">2008-1472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28268">28268</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13622</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA BrightStor ListCtrl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13622?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1472">2008-1472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28268">28268</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13623</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA BrightStor ListCtrl ActiveX function call access (<a href="http://www.snort.org/search/sid/13623?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1472">2008-1472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28268">28268</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13624</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA BrightStor ListCtrl ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13624?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1472">2008-1472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28268">28268</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13626</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Access download attempt (<a href="http://www.snort.org/search/sid/13626?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1092">2008-1092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26468">26468</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13629</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Access JSDB download attempt (<a href="http://www.snort.org/search/sid/13629?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1092">2008-1092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26468">26468</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13630</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Access TJDB download attempt (<a href="http://www.snort.org/search/sid/13630?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1092">2008-1092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26468">26468</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13633</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Access MSISAM download attempt (<a href="http://www.snort.org/search/sid/13633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1092">2008-1092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26468">26468</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13657</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BusinessObjects RptViewerAx ActiveX clsid access (<a href="http://www.snort.org/search/sid/13657?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6254">2007-6254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28292">28292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13658</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BusinessObjects RptViewerAx ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6254">2007-6254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28292">28292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13659</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BusinessObjects RptViewerAx ActiveX function call access (<a href="http://www.snort.org/search/sid/13659?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6254">2007-6254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28292">28292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13660</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BusinessObjects RptViewerAx ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13660?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6254">2007-6254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28292">28292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13661</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeralSoft HTTP File Upload ActiveX clsid access (<a href="http://www.snort.org/search/sid/13661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28301">28301</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13662</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeralSoft HTTP File Upload ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13662?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28301">28301</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13666</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft GDI integer overflow attempt (<a href="http://www.snort.org/search/sid/13666?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1083">2008-1083</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13668</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/13668?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13670</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control ActiveX function call access (<a href="http://www.snort.org/search/sid/13670?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13672</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13672?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13674</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control 2 ActiveX function call access (<a href="http://www.snort.org/search/sid/13674?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13678</td><td class="ruletablebody" valign="top">MISC Microsoft EMF metafile access detected (<a href="http://www.snort.org/search/sid/13678?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1087">2008-1087</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13679</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBiz EBanking Integrator ActiveX clsid access (<a href="http://www.snort.org/search/sid/13679?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1725">2008-1725</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28700">28700</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13680</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBiz EBanking Integrator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13680?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1725">2008-1725</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28700">28700</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13681</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDNetworks Nefficient Download ActiveX clsid access (<a href="http://www.snort.org/search/sid/13681?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28666">28666</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13682</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDNetworks Nefficient Download ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13682?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28666">28666</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13683</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDNetworks Nefficient Download ActiveX function call access (<a href="http://www.snort.org/search/sid/13683?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28666">28666</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13684</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CDNetworks Nefficient Download ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13684?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28666">28666</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13685</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13685?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13686</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13686?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13687</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 1 ActiveX function call access (<a href="http://www.snort.org/search/sid/13687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13688</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 1 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13689</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13689?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13690</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13690?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13691</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 2 ActiveX function call access (<a href="http://www.snort.org/search/sid/13691?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13692</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat HTTP 2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13692?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1647">2008-1647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28546">28546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13699</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA DSM gui_cm_ctrls ActiveX clsid access (<a href="http://www.snort.org/search/sid/13699?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28809">28809</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13700</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA DSM gui_cm_ctrls ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13700?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28809">28809</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13720</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13720?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13721</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13721?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13722</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13722?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13723</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13723?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13724</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13724?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13725</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13725?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13726</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13726?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13727</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13727?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13728</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13728?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13729</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13729?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13730</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 8 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13730?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13731</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 8 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13731?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13732</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 9 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13732?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13733</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 9 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13733?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13734</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 10 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13734?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13735</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 10 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13735?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13736</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 11 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13736?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13737</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 11 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13737?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13738</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 12 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13738?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13739</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 12 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13739?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13740</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 13 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13740?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13741</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 13 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13741?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13742</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 14 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13742?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13743</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 14 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13743?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13744</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 15 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13744?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13745</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 15 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13746</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 16 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13747</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 16 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13748</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 17 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13748?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13749</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 17 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13749?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13750</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 18 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13750?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13751</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 18 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13751?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13752</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 19 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13752?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13753</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 19 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13753?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13754</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 20 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13755</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 20 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13756</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 21 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13757</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 21 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0712">2008-0712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28929">28929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13758</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HeartbeatCtl ActiveX clsid access (<a href="http://www.snort.org/search/sid/13758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6255">2007-6255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28882">28882</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13759</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HeartbeatCtl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6255">2007-6255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28882">28882</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13760</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HeartbeatCtl ActiveX function call access (<a href="http://www.snort.org/search/sid/13760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6255">2007-6255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28882">28882</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13761</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HeartbeatCtl ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13761?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6255">2007-6255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28882">28882</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13783</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Assistant ActiveX clsid access (<a href="http://www.snort.org/search/sid/13783?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2111">2008-2111</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29065">29065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13784</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Assistant ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13784?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2111">2008-2111</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29065">29065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13785</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ourgame GLWorld ActiveX clsid access (<a href="http://www.snort.org/search/sid/13785?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0647">2008-0647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27626">27626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13786</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ourgame GLWorld ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13786?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0647">2008-0647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27626">27626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13787</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ourgame GLWorld ActiveX function call access (<a href="http://www.snort.org/search/sid/13787?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0647">2008-0647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27626">27626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13788</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ourgame GLWorld ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13788?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0647">2008-0647</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27626">27626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13798</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft malware protection engine denial of service attempt (<a href="http://www.snort.org/search/sid/13798?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1437">2008-1437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13802</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft malware protection engine denial of service attempt (<a href="http://www.snort.org/search/sid/13802?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1438">2008-1438</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13825</td><td class="ruletablebody" valign="top">DOS Microsoft PGM fragment denial of service attempt (<a href="http://www.snort.org/search/sid/13825?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1441">2008-1441</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13827</td><td class="ruletablebody" valign="top">DOS Microsoft PGM denial of service attempt (<a href="http://www.snort.org/search/sid/13827?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1440">2008-1440</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13857</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Instant Support DataManager ActiveX clsid access (<a href="http://www.snort.org/search/sid/13857?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0953">2008-0953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29536">29536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13858</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Instant Support DataManager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13858?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0953">2008-0953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29536">29536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13859</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Instant Support DataManager ActiveX function call access (<a href="http://www.snort.org/search/sid/13859?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0953">2008-0953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29536">29536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13860</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Instant Support DataManager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13860?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0953">2008-0953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29536">29536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13883</td><td class="ruletablebody" valign="top">WEB-ACTIVEX UUSee UUUpgrade ActiveX clsid access (<a href="http://www.snort.org/search/sid/13883?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29963">29963</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13884</td><td class="ruletablebody" valign="top">WEB-ACTIVEX UUSee UUUpgrade ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13884?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29963">29963</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13885</td><td class="ruletablebody" valign="top">WEB-ACTIVEX UUSee UUUpgrade ActiveX function call access (<a href="http://www.snort.org/search/sid/13885?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29963">29963</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13886</td><td class="ruletablebody" valign="top">WEB-ACTIVEX UUSee UUUpgrade ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13886?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29963">29963</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13893</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft malformed saved search heap corruption attempt (<a href="http://www.snort.org/search/sid/13893?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1435">2008-1435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13903</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Access Snapshot Viewer 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13903?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13904</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Access Snapshot Viewer 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13904?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13905</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Access Snapshot Viewer 1 ActiveX function call access (<a href="http://www.snort.org/search/sid/13905?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13906</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Access Snapshot Viewer 1 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13906?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13907</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Access Snapshot Viewer 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13907?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13908</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Access Snapshot Viewer 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13908?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2463">2008-2463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13911</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft search file download attempt (<a href="http://www.snort.org/search/sid/13911?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13913</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX function call access (<a href="http://www.snort.org/search/sid/13913?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6236">2006-6236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21155">21155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa06-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13914</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13914?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6236">2006-6236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21155">21155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa06-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13965</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Message System ActiveX clsid access (<a href="http://www.snort.org/search/sid/13965?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0082">2008-0082</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13967</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Message System ActiveX function call access (<a href="http://www.snort.org/search/sid/13967?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0082">2008-0082</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13971</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint TxMasterStyle10Atom atom numLevels buffer overflow attempt (<a href="http://www.snort.org/search/sid/13971?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1455">2008-1455</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13975</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Event System ActiveX clsid access (<a href="http://www.snort.org/search/sid/13975?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1457">2008-1457</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13977</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Event System ActiveX function call access (<a href="http://www.snort.org/search/sid/13977?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1457">2008-1457</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13979</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Event System Subscription VBScript access (<a href="http://www.snort.org/search/sid/13979?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1457">2008-1457</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13982</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint file download attempt (<a href="http://www.snort.org/search/sid/13982?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14013</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx Meeting Manager atucfobj ActiveX clsid access (<a href="http://www.snort.org/search/sid/14013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3558">2008-3558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30578">30578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cisco.com/warp/public/707/cisco-sa-20080814-webex.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14014</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx Meeting Manager atucfobj ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14014?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3558">2008-3558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30578">30578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cisco.com/warp/public/707/cisco-sa-20080814-webex.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14015</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx Meeting Manager atucfobj ActiveX function call access (<a href="http://www.snort.org/search/sid/14015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3558">2008-3558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30578">30578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cisco.com/warp/public/707/cisco-sa-20080814-webex.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14016</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx Meeting Manager atucfobj ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14016?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3558">2008-3558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30578">30578</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cisco.com/warp/public/707/cisco-sa-20080814-webex.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14021</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio Msmask32 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14021?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3704">2008-3704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30674">30674</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14022</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio Msmask32 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14022?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3704">2008-3704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30674">30674</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14023</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio Msmask32 ActiveX function call access (<a href="http://www.snort.org/search/sid/14023?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3704">2008-3704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30674">30674</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14024</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio Msmask32 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14024?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3704">2008-3704</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30674">30674</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14025</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates gui_cm_ctrls ActiveX clsid access (<a href="http://www.snort.org/search/sid/14025?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14026</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates gui_cm_ctrls ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14026?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14027</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA DSM gui_cm_ctrls ActiveX function call access (<a href="http://www.snort.org/search/sid/14027?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28809">28809</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14028</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CA DSM gui_cm_ctrls ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14028?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28809">28809</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14029</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates gui_cm_ctrls ActiveX clsid access (<a href="http://www.snort.org/search/sid/14029?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14030</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates gui_cm_ctrls ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14030?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14031</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates gui_cm_ctrls ActiveX function call access (<a href="http://www.snort.org/search/sid/14031?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14032</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates gui_cm_ctrls ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14032?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1786">2008-1786</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14088</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14088?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14089</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14089?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14090</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14091</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14092</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14092?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14093</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14093?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14094</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14094?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14095</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14095?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14096</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14097</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14097?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14098</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14098?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14099</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14099?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14100</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14100?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14101</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14101?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14102</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 8 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14102?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14103</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 8 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14103?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14104</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 9 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14104?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14105</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 9 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14105?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14106</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 10 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14106?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14107</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 10 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14107?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14108</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 11 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14108?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14109</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 11 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14109?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14110</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 12 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14110?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14111</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 12 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14111?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14112</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 13 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14112?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14113</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 13 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14113?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14114</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 14 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14114?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14115</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 14 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14115?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14116</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 15 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14116?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14117</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 15 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14117?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14118</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 16 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14118?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14119</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 16 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14119?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14120</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 17 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14120?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14121</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 17 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14121?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14122</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 18 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14122?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14123</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 18 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14123?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14124</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 19 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14124?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14125</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 19 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14125?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14126</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 20 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14126?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14127</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 20 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14127?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14128</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 21 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14128?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14129</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 21 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14129?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14130</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 22 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14130?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14131</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 22 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14131?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14132</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 23 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14132?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14133</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 23 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14133?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14134</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 24 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14134?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14135</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 24 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14135?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14136</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 25 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14136?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14137</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 25 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14137?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14138</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 26 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14138?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14139</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 26 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14139?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14140</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 27 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14141</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 27 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14142</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 28 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14143</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 28 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14144</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 29 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14145</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 29 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14146</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 30 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14147</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 30 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14148</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 31 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14149</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 31 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14149?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14150</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 32 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14150?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14151</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 32 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14151?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14152</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 33 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14152?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14153</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 33 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14153?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14154</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 34 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14154?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14155</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 34 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14155?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14156</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 35 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14156?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14157</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 35 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14157?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14158</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 36 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14158?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14159</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 36 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14160</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 37 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14161</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 37 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14162</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 38 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14163</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 38 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14164</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 39 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14165</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 39 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14166</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 40 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14166?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14167</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 40 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14168</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 41 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14169</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 41 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14170</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 42 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14170?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14171</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 42 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14171?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14172</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 43 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14172?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14173</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 43 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14174</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 44 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14175</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 44 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14176</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 45 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14177</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 45 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14178</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 46 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14179</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 46 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14180</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 47 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14181</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 47 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14182</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 48 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14183</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 48 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14184</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 49 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14185</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 49 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14185?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14186</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 50 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14187</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 50 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14188</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 51 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14189</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 51 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14190</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 52 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14191</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 52 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14192</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 53 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14193</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 53 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14194</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 54 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14195</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 54 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14196</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 55 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14196?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14197</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 55 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14198</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 56 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14199</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 56 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14200</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 57 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14201</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 57 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14202</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 58 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14202?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14203</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 58 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14204</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 59 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14204?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14205</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 59 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14205?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14206</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 60 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14207</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 60 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14208</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 61 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14208?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14209</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 61 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14210</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 62 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14210?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14211</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 62 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14212</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 63 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14213</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 63 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14214</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 64 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14215</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 64 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14216</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 65 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14217</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 65 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14217?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14218</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 66 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14219</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 66 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14220</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 67 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14221</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 67 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14221?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14222</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 68 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14222?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14223</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 68 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14224</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 69 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14225</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 69 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14226</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 70 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14227</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 70 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14228</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 71 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14228?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14229</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma unspecified 71 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14229?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14231</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SoftArtisans XFile FileManager ActiveX clsid access (<a href="http://www.snort.org/search/sid/14231?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1682">2007-1682</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30826">30826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.softartisans.com/Support-114.aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14233</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SoftArtisans XFile FileManager ActiveX function call access (<a href="http://www.snort.org/search/sid/14233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1682">2007-1682</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30826">30826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.softartisans.com/Support-114.aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14234</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SoftArtisans XFile FileManager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14234?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1682">2007-1682</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30826">30826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.softartisans.com/Support-114.aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14239</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Friendly Technologies fwRemoteConfig ActiveX clsid access (<a href="http://www.snort.org/search/sid/14239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30891">30891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14240</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Friendly Technologies fwRemoteConfig ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14240?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30891">30891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14241</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Friendly Technologies fwRemoteConfig ActiveX function call access (<a href="http://www.snort.org/search/sid/14241?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30891">30891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14242</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Friendly Technologies fwRemoteConfig ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14242?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30891">30891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14243</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Najdi.si Toolbar ActiveX clsid access (<a href="http://www.snort.org/search/sid/14243?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30922">30922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14244</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Najdi.si Toolbar ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14244?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30922">30922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14245</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Najdi.si Toolbar ActiveX function call access (<a href="http://www.snort.org/search/sid/14245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30922">30922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14246</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Najdi.si Toolbar ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14246?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30922">30922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14247</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Eyeball MessengerSDK ActiveX clsid access (<a href="http://www.snort.org/search/sid/14247?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3430">2008-3430</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30424">30424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14248</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Eyeball MessengerSDK ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14248?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3430">2008-3430</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30424">30424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14249</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Eyeball MessengerSDK ActiveX function call access (<a href="http://www.snort.org/search/sid/14249?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3430">2008-3430</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30424">30424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14250</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Eyeball MessengerSDK ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3430">2008-3430</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30424">30424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14251</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft GDI malformed metarecord buffer overflow attempt (<a href="http://www.snort.org/search/sid/14251?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3014">2008-3014</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14259</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft GDI EMF malformed file buffer overflow attempt (<a href="http://www.snort.org/search/sid/14259?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3012">2008-3012</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14266</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Image Acquisition Logger ActiveX clsid access (<a href="http://www.snort.org/search/sid/14266?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3957">2008-3957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31069">31069</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14267</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Image Acquisition Logger ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14267?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3957">2008-3957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31069">31069</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14268</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Image Acquisition Logger ActiveX function call access (<a href="http://www.snort.org/search/sid/14268?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3957">2008-3957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31069">31069</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14269</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Image Acquisition Logger ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14269?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3957">2008-3957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31069">31069</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14270</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Locator ActiveX clsid access (<a href="http://www.snort.org/search/sid/14270?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14271</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Locator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14271?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14272</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Locator ActiveX function call access (<a href="http://www.snort.org/search/sid/14272?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14273</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Locator ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14273?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14274</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX clsid access (<a href="http://www.snort.org/search/sid/14274?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14275</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14275?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14276</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX function call access (<a href="http://www.snort.org/search/sid/14276?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14277</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14277?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14278</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX clsid access (<a href="http://www.snort.org/search/sid/14278?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14279</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14279?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14280</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX function call access (<a href="http://www.snort.org/search/sid/14280?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14281</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14281?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14282</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX clsid access (<a href="http://www.snort.org/search/sid/14282?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14283</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14283?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14284</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX function call access (<a href="http://www.snort.org/search/sid/14284?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14285</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14286</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHosts Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14286?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14287</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHosts Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14287?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14288</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHosts Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14288?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14289</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHosts Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14289?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14290</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibCreateParamObj ActiveX clsid access (<a href="http://www.snort.org/search/sid/14290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14291</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibCreateParamObj ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14291?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14292</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibCreateParamObj ActiveX function call access (<a href="http://www.snort.org/search/sid/14292?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14293</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibCreateParamObj ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14293?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14294</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteDirDlg Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14294?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14295</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteDirDlg Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14295?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14296</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteDirDlg Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14296?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14297</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteDirDlg Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14297?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14298</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TeamListViewWnd Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14298?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14299</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TeamListViewWnd Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14299?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14300</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TeamListViewWnd Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14300?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14301</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TeamListViewWnd Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14301?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14302</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMStatusbarCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14302?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14303</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMStatusbarCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14303?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14304</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMStatusbarCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14305</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMStatusbarCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14305?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14306</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCConfiguration ActiveX clsid access (<a href="http://www.snort.org/search/sid/14306?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14307</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCConfiguration ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14307?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14308</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCConfiguration ActiveX function call access (<a href="http://www.snort.org/search/sid/14308?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14309</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCConfiguration ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14309?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14310</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdate Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14310?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14311</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdate Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14311?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14312</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdate Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14312?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14313</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdate Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14313?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14314</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14314?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14315</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14315?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14316</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbExecuteError Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14316?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14317</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbExecuteError Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14317?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14318</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbExecuteError Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14318?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14319</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbExecuteError Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14319?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14320</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14320?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14321</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14321?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14322</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SysImageUti ActiveX clsid access (<a href="http://www.snort.org/search/sid/14322?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14323</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SysImageUti ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14323?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14324</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SysImageUti ActiveX function call access (<a href="http://www.snort.org/search/sid/14324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14325</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SysImageUti ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14325?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14326</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Database Tools Query Designer V7.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14327</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Database Tools Query Designer V7.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14328</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Database Tools Query Designer V7.0 ActiveX function call access (<a href="http://www.snort.org/search/sid/14328?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14329</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Database Tools Query Designer V7.0 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14329?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14330</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbContext Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14331</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbContext Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14331?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14332</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbContext Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14333</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbContext Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14334</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVMs Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14335</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVMs Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14335?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14336</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVMs Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14336?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14337</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVMs Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14337?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14338</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14338?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14339</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14339?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14340</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14340?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14341</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14341?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14342</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14342?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14343</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14343?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14344</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMMsg Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14344?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14345</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMMsg Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14345?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14346</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMMsg Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14346?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14347</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMMsg Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14348</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14349</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14350</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.PopulatedDi ActiveX clsid access (<a href="http://www.snort.org/search/sid/14350?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14351</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.PopulatedDi ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14351?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14352</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.PopulatedDi ActiveX function call access (<a href="http://www.snort.org/search/sid/14352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14353</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.PopulatedDi ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14353?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14354</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.ElevMgr ActiveX clsid access (<a href="http://www.snort.org/search/sid/14354?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14355</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.ElevMgr ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14355?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14356</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.ElevMgr ActiveX function call access (<a href="http://www.snort.org/search/sid/14356?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14357</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.ElevMgr ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14357?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14358</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14358?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14359</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14359?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14360</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HardwareCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14361</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HardwareCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14361?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14362</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HardwareCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14362?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14363</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HardwareCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14363?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14364</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14364?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14365</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14365?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14366</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbQuery Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14367</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbQuery Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14368</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbQuery Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14368?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14369</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbQuery Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14369?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14370</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj2 Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14370?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14371</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj2 Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14371?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14372</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj2 Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14372?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14373</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappPropObj2 Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14374</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPoll Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14375</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPoll Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14375?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14376</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPoll Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14376?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14377</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPoll Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14378</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClient Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14378?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14379</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClient Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14380</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClient Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14380?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14381</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClient Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14381?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14382</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Pq2vcom.Pq2v ActiveX clsid access (<a href="http://www.snort.org/search/sid/14382?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14383</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Pq2vcom.Pq2v ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14383?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14384</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Pq2vcom.Pq2v ActiveX function call access (<a href="http://www.snort.org/search/sid/14384?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14385</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Pq2vcom.Pq2v ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14385?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14386</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbSchema Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14386?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14387</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbSchema Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14388</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbSchema Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14388?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14389</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbSchema Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14389?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14390</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX clsid access (<a href="http://www.snort.org/search/sid/14390?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14391</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14391?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14392</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX function call access (<a href="http://www.snort.org/search/sid/14392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14393</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vie2Lib.Vie2LinuxVolume ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14393?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14394</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VixCOM.VixLib ActiveX clsid access (<a href="http://www.snort.org/search/sid/14394?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14395</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VixCOM.VixLib ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14396</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VixCOM.VixLib ActiveX function call access (<a href="http://www.snort.org/search/sid/14396?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14397</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VixCOM.VixLib ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14397?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14398</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappsdk.CuiObj ActiveX clsid access (<a href="http://www.snort.org/search/sid/14398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14399</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappsdk.CuiObj ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14399?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14400</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappsdk.CuiObj ActiveX function call access (<a href="http://www.snort.org/search/sid/14400?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14401</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmappsdk.CuiObj ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14402</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteBrowseDlg Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14402?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14403</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteBrowseDlg Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14404</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteBrowseDlg Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14405</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RemoteBrowseDlg Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14406</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RegVmsCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14406?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14407</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RegVmsCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14407?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14408</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RegVmsCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14408?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14409</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RegVmsCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14409?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14410</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbEnumTags Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14410?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14411</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbEnumTags Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14411?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14412</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbEnumTags Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14413</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbEnumTags Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14413?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14414</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14414?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14415</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14415?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14416</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX clsid access (<a href="http://www.snort.org/search/sid/14416?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14417</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14417?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14418</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX function call access (<a href="http://www.snort.org/search/sid/14418?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14419</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VieLib2.Vie2Process ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14420</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbDatabase Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14421</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbDatabase Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14422</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbDatabase Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14422?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14423</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbDatabase Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14423?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14424</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMAppSdkUtil Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14425</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMAppSdkUtil Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14426</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMAppSdkUtil Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14426?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14427</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMAppSdkUtil Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14427?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14428</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 8 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14429</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 8 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14430</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMEnumStrings Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14431</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMEnumStrings Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14432</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMEnumStrings Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14433</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMEnumStrings Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14433?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14434</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 9 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14434?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14435</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 9 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14435?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14436</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHost Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14436?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14437</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHost Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14437?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14438</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHost Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14438?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14439</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientHost Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14439?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14440</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 10 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14440?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14441</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 10 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14441?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14442</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 11 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14442?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14443</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 11 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14443?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14444</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 12 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14444?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14445</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 12 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14445?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14446</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 13 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14446?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14447</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 13 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14447?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14448</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SystemReconfigur ActiveX clsid access (<a href="http://www.snort.org/search/sid/14448?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14449</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SystemReconfigur ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14449?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14450</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SystemReconfigur ActiveX function call access (<a href="http://www.snort.org/search/sid/14450?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14451</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.SystemReconfigur ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14451?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14452</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmhwcfg.NwzCompleted ActiveX clsid access (<a href="http://www.snort.org/search/sid/14452?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14453</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmhwcfg.NwzCompleted ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14453?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14454</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmhwcfg.NwzCompleted ActiveX function call access (<a href="http://www.snort.org/search/sid/14454?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14455</td><td class="ruletablebody" valign="top">WEB-ACTIVEX vmhwcfg.NwzCompleted ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14455?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14456</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCompatCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14456?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14457</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCompatCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14457?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14458</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCompatCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14458?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14459</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCompatCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14459?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14460</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 14 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14460?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14461</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 14 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14462</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX clsid access (<a href="http://www.snort.org/search/sid/14462?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14463</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14463?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14464</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX function call access (<a href="http://www.snort.org/search/sid/14464?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14465</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IntraProcessLogging.Logger ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14466</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 15 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14467</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 15 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14468</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.HostDeviceInfos ActiveX clsid access (<a href="http://www.snort.org/search/sid/14468?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14469</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.HostDeviceInfos ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14470</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.HostDeviceInfos ActiveX function call access (<a href="http://www.snort.org/search/sid/14470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14471</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.HostDeviceInfos ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14472</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 16 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14473</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 16 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14474</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 17 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14475</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 17 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14475?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14476</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.GuestInfo ActiveX clsid access (<a href="http://www.snort.org/search/sid/14476?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14477</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.GuestInfo ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14477?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14478</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.GuestInfo ActiveX function call access (<a href="http://www.snort.org/search/sid/14478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14479</td><td class="ruletablebody" valign="top">WEB-ACTIVEX reconfig.GuestInfo ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14479?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14480</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropFrame Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14480?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14481</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropFrame Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14481?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14482</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropFrame Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14482?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14483</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropFrame Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14483?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14484</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.VhdConverter ActiveX clsid access (<a href="http://www.snort.org/search/sid/14484?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14485</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.VhdConverter ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14485?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14486</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.VhdConverter ActiveX function call access (<a href="http://www.snort.org/search/sid/14486?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14487</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.VhdConverter ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14487?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14488</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMSwitchCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14488?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14489</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMSwitchCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14489?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14490</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMSwitchCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14491</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMSwitchCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14491?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14492</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 18 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14493</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 18 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14493?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14494</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUtil Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14494?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14495</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUtil Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14495?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14496</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUtil Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14496?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14497</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUtil Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14498</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 19 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14499</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 19 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14499?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14500</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMwareVpcCvt.VpcC ActiveX clsid access (<a href="http://www.snort.org/search/sid/14500?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14501</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMwareVpcCvt.VpcC ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14501?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14502</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMwareVpcCvt.VpcC ActiveX function call access (<a href="http://www.snort.org/search/sid/14502?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14503</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMwareVpcCvt.VpcC ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14503?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14504</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbCnxUtil Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14504?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14505</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbCnxUtil Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14505?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14506</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbCnxUtil Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14506?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14507</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbCnxUtil Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14507?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14508</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrive ActiveX clsid access (<a href="http://www.snort.org/search/sid/14508?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14509</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrive ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14509?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14510</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrive ActiveX function call access (<a href="http://www.snort.org/search/sid/14510?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14511</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrive ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14511?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14512</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 20 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14512?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14513</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 20 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14513?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14514</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVM Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14514?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14515</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVM Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14515?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14516</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVM Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14516?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14517</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMClientVM Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14517?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14518</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 21 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14518?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14519</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 21 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14519?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14520</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.VMXCreator ActiveX clsid access (<a href="http://www.snort.org/search/sid/14520?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14521</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.VMXCreator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14521?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14522</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.VMXCreator ActiveX function call access (<a href="http://www.snort.org/search/sid/14522?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14523</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Elevated.VMXCreator ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14523?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14524</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 22 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14524?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14525</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 22 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14525?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14526</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HotfixWz Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14526?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14527</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HotfixWz Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14527?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14528</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HotfixWz Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14528?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14529</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HotfixWz Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14529?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14530</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdates Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14530?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14531</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdates Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14531?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14532</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdates Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14532?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14533</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbUpdates Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14533?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14534</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMListCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14534?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14535</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMListCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14535?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14536</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMListCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14536?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14537</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMListCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14537?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14538</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CheckedListViewWnd Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14538?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14539</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CheckedListViewWnd Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14539?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14540</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CheckedListViewWnd Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14540?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14541</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CheckedListViewWnd Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14541?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14542</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 23 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14543</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 23 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14544</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbTreeCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14544?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14545</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbTreeCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14545?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14546</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbTreeCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14546?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14547</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbTreeCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14548</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nwz Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14549</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nwz Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14550</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nwz Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14550?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14551</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nwz Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14551?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14552</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrives ActiveX clsid access (<a href="http://www.snort.org/search/sid/14552?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14553</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrives ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14553?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14554</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrives ActiveX function call access (<a href="http://www.snort.org/search/sid/14554?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14555</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Vmc2vmx.CoVPCDrives ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14555?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14556</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14556?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14557</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14557?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14558</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14558?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14559</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MksCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14559?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14560</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropPath Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14560?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14561</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropPath Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14561?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14562</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropPath Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14562?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14563</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmappPropPath Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14563?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14564</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 24 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14564?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14565</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 24 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14565?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14566</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PolicyCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14566?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14567</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PolicyCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14567?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14568</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PolicyCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14568?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14569</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PolicyCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14569?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14570</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbParseError Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14570?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14571</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbParseError Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14571?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14572</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbParseError Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14572?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14573</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VmdbParseError Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14573?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14574</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NavigationCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14574?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14575</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NavigationCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14575?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14576</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NavigationCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14576?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14577</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NavigationCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14577?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14578</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMList Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14578?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14579</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMList Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14579?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14580</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMList Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14580?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14581</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMList Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14581?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14582</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 25 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14582?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14583</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 25 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14583?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14584</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 26 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14584?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14585</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare unspecified 26 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14585?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14586</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CurrentVMCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14586?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14587</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CurrentVMCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14587?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14588</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CurrentVMCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14588?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14589</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CurrentVMCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14589?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14590</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibHelper ActiveX clsid access (<a href="http://www.snort.org/search/sid/14590?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14591</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibHelper ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14591?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14592</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibHelper ActiveX function call access (<a href="http://www.snort.org/search/sid/14592?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14593</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VhdCvtCom.DiskLibHelper ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14593?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3696">2008-3696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vmware.com/security/advisories/VMSA-2008-0014.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14594</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Peachtree Accounting 2004 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14594?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31096">31096</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14595</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Peachtree Accounting 2004 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14595?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31096">31096</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14596</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne VSFlexGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/14596?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31200">31200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14597</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne VSFlexGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14597?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31200">31200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14598</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne VSFlexGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/14598?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31200">31200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14599</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne VSFlexGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14599?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31200">31200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14603</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveReport ARViewer2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14603?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31227">31227</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14604</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveReport ARViewer2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14604?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31227">31227</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14605</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveReport ARViewer2 ActiveX function call access (<a href="http://www.snort.org/search/sid/14605?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31227">31227</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14606</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveReport ARViewer2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14606?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31227">31227</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14607</td><td class="ruletablebody" valign="top">EXPLOIT CA Brightstor SUN RPC malformed string buffer overflow attempt (<a href="http://www.snort.org/search/sid/14607?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2139">2007-2139</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23635">23635</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14611</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare VMCtl Class ActiveX clsid access (<a href="http://www.snort.org/search/sid/14611?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3892">2008-3892</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14612</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare VMCtl Class ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14612?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3892">2008-3892</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14613</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare VMCtl Class ActiveX function call access (<a href="http://www.snort.org/search/sid/14613?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3892">2008-3892</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14614</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare VMCtl Class ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14614?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3892">2008-3892</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30934">30934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14631</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SystemRequirementsLab ActiveX clsid access (<a href="http://www.snort.org/search/sid/14631?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.systemrequirementslab.com/bulletins/security_bulletin_1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14632</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SystemRequirementsLab ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14632?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.systemrequirementslab.com/bulletins/security_bulletin_1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14633</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PhotoStockPlus ActiveX clsid access (<a href="http://www.snort.org/search/sid/14633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0957">2008-0957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29279">29279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/956391">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14634</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PhotoStockPlus ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14634?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0957">2008-0957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29279">29279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/956391">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14635</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft RSClientPrint ActiveX clsid access (<a href="http://www.snort.org/search/sid/14635?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3015">2008-3015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14636</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft RSClientPrint ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14636?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3015">2008-3015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14637</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft PicturePusher ActiveX clsid access (<a href="http://www.snort.org/search/sid/14637?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4493">2008-4493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31632">31632</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14638</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft PicturePusher ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14638?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4493">2008-4493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31632">31632</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14639</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft PicturePusher ActiveX function call access (<a href="http://www.snort.org/search/sid/14639?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4493">2008-4493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31632">31632</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14640</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft PicturePusher ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14640?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4493">2008-4493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31632">31632</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14647</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Search Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14647?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14648</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Search unicode Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14648?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14649</td><td class="ruletablebody" valign="top">NETBIOS SMB Search Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14649?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14650</td><td class="ruletablebody" valign="top">NETBIOS SMB Search unicode Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14650?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14651</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Search andx Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14651?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14652</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Search unicode andx Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14652?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14653</td><td class="ruletablebody" valign="top">NETBIOS SMB Search andx Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14653?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14654</td><td class="ruletablebody" valign="top">NETBIOS SMB Search unicode andx Search filename size integer underflow attempt (<a href="http://www.snort.org/search/sid/14654?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4038">2008-4038</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14661</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss EnumJobs attempt (<a href="http://www.snort.org/search/sid/14661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14709</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX unicode little endian attempt  (<a href="http://www.snort.org/search/sid/14709?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14711</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response little endian attempt  (<a href="http://www.snort.org/search/sid/14711?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14712</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX little endian attempt  (<a href="http://www.snort.org/search/sid/14712?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14713</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response attempt  (<a href="http://www.snort.org/search/sid/14713?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14714</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response unicode attempt  (<a href="http://www.snort.org/search/sid/14714?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14715</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX attempt  (<a href="http://www.snort.org/search/sid/14715?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14716</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX unicode attempt  (<a href="http://www.snort.org/search/sid/14716?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14717</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX unicode little endian andx attempt  (<a href="http://www.snort.org/search/sid/14717?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14718</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response unicode little endian andx attempt  (<a href="http://www.snort.org/search/sid/14718?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14719</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response little endian andx attempt  (<a href="http://www.snort.org/search/sid/14719?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14720</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX little endian andx attempt  (<a href="http://www.snort.org/search/sid/14720?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14721</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response andx attempt  (<a href="http://www.snort.org/search/sid/14721?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14722</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response unicode andx attempt  (<a href="http://www.snort.org/search/sid/14722?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14723</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX andx attempt  (<a href="http://www.snort.org/search/sid/14723?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14724</td><td class="ruletablebody" valign="top">NETBIOS SMB spoolss EnumJobs response WriteAndX unicode andx attempt  (<a href="http://www.snort.org/search/sid/14724?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1446">2008-1446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14725</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP mqqm QMGetRemoteQueueName overflow attempt (<a href="http://www.snort.org/search/sid/14725?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3479">2008-3479</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14726</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP mqqm QMGetRemoteQueueName overflow attempt (<a href="http://www.snort.org/search/sid/14726?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3479">2008-3479</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14737</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP host-integration bind attempt (<a href="http://www.snort.org/search/sid/14737?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3466">2008-3466</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-059.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14744</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Hummingbird HostExplorer ActiveX clsid access (<a href="http://www.snort.org/search/sid/14744?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31783">31783</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14745</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Hummingbird HostExplorer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31783">31783</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14746</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk DWF Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/14746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4472">2008-4472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31490">31490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14747</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk DWF Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4472">2008-4472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31490">31490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14748</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk LiveUpdate ActiveX clsid access (<a href="http://www.snort.org/search/sid/14748?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4472">2008-4472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31490">31490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14749</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk LiveUpdate ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14749?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4472">2008-4472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31490">31490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14750</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk LiveUpdate ActiveX function call access (<a href="http://www.snort.org/search/sid/14750?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4472">2008-4472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31490">31490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14751</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk LiveUpdate ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14751?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4472">2008-4472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31490">31490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14752</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell ZENworks Desktop Management ActiveX clsid access (<a href="http://www.snort.org/search/sid/14752?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31435">31435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14753</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell ZENworks Desktop Management ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14753?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31435">31435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14754</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell ZENworks Desktop Management ActiveX function call access (<a href="http://www.snort.org/search/sid/14754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31435">31435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14755</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell ZENworks Desktop Management ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31435">31435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14760</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iseemedia LPViewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/14760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4384">2008-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31604">31604</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14761</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iseemedia LPViewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14761?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4384">2008-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31604">31604</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14762</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iseemedia LPViewer ActiveX function call access (<a href="http://www.snort.org/search/sid/14762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4384">2008-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31604">31604</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14763</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iseemedia LPViewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4384">2008-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31604">31604</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14782</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP srvsvc NetrpPathCanonicalize path canonicalization stack overflow attempt (<a href="http://www.snort.org/search/sid/14782?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4250">2008-4250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14783</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP srvsvc NetrpPathCanonicalize path canonicalization stack overflow attempt (<a href="http://www.snort.org/search/sid/14783?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4250">2008-4250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14896</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB v4 srvsvc NetrpPathCononicalize unicode path cononicalization stack overflow attempt (<a href="http://www.snort.org/search/sid/14896?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4250">2008-4250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14897</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Software Update RulesEngine.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/14897?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6506">2007-6506</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26950">26950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14898</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Software Update RulesEngine.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14898?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6506">2007-6506</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26950">26950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14900</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP netdfs NetrDfsEnum overflow attempt (<a href="http://www.snort.org/search/sid/14900?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24198">24198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14988</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP netdfs NetrDfsEnum overflow attempt (<a href="http://www.snort.org/search/sid/14988?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24198">24198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14993</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Visagesoft eXPert PDF Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/14993?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4919">2008-4919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31984">31984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14994</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Visagesoft eXPert PDF Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14994?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4919">2008-4919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31984">31984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14995</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Visagesoft eXPert PDF Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/14995?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4919">2008-4919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31984">31984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14996</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Visagesoft eXPert PDF Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14996?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4919">2008-4919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31984">31984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14999</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Debug Diagnostic Tool ActiveX clsid access (<a href="http://www.snort.org/search/sid/14999?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4800">2008-4800</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31996">31996</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15000</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Debug Diagnostic Tool ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15000?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4800">2008-4800</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31996">31996</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15001</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Debug Diagnostic Tool ActiveX function call access (<a href="http://www.snort.org/search/sid/15001?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4800">2008-4800</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31996">31996</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15002</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Debug Diagnostic Tool ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15002?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4800">2008-4800</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31996">31996</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15003</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat Crypt 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15003?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32073">32073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15004</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat Crypt 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15004?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32073">32073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15005</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat Crypt 2 ActiveX function call access (<a href="http://www.snort.org/search/sid/15005?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32073">32073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15006</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Chilkat Crypt 2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15006?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32073">32073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15009</td><td class="ruletablebody" valign="top">NETBIOS possible SMB replay attempt - overlapping encryption keys detected (<a href="http://www.snort.org/search/sid/15009?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0834">2000-0834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15011</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft XML core services cross-domain information disclosure attempt (<a href="http://www.snort.org/search/sid/15011?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4033">2008-4033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15015</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP wkssvc NetrUseAdd/NetrUseGetInfo/NetrUseDel overflow attempt (<a href="http://www.snort.org/search/sid/15015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4250">2008-4250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15069</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui mdrmsap ActiveX clsid access (<a href="http://www.snort.org/search/sid/15069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4387">2008-4387</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32186">32186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15070</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui mdrmsap ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15070?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4387">2008-4387</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32186">32186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15084</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Common Controls Animation Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/15084?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4255">2008-4255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15086</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Common Controls Animation Object ActiveX function call access (<a href="http://www.snort.org/search/sid/15086?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4255">2008-4255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15124</td><td class="ruletablebody" valign="top">NETBIOS Web-based NTLM replay attack attempt (<a href="http://www.snort.org/search/sid/15124?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0834">2000-0834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15127</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function WriteAndX andx attempt (<a href="http://www.snort.org/search/sid/15127?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15128</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function WriteAndX attempt (<a href="http://www.snort.org/search/sid/15128?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15129</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function WriteAndX unicode andx attempt (<a href="http://www.snort.org/search/sid/15129?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15130</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function WriteAndX unicode attempt (<a href="http://www.snort.org/search/sid/15130?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15131</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function andx attempt (<a href="http://www.snort.org/search/sid/15131?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15132</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function attempt (<a href="http://www.snort.org/search/sid/15132?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15133</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function unicode andx attempt (<a href="http://www.snort.org/search/sid/15133?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15134</td><td class="ruletablebody" valign="top">NETBIOS SMB sp_replwritetovarbin vulnerable function unicode attempt (<a href="http://www.snort.org/search/sid/15134?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15135</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function WriteAndX andx attempt (<a href="http://www.snort.org/search/sid/15135?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15136</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function WriteAndX attempt (<a href="http://www.snort.org/search/sid/15136?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15137</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function WriteAndX unicode andx attempt (<a href="http://www.snort.org/search/sid/15137?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15138</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function WriteAndX unicode attempt (<a href="http://www.snort.org/search/sid/15138?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15139</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function andx attempt (<a href="http://www.snort.org/search/sid/15139?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15140</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function attempt (<a href="http://www.snort.org/search/sid/15140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15141</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function unicode andx attempt (<a href="http://www.snort.org/search/sid/15141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15142</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB sp_replwritetovarbin vulnerable function unicode attempt (<a href="http://www.snort.org/search/sid/15142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15147</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft IE malformed iframe buffer overflow attempt (<a href="http://www.snort.org/search/sid/15147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1050">2004-1050</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15148</td><td class="ruletablebody" valign="top">DOS Microsoft SMS remote control client message length denial of service attempt (<a href="http://www.snort.org/search/sid/15148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0728">2004-0728</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10726">10726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15173</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Phoenician Casino ActiveX clsid access (<a href="http://www.snort.org/search/sid/15173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5691">2008-5691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32901">32901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15174</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Phoenician Casino ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5691">2008-5691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32901">32901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15175</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Phoenician Casino ActiveX function call access (<a href="http://www.snort.org/search/sid/15175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5691">2008-5691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32901">32901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15176</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Phoenician Casino ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5691">2008-5691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32901">32901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15177</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro HouseCall ActiveX clsid access (<a href="http://www.snort.org/search/sid/15177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2435">2008-2435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32965">32965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15178</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro HouseCall ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2435">2008-2435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32965">32965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15179</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro HouseCall ActiveX function call access (<a href="http://www.snort.org/search/sid/15179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2435">2008-2435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32965">32965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15180</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro HouseCall ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2435">2008-2435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32965">32965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15181</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SaschArt SasCam Webcam Server ActiveX clsid access (<a href="http://www.snort.org/search/sid/15181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33053">33053</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15182</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SaschArt SasCam Webcam Server ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33053">33053</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15192</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SizerOne ActiveX clsid access (<a href="http://www.snort.org/search/sid/15192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4827">2008-4827</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33148">33148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15193</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SizerOne ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4827">2008-4827</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33148">33148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15194</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SizerOne ActiveX function call access (<a href="http://www.snort.org/search/sid/15194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4827">2008-4827</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33148">33148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15195</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SizerOne ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4827">2008-4827</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33148">33148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15196</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode param_count underflow attempt (<a href="http://www.snort.org/search/sid/15196?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15197</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE param_count underflow attempt (<a href="http://www.snort.org/search/sid/15197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15198</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE unicode param_count underflow attempt (<a href="http://www.snort.org/search/sid/15198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15199</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE param_count underflow attempt (<a href="http://www.snort.org/search/sid/15199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15200</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15201</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15202</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE unicode andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15202?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15203</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15204</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE unicode max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15204?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15205</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15205?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15206</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15207</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15208</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE unicode andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15208?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15209</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15210</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15210?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15211</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT CREATE andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4834">2008-4834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15212</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15213</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 unicode max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15214</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15215</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 unicode max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15216</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15217</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 unicode andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15217?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15218</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15219</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 unicode andx max_param_count underflow attempt (<a href="http://www.snort.org/search/sid/15219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15220</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 unicode param_count underflow attempt (<a href="http://www.snort.org/search/sid/15220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15221</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 param_count underflow attempt (<a href="http://www.snort.org/search/sid/15221?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15222</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 param_count underflow attempt (<a href="http://www.snort.org/search/sid/15222?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15223</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 unicode param_count underflow attempt (<a href="http://www.snort.org/search/sid/15223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15224</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 unicode andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15225</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15226</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15227</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 unicode andx param_count underflow attempt (<a href="http://www.snort.org/search/sid/15227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4835">2008-4835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15228</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ciansoft PDFBuilderX ActiveX clsid access (<a href="http://www.snort.org/search/sid/15228?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33233">33233</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15229</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ciansoft PDFBuilderX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15229?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33233">33233</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15232</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Easy Grid ActiveX clsid access (<a href="http://www.snort.org/search/sid/15232?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33272">33272</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15233</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Easy Grid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33272">33272</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15234</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Easy Grid ActiveX function call access (<a href="http://www.snort.org/search/sid/15234?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33272">33272</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15235</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Easy Grid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33272">33272</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15243</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AXIS Camera ActiveX clsid access (<a href="http://www.snort.org/search/sid/15243?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5260">2008-5260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33408">33408</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15244</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AXIS Camera ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15244?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5260">2008-5260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33408">33408</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15245</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AXIS Camera ActiveX function call access (<a href="http://www.snort.org/search/sid/15245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5260">2008-5260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33408">33408</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15246</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AXIS Camera ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15246?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5260">2008-5260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33408">33408</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15247</td><td class="ruletablebody" valign="top">WEB-ACTIVEX JamDTA ActiveX clsid access (<a href="http://www.snort.org/search/sid/15247?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33345">33345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15248</td><td class="ruletablebody" valign="top">WEB-ACTIVEX JamDTA ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15248?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33345">33345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15249</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SmartVMD ActiveX clsid access (<a href="http://www.snort.org/search/sid/15249?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33349">33349</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15250</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SmartVMD ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33349">33349</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15251</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MetaProducts MetaTreeX ActiveX clsid access (<a href="http://www.snort.org/search/sid/15251?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33318">33318</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15252</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MetaProducts MetaTreeX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15252?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33318">33318</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15253</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MetaProducts MetaTreeX ActiveX function call access (<a href="http://www.snort.org/search/sid/15253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33318">33318</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15254</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MetaProducts MetaTreeX ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15254?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33318">33318</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15265</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioFile2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15265?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0018">2007-0018</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33469">33469</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/292713">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15266</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Barcode ActiveX clsid access (<a href="http://www.snort.org/search/sid/15266?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0298">2009-0298</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33451">33451</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15267</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Barcode ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15267?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0298">2009-0298</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33451">33451</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15268</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Barcode ActiveX function call access (<a href="http://www.snort.org/search/sid/15268?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0298">2009-0298</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33451">33451</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15269</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Barcode ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15269?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0298">2009-0298</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33451">33451</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15270</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies PDF417 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15270?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4926">2008-4926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15271</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies PDF417 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15271?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4926">2008-4926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15272</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies PDF417 ActiveX function call access (<a href="http://www.snort.org/search/sid/15272?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4926">2008-4926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15273</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies PDF417 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15273?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4926">2008-4926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15274</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies DataMatrix ActiveX clsid access (<a href="http://www.snort.org/search/sid/15274?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4925">2008-4925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15275</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies DataMatrix ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15275?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4925">2008-4925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15276</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies DataMatrix ActiveX function call access (<a href="http://www.snort.org/search/sid/15276?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4925">2008-4925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15277</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies DataMatrix ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15277?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4925">2008-4925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15278</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Aztec ActiveX clsid access (<a href="http://www.snort.org/search/sid/15278?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4923">2008-4923</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15279</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Aztec ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15279?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4923">2008-4923</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15280</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Aztec ActiveX function call access (<a href="http://www.snort.org/search/sid/15280?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4923">2008-4923</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15281</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MW6 Technologies Aztec ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15281?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4923">2008-4923</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15284</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioGrabber2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15284?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0958">2008-0958</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/656593">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15285</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioGrabber2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0958">2008-0958</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/656593">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15286</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioGrabber2 ActiveX function call access (<a href="http://www.snort.org/search/sid/15286?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0958">2008-0958</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/656593">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15287</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioGrabber2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15287?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0958">2008-0958</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/656593">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15288</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioInformation2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15288?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0959">2008-0959</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/669265">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15289</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioInformation2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15289?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0959">2008-0959</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/669265">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15290</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioInformation2 ActiveX function call access (<a href="http://www.snort.org/search/sid/15290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0959">2008-0959</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/669265">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15291</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioInformation2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15291?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0959">2008-0959</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/669265">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15307</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Animation Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/15307?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15308</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Animation Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15308?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15309</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Animation Control ActiveX function call access (<a href="http://www.snort.org/search/sid/15309?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15310</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Animation Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15310?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15311</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Research In Motion AxLoader ActiveX clsid access (<a href="http://www.snort.org/search/sid/15311?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0305">2009-0305</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33663">33663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15312</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Research In Motion AxLoader ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15312?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0305">2009-0305</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33663">33663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15313</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Research In Motion AxLoader ActiveX function call access (<a href="http://www.snort.org/search/sid/15313?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0305">2009-0305</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33663">33663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15314</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Research In Motion AxLoader ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15314?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0305">2009-0305</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33663">33663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15315</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Akamai DownloadManager ActiveX clsid access (<a href="http://www.snort.org/search/sid/15315?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15316</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Akamai DownloadManager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15316?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15317</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Akamai DownloadManager ActiveX function call access (<a href="http://www.snort.org/search/sid/15317?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15318</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Akamai DownloadManager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15318?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/960715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15330</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nokia Phoenix Service 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33726">33726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15331</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nokia Phoenix Service 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15331?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33726">33726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15332</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nokia Phoenix Service 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33726">33726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15333</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Nokia Phoenix Service 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33726">33726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15346</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Synactis ALL In-The-Box ActiveX clsid access (<a href="http://www.snort.org/search/sid/15346?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0465">2009-0465</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33535">33535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15347</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Synactis ALL In-The-Box ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0465">2009-0465</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33535">33535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15348</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Synactis ALL In-The-Box ActiveX function call access (<a href="http://www.snort.org/search/sid/15348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0465">2009-0465</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33535">33535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15349</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Synactis ALL In-The-Box ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0465">2009-0465</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33535">33535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15350</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Web on Windows ActiveX clsid access (<a href="http://www.snort.org/search/sid/15350?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0389">2009-0389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33515">33515</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15351</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Web on Windows ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15351?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0389">2009-0389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33515">33515</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15352</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Web on Windows ActiveX function call access (<a href="http://www.snort.org/search/sid/15352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0389">2009-0389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33515">33515</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15353</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Web on Windows ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15353?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0389">2009-0389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33515">33515</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15372</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iDefense COMRaider ActiveX clsid access (<a href="http://www.snort.org/search/sid/15372?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33867">33867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15373</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iDefense COMRaider ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33867">33867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15374</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iDefense COMRaider ActiveX function call access (<a href="http://www.snort.org/search/sid/15374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33867">33867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15375</td><td class="ruletablebody" valign="top">WEB-ACTIVEX iDefense COMRaider ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15375?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33867">33867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15376</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sopcast SopCore ActiveX clsid access (<a href="http://www.snort.org/search/sid/15376?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33920">33920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15377</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sopcast SopCore ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33920">33920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15378</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sopcast SopCore ActiveX function call access (<a href="http://www.snort.org/search/sid/15378?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33920">33920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15379</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sopcast SopCore ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33920">33920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15380</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Virtual Rooms v7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15380?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0208">2009-0208</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33918">33918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15381</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Virtual Rooms v7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15381?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0208">2009-0208</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33918">33918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15387</td><td class="ruletablebody" valign="top">NETBIOS udp WINS WPAD registration attempt (<a href="http://www.snort.org/search/sid/15387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0094">2009-0094</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15430</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft EMF+ GpFont.SetData buffer overflow attempt (<a href="http://www.snort.org/search/sid/15430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1217">2009-1217</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34250">34250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15453</td><td class="ruletablebody" valign="top">NETBIOS SMB replay attempt via NTLMSSP - overlapping encryption keys detected (<a href="http://www.snort.org/search/sid/15453?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0834">2000-0834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15498</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint CString atom overflow attempt (<a href="http://www.snort.org/search/sid/15498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1128">2009-1128</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15500</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint LinkedSlide memory corruption (<a href="http://www.snort.org/search/sid/15500?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0221">2009-0221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15501</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint ParaBuildAtom memory corruption attempt (<a href="http://www.snort.org/search/sid/15501?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0224">2009-0224</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15502</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint DiagramBuildContainer memory corruption attempt (<a href="http://www.snort.org/search/sid/15502?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0224">2009-0224</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15505</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint HashCode10Atom memory corruption attempt (<a href="http://www.snort.org/search/sid/15505?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1130">2009-1130</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15506</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint CurrentUserAtom remote code execution attempt (<a href="http://www.snort.org/search/sid/15506?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1131">2009-1131</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15512</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP rpcss2 _RemoteGetClassObject attempt (<a href="http://www.snort.org/search/sid/15512?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0605">2003-0605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15513</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP rpcss2 _RemoteGetClassObject attempt (<a href="http://www.snort.org/search/sid/15513?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0605">2003-0605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15526</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Works 4.x converter font name buffer overflow attempt (<a href="http://www.snort.org/search/sid/15526?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1533">2009-1533</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15527</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Active Directory LDAP denial of service attempt (<a href="http://www.snort.org/search/sid/15527?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1138">2009-1138</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15528</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss RpcSetPrinterDataEx attempt (<a href="http://www.snort.org/search/sid/15528?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0230">2009-0230</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-022.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15540</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft IE DOM memory corruption attempt (<a href="http://www.snort.org/search/sid/15540?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1532">2009-1532</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15543</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Communications Control v6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15544</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Communications Control v6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15544?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15545</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Communications Control v6 ActiveX function call access (<a href="http://www.snort.org/search/sid/15545?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15546</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Communications Control v6 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15546?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15547</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eBay Picture Uploads control 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15548</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eBay Picture Uploads control 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15549</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eBay Picture Uploads control 1 ActiveX function call access (<a href="http://www.snort.org/search/sid/15549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15550</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eBay Picture Uploads control 1 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15550?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15551</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eBay Picture Uploads control 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15551?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15552</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eBay Picture Uploads control 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15552?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/969898">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15557</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui EnjoySAP ActiveX clsid access (<a href="http://www.snort.org/search/sid/15557?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35256">35256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15558</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui EnjoySAP ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15558?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35256">35256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15588</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15588?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15589</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15589?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15590</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 10 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15590?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15591</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 10 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15591?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15592</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 11 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15592?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15593</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 11 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15593?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15594</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 12 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15594?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15595</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 12 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15595?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15596</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 13 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15596?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15597</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 13 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15597?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15598</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 14 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15598?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15599</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 14 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15599?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15600</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 15 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15600?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15601</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 15 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15601?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15602</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 16 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15602?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15603</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 16 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15603?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15604</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 17 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15604?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15605</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 17 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15605?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15606</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 18 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15606?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15607</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 18 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15607?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15608</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 19 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15608?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15609</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 19 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15609?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15610</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15610?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15611</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15611?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15612</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 20 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15612?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15613</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 20 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15613?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15614</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 21 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15614?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15615</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 21 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15615?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15616</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 22 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15616?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15617</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 22 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15617?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15618</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 23 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15618?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15619</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 23 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15619?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15620</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 24 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15620?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15621</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 24 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15621?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15622</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 25 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15622?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15623</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 25 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15623?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15624</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 26 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15624?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15625</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 26 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15625?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15626</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 27 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15626?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15627</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 27 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15627?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15628</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 28 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15628?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15629</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 28 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15629?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15630</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 29 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15630?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15631</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 29 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15631?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15632</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15632?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15633</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15634</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 30 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15634?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15635</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 30 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15635?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15636</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 31 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15636?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15637</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 31 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15637?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15638</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 32 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15638?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2494">2009-2494</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15639</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 32 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15639?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2494">2009-2494</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15640</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 33 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15640?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15641</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 33 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15641?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15642</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 34 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15642?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15643</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 34 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15643?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15644</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 35 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15644?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15645</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 35 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15645?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15646</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 36 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15646?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15647</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 36 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15647?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15648</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 37 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15648?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15649</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 37 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15649?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15650</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 38 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15650?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15651</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 38 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15651?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15652</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 39 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15652?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15653</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 39 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15653?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15654</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15654?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15655</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15655?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15656</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 40 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15656?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15657</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 40 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15657?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15658</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 41 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15659</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 41 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15659?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15660</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 42 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15660?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15661</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 42 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15662</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 43 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15662?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15663</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 43 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15663?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15664</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 44 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15664?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15665</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 44 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15666</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 45 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15666?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15667</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 45 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15667?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15668</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15668?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15669</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15669?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15670</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15670?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0901">2009-0901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35558">35558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15671</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15671?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0901">2009-0901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35558">35558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15672</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15672?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15674</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 8 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15674?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15675</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 8 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15675?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15676</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 9 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15676?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15677</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 9 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15677?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15701</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows 2000 domain authentication bypass attempt (<a href="http://www.snort.org/search/sid/15701?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0540">2004-0540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15702</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor opcode 0x13 overflow attempt (<a href="http://www.snort.org/search/sid/15702?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1761">2009-1761</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35396">35396</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15710</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor opcode 0x3B null strings attempt (<a href="http://www.snort.org/search/sid/15710?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1761">2009-1761</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35396">35396</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15847</td><td class="ruletablebody" valign="top">NETBIOS Telnet-based NTLM replay attack attempt (<a href="http://www.snort.org/search/sid/15847?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0834">2000-0834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15848</td><td class="ruletablebody" valign="top">EXPLOIT WINS replication request memory corruption attempt (<a href="http://www.snort.org/search/sid/15848?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1923">2009-1923</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15849</td><td class="ruletablebody" valign="top">EXPLOIT WINS replication inform2 request memory corruption attempt (<a href="http://www.snort.org/search/sid/15849?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1924">2009-1924</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15851</td><td class="ruletablebody" valign="top">DOS Microsoft ASP.NET bad request denial of service attempt (<a href="http://www.snort.org/search/sid/15851?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1536">2009-1536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15854</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows AVIFile media file processing memory corruption attempt (<a href="http://www.snort.org/search/sid/15854?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1546">2009-1546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35970">35970</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15857</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows AVIFile media file invalid header length (<a href="http://www.snort.org/search/sid/15857?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1546">2009-1546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15860</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP wkssvc NetrGetJoinInformation attempt (<a href="http://www.snort.org/search/sid/15860?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1544">2009-1544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15861</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Remote Desktop Client ActiveX clsid access  (<a href="http://www.snort.org/search/sid/15861?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1929">2009-1929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15863</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Remote Desktop Client ActiveX function call access  (<a href="http://www.snort.org/search/sid/15863?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1929">2009-1929</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15878</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcerCtrls.APlunch ActiveX clsid access (<a href="http://www.snort.org/search/sid/15878?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2627">2009-2627</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/485961">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15879</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcerCtrls.APlunch ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15879?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2627">2009-2627</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/485961">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15894</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Color Management Module remote code execution attempt (<a href="http://www.snort.org/search/sid/15894?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1219">2005-1219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15904</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 6 ActiveX function call access (<a href="http://www.snort.org/search/sid/15904?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0901">2009-0901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35558">35558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15905</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Video 6 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15905?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0901">2009-0901</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35558">35558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/972890.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15920</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft mp3 malformed APIC header RCE attempt (<a href="http://www.snort.org/search/sid/15920?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2499">2009-2499</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15921</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft media format file download request (<a href="http://www.snort.org/search/sid/15921?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15923</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DHTML Editing ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15923?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2519">2009-2519</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1474">1474</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15924</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DHTML Editing ActiveX function call access (<a href="http://www.snort.org/search/sid/15924?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2519">2009-2519</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1474">1474</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15925</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DHTML Editing ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15925?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2519">2009-2519</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1474">1474</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15926</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PPSMediaList ActiveX clsid access (<a href="http://www.snort.org/search/sid/15926?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36234">36234</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15927</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PPSMediaList ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15927?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36234">36234</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15928</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PPSMediaList ActiveX function call access (<a href="http://www.snort.org/search/sid/15928?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36234">36234</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15929</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PPSMediaList ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15929?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36234">36234</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15930</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows SMB malformed process ID high field remote code execution attempt (<a href="http://www.snort.org/search/sid/15930?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3103">2009-3103</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15944</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows Active Directory crafted LDAP request denial of service attempt (<a href="http://www.snort.org/search/sid/15944?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3028">2007-3028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24796">24796</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15946</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Vista Feed Headlines Gagdet code execution attempt (<a href="http://www.snort.org/search/sid/15946?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3033">2007-3033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25287">25287</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15959</td><td class="ruletablebody" valign="top">DOS Microsoft ASP.NET viewstate DoS attempt (<a href="http://www.snort.org/search/sid/15959?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1665">2005-1665</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/16195">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15965</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Explorer long share name buffer overflow attempt (<a href="http://www.snort.org/search/sid/15965?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0214">2004-0214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10213">10213</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15985</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft ASP.NET canonicalization exploit attempt (<a href="http://www.snort.org/search/sid/15985?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0847">2004-0847</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11342">11342</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15996</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Negotiate SSP buffer overflow attempt (<a href="http://www.snort.org/search/sid/15996?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0119">2004-0119</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10113">10113</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16048</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft ASP.NET application folder info disclosure attempt (<a href="http://www.snort.org/search/sid/16048?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1300">2006-1300</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18920">18920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16051</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Publisher 2007 conversion library code execution attempt (<a href="http://www.snort.org/search/sid/16051?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1754">2007-1754</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22702">22702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16068</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Yahoo Music Jukebox ActiveX exploit (<a href="http://www.snort.org/search/sid/16068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0625">2008-0625</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27579">27579</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16089</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows embedded web font handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/16089?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0010">2006-0010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16194">16194</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16090</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Core XML core services XMLHTTP control open method code execution attempt (<a href="http://www.snort.org/search/sid/16090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5745">2006-5745</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20915">20915</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16143</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft asf file download (<a href="http://www.snort.org/search/sid/16143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16167</td><td class="ruletablebody" valign="top">DOS Microsoft LSASS integer wrap denial of service attempt (<a href="http://www.snort.org/search/sid/16167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2524">2009-2524</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-059.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16168</td><td class="ruletablebody" valign="top">DOS Microsoft SMBv2 integer overflow denial of service attempt (<a href="http://www.snort.org/search/sid/16168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2526">2009-2526</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16179</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft .NET MSIL CLR interface multiple instantiation attempt (<a href="http://www.snort.org/search/sid/16179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2497">2009-2497</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16182</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft .NET MSIL stack corruption attempt (<a href="http://www.snort.org/search/sid/16182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0090">2009-0090</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16183</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft .NET MSIL CombineImpl suspicious usage (<a href="http://www.snort.org/search/sid/16183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0091">2009-0091</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16184</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft GDI+ TIFF file parsing heap overflow attempt (<a href="http://www.snort.org/search/sid/16184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2502">2009-2502</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16185</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft GDI+ compressed TIFF file parsing remote code execution attempt (<a href="http://www.snort.org/search/sid/16185?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2503">2009-2503</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16186</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft GDI+ interlaced PNG file parsing heap overflow attempt (<a href="http://www.snort.org/search/sid/16186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3126">2009-3126</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16188</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint bad text header txttype attempt (<a href="http://www.snort.org/search/sid/16188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0022">2006-0022</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS06-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16237</td><td class="ruletablebody" valign="top">DOS Microsoft Active Directory NTDSA stack space exhaustion attempt (<a href="http://www.snort.org/search/sid/16237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1928">2009-1928</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-066.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16238</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP llsrpc2 LlsrLicenseRequestW overflow attempt (<a href="http://www.snort.org/search/sid/16238?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2523">2009-2523</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-064.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16239</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP llsrpc2 LlsrLicenseRequestW overflow attempt (<a href="http://www.snort.org/search/sid/16239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2523">2009-2523</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-064.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16285</td><td class="ruletablebody" valign="top">RPC AIX ttdbserv function 15 buffer overflow attempt (<a href="http://www.snort.org/search/sid/16285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2727">2009-2727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35419">35419</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4699&amp;myns=paix52&amp;mync=E">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16305</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altiris Deployment Solution ActiveX clsid access (<a href="http://www.snort.org/search/sid/16305?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3033">2009-3033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37092">37092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16306</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altiris Deployment Solution ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16306?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3033">2009-3033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37092">37092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16307</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altiris Deployment Solution ActiveX function call access (<a href="http://www.snort.org/search/sid/16307?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3033">2009-3033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37092">37092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16308</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altiris Deployment Solution ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16308?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3033">2009-3033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37092">37092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16327</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows GDIplus TIFF RLE compressed data buffer overflow attempt (<a href="http://www.snort.org/search/sid/16327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2503">2009-2503</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16329</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Authentication Service EAP-MSCHAPv2 authentication bypass attempt (<a href="http://www.snort.org/search/sid/16329?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3677">2009-3677</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16340</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS DHTML Editing ActiveX clsid access (<a href="http://www.snort.org/search/sid/16340?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0228">2003-0228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7517">7517</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11595">11595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16342</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows AVIFile truncated media file processing memory corruption attempt (<a href="http://www.snort.org/search/sid/16342?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1546">2009-1546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35970">35970</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16366</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft embedded OpenType font engine LZX decompression buffer overflow attempt (<a href="http://www.snort.org/search/sid/16366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0018">2010-0018</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16379</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui sapirrfc ActiveX clsid access (<a href="http://www.snort.org/search/sid/16379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35256">35256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://service.sap.com/sap/support/notes/1286637">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16380</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui sapirrfc ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16380?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35256">35256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://service.sap.com/sap/support/notes/1286637">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16395</td><td class="ruletablebody" valign="top">NETBIOS SMB COPY command oversized pathname attempt (<a href="http://www.snort.org/search/sid/16395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0020">2010-0020</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16396</td><td class="ruletablebody" valign="top">NETBIOS SMB server srvnet.sys driver race condition attempt (<a href="http://www.snort.org/search/sid/16396?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0021">2010-0021</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16409</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint improper filename remote code execution attempt (<a href="http://www.snort.org/search/sid/16409?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0029">2010-0029</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16410</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint file LinkedSlide10Atom record parsing heap corruption attempt (<a href="http://www.snort.org/search/sid/16410?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0030">2010-0030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16411</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint out of bounds value remote code execution attempt (<a href="http://www.snort.org/search/sid/16411?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0031">2010-0031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16412</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint invalid TextByteAtom remote code execution attempt (<a href="http://www.snort.org/search/sid/16412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0033">2010-0033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16415</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DirectShow memory corruption attempt (<a href="http://www.snort.org/search/sid/16415?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0250">2010-0250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16417</td><td class="ruletablebody" valign="top">NETBIOS SMB Negotiate Protocol Response overflow attempt (<a href="http://www.snort.org/search/sid/16417?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0016">2010-0016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16419</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Data Analyzer 3.5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0252">2010-0252</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16421</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft PowerPoint out of bounds value remote code execution attempt (<a href="http://www.snort.org/search/sid/16421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0032">2010-0032</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16424</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Script Host Shell Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/16424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.exploit-db.com/exploits/11457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16432</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro Web Deployment ActiveX clsid access (<a href="http://www.snort.org/search/sid/16432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3364">2008-3364</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30407">30407</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16472</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Movie Maker project file heap buffer overflow attempt (<a href="http://www.snort.org/search/sid/16472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0265">2010-0265</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16473</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Movie Maker project file download request (<a href="http://www.snort.org/search/sid/16473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16474</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Compound File Binary v3 file download (<a href="http://www.snort.org/search/sid/16474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16475</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Compound File Binary v4 file download (<a href="http://www.snort.org/search/sid/16475?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16476</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft .MSProducer file download request (<a href="http://www.snort.org/search/sid/16476?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16477</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft .MSProducerZ file download request (<a href="http://www.snort.org/search/sid/16477?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16478</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft .MSProducerBF file download request (<a href="http://www.snort.org/search/sid/16478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16505</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft IE HTML parsing memory corruption attempt (<a href="http://www.snort.org/search/sid/16505?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0489">2010-0489</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16510</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Tabular Control ActiveX overflow by CLSID (<a href="http://www.snort.org/search/sid/16510?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0805">2010-0805</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16511</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Tabular Control ActiveX overflow by ProgID (<a href="http://www.snort.org/search/sid/16511?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0805">2010-0805</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16532</td><td class="ruletablebody" valign="top">NETBIOS SMB client TRANS response ring0 remote code execution attempt (<a href="http://www.snort.org/search/sid/16532?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0476">2010-0476</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16535</td><td class="ruletablebody" valign="top">EXPLOIT  Microsoft Viso improper attribute code execution attempt (<a href="http://www.snort.org/search/sid/16535?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0254">2010-0254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16536</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Viso off-by-one in array index code execution attempt (<a href="http://www.snort.org/search/sid/16536?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0256">2010-0256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16538</td><td class="ruletablebody" valign="top">NETBIOS NT QUERY SECURITY DESC flowbit (<a href="http://www.snort.org/search/sid/16538?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16539</td><td class="ruletablebody" valign="top">NETBIOS SMBv1 BytesNeeded ring0 buffer overflow attempt (<a href="http://www.snort.org/search/sid/16539?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0269">2010-0269</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16542</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Publisher 2007 and earlier stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0479">2010-0479</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16559</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Tabular Control ActiveX overflow by CLSID / param tag (<a href="http://www.snort.org/search/sid/16559?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0805">2010-0805</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16560</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Sharepoint XSS attempt (<a href="http://www.snort.org/search/sid/16560?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0817">2010-0817</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16566</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Tumbleweed SecureTransport ActiveX clsid access (<a href="http://www.snort.org/search/sid/16566?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16567</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Tumbleweed SecureTransport ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16567?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16568</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Altnet Download Manager ADM4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16568?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5217">2007-5217</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25903">25903</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16569</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EnjoySAP kweditcontrol ActiveX clsid access (<a href="http://www.snort.org/search/sid/16569?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3605">2007-3605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24772">24772</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16570</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EnjoySAP kweditcontrol ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16570?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3605">2007-3605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24772">24772</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16571</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EnjoySAP kweditcontrol ActiveX function call access (<a href="http://www.snort.org/search/sid/16571?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3605">2007-3605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24772">24772</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16572</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EnjoySAP kweditcontrol ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16572?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3605">2007-3605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24772">24772</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16573</td><td class="ruletablebody" valign="top">WEB-ACTIVEX obfuscated ActiveX object instantiation via unescape (<a href="http://www.snort.org/search/sid/16573?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://msdn.microsoft.com/en-us/library/7sw4ddf8(VS.85).aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16574</td><td class="ruletablebody" valign="top">WEB-ACTIVEX obfuscated ActiveX object instantiation via fromCharCode (<a href="http://www.snort.org/search/sid/16574?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://msdn.microsoft.com/en-us/library/7sw4ddf8(VS.85).aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16575</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RKD Software BarCode ActiveX buffer overflow attempt (<a href="http://www.snort.org/search/sid/16575?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3435">2007-3435</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24596">24596</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16577</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows SMBv2 compound request DoS attempt (<a href="http://www.snort.org/search/sid/16577?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2552">2010-2552</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16580</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS NCTAudioFile2 ActiveX clsid access via object tag (<a href="http://www.snort.org/search/sid/16580?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0018">2007-0018</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33469">33469</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16588</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS iseemedia LPViewer ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/16588?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4384">2008-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31604">31604</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16589</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS iseemedia LPViewer ActiveX buffer overflows attempt (<a href="http://www.snort.org/search/sid/16589?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4384">2008-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31604">31604</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16590</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS EasyMail Objects ActiveX exploit attempt - 1 (<a href="http://www.snort.org/search/sid/16590?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16591</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS EasyMail Objects ActiveX exploit attempt - 2 (<a href="http://www.snort.org/search/sid/16591?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16593</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft VBE6.dll stack corruption attempt (<a href="http://www.snort.org/search/sid/16593?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0815">2010-0815</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-031.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16599</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS AtHocGov IWSAlerts ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/16599?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.fortiguard.com/encyclopedia/vulnerability/athocgov.iwsalerts.activex.buffer.overflow.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16608</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS HP Mercury Quality Center SPIDERLib ActiveX buffer overflow attempt (<a href="http://www.snort.org/search/sid/16608?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1819">2007-1819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23239">23239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00901872">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16610</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS IBM Access Support ActiveX GetXMLValue method buffer overflow attempt (<a href="http://www.snort.org/search/sid/16610?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0215">2009-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34228">34228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16665</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Help Centre escape sequence XSS attempt (<a href="http://www.snort.org/search/sid/16665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1885">2010-1885</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40725">40725</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-042.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16672</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Symantec Backup Exec ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/16672?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6016">2007-6016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26904">26904</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16675</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CA BrightStor ListCtrl ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/16675?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1472">2008-1472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28268">28268</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16679</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Windows GDIplus integer overflow attempt (<a href="http://www.snort.org/search/sid/16679?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1217">2009-1217</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34250">34250</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16687</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Juniper Networks SSL-VPN Client JuniperSetup ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/16687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2086">2006-2086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17712">17712</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16699</td><td class="ruletablebody" valign="top">RPC Linux Kernel nfsd v2 udp CAP_MKNOD security bypass attempt (<a href="http://www.snort.org/search/sid/16699?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1072">2009-1072</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34205">34205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16700</td><td class="ruletablebody" valign="top">RPC Linux Kernel nfsd v2 tcp CAP_MKNOD security bypass attempt (<a href="http://www.snort.org/search/sid/16700?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1072">2009-1072</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34205">34205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16701</td><td class="ruletablebody" valign="top">RPC Linux Kernel nfsd v3 udp CAP_MKNOD security bypass attempt (<a href="http://www.snort.org/search/sid/16701?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1072">2009-1072</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34205">34205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16702</td><td class="ruletablebody" valign="top">RPC Linux Kernel nfsd v3 tcp CAP_MKNOD security bypass attempt (<a href="http://www.snort.org/search/sid/16702?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1072">2009-1072</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34205">34205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16704</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CA eTrust PestPatrol 'ppctl.dll' ActiveX Initialize method overflow attempt (<a href="http://www.snort.org/search/sid/16704?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4225">2009-4225</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37133">37133</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16705</td><td class="ruletablebody" valign="top">RPC Sun Solaris sadmind UDP array size buffer overflow attempt (<a href="http://www.snort.org/search/sid/16705?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3869">2008-3869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35083">35083</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16706</td><td class="ruletablebody" valign="top">RPC Sun Solaris sadmind TCP array size buffer overflow attempt (<a href="http://www.snort.org/search/sid/16706?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3869">2008-3869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35083">35083</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16711</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS E-Book Systems FlipViewer FlipViewerX.dll ActiveX multiple buffer overflow attempt (<a href="http://www.snort.org/search/sid/16711?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2919">2007-2919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24328">24328</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16714</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS SoftArtisans XFile FileManager ActiveX Control buffer overflow attempt (<a href="http://www.snort.org/search/sid/16714?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1682">2007-1682</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30826">30826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.softartisans.com/Support-114.aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16715</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS SaschArt SasCam Webcam Server ActiveX control exploit attempt (<a href="http://www.snort.org/search/sid/16715?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-6898">2008-6898</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33053">33053</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16728</td><td class="ruletablebody" valign="top">NETBIOS Samba SMB1 chain_reply function memory corruption attempt (<a href="http://www.snort.org/search/sid/16728?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2063">2010-2063</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40884">40884</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16729</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS McAfee Remediation client ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/16729?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.fortiguard.com/encyclopedia/vulnerability/mcafee.remediation.client.enginecom.dll.activex.access.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16740</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Works WkImgSrv.dll ActiveX control code execution attempt (<a href="http://www.snort.org/search/sid/16740?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1898">2008-1898</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28820">28820</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16741</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Works WkImgSrv.dll ActiveX control exploit attempt (<a href="http://www.snort.org/search/sid/16741?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1898">2008-1898</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28820">28820</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16745</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS DjVu ActiveX control ImageURL property overflow attempt (<a href="http://www.snort.org/search/sid/16745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4922">2008-4922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31987">31987</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16746</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Access Support ActiveX clsid access (<a href="http://www.snort.org/search/sid/16746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0215">2009-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34228">34228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16747</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Access Support ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0215">2009-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34228">34228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16748</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Access Support ActiveX function call access (<a href="http://www.snort.org/search/sid/16748?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0215">2009-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34228">34228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16749</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Access Support ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16749?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0215">2009-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34228">34228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16754</td><td class="ruletablebody" valign="top">NETBIOS SMB /PlughNTCommand andx create tree attempt (<a href="http://www.snort.org/search/sid/16754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16755</td><td class="ruletablebody" valign="top">NETBIOS SMB /PlughNTCommand create tree attempt (<a href="http://www.snort.org/search/sid/16755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16756</td><td class="ruletablebody" valign="top">NETBIOS SMB /PlughNTCommand unicode andx create tree attempt (<a href="http://www.snort.org/search/sid/16756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16757</td><td class="ruletablebody" valign="top">NETBIOS SMB /PlughNTCommand unicode create tree attempt (<a href="http://www.snort.org/search/sid/16757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16758</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /PlughNTCommand andx create tree attempt (<a href="http://www.snort.org/search/sid/16758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16759</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /PlughNTCommand create tree attempt (<a href="http://www.snort.org/search/sid/16759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16760</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /PlughNTCommand unicode andx create tree attempt (<a href="http://www.snort.org/search/sid/16760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16761</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /PlughNTCommand unicode create tree attempt (<a href="http://www.snort.org/search/sid/16761?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16762</td><td class="ruletablebody" valign="top">NETBIOS SMB Timbuktu Pro overflow WriteAndX andx attempt (<a href="http://www.snort.org/search/sid/16762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16763</td><td class="ruletablebody" valign="top">NETBIOS SMB Timbuktu Pro overflow WriteAndX attempt (<a href="http://www.snort.org/search/sid/16763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16764</td><td class="ruletablebody" valign="top">NETBIOS SMB Timbuktu Pro overflow WriteAndX unicode andx attempt (<a href="http://www.snort.org/search/sid/16764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16765</td><td class="ruletablebody" valign="top">NETBIOS SMB Timbuktu Pro overflow WriteAndX unicode attempt (<a href="http://www.snort.org/search/sid/16765?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16766</td><td class="ruletablebody" valign="top">NETBIOS SMB Timbuktu Pro overflow andx attempt (<a href="http://www.snort.org/search/sid/16766?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1394">2009-1394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16767</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AwingSoft Web3D Player ActiveX clsid access (<a href="http://www.snort.org/search/sid/16767?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4850">2009-4850</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16768</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AwingSoft Web3D Player ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16768?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4850">2009-4850</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16769</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AwingSoft Web3D Player ActiveX function call access (<a href="http://www.snort.org/search/sid/16769?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4850">2009-4850</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16770</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AwingSoft Web3D Player ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16770?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4850">2009-4850</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16771</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS AwingSoft Web3D Player WindsPlayerIE.View.1 ActiveX SceneURL method overflow attempt (<a href="http://www.snort.org/search/sid/16771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4588">2009-4588</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16772</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EMC Captiva QuickScan Pro ActiveX clsid access (<a href="http://www.snort.org/search/sid/16772?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36546">36546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16773</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EMC Captiva QuickScan Pro ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36546">36546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16774</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EMC Captiva QuickScan Pro ActiveX function call access (<a href="http://www.snort.org/search/sid/16774?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36546">36546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16775</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EMC Captiva QuickScan Pro ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16775?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36546">36546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16776</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS KeyWorks KeyHelp 'keyhelp.ocx' ActiveX control multiple method overflow attempt (<a href="http://www.snort.org/search/sid/16776?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36546">36546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/58423">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16783</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk iDrop ActiveX clsid access (<a href="http://www.snort.org/search/sid/16783?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securitytracker.com/id?1021969">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16784</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Autodesk iDrop ActiveX function call access (<a href="http://www.snort.org/search/sid/16784?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securitytracker.com/id?1021969">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16789</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Chilkat Crypt 2 ActiveX WriteFile method arbitrary file overwrite attempt - 1 (<a href="http://www.snort.org/search/sid/16789?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5002">2008-5002</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32073">32073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16790</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Chilkat Crypt 2 ActiveX WriteFile method arbitrary file overwrite attempt - 2 (<a href="http://www.snort.org/search/sid/16790?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5002">2008-5002</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32073">32073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16791</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui EAI WebViewer3D ActiveX clsid access (<a href="http://www.snort.org/search/sid/16791?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4475">2007-4475</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34310">34310</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16792</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui EAI WebViewer3D ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16792?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4475">2007-4475</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34310">34310</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16793</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui EAI WebViewer3D ActiveX function call access (<a href="http://www.snort.org/search/sid/16793?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4475">2007-4475</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34310">34310</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16794</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP AG SAPgui EAI WebViewer3D ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16794?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4475">2007-4475</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34310">34310</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16796</td><td class="ruletablebody" valign="top">RPC Sun Solaris sadmind UDP data length integer overflow attempt (<a href="http://www.snort.org/search/sid/16796?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3870">2008-3870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35083">35083</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16797</td><td class="ruletablebody" valign="top">RPC Sun Solaris sadmind TCP data length integer overflow attempt (<a href="http://www.snort.org/search/sid/16797?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3870">2008-3870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35083">35083</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16802</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WinDVD IASystemInfo.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/16802?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0348">2007-0348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23071">23071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16803</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WinDVD IASystemInfo.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0348">2007-0348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23071">23071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17037</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MS Access multiple control instantiation memory corruption attempt (<a href="http://www.snort.org/search/sid/17037?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0814">2010-0814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17038</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Access ACCWIZ library release after free attempt - 1 (<a href="http://www.snort.org/search/sid/17038?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1881">2010-1881</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17039</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Access ACCWIZ library release after free attempt - 2 (<a href="http://www.snort.org/search/sid/17039?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1881">2010-1881</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17042</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft LNK shortcut download attempt (<a href="http://www.snort.org/search/sid/17042?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2568">2010-2568</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17043</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PIF shortcut download attempt (<a href="http://www.snort.org/search/sid/17043?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2568">2010-2568</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17051</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec AppStream Client LaunchObj ActiveX clsid access (<a href="http://www.snort.org/search/sid/17051?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4388">2008-4388</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33247">33247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17052</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec AppStream Client LaunchObj ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17052?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4388">2008-4388</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33247">33247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17053</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec AppStream Client LaunchObj ActiveX function call access (<a href="http://www.snort.org/search/sid/17053?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4388">2008-4388</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33247">33247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17054</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec AppStream Client LaunchObj ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17054?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4388">2008-4388</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33247">33247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17056</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Novell NetIdentity Agent XTIERRPCPIPE remote code execution attempt (<a href="http://www.snort.org/search/sid/17056?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1350">2009-1350</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34400">34400</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17060</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Roxio CinePlayer SonicDVDDashVRNav.dll ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/17060?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1559">2007-1559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23412">23412</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17061</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton Personal Firewall 2004 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17061?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1689">2007-1689</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23936">23936</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17062</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton Personal Firewall 2004 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17062?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1689">2007-1689</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23936">23936</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17063</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17064</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17065</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17065?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17066</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17066?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17067</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17068</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17069</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17070</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17070?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17071</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17071?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17072</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Logitech Video Call 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17072?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2918">2007-2918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24254">24254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17073</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ask Toolbar AskJeevesToolBar.SettingsPlugin ActiveX clsid access (<a href="http://www.snort.org/search/sid/17073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5107">2007-5107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25785">25785</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17074</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ask Toolbar AskJeevesToolBar.SettingsPlugin ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5107">2007-5107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25785">25785</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17075</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ask Toolbar AskJeevesToolBar.SettingsPlugin ActiveX function call access (<a href="http://www.snort.org/search/sid/17075?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5107">2007-5107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25785">25785</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17076</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ask Toolbar AskJeevesToolBar.SettingsPlugin ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17076?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5107">2007-5107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25785">25785</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17077</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Ask Toolbar AskJeevesToolBar.SettingsPlugin.1 ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/17077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5107">2007-5107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25785">25785</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17078</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GOM Player GomWeb ActiveX clsid access (<a href="http://www.snort.org/search/sid/17078?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5779">2007-5779</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26236">26236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17079</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GOM Player GomWeb ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5779">2007-5779</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26236">26236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17080</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GOM Player GomWeb ActiveX function call access (<a href="http://www.snort.org/search/sid/17080?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5779">2007-5779</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26236">26236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17081</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GOM Player GomWeb ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17081?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5779">2007-5779</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26236">26236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17082</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SonicWALL SSL-VPN NeLaunchCtrl ActiveX clsid access (<a href="http://www.snort.org/search/sid/17082?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5603">2007-5603</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26288">26288</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17083</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SonicWALL SSL-VPN NeLaunchCtrl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17083?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5603">2007-5603</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26288">26288</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17084</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Creative Software AutoUpdate Engine ActiveX clsid access (<a href="http://www.snort.org/search/sid/17084?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0955">2008-0955</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29391">29391</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17085</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Creative Software AutoUpdate Engine ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17085?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0955">2008-0955</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29391">29391</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17086</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Creative Software AutoUpdate Engine CTSUEng.ocx ActiveX control buffer overflow attempt (<a href="http://www.snort.org/search/sid/17086?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0955">2008-0955</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29391">29391</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17087</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeryDOC PDF Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/17087?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5492">2008-5492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32313">32313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17088</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeryDOC PDF Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17088?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5492">2008-5492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32313">32313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17089</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeryDOC PDF Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/17089?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5492">2008-5492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32313">32313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17090</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VeryDOC PDF Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5492">2008-5492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32313">32313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17091</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS VeryDOC PDF Viewer ActiveX control OpenPDF buffer overflow attempt (<a href="http://www.snort.org/search/sid/17091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5492">2008-5492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32313">32313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17092</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altirix Deployment Solution AeXNSPkgDLLib.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/17092?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3028">2009-3028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36346">36346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17093</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altirix Deployment Solution AeXNSPkgDLLib.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17093?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3028">2009-3028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36346">36346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17094</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altirix Deployment Solution AeXNSPkgDLLib.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/17094?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3028">2009-3028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36346">36346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17095</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Altirix Deployment Solution AeXNSPkgDLLib.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17095?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3028">2009-3028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36346">36346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17113</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft SilverLight ImageSource redefine flowbit (<a href="http://www.snort.org/search/sid/17113?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17117</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft MPEG Layer-3 audio heap corruption attempt (<a href="http://www.snort.org/search/sid/17117?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1882">2010-1882</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/Bulletin/advisory/MS10-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17118</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft .NET CreateDelegate method arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/17118?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1898">2010-1898</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17125</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 MaxDataCount overflow attempt (<a href="http://www.snort.org/search/sid/17125?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2550">2010-2550</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17126</td><td class="ruletablebody" valign="top">NETBIOS SMB large session length with small packet (<a href="http://www.snort.org/search/sid/17126?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2551">2010-2551</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17127</td><td class="ruletablebody" valign="top">NETBIOS BytesIndicated validation dos attempt (<a href="http://www.snort.org/search/sid/17127?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2551">2010-2551</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17135</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows Movie Maker string size overflow attempt (<a href="http://www.snort.org/search/sid/17135?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2564">2010-2564</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17160</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Liquid XML Studio LtXmlComHelp8.dll ActiveX OpenFile buffer overflow attempt (<a href="http://www.snort.org/search/sid/17160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/38974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17161</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Liquid XML Studio ActiveX clsid access (<a href="http://www.snort.org/search/sid/17161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/38974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17162</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Liquid XML Studio ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/38974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17163</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Liquid XML Studio ActiveX function call access (<a href="http://www.snort.org/search/sid/17163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/38974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17164</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Liquid XML Studio ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/38974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17167</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17168</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17169</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17170</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17170?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17171</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17171?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17172</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17172?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17173</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17174</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17175</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 5 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17176</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17177</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17178</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle Siebel Option Pack 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3737">2009-3737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/174089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17226</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AXIS Camera ActiveX initialization via script (<a href="http://www.snort.org/search/sid/17226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5260">2008-5260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33408">33408</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17241</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft wmv file download request (<a href="http://www.snort.org/search/sid/17241?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17249</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft LSASS integer overflow attempt (<a href="http://www.snort.org/search/sid/17249?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0820">2010-0820</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17256</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows uniscribe fonts parsing memory corruption attempt (<a href="http://www.snort.org/search/sid/17256?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2738">2010-2738</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17271</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Web View script injection attempt (<a href="http://www.snort.org/search/sid/17271?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1191">2005-1191</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13248">13248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17285</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint PPT file parsing memory corruption attempt (<a href="http://www.snort.org/search/sid/17285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3656">2006-3656</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18993">18993</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17292</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint malformed data record code execution attempt (<a href="http://www.snort.org/search/sid/17292?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3876">2006-3876</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20322">20322</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17304</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Works file converter file section header index table stack overflow attempt (<a href="http://www.snort.org/search/sid/17304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0105">2008-0105</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27658">27658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17306</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Malware Protection Engine file processing denial of service attempt (<a href="http://www.snort.org/search/sid/17306?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1437">2008-1437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17310</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Powerpoint Viewer Memory Allocation Code Execution (<a href="http://www.snort.org/search/sid/17310?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0120">2008-0120</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30552">30552</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17316</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Folder GUID Code Execution attempt (<a href="http://www.snort.org/search/sid/17316?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3281">2006-3281</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19389">19389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17318</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint MCAtom remote code execution attempt (<a href="http://www.snort.org/search/sid/17318?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5296">2006-5296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20495">20495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17319</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint MCAtom remote code execution attempt (<a href="http://www.snort.org/search/sid/17319?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5296">2006-5296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20495">20495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17320</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint MCAtom remote code execution attempt (<a href="http://www.snort.org/search/sid/17320?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5296">2006-5296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20495">20495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17321</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss EnumPrinters name overflow attempt (<a href="http://www.snort.org/search/sid/17321?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6701">2007-6701</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25092">25092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5005400.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17330</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows GRE WMF Handling Memory Read Exception attempt (<a href="http://www.snort.org/search/sid/17330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0143">2006-0143</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16167">16167</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17347</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Color Management Module buffer overflow attempt (<a href="http://www.snort.org/search/sid/17347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1219">2005-1219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14214">14214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17348</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Color Management Module buffer overflow attempt (<a href="http://www.snort.org/search/sid/17348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1219">2005-1219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14214">14214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17349</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Color Management Module buffer overflow attempt (<a href="http://www.snort.org/search/sid/17349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1219">2005-1219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14214">14214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17364</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Help Workshop CNT Help contents (<a href="http://www.snort.org/search/sid/17364?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17365</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Help Workshop CNT Help contents buffer overflow attempt (<a href="http://www.snort.org/search/sid/17365?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0352">2007-0352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22100">22100</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17366</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Help Workshop HPJ OPTIONS section buffer overflow attempt (<a href="http://www.snort.org/search/sid/17366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0427">2007-0427</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22135">22135</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17374</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows HLP File Handling heap overflow attempt (<a href="http://www.snort.org/search/sid/17374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1912">2007-1912</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23382">23382</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17382</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Project Invalid Memory Pointer Code Execution attempt (<a href="http://www.snort.org/search/sid/17382?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1088">2008-1088</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28607">28607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17383</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Publisher Object Handler Validation Code Execution attempted (<a href="http://www.snort.org/search/sid/17383?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0119">2008-0119</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29158">29158</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17408</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DirectX Targa image file heap overflow attempt (<a href="http://www.snort.org/search/sid/17408?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4183">2006-4183</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24963">24963</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17413</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Jet DB Engine Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17413?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0944">2005-0944</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12960">12960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17421</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft OLE automation string manipulation overflow attempt (<a href="http://www.snort.org/search/sid/17421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2224">2007-2224</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25282">25282</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17428</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft ASP.NET information disclosure attempt (<a href="http://www.snort.org/search/sid/17428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3332">2010-3332</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17429</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft ASP.NET information disclosure attempt (<a href="http://www.snort.org/search/sid/17429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3332">2010-3332</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17436</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceListSize attempt (<a href="http://www.snort.org/search/sid/17436?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2120">2005-2120</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15065">15065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17438</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceListSize attempt (<a href="http://www.snort.org/search/sid/17438?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2120">2005-2120</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15065">15065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17443</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DirectShow AVI decoder buffer overflow attempt (<a href="http://www.snort.org/search/sid/17443?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2128">2005-2128</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15063">15063</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17464</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Radio AmpX ActiveX clsid access (<a href="http://www.snort.org/search/sid/17464?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5755">2007-5755</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26396">26396</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17465</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Radio AmpX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5755">2007-5755</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26396">26396</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17467</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ShellExecute and IE7 snews url handling code execution attempt (<a href="http://www.snort.org/search/sid/17467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3896">2007-3896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25945">25945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17468</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ShellExecute and IE7 snews url handling code execution attempt (<a href="http://www.snort.org/search/sid/17468?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3896">2007-3896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25945">25945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17489</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows Help File Heap Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17489?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1591">2006-1591</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17325">17325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17490</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows itss.dll CHM File Handling Heap Corruption attempt (<a href="http://www.snort.org/search/sid/17490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2297">2006-2297</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17926">17926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17496</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint malformed NamedShows record code execution attempt (<a href="http://www.snort.org/search/sid/17496?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4694">2006-4694</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20226">20226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17497</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint malformed NamedShows record code execution attempt (<a href="http://www.snort.org/search/sid/17497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4694">2006-4694</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20226">20226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17508</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft .NET Application download attempt (<a href="http://www.snort.org/search/sid/17508?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6696">2006-6696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21688">21688</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17509</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft .NET Manifest download attempt (<a href="http://www.snort.org/search/sid/17509?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6696">2006-6696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21688">21688</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17510</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft .NET Deploy download attempt (<a href="http://www.snort.org/search/sid/17510?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6696">2006-6696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21688">21688</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17571</td><td class="ruletablebody" valign="top">WEB-ACTIVEX obfuscated instantiation of ActiveX object - likely malicious (<a href="http://www.snort.org/search/sid/17571?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3558">2008-3558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17572</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft XML Core Services cross-site information disclosure attempt (<a href="http://www.snort.org/search/sid/17572?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4029">2008-4029</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32155">32155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17575</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SizerOne 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17575?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4827">2008-4827</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33148">33148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17576</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SizerOne 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17576?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4827">2008-4827</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33148">33148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17582</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton AntiVirus CcErrDisp ActiveX function call access (<a href="http://www.snort.org/search/sid/17582?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12175">12175</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17583</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec Norton AntiVirus CcErrDisp ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17583?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12175">12175</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17587</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS AcroPDF.PDF ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/17587?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6027">2006-6027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21155">21155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa06-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17592</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft MyInfo.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/17592?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4495">2006-4495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19636">19636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=16">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17593</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft msdxm.ocx ActiveX clsid access (<a href="http://www.snort.org/search/sid/17593?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4495">2006-4495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19636">19636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=16">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17594</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft creator.dll 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17594?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4495">2006-4495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19636">19636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=16">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17595</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft creator.dll 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/17595?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4495">2006-4495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19636">19636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=16">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17596</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft ciodm.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/17596?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4495">2006-4495</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19636">19636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xsec.org/index.php?module=Releases&amp;act=view&amp;type=1&amp;id=16">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17614</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP GUI SAPBExCommonResources ActiveX clsid access (<a href="http://www.snort.org/search/sid/17614?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securitytracker.com/alerts/2010/Mar/1023760.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17615</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP GUI SAPBExCommonResources ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17615?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securitytracker.com/alerts/2010/Mar/1023760.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17616</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP GUI SAPBExCommonResources ActiveX function call access (<a href="http://www.snort.org/search/sid/17616?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securitytracker.com/alerts/2010/Mar/1023760.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17617</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SAP GUI SAPBExCommonResources ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17617?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securitytracker.com/alerts/2010/Mar/1023760.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17618</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows hraphics engine EMF rendering vulnerability (<a href="http://www.snort.org/search/sid/17618?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2123">2005-2123</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15352">15352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17626</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows embedded web font handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/17626?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0010">2006-0010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16194">16194</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17639</td><td class="ruletablebody" valign="top">NETBIOS Samba Root File System access bypass attempt (<a href="http://www.snort.org/search/sid/17639?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0022">2009-0022</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33118">33118</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17646</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Powerpoint Legacy file format picture object code execution attempt (<a href="http://www.snort.org/search/sid/17646?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0223">2009-0223</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34834">34834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17654</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Facebook Photo Uploader ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/17654?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5711">2008-5711</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27756">27756</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17694</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows AVI file chunk length integer overflow attempt (<a href="http://www.snort.org/search/sid/17694?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1546">2009-1546</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35970">35970</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17695</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint paragraph format array inner header overflow attempt (<a href="http://www.snort.org/search/sid/17695?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0220">2009-0220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34833">34833</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17702</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP srvsvc NetrDfsCreateExitPoint dos attempt (<a href="http://www.snort.org/search/sid/17702?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3644">2005-3644</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15460">15460</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/911052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17711</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ASF parsing memory corruption attempt (<a href="http://www.snort.org/search/sid/17711?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0064">2007-0064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17721</td><td class="ruletablebody" valign="top">EXPLOIT WINS replication inform2 request memory corruption attempt (<a href="http://www.snort.org/search/sid/17721?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1924">2009-1924</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17723</td><td class="ruletablebody" valign="top">NETBIOS possible SMB replay attempt - overlapping encryption keys detected (<a href="http://www.snort.org/search/sid/17723?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0231">2010-0231</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17730</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft XML Core Services MIME Viewer memory corruption attempt (<a href="http://www.snort.org/search/sid/17730?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0099">2007-0099</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17737</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft collaboration data objects buffer overflow attempt (<a href="http://www.snort.org/search/sid/17737?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1987">2005-1987</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15067">15067</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17745</td><td class="ruletablebody" valign="top">NETBIOS SMB TRANS2 Find_First2 request attempt (<a href="http://www.snort.org/search/sid/17745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17746</td><td class="ruletablebody" valign="top">NETBIOS SMB client TRANS response Find_First2 filesize overflow attempt (<a href="http://www.snort.org/search/sid/17746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0045">2005-0045</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17749</td><td class="ruletablebody" valign="top">RPC Linux Kernel nfsd v4 CAP_MKNOD security bypass attempt (<a href="http://www.snort.org/search/sid/17749?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1072">2009-1072</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34205">34205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17770</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft HtmlDlgHelper ActiveX clsid access (<a href="http://www.snort.org/search/sid/17770?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3329">2010-3329</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17772</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Scriptlet Component ActiveX clsid access (<a href="http://www.snort.org/search/sid/17772?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3331">2010-3331</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18064</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft .NET framework EntityObject execution attempt (<a href="http://www.snort.org/search/sid/18064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3228">2010-3228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-077.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18065</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft PowerPoint converter bad indirection remote code execution attempt (<a href="http://www.snort.org/search/sid/18065?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2572">2010-2572</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-088">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18066</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint integer underflow heap corruption attempt (<a href="http://www.snort.org/search/sid/18066?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2573">2010-2573</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-088">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18070</td><td class="ruletablebody" valign="top">NETBIOS pptimpconv.dll access (<a href="http://www.snort.org/search/sid/18070?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3337">2010-3337</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-089.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18073</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Forefront UAG arbitrary embedded scripting attempt (<a href="http://www.snort.org/search/sid/18073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2733">2010-2733</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-089.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18097</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare Remote Console Plug-In ActiveX clsid access (<a href="http://www.snort.org/search/sid/18097?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3732">2009-3732</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18169</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WinZip FileView 6.1 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/18169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5198">2006-5198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21108">21108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.winzip.com/wz7245.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18189</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP netdfs NetrDfsEnum attempt (<a href="http://www.snort.org/search/sid/18189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24198">24198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18190</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP netdfs NetrDfsEnum attempt (<a href="http://www.snort.org/search/sid/18190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24198">24198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18191</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP netdfs NetrDfsEnum attempt (<a href="http://www.snort.org/search/sid/18191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24198">24198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18192</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP netdfs NetrDfsEnum attempt (<a href="http://www.snort.org/search/sid/18192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24198">24198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18197</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft COleSite ActiveX memory corruption attempt (<a href="http://www.snort.org/search/sid/18197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3340">2010-3340</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-090.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18198</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft COleSite ActiveX memory corruption attempt (<a href="http://www.snort.org/search/sid/18198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3340">2010-3340</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-090.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18199</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft COleSite ActiveX memory corruption attempt (<a href="http://www.snort.org/search/sid/18199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3340">2010-3340</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-090.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18203</td><td class="ruletablebody" valign="top">NETBIOS Windows Address Book smmscrpt.dll malicious DLL load (<a href="http://www.snort.org/search/sid/18203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3144">2010-3144</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-097.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18206</td><td class="ruletablebody" valign="top">NETBIOS Windows Address Book wab32res.dll malicious DLL load (<a href="http://www.snort.org/search/sid/18206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3147">2010-3147</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-096.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18207</td><td class="ruletablebody" valign="top">NETBIOS Windows Address Book msoeres32.dll malicious DLL load (<a href="http://www.snort.org/search/sid/18207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3147">2010-3147</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-096.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18209</td><td class="ruletablebody" valign="top">NETBIOS Windows 7 Home peerdist.dll dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3966">2010-3966</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-095.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18210</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Movie Maker hhctrl.ocx dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18210?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3967">2010-3967</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-093.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18211</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Movie Maker hhctrl.ocx dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3967">2010-3967</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-093.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18215</td><td class="ruletablebody" valign="top">NETBIOS NETAPI RPC interface reboot attempt (<a href="http://www.snort.org/search/sid/18215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2742">2010-2742</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-101.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18219</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ATMFD font driver remote code execution attempt (<a href="http://www.snort.org/search/sid/18219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3957">2010-3957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-091.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18220</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows ATMFD font driver malformed character glyph remote code execution attempt (<a href="http://www.snort.org/search/sid/18220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3959">2010-3959</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-091.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18230</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Publisher memory corruption attempt (<a href="http://www.snort.org/search/sid/18230?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3954">2010-3954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-103.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18231</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Publisher oversized oti length attempt (<a href="http://www.snort.org/search/sid/18231?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3955">2010-3955</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-103.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18238</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Sharepoint document conversion remote code excution attempt (<a href="http://www.snort.org/search/sid/18238?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3964">2010-3964</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-104.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18241</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft WMI Administrator Tools Object Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/18241?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/42693/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18242</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft WMI Administrator Tools Object Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/18242?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/42693/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18246</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Fax Services Cover Page Editor overflow attempt (<a href="http://www.snort.org/search/sid/18246?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vupen.com/english/advisories/2010/3327">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 709</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">529</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP srvsvc NetrShareEnum null policy handle attempt (<a href="http://www.snort.org/search/sid/529?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">530</td><td class="ruletablebody" valign="top">NETBIOS NT NULL session (<a href="http://www.snort.org/search/sid/530?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0347">2000-0347</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1163">1163</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">532</td><td class="ruletablebody" valign="top">NETBIOS SMB ADMIN$ share access (<a href="http://www.snort.org/search/sid/532?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">533</td><td class="ruletablebody" valign="top">NETBIOS SMB C$ share access (<a href="http://www.snort.org/search/sid/533?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">534</td><td class="ruletablebody" valign="top">NETBIOS SMB CD.. (<a href="http://www.snort.org/search/sid/534?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">535</td><td class="ruletablebody" valign="top">NETBIOS SMB CD... (<a href="http://www.snort.org/search/sid/535?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">536</td><td class="ruletablebody" valign="top">NETBIOS SMB D$ share access (<a href="http://www.snort.org/search/sid/536?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">572</td><td class="ruletablebody" valign="top">RPC DOS ttdbserv Solaris (<a href="http://www.snort.org/search/sid/572?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0003">1999-0003</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/122">122</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">574</td><td class="ruletablebody" valign="top">RPC mountd TCP export request (<a href="http://www.snort.org/search/sid/574?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">575</td><td class="ruletablebody" valign="top">RPC portmap admind request UDP (<a href="http://www.snort.org/search/sid/575?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">576</td><td class="ruletablebody" valign="top">RPC portmap amountd request UDP (<a href="http://www.snort.org/search/sid/576?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0704">1999-0704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/614">614</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">577</td><td class="ruletablebody" valign="top">RPC portmap bootparam request UDP (<a href="http://www.snort.org/search/sid/577?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0647">1999-0647</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">578</td><td class="ruletablebody" valign="top">RPC portmap cmsd request UDP (<a href="http://www.snort.org/search/sid/578?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">579</td><td class="ruletablebody" valign="top">RPC portmap mountd request UDP (<a href="http://www.snort.org/search/sid/579?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">580</td><td class="ruletablebody" valign="top">RPC portmap nisd request UDP (<a href="http://www.snort.org/search/sid/580?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0008">1999-0008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">581</td><td class="ruletablebody" valign="top">RPC portmap pcnfsd request UDP (<a href="http://www.snort.org/search/sid/581?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0910">2002-0910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4816">4816</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">582</td><td class="ruletablebody" valign="top">RPC portmap rexd request UDP (<a href="http://www.snort.org/search/sid/582?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">583</td><td class="ruletablebody" valign="top">RPC portmap rstatd request UDP (<a href="http://www.snort.org/search/sid/583?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">584</td><td class="ruletablebody" valign="top">RPC portmap rusers request UDP (<a href="http://www.snort.org/search/sid/584?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0626">1999-0626</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">585</td><td class="ruletablebody" valign="top">RPC portmap sadmind request UDP (<a href="http://www.snort.org/search/sid/585?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">586</td><td class="ruletablebody" valign="top">RPC portmap selection_svc request UDP (<a href="http://www.snort.org/search/sid/586?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0209">1999-0209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8">8</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">587</td><td class="ruletablebody" valign="top">RPC portmap status request UDP (<a href="http://www.snort.org/search/sid/587?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">588</td><td class="ruletablebody" valign="top">RPC portmap ttdbserv request UDP (<a href="http://www.snort.org/search/sid/588?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0717">2001-0717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3382">3382</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">589</td><td class="ruletablebody" valign="top">RPC portmap yppasswd request UDP (<a href="http://www.snort.org/search/sid/589?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">590</td><td class="ruletablebody" valign="top">RPC portmap ypserv request UDP (<a href="http://www.snort.org/search/sid/590?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1232">2002-1232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6016">6016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">591</td><td class="ruletablebody" valign="top">RPC portmap ypupdated request TCP (<a href="http://www.snort.org/search/sid/591?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0208">1999-0208</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1749">1749</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">595</td><td class="ruletablebody" valign="top">RPC portmap espd request TCP (<a href="http://www.snort.org/search/sid/595?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0331">2001-0331</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2714">2714</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">598</td><td class="ruletablebody" valign="top">RPC portmap listing TCP 111 (<a href="http://www.snort.org/search/sid/598?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">599</td><td class="ruletablebody" valign="top">RPC portmap listing TCP 32771 (<a href="http://www.snort.org/search/sid/599?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">612</td><td class="ruletablebody" valign="top">RPC rusers query UDP (<a href="http://www.snort.org/search/sid/612?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0626">1999-0626</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1262</td><td class="ruletablebody" valign="top">RPC portmap admind request TCP (<a href="http://www.snort.org/search/sid/1262?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1263</td><td class="ruletablebody" valign="top">RPC portmap amountd request TCP (<a href="http://www.snort.org/search/sid/1263?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0704">1999-0704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/614">614</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1264</td><td class="ruletablebody" valign="top">RPC portmap bootparam request TCP (<a href="http://www.snort.org/search/sid/1264?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0647">1999-0647</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1265</td><td class="ruletablebody" valign="top">RPC portmap cmsd request TCP (<a href="http://www.snort.org/search/sid/1265?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1267</td><td class="ruletablebody" valign="top">RPC portmap nisd request TCP (<a href="http://www.snort.org/search/sid/1267?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1268</td><td class="ruletablebody" valign="top">RPC portmap pcnfsd request TCP (<a href="http://www.snort.org/search/sid/1268?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0910">2002-0910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4816">4816</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1269</td><td class="ruletablebody" valign="top">RPC portmap rexd request TCP (<a href="http://www.snort.org/search/sid/1269?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1270</td><td class="ruletablebody" valign="top">RPC portmap rstatd request TCP (<a href="http://www.snort.org/search/sid/1270?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1271</td><td class="ruletablebody" valign="top">RPC portmap rusers request TCP (<a href="http://www.snort.org/search/sid/1271?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0626">1999-0626</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1272</td><td class="ruletablebody" valign="top">RPC portmap sadmind request TCP (<a href="http://www.snort.org/search/sid/1272?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1273</td><td class="ruletablebody" valign="top">RPC portmap selection_svc request TCP (<a href="http://www.snort.org/search/sid/1273?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0209">1999-0209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/205">205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1274</td><td class="ruletablebody" valign="top">RPC portmap ttdbserv request TCP (<a href="http://www.snort.org/search/sid/1274?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0717">2001-0717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3382">3382</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1275</td><td class="ruletablebody" valign="top">RPC portmap yppasswd request TCP (<a href="http://www.snort.org/search/sid/1275?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1276</td><td class="ruletablebody" valign="top">RPC portmap ypserv request TCP (<a href="http://www.snort.org/search/sid/1276?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1232">2002-1232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6016">6016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1277</td><td class="ruletablebody" valign="top">RPC portmap ypupdated request UDP (<a href="http://www.snort.org/search/sid/1277?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0208">1999-0208</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/28383">28383</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1280</td><td class="ruletablebody" valign="top">RPC portmap listing UDP 111 (<a href="http://www.snort.org/search/sid/1280?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1281</td><td class="ruletablebody" valign="top">RPC portmap listing UDP 32771 (<a href="http://www.snort.org/search/sid/1281?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1295</td><td class="ruletablebody" valign="top">NETBIOS nimda RICHED20.DLL (<a href="http://www.snort.org/search/sid/1295?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.f-secure.com/v-descs/nimda.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1447</td><td class="ruletablebody" valign="top">MISC MS Terminal server request RDP (<a href="http://www.snort.org/search/sid/1447?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0540">2001-0540</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3099">3099</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10940">10940</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1732</td><td class="ruletablebody" valign="top">RPC portmap rwalld request UDP (<a href="http://www.snort.org/search/sid/1732?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0181">1999-0181</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/205">205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1733</td><td class="ruletablebody" valign="top">RPC portmap rwalld request TCP (<a href="http://www.snort.org/search/sid/1733?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0181">1999-0181</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/205">205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1746</td><td class="ruletablebody" valign="top">RPC portmap cachefsd request UDP (<a href="http://www.snort.org/search/sid/1746?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0084">2002-0084</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4674">4674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10951">10951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1747</td><td class="ruletablebody" valign="top">RPC portmap cachefsd request TCP (<a href="http://www.snort.org/search/sid/1747?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0084">2002-0084</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4674">4674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10951">10951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1890</td><td class="ruletablebody" valign="top">RPC status GHBN format string attack (<a href="http://www.snort.org/search/sid/1890?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0666">2000-0666</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1480">1480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10544">10544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1891</td><td class="ruletablebody" valign="top">RPC status GHBN format string attack (<a href="http://www.snort.org/search/sid/1891?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0666">2000-0666</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1480">1480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10544">10544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1905</td><td class="ruletablebody" valign="top">RPC AMD UDP amqproc_mount plog overflow attempt (<a href="http://www.snort.org/search/sid/1905?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0704">1999-0704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/614">614</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1906</td><td class="ruletablebody" valign="top">RPC AMD TCP amqproc_mount plog overflow attempt (<a href="http://www.snort.org/search/sid/1906?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0704">1999-0704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/614">614</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1907</td><td class="ruletablebody" valign="top">RPC CMSD UDP CMSD_CREATE buffer overflow attempt (<a href="http://www.snort.org/search/sid/1907?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0696">1999-0696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/524">524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1908</td><td class="ruletablebody" valign="top">RPC CMSD TCP CMSD_CREATE buffer overflow attempt (<a href="http://www.snort.org/search/sid/1908?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0696">1999-0696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/524">524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1909</td><td class="ruletablebody" valign="top">RPC CMSD TCP CMSD_INSERT buffer overflow attempt (<a href="http://www.snort.org/search/sid/1909?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0696">1999-0696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/524">524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-99-08-cmsd.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1910</td><td class="ruletablebody" valign="top">RPC CMSD udp CMSD_INSERT buffer overflow attempt (<a href="http://www.snort.org/search/sid/1910?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0696">1999-0696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-99-08-cmsd.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1911</td><td class="ruletablebody" valign="top">RPC sadmind UDP NETMGT_PROC_SERVICE CLIENT_DOMAIN overflow attempt (<a href="http://www.snort.org/search/sid/1911?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0977">1999-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/866">866</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1912</td><td class="ruletablebody" valign="top">RPC sadmind TCP NETMGT_PROC_SERVICE CLIENT_DOMAIN overflow attempt (<a href="http://www.snort.org/search/sid/1912?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0977">1999-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/866">866</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1913</td><td class="ruletablebody" valign="top">RPC STATD UDP stat mon_name format string exploit attempt (<a href="http://www.snort.org/search/sid/1913?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0666">2000-0666</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1480">1480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10544">10544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1914</td><td class="ruletablebody" valign="top">RPC STATD TCP stat mon_name format string exploit attempt (<a href="http://www.snort.org/search/sid/1914?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0666">2000-0666</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1480">1480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10544">10544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1915</td><td class="ruletablebody" valign="top">RPC STATD UDP monitor mon_name format string exploit attempt (<a href="http://www.snort.org/search/sid/1915?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0666">2000-0666</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1480">1480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10544">10544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1916</td><td class="ruletablebody" valign="top">RPC STATD TCP monitor mon_name format string exploit attempt (<a href="http://www.snort.org/search/sid/1916?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0666">2000-0666</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1480">1480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10544">10544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1922</td><td class="ruletablebody" valign="top">RPC portmap proxy attempt TCP (<a href="http://www.snort.org/search/sid/1922?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1923</td><td class="ruletablebody" valign="top">RPC portmap proxy attempt UDP (<a href="http://www.snort.org/search/sid/1923?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1924</td><td class="ruletablebody" valign="top">RPC mountd UDP export request (<a href="http://www.snort.org/search/sid/1924?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1925</td><td class="ruletablebody" valign="top">RPC mountd TCP exportall request (<a href="http://www.snort.org/search/sid/1925?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1926</td><td class="ruletablebody" valign="top">RPC mountd UDP exportall request (<a href="http://www.snort.org/search/sid/1926?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1949</td><td class="ruletablebody" valign="top">RPC portmap SET attempt TCP 111 (<a href="http://www.snort.org/search/sid/1949?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1950</td><td class="ruletablebody" valign="top">RPC portmap SET attempt UDP 111 (<a href="http://www.snort.org/search/sid/1950?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1951</td><td class="ruletablebody" valign="top">RPC mountd TCP mount request (<a href="http://www.snort.org/search/sid/1951?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0210">1999-0210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1952</td><td class="ruletablebody" valign="top">RPC mountd UDP mount request (<a href="http://www.snort.org/search/sid/1952?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1953</td><td class="ruletablebody" valign="top">RPC AMD TCP pid request (<a href="http://www.snort.org/search/sid/1953?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1954</td><td class="ruletablebody" valign="top">RPC AMD UDP pid request (<a href="http://www.snort.org/search/sid/1954?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1955</td><td class="ruletablebody" valign="top">RPC AMD TCP version request (<a href="http://www.snort.org/search/sid/1955?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1956</td><td class="ruletablebody" valign="top">RPC AMD UDP version request (<a href="http://www.snort.org/search/sid/1956?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0696">2000-0696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1554">1554</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1957</td><td class="ruletablebody" valign="top">RPC sadmind UDP PING (<a href="http://www.snort.org/search/sid/1957?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0977">1999-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/866">866</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10229">10229</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1958</td><td class="ruletablebody" valign="top">RPC sadmind TCP PING (<a href="http://www.snort.org/search/sid/1958?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0977">1999-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/866">866</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10229">10229</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1959</td><td class="ruletablebody" valign="top">RPC portmap NFS request UDP (<a href="http://www.snort.org/search/sid/1959?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1960</td><td class="ruletablebody" valign="top">RPC portmap NFS request TCP (<a href="http://www.snort.org/search/sid/1960?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1961</td><td class="ruletablebody" valign="top">RPC portmap RQUOTA request UDP (<a href="http://www.snort.org/search/sid/1961?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1962</td><td class="ruletablebody" valign="top">RPC portmap RQUOTA request TCP (<a href="http://www.snort.org/search/sid/1962?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1963</td><td class="ruletablebody" valign="top">RPC RQUOTA getquota overflow attempt UDP (<a href="http://www.snort.org/search/sid/1963?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0974">1999-0974</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/864">864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1964</td><td class="ruletablebody" valign="top">RPC tooltalk UDP overflow attempt (<a href="http://www.snort.org/search/sid/1964?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0003">1999-0003</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/122">122</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1965</td><td class="ruletablebody" valign="top">RPC tooltalk TCP overflow attempt (<a href="http://www.snort.org/search/sid/1965?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0717">2001-0717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/122">122</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2006</td><td class="ruletablebody" valign="top">RPC portmap kcms_server request TCP (<a href="http://www.snort.org/search/sid/2006?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0027">2003-0027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6665">6665</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.kb.cert.org/vuls/id/850785">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2014</td><td class="ruletablebody" valign="top">RPC portmap UNSET attempt TCP 111 (<a href="http://www.snort.org/search/sid/2014?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1892">1892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2015</td><td class="ruletablebody" valign="top">RPC portmap UNSET attempt UDP 111 (<a href="http://www.snort.org/search/sid/2015?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1892">1892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2016</td><td class="ruletablebody" valign="top">RPC portmap status request TCP (<a href="http://www.snort.org/search/sid/2016?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2017</td><td class="ruletablebody" valign="top">RPC portmap espd request UDP (<a href="http://www.snort.org/search/sid/2017?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0331">2001-0331</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2714">2714</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2018</td><td class="ruletablebody" valign="top">RPC mountd TCP dump request (<a href="http://www.snort.org/search/sid/2018?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2019</td><td class="ruletablebody" valign="top">RPC mountd UDP dump request (<a href="http://www.snort.org/search/sid/2019?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2020</td><td class="ruletablebody" valign="top">RPC mountd TCP unmount request (<a href="http://www.snort.org/search/sid/2020?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2021</td><td class="ruletablebody" valign="top">RPC mountd UDP unmount request (<a href="http://www.snort.org/search/sid/2021?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2022</td><td class="ruletablebody" valign="top">RPC mountd TCP unmountall request (<a href="http://www.snort.org/search/sid/2022?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2023</td><td class="ruletablebody" valign="top">RPC mountd UDP unmountall request (<a href="http://www.snort.org/search/sid/2023?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2024</td><td class="ruletablebody" valign="top">RPC RQUOTA getquota overflow attempt TCP (<a href="http://www.snort.org/search/sid/2024?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0974">1999-0974</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/864">864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2025</td><td class="ruletablebody" valign="top">RPC yppasswd username overflow attempt UDP (<a href="http://www.snort.org/search/sid/2025?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10684">10684</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2026</td><td class="ruletablebody" valign="top">RPC yppasswd username overflow attempt TCP (<a href="http://www.snort.org/search/sid/2026?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10684">10684</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2031</td><td class="ruletablebody" valign="top">RPC yppasswd user update UDP (<a href="http://www.snort.org/search/sid/2031?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2032</td><td class="ruletablebody" valign="top">RPC yppasswd user update TCP (<a href="http://www.snort.org/search/sid/2032?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2033</td><td class="ruletablebody" valign="top">RPC ypserv maplist request UDP (<a href="http://www.snort.org/search/sid/2033?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1232">2002-1232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6016">6016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=13976">13976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2034</td><td class="ruletablebody" valign="top">RPC ypserv maplist request TCP (<a href="http://www.snort.org/search/sid/2034?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1232">2002-1232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6016">6016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2035</td><td class="ruletablebody" valign="top">RPC portmap network-status-monitor request UDP (<a href="http://www.snort.org/search/sid/2035?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2036</td><td class="ruletablebody" valign="top">RPC portmap network-status-monitor request TCP (<a href="http://www.snort.org/search/sid/2036?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2037</td><td class="ruletablebody" valign="top">RPC network-status-monitor mon-callback request UDP (<a href="http://www.snort.org/search/sid/2037?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2038</td><td class="ruletablebody" valign="top">RPC network-status-monitor mon-callback request TCP (<a href="http://www.snort.org/search/sid/2038?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2079</td><td class="ruletablebody" valign="top">RPC portmap nlockmgr request UDP (<a href="http://www.snort.org/search/sid/2079?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0508">2000-0508</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1372">1372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10220">10220</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2080</td><td class="ruletablebody" valign="top">RPC portmap nlockmgr request TCP (<a href="http://www.snort.org/search/sid/2080?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0508">2000-0508</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1372">1372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10220">10220</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2081</td><td class="ruletablebody" valign="top">RPC portmap rpc.xfsmd request UDP (<a href="http://www.snort.org/search/sid/2081?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0359">2002-0359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5075">5075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2082</td><td class="ruletablebody" valign="top">RPC portmap rpc.xfsmd request TCP (<a href="http://www.snort.org/search/sid/2082?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0359">2002-0359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5075">5075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2083</td><td class="ruletablebody" valign="top">RPC rpc.xfsmd xfs_export attempt UDP (<a href="http://www.snort.org/search/sid/2083?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0359">2002-0359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5075">5075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2084</td><td class="ruletablebody" valign="top">RPC rpc.xfsmd xfs_export attempt TCP (<a href="http://www.snort.org/search/sid/2084?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0359">2002-0359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5075">5075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2088</td><td class="ruletablebody" valign="top">RPC ypupdated arbitrary command attempt UDP (<a href="http://www.snort.org/search/sid/2088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0208">1999-0208</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/28383">28383</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2089</td><td class="ruletablebody" valign="top">RPC ypupdated arbitrary command attempt TCP (<a href="http://www.snort.org/search/sid/2089?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0208">1999-0208</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1749">1749</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2092</td><td class="ruletablebody" valign="top">RPC portmap proxy integer overflow attempt UDP (<a href="http://www.snort.org/search/sid/2092?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0028">2003-0028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7123">7123</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11420">11420</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2093</td><td class="ruletablebody" valign="top">RPC portmap proxy integer overflow attempt TCP (<a href="http://www.snort.org/search/sid/2093?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0028">2003-0028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7123">7123</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11420">11420</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2094</td><td class="ruletablebody" valign="top">RPC CMSD UDP CMSD_CREATE array buffer overflow attempt (<a href="http://www.snort.org/search/sid/2094?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0391">2002-0391</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5356">5356</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11418">11418</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2095</td><td class="ruletablebody" valign="top">RPC CMSD TCP CMSD_CREATE array buffer overflow attempt (<a href="http://www.snort.org/search/sid/2095?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0391">2002-0391</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5356">5356</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11418">11418</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2101</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/2101?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2126</td><td class="ruletablebody" valign="top">MISC Microsoft PPTP Start Control Request buffer overflow attempt (<a href="http://www.snort.org/search/sid/2126?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1214">2002-1214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5807">5807</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11178">11178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2177</td><td class="ruletablebody" valign="top">NETBIOS SMB startup folder unicode access (<a href="http://www.snort.org/search/sid/2177?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2184</td><td class="ruletablebody" valign="top">RPC mountd TCP mount path overflow attempt (<a href="http://www.snort.org/search/sid/2184?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0252">2003-0252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8179">8179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11800">11800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2185</td><td class="ruletablebody" valign="top">RPC mountd UDP mount path overflow attempt (<a href="http://www.snort.org/search/sid/2185?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0252">2003-0252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8179">8179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11800">11800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2190</td><td class="ruletablebody" valign="top">NETBIOS DCERPC invalid bind attempt (<a href="http://www.snort.org/search/sid/2190?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2191</td><td class="ruletablebody" valign="top">NETBIOS SMB DCERPC invalid bind attempt (<a href="http://www.snort.org/search/sid/2191?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2382</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup NTMLSSP asn1 overflow attempt (<a href="http://www.snort.org/search/sid/2382?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2383</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup NTMLSSP asn1 overflow attempt (<a href="http://www.snort.org/search/sid/2383?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2402</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup andx username overflow attempt (<a href="http://www.snort.org/search/sid/2402?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2404</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup unicode andx username overflow attempt (<a href="http://www.snort.org/search/sid/2404?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2467</td><td class="ruletablebody" valign="top">NETBIOS SMB D$ unicode share access (<a href="http://www.snort.org/search/sid/2467?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2468</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS D$ share access (<a href="http://www.snort.org/search/sid/2468?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2470</td><td class="ruletablebody" valign="top">NETBIOS SMB C$ unicode share access (<a href="http://www.snort.org/search/sid/2470?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2471</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS C$ share access (<a href="http://www.snort.org/search/sid/2471?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2473</td><td class="ruletablebody" valign="top">NETBIOS SMB ADMIN$ unicode share access (<a href="http://www.snort.org/search/sid/2473?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2474</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS ADMIN$ share access (<a href="http://www.snort.org/search/sid/2474?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2475</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS ADMIN$ unicode share access (<a href="http://www.snort.org/search/sid/2475?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2563</td><td class="ruletablebody" valign="top">NETBIOS NS lookup response name overflow attempt (<a href="http://www.snort.org/search/sid/2563?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0444">2004-0444</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10333">10333</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040512A.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2564</td><td class="ruletablebody" valign="top">NETBIOS NS lookup short response attempt (<a href="http://www.snort.org/search/sid/2564?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0444">2004-0444</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10335">10335</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040512C.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2936</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP nddeapi NDdeSetTrustedShareW overflow attempt (<a href="http://www.snort.org/search/sid/2936?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0206">2004-0206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11372">11372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms04-031.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2973</td><td class="ruletablebody" valign="top">NETBIOS SMB D$ unicode andx share access (<a href="http://www.snort.org/search/sid/2973?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2974</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS D$ andx share access (<a href="http://www.snort.org/search/sid/2974?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2975</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS D$ unicode andx share access (<a href="http://www.snort.org/search/sid/2975?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2976</td><td class="ruletablebody" valign="top">NETBIOS SMB C$ andx share access (<a href="http://www.snort.org/search/sid/2976?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2977</td><td class="ruletablebody" valign="top">NETBIOS SMB C$ unicode andx share access (<a href="http://www.snort.org/search/sid/2977?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2978</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS C$ andx share access (<a href="http://www.snort.org/search/sid/2978?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2979</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS C$ unicode andx share access (<a href="http://www.snort.org/search/sid/2979?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2980</td><td class="ruletablebody" valign="top">NETBIOS SMB ADMIN$ andx share access (<a href="http://www.snort.org/search/sid/2980?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2981</td><td class="ruletablebody" valign="top">NETBIOS SMB ADMIN$ unicode andx share access (<a href="http://www.snort.org/search/sid/2981?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2982</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS ADMIN$ andx share access (<a href="http://www.snort.org/search/sid/2982?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2983</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS ADMIN$ unicode andx share access (<a href="http://www.snort.org/search/sid/2983?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3001</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup NTMLSSP andx asn1 overflow attempt (<a href="http://www.snort.org/search/sid/3001?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3002</td><td class="ruletablebody" valign="top">NETBIOS SMB Session Setup NTMLSSP unicode andx asn1 overflow attempt (<a href="http://www.snort.org/search/sid/3002?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3004</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup NTMLSSP andx asn1 overflow attempt (<a href="http://www.snort.org/search/sid/3004?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3005</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup NTMLSSP unicode andx asn1 overflow attempt (<a href="http://www.snort.org/search/sid/3005?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3017</td><td class="ruletablebody" valign="top">EXPLOIT WINS overflow attempt (<a href="http://www.snort.org/search/sid/3017?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1080">2004-1080</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11763">11763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3040</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode DACL overflow attempt (<a href="http://www.snort.org/search/sid/3040?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3041</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/3041?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3042</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3042?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3043</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3043?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3044</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3044?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3045</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3045?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3046</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3046?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3047</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3047?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3048</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3048?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3049</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3049?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3050</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3050?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3051</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3051?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3052</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3052?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3053</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT CREATE unicode andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3053?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3054</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3054?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3055</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3055?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3056</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3056?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3057</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT CREATE unicode andx invalid SACL ace size dos attempt (<a href="http://www.snort.org/search/sid/3057?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3114</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP llsrpc LlsrConnect overflow attempt (<a href="http://www.snort.org/search/sid/3114?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0050">2005-0050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12481">12481</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms05-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3195</td><td class="ruletablebody" valign="top">NETBIOS name query overflow attempt TCP (<a href="http://www.snort.org/search/sid/3195?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0825">2003-0825</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9624">9624</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15912">15912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3196</td><td class="ruletablebody" valign="top">NETBIOS name query overflow attempt UDP (<a href="http://www.snort.org/search/sid/3196?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0825">2003-0825</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9624">9624</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15912">15912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3199</td><td class="ruletablebody" valign="top">EXPLOIT WINS name query overflow attempt TCP (<a href="http://www.snort.org/search/sid/3199?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0825">2003-0825</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9624">9624</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15912">15912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3200</td><td class="ruletablebody" valign="top">EXPLOIT WINS name query overflow attempt UDP (<a href="http://www.snort.org/search/sid/3200?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0825">2003-0825</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9624">9624</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15912">15912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3234</td><td class="ruletablebody" valign="top">NETBIOS Messenger message little endian overflow attempt (<a href="http://www.snort.org/search/sid/3234?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0717">2003-0717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8826">8826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3235</td><td class="ruletablebody" valign="top">NETBIOS Messenger message overflow attempt (<a href="http://www.snort.org/search/sid/3235?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0717">2003-0717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8826">8826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3238</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP irot IrotIsRunning/Revoke overflow attempt (<a href="http://www.snort.org/search/sid/3238?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1561">2002-1561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6005">6005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms03-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3239</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP irot IrotIsRunning/Revoke overflow attempt (<a href="http://www.snort.org/search/sid/3239?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1561">2002-1561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6005">6005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms03-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3590</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP mqqm QMDeleteObject overflow attempt (<a href="http://www.snort.org/search/sid/3590?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0059">2005-0059</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18027">18027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3591</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP mqqm QMDeleteObject overflow attempt (<a href="http://www.snort.org/search/sid/3591?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0059">2005-0059</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18027">18027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3639</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans andx data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3639?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3640</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3640?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3641</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3641?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3642</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode andx data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3642?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3643</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans andx data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3643?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3644</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3644?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3645</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans unicode data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3645?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3646</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans unicode andx data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3646?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3647</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans andx data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3647?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3648</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3648?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3649</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3649?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3650</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode andx data displacement null pointer DOS attempt (<a href="http://www.snort.org/search/sid/3650?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13504">13504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ethereal.com/news/item_20050504_01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3673</td><td class="ruletablebody" valign="top">MISC Microsoft SMS remote control client DoS overly long length attempt (<a href="http://www.snort.org/search/sid/3673?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0728">2004-0728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10726">10726</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4334</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceList attempt (<a href="http://www.snort.org/search/sid/4334?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2120">2005-2120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15065">15065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4413</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss AddPrinterEx overflow attempt (<a href="http://www.snort.org/search/sid/4413?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1984">2005-1984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14514">14514</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4608</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP netware_cs function 43 overflow attempt (<a href="http://www.snort.org/search/sid/4608?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1985">2005-1985</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15066">15066</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4651</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC SACL overflow attempt (<a href="http://www.snort.org/search/sid/4651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4652</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/4652?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4653</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC unicode SACL overflow attempt (<a href="http://www.snort.org/search/sid/4653?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4654</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC unicode andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/4654?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4655</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC SACL overflow attempt (<a href="http://www.snort.org/search/sid/4655?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4656</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/4656?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4657</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC unicode SACL overflow attempt (<a href="http://www.snort.org/search/sid/4657?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4658</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC unicode andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/4658?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4659</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC SACL overflow attempt (<a href="http://www.snort.org/search/sid/4659?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4660</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/4660?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4661</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC unicode SACL overflow attempt (<a href="http://www.snort.org/search/sid/4661?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4662</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC unicode andx SACL overflow attempt (<a href="http://www.snort.org/search/sid/4662?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4663</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC DACL overflow attempt (<a href="http://www.snort.org/search/sid/4663?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4664</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/4664?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4665</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC unicode DACL overflow attempt (<a href="http://www.snort.org/search/sid/4665?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4666</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans NT SET SECURITY DESC unicode andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/4666?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4667</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC DACL overflow attempt (<a href="http://www.snort.org/search/sid/4667?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4668</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/4668?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4669</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC unicode DACL overflow attempt (<a href="http://www.snort.org/search/sid/4669?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4670</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans NT SET SECURITY DESC unicode andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/4670?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4671</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC DACL overflow attempt (<a href="http://www.snort.org/search/sid/4671?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4672</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/4672?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4673</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC unicode DACL overflow attempt (<a href="http://www.snort.org/search/sid/4673?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4674</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans NT SET SECURITY DESC unicode andx DACL overflow attempt (<a href="http://www.snort.org/search/sid/4674?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1154">2004-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4826</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetRootDeviceInstance attempt (<a href="http://www.snort.org/search/sid/4826?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3644">2005-3644</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15460">15460</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/911052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4918</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceList dos attempt (<a href="http://www.snort.org/search/sid/4918?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3644">2005-3644</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15460">15460</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/911052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5096</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP lsass DsRolerGetPrimaryDomainInformation attempt (<a href="http://www.snort.org/search/sid/5096?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0533">2003-0533</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10108">10108</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5678</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup username overflow attempt (<a href="http://www.snort.org/search/sid/5678?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5679</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Session Setup unicode username overflow attempt (<a href="http://www.snort.org/search/sid/5679?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5680</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Session Setup username overflow attempt (<a href="http://www.snort.org/search/sid/5680?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5681</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Session Setup unicode username overflow attempt (<a href="http://www.snort.org/search/sid/5681?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5683</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Session Setup andx username overflow attempt (<a href="http://www.snort.org/search/sid/5683?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5684</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Session Setup unicode andx username overflow attempt (<a href="http://www.snort.org/search/sid/5684?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9752">9752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/Research/Advisories/AD20040226.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5717</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5717?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5719</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5719?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5720</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5720?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5721</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans andx Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5721?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5722</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode andx Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5722?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5723</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans andx Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5723?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5724</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans unicode andx Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5724?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5725</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans andx Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5725?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5726</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode andx Max Param/Count DOS attempt (<a href="http://www.snort.org/search/sid/5726?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0724">2002-0724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5556">5556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5727</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5727?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5728</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5728?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5729</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5729?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5730</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5730?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5731</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans unicode Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5731?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5732</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5732?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5733</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans unicode andx Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5733?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5734</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans andx Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5734?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5735</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans andx Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5735?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5736</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans andx Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5736?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5737</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans unicode andx Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5737?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5738</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode andx Max Param DOS attempt (<a href="http://www.snort.org/search/sid/5738?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1206">2005-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13942">13942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18483">18483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6584</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP rras RasRpcSubmitRequest overflow attempt (<a href="http://www.snort.org/search/sid/6584?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2370">2006-2370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18325">18325</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6702</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans Secondary Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6702?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6703</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans Secondary unicode Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6703?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6704</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans Secondary Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6704?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6705</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans Secondary unicode Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6705?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6706</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans Secondary Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6706?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6707</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans Secondary unicode Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6707?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6708</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans Secondary andx Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6708?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6709</td><td class="ruletablebody" valign="top">NETBIOS SMB NT Trans Secondary unicode andx Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6709?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6710</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans Secondary andx Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6710?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6711</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS NT Trans Secondary unicode andx Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6711?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6712</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans Secondary andx Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6712?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6713</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB NT Trans Secondary unicode andx Param Count overflow attempt (<a href="http://www.snort.org/search/sid/6713?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0085">2003-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7106">7106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6810</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP rras RasRpcSetUserPreferences area/country overflow attempt (<a href="http://www.snort.org/search/sid/6810?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2371">2006-2371</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18358">18358</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7037</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7037?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7038</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7038?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7042</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans unicode andx mailslot heap overflow attempt (<a href="http://www.snort.org/search/sid/7042?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18864">18864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7196</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft DHCP option overflow attempt (<a href="http://www.snort.org/search/sid/7196?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2372">2006-2372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7422</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft MMC mmcndmgr.dll cross site scripting attempt (<a href="http://www.snort.org/search/sid/7422?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3643">2006-3643</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19417">19417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7423</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft MMC mmc.exe cross site scripting attempt (<a href="http://www.snort.org/search/sid/7423?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3643">2006-3643</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19417">19417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7424</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft MMC createcab.cmd cross site scripting attempt (<a href="http://www.snort.org/search/sid/7424?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3643">2006-3643</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19417">19417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8157</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP webdav DavrCreateConnection hostname overflow attempt (<a href="http://www.snort.org/search/sid/8157?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0013">2006-0013</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/16636">16636</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8449</td><td class="ruletablebody" valign="top">NETBIOS SMB Rename invalid buffer type andx attempt (<a href="http://www.snort.org/search/sid/8449?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8450</td><td class="ruletablebody" valign="top">NETBIOS SMB Rename invalid buffer type attempt (<a href="http://www.snort.org/search/sid/8450?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8451</td><td class="ruletablebody" valign="top">NETBIOS SMB Rename invalid buffer type unicode andx attempt (<a href="http://www.snort.org/search/sid/8451?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8452</td><td class="ruletablebody" valign="top">NETBIOS SMB Rename invalid buffer type unicode attempt (<a href="http://www.snort.org/search/sid/8452?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8453</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Rename invalid buffer type andx attempt (<a href="http://www.snort.org/search/sid/8453?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8454</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Rename invalid buffer type attempt (<a href="http://www.snort.org/search/sid/8454?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8455</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Rename invalid buffer type unicode andx attempt (<a href="http://www.snort.org/search/sid/8455?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8456</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Rename invalid buffer type unicode attempt (<a href="http://www.snort.org/search/sid/8456?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8457</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Rename invalid buffer type andx attempt (<a href="http://www.snort.org/search/sid/8457?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8458</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Rename invalid buffer type attempt (<a href="http://www.snort.org/search/sid/8458?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8459</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Rename invalid buffer type unicode andx attempt (<a href="http://www.snort.org/search/sid/8459?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8460</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Rename invalid buffer type unicode attempt (<a href="http://www.snort.org/search/sid/8460?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4696">2006-4696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8925</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP wkssvc NetrAddAlternateComputerName overflow attempt (<a href="http://www.snort.org/search/sid/8925?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0812">2003-0812</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9011">9011</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11921">11921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS03-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9132</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP netware_cs NwrOpenEnumNdsStubTrees_Any overflow attempt (<a href="http://www.snort.org/search/sid/9132?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4689">2006-4689</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-066.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9228</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP netware_cs NwGetConnectionInformation overflow attempt (<a href="http://www.snort.org/search/sid/9228?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4689">2006-4689</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-066.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9431</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft NNTP response overflow attempt (<a href="http://www.snort.org/search/sid/9431?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1213">2005-1213</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13951">13951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms05-030.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9432</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Agent buffer overflow attempt (<a href="http://www.snort.org/search/sid/9432?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3445">2006-3445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21034">21034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9441</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor QSIGetQueuePath overflow attempt (<a href="http://www.snort.org/search/sid/9441?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5143">2006-5143</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20365">20365</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.lssec.com/advisories/LS-20060313.pdf">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9623</td><td class="ruletablebody" valign="top">RPC UNIX authentication machinename string overflow attempt TCP (<a href="http://www.snort.org/search/sid/9623?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5780">2006-5780</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20941">20941</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9624</td><td class="ruletablebody" valign="top">RPC UNIX authentication machinename string overflow attempt UDP (<a href="http://www.snort.org/search/sid/9624?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5780">2006-5780</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20941">20941</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9772</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP msqueue function 1 overflow attempt (<a href="http://www.snort.org/search/sid/9772?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9773</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP msqueue function 1 overflow attempt (<a href="http://www.snort.org/search/sid/9773?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9914</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP tapisrv ClientRequest LSetAppPriority overflow attempt (<a href="http://www.snort.org/search/sid/9914?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0058">2005-0058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14518">14518</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/Security/bulletin/ms05-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10024</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc ClientDBMiniAgentClose attempt (<a href="http://www.snort.org/search/sid/10024?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0168">2007-0168</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22010">22010</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.lssec.com/advisories/LS-20061002.pdf">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10030</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor QSIGetQueuePath_Function_45 overflow attempt (<a href="http://www.snort.org/search/sid/10030?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5143">2006-5143</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20365">20365</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10036</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor ASRemotePFC overflow attempt (<a href="http://www.snort.org/search/sid/10036?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0169">2007-0169</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22005">22005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.kb.cert.org/vuls/id/180336">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10117</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc GetGCBHandleFromGroupName overflow attempt (<a href="http://www.snort.org/search/sid/10117?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0169">2007-0169</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22005">22005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10202</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect _SetRealTimeScanConfigInfo attempt (<a href="http://www.snort.org/search/sid/10202?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1070">2007-1070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22639">22639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034290">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10208</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect COMN_NetTestConnection attempt (<a href="http://www.snort.org/search/sid/10208?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1070">2007-1070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22639">22639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034290">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10285</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP svcctl ChangeServiceConfig2A attempt (<a href="http://www.snort.org/search/sid/10285?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10393</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec SupportSoft SmartIssue ActiveX clsid access (<a href="http://www.snort.org/search/sid/10393?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10394</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec SupportSoft SmartIssue ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10394?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10395</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec SupportSoft SmartIssue ActiveX function call access (<a href="http://www.snort.org/search/sid/10395?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10408</td><td class="ruletablebody" valign="top">RPC portmap HP-UX Single Logical Screen SLSD tcp request (<a href="http://www.snort.org/search/sid/10408?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0915">2007-0915</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22551">22551</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10409</td><td class="ruletablebody" valign="top">RPC portmap HP-UX Single Logical Screen SLSD udp request (<a href="http://www.snort.org/search/sid/10409?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0915">2007-0915</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22551">22551</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10410</td><td class="ruletablebody" valign="top">RPC portmap HP-UX Single Logical Screen SLSD tcp request (<a href="http://www.snort.org/search/sid/10410?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0915">2007-0915</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22551">22551</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10411</td><td class="ruletablebody" valign="top">RPC portmap HP-UX Single Logical Screen SLSD udp request (<a href="http://www.snort.org/search/sid/10411?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0915">2007-0915</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22551">22551</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10486</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc function 15,16,17 attempt (<a href="http://www.snort.org/search/sid/10486?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1447">2007-1447</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22994">22994</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www3.ca.com/securityadvisor/newsinfo/collateral.aspx?cid=101317">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11073</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP rpcss _RemoteGetClassObject attempt (<a href="http://www.snort.org/search/sid/11073?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0605">2003-0605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11074</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP rpcss _RemoteGetClassObject attempt (<a href="http://www.snort.org/search/sid/11074?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0605">2003-0605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11288</td><td class="ruletablebody" valign="top">RPC portmap mountd tcp request (<a href="http://www.snort.org/search/sid/11288?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0900">2006-0900</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/16838">16838</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11289</td><td class="ruletablebody" valign="top">RPC portmap mountd tcp zero-length payload denial of service attempt (<a href="http://www.snort.org/search/sid/11289?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0900">2006-0900</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/16838">16838</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11442</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP lsarpc LsarAddPrivilegesToAccount overflow attempt (<a href="http://www.snort.org/search/sid/11442?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11443</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP lsarpc LsarAddPrivilegesToAccount overflow attempt (<a href="http://www.snort.org/search/sid/11443?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11620</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Chroma ActiveX function call access (<a href="http://www.snort.org/search/sid/11620?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24188">24188</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11621</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DXImageTransform.Microsoft.Chroma ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11621?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24188">24188</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/archive/1/443907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11624</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools ISIS ActiveX clsid access (<a href="http://www.snort.org/search/sid/11624?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24094">24094</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-22-leadtools-isis-control.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11625</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools ISIS ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11625?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24094">24094</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-22-leadtools-isis-control.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11626</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools ISIS ActiveX function call access (<a href="http://www.snort.org/search/sid/11626?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24094">24094</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-22-leadtools-isis-control.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11627</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools ISIS ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11627?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24094">24094</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-22-leadtools-isis-control.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11628</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools JPEG 2000 COM Object ActiveX function call access (<a href="http://www.snort.org/search/sid/11628?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24040">24040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-18-leadtools-jpeg-2000-com.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11629</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools JPEG 2000 COM Object ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11629?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24040">24040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-18-leadtools-jpeg-2000-com.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11630</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/11630?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24133">24133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-24-leadtools-raster-dialog-file.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11631</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File Object ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11631?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24133">24133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-24-leadtools-raster-dialog-file.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11632</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File Object ActiveX function call access (<a href="http://www.snort.org/search/sid/11632?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24133">24133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-24-leadtools-raster-dialog-file.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11633</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File Object ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11633?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24133">24133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-24-leadtools-raster-dialog-file.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11634</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File_D Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/11634?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24153">24153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-25-leadtools-raster-dialog-filed.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11635</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File_D Object ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11635?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24153">24153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-25-leadtools-raster-dialog-filed.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11636</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File_D Object ActiveX function call access (<a href="http://www.snort.org/search/sid/11636?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24153">24153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-25-leadtools-raster-dialog-filed.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11637</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Dialog File_D Object ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11637?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24153">24153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-25-leadtools-raster-dialog-filed.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11638</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Document Object Library ActiveX clsid access (<a href="http://www.snort.org/search/sid/11638?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24179">24179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-26-leadtools-raster-ocr-document.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11639</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Document Object Library ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11639?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24179">24179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-26-leadtools-raster-ocr-document.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11640</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Document Object Library ActiveX function call access (<a href="http://www.snort.org/search/sid/11640?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24179">24179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-26-leadtools-raster-ocr-document.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11641</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Document Object Library ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11641?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24179">24179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-26-leadtools-raster-ocr-document.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11642</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster ISIS Object ActiveX clsid access (<a href="http://www.snort.org/search/sid/11642?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24193">24193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-27-leadtools-raster-isis-object.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11643</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster ISIS Object ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11643?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24193">24193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-27-leadtools-raster-isis-object.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11644</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster ISIS Object ActiveX function call access (<a href="http://www.snort.org/search/sid/11644?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24193">24193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-27-leadtools-raster-isis-object.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11645</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster ISIS Object ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11645?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24193">24193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-27-leadtools-raster-isis-object.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11646</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Thumbnail Object Library ActiveX clsid access (<a href="http://www.snort.org/search/sid/11646?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24057">24057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11647</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Thumbnail Object Library ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11647?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24057">24057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11648</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Thumbnail Object Library ActiveX function call access (<a href="http://www.snort.org/search/sid/11648?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24057">24057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11649</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Thumbnail Object Library ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11649?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24057">24057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11650</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Variant Object Library ActiveX clsid access (<a href="http://www.snort.org/search/sid/11650?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24075">24075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-21-leadtools-raster-variant.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11651</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Variant Object Library ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24075">24075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-21-leadtools-raster-variant.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11652</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Variant Object Library ActiveX function call access (<a href="http://www.snort.org/search/sid/11652?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24075">24075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-21-leadtools-raster-variant.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11653</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Raster Variant Object Library ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11653?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24075">24075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-21-leadtools-raster-variant.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11654</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Thumbnail Browser Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/11654?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24053">24053</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11655</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Thumbnail Browser Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11655?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24053">24053</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11656</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Thumbnail Browser Control ActiveX function call access (<a href="http://www.snort.org/search/sid/11656?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24053">24053</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11657</td><td class="ruletablebody" valign="top">WEB-ACTIVEX LeadTools Thumbnail Browser Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11657?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24053">24053</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11658</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dart ZipLite Compression ActiveX clsid access (<a href="http://www.snort.org/search/sid/11658?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24099">24099</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-22-bonus-dart-ziplite-compression.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11659</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dart ZipLite Compression ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11659?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24099">24099</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-22-bonus-dart-ziplite-compression.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11673</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker ActiveX clsid access (<a href="http://www.snort.org/search/sid/11673?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3703">2007-3703</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24883">24883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11674</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11674?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3703">2007-3703</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24883">24883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11675</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker ActiveX function call access (<a href="http://www.snort.org/search/sid/11675?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3703">2007-3703</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24883">24883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11676</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11676?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3703">2007-3703</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24883">24883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11677</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Provideo Camimage Class ISSCamControl ActiveX clsid access (<a href="http://www.snort.org/search/sid/11677?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24279">24279</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11678</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Provideo Camimage Class ISSCamControl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11678?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24279">24279</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11684</td><td class="ruletablebody" valign="top">EXPLOIT WINS overflow attempt (<a href="http://www.snort.org/search/sid/11684?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0567">2004-0567</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11922">11922</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11816</td><td class="ruletablebody" valign="top">NETBIOS Session Service NetDDE attack (<a href="http://www.snort.org/search/sid/11816?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0206">2004-0206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11372">11372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11818</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Viewer Wrapper ActiveX clsid access (<a href="http://www.snort.org/search/sid/11818?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3148">2007-3148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.frsirt.com/english/advisories/2007/2094">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11819</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Viewer Wrapper ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11819?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3148">2007-3148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.frsirt.com/english/advisories/2007/2094">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11820</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Viewer Wrapper ActiveX function call access (<a href="http://www.snort.org/search/sid/11820?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3148">2007-3148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.frsirt.com/english/advisories/2007/2094">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11821</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Webcam Viewer Wrapper ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11821?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3148">2007-3148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24341">24341</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.frsirt.com/english/advisories/2007/2094">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11826</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Voice Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/11826?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11827</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Voice Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11827?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11828</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Voice Control ActiveX function call access (<a href="http://www.snort.org/search/sid/11828?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11829</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Voice Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11829?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11830</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Direct Speech Recognition ActiveX clsid access (<a href="http://www.snort.org/search/sid/11830?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11831</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Direct Speech Recognition ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11831?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11832</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Direct Speech Recognition ActiveX function call access (<a href="http://www.snort.org/search/sid/11832?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11833</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Direct Speech Recognition ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11833?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2222">2007-2222</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11839</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TEC-IT TBarCode ActiveX clsid access (<a href="http://www.snort.org/search/sid/11839?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24440">24440</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11840</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TEC-IT TBarCode ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11840?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24440">24440</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11841</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TEC-IT TBarCode ActiveX function call access (<a href="http://www.snort.org/search/sid/11841?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24440">24440</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11842</td><td class="ruletablebody" valign="top">WEB-ACTIVEX TEC-IT TBarCode ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24440">24440</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11843</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss AddPrinter overflow attempt (<a href="http://www.snort.org/search/sid/11843?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1984">2005-1984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14514">14514</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11939</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Westbyte Internet Download Accelerator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11939?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24400">24400</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11940</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Westbyte Internet Download Accelerator ActiveX function call access (<a href="http://www.snort.org/search/sid/11940?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24400">24400</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11941</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Westbyte Internet Download Accelerator ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11941?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24400">24400</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11942</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Westbyte internet download accelerator ActiveX clsid access (<a href="http://www.snort.org/search/sid/11942?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24400">24400</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11943</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP ModemUtil ActiveX clsid access (<a href="http://www.snort.org/search/sid/11943?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11944</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP ModemUtil ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11944?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11945</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11945?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11946</td><td class="ruletablebody" valign="top">NETBIOS Datagram Service NetDDE attack (<a href="http://www.snort.org/search/sid/11946?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0206">2004-0206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11372">11372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11951</td><td class="ruletablebody" valign="top">BACKDOOR winshadow runtime detection - init connection request (<a href="http://www.snort.org/search/sid/11951?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060036">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11952</td><td class="ruletablebody" valign="top">BACKDOOR winshadow runtime detection - udp response (<a href="http://www.snort.org/search/sid/11952?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060036">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11955</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 OPEN2 maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11955?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11956</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 OPEN2 unicode maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11956?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11957</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11957?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11958</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 unicode maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11958?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11959</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 andx maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11959?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11960</td><td class="ruletablebody" valign="top">NETBIOS SMB Trans2 OPEN2 unicode andx maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11960?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11961</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 OPEN2 andx maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11961?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11962</td><td class="ruletablebody" valign="top">NETBIOS SMB-DS Trans2 OPEN2 unicode andx maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11962?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11963</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 andx maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11963?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11964</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB Trans2 OPEN2 unicode andx maximum param count overflow attempt (<a href="http://www.snort.org/search/sid/11964?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0201">2003-0201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12015</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioStudio2 NCT WavChunksEditor ActiveX clsid access (<a href="http://www.snort.org/search/sid/12015?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24656">24656</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioStudio2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12016</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioStudio2 NCT WavChunksEditor ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12016?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24656">24656</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioStudio2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12017</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioStudio2 NCT WavChunksEditor ActiveX function call access (<a href="http://www.snort.org/search/sid/12017?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24656">24656</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioStudio2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12018</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTAudioStudio2 NCT WavChunksEditor ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12018?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24656">24656</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioStudio2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12019</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTsoft NCTAudioFile2 NCTWMAFile ActiveX clsid access (<a href="http://www.snort.org/search/sid/12019?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24613">24613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioEditor2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12020</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTsoft NCTAudioFile2 NCTWMAFile ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12020?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24613">24613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioEditor2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12021</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTsoft NCTAudioFile2 NCTWMAFile ActiveX function call access (<a href="http://www.snort.org/search/sid/12021?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24613">24613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioEditor2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12022</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NCTsoft NCTAudioFile2 NCTWMAFile ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12022?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24613">24613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://nctsoft.com/products/NCTAudioEditor2/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12029</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Digital Imaging hpqxml.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12029?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3487">2007-3487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24678">24678</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/archive/1/472384">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12030</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Digital Imaging hpqxml.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12030?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3487">2007-3487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24678">24678</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/archive/1/472384">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12058</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft SPNEGO ASN.1 library heap corruption overflow attempt (<a href="http://www.snort.org/search/sid/12058?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9633">9633</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12062</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Instant Support ActiveX clsid access (<a href="http://www.snort.org/search/sid/12062?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3554">2007-3554</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24730">24730</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01077597">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12063</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP Instant Support ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12063?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3554">2007-3554</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24730">24730</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01077597">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12083</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveBar Actbar3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12083?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3883">2007-3883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24959">24959</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12084</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveBar Actbar3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12084?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3883">2007-3883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24959">24959</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12085</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveBar Actbar3 ActiveX function call access (<a href="http://www.snort.org/search/sid/12085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3883">2007-3883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24959">24959</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12086</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Data Dynamics ActiveBar Actbar3 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12086?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3883">2007-3883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24959">24959</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12087</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee NeoTrace ActiveX clsid access (<a href="http://www.snort.org/search/sid/12087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6707">2006-6707</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21697">21697</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12088</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee NeoTrace ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6707">2006-6707</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21697">21697</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12089</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee NeoTrace ActiveX function call access (<a href="http://www.snort.org/search/sid/12089?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6707">2006-6707</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21697">21697</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12090</td><td class="ruletablebody" valign="top">WEB-ACTIVEX McAfee NeoTrace ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12090?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6707">2006-6707</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21697">21697</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12091</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EldoS SecureBlackbox PGPBBox ActiveX clsid access (<a href="http://www.snort.org/search/sid/12091?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3785">2007-3785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24882">24882</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12092</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EldoS SecureBlackbox PGPBBox ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12092?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3785">2007-3785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24882">24882</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12093</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EldoS SecureBlackbox PGPBBox ActiveX function call access (<a href="http://www.snort.org/search/sid/12093?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3785">2007-3785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24882">24882</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12094</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EldoS SecureBlackbox PGPBBox ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12094?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3785">2007-3785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24882">24882</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12100</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP ca-alert function 16,23 overflow attempt (<a href="http://www.snort.org/search/sid/12100?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3825">2007-3825</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24947">24947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://supportconnectw.ca.com/public/antivirus/infodocs/caantivirus-secnotice.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12116</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker SASATL ActiveX clsid access (<a href="http://www.snort.org/search/sid/12116?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3984">2007-3984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25025">25025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12117</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker SASATL ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12117?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3984">2007-3984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25025">25025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12118</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker SASATL ActiveX function call access (<a href="http://www.snort.org/search/sid/12118?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3984">2007-3984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25025">25025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12119</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Zenturi ProgramChecker SASATL ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12119?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3984">2007-3984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25025">25025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12145</td><td class="ruletablebody" valign="top">BACKDOOR access remote pc runtime detection - rpc setup (<a href="http://www.snort.org/search/sid/12145?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Access%20Remote%20PC&amp;threatid=29373">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12168</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates ETrust Intrusion Detection Caller.DLL ActiveX clsid access (<a href="http://www.snort.org/search/sid/12168?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3302">2007-3302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25050">25050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://supportconnectw.ca.com/public/etrust/etrust_intrusion/infodocs/eid-callervilnsecnot.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12169</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates ETrust Intrusion Detection Caller.DLL ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12169?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3302">2007-3302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25050">25050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://supportconnectw.ca.com/public/etrust/etrust_intrusion/infodocs/eid-callervilnsecnot.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12185</td><td class="ruletablebody" valign="top">RPC portmap 2112 tcp request (<a href="http://www.snort.org/search/sid/12185?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2798">2007-2798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24653">24653</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-005.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12186</td><td class="ruletablebody" valign="top">RPC portmap 2112 udp request (<a href="http://www.snort.org/search/sid/12186?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2798">2007-2798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24653">24653</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-005.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12189</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Internet Suite ActiveX clsid access (<a href="http://www.snort.org/search/sid/12189?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4067">2007-4067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25063">25063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12190</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Internet Suite ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12190?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4067">2007-4067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25063">25063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12191</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Internet Suite ActiveX function call access (<a href="http://www.snort.org/search/sid/12191?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4067">2007-4067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25063">25063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12192</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Clever Internet Suite ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12192?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4067">2007-4067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25063">25063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12193</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Widgets Engine ActiveX clsid access (<a href="http://www.snort.org/search/sid/12193?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4034">2007-4034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25086">25086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://help.yahoo.com/l/us/yahoo/widgets/security/security-08.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12194</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Widgets Engine ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12194?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4034">2007-4034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25086">25086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://help.yahoo.com/l/us/yahoo/widgets/security/security-08.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12195</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Widgets Engine ActiveX function call access (<a href="http://www.snort.org/search/sid/12195?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4034">2007-4034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25086">25086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://help.yahoo.com/l/us/yahoo/widgets/security/security-08.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12196</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Widgets Engine ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12196?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4034">2007-4034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25086">25086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://help.yahoo.com/l/us/yahoo/widgets/security/security-08.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12200</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare IntraProcessLogging ActiveX clsid access (<a href="http://www.snort.org/search/sid/12200?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4059">2007-4059</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25110">25110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12201</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare IntraProcessLogging ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12201?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4059">2007-4059</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25110">25110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12203</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare Vielib.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12203?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4058">2007-4058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25118">25118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12204</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare Vielib.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12204?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4058">2007-4058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25118">25118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12205</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare Vielib.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/12205?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4058">2007-4058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25118">25118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12206</td><td class="ruletablebody" valign="top">WEB-ACTIVEX VMWare Vielib.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12206?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4058">2007-4058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25118">25118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12207</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates ETrust Intrusion Detection Caller.DLL ActiveX function call access (<a href="http://www.snort.org/search/sid/12207?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3302">2007-3302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25050">25050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://supportconnectw.ca.com/public/etrust/etrust_intrusion/infodocs/eid-callervilnsecnot.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12208</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Computer Associates ETrust Intrusion Detection Caller.DLL ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12208?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3302">2007-3302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25050">25050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://supportconnectw.ca.com/public/etrust/etrust_intrusion/infodocs/eid-callervilnsecnot.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12246</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12246?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12247</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12247?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12248</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32 ActiveX function call access (<a href="http://www.snort.org/search/sid/12248?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12249</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12249?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12250</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32OAA ActiveX clsid access (<a href="http://www.snort.org/search/sid/12250?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12251</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32OAA ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12251?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12252</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32OAA ActiveX function call access (<a href="http://www.snort.org/search/sid/12252?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12253</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec NavComUI AxSysListView32OAA ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12253?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2955">2007-2955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24983">24983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/avcenter/security/Content/2007.08.09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12257</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectX Media SDK ActiveX clsid access (<a href="http://www.snort.org/search/sid/12257?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4336">2007-4336</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25279">25279</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12258</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectX Media SDK ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12258?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4336">2007-4336</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25279">25279</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12259</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectX Media SDK ActiveX function call access (<a href="http://www.snort.org/search/sid/12259?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4336">2007-4336</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25279">25279</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12260</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft DirectX Media SDK ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12260?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4336">2007-4336</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25279">25279</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12277</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft IE CSS memory corruption exploit (<a href="http://www.snort.org/search/sid/12277?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0943">2007-0943</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12301</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eCentrex VOIP Client Module ActiveX clsid access (<a href="http://www.snort.org/search/sid/12301?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4489">2007-4489</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25383">25383</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.e800phone.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12302</td><td class="ruletablebody" valign="top">WEB-ACTIVEX eCentrex VOIP Client Module ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12302?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4489">2007-4489</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25383">25383</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.e800phone.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12380</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle JInitiator ActiveX clsid access (<a href="http://www.snort.org/search/sid/12380?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4467">2007-4467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25473">25473</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12381</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Oracle JInitiator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12381?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4467">2007-4467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25473">25473</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12382</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EasyMail Objects ActiveX clsid access (<a href="http://www.snort.org/search/sid/12382?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12383</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EasyMail Objects ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12383?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12384</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger YVerInfo ActiveX clsid access (<a href="http://www.snort.org/search/sid/12384?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4515">2007-4515</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25494">25494</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://messenger.yahoo.com/security_update.php?id=082907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12385</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger YVerInfo ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12385?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4515">2007-4515</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25494">25494</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://messenger.yahoo.com/security_update.php?id=082907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12386</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger YVerInfo ActiveX function call access (<a href="http://www.snort.org/search/sid/12386?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4515">2007-4515</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25494">25494</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://messenger.yahoo.com/security_update.php?id=082907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12387</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger YVerInfo ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12387?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4515">2007-4515</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25494">25494</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://messenger.yahoo.com/security_update.php?id=082907">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12388</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PowerPlayer ActiveX clsid access (<a href="http://www.snort.org/search/sid/12388?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4748">2007-4748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25502">25502</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12389</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PPStream PowerPlayer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12389?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4748">2007-4748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25502">25502</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12413</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Earth Resource Mapper NCSView ActiveX clsid access (<a href="http://www.snort.org/search/sid/12413?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4470">2007-4470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25584">25584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12414</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Earth Resource Mapper NCSView ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12414?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4470">2007-4470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25584">25584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12415</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Earth Resource Mapper NCSView ActiveX function call access (<a href="http://www.snort.org/search/sid/12415?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4470">2007-4470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25584">25584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12416</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Earth Resource Mapper NCSView ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12416?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4470">2007-4470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25584">25584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12428</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GlobalLink glitemflat.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12428?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25586">25586</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12429</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GlobalLink glitemflat.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12429?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25586">25586</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12434</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BaoFeng Storm MPS.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12434?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1612">2009-1612</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25601">25601</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12435</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BaoFeng Storm MPS.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12435?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1612">2009-1612</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25601">25601</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12438</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Crypto Component CryptoX.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12438?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25609">25609</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ultrashareware.com/Ultra-Crypto-Component.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12439</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Crypto Component CryptoX.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12439?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25609">25609</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ultrashareware.com/Ultra-Crypto-Component.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12440</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Crypto Component CryptoX.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/12440?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25609">25609</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ultrashareware.com/Ultra-Crypto-Component.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12441</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Crypto Component CryptoX.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12441?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25609">25609</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ultrashareware.com/Ultra-Crypto-Component.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12442</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Crypto Component CryptoX.dll 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12442?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25611">25611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ultrashareware.com/Ultra-Crypto-Component.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12443</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Crypto Component CryptoX.dll 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12443?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25611">25611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ultrashareware.com/Ultra-Crypto-Component.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12448</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/12448?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3040">2007-3040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25566">25566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12449</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12449?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3040">2007-3040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25566">25566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12450</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Control ActiveX function call access (<a href="http://www.snort.org/search/sid/12450?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3040">2007-3040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25566">25566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12451</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Agent Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12451?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3040">2007-3040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25566">25566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12452</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MS Agent File Provider ActiveX clsid access (<a href="http://www.snort.org/search/sid/12452?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3040">2007-3040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25566">25566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12453</td><td class="ruletablebody" valign="top">WEB-ACTIVEX MS Agent File Provider ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12453?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3040">2007-3040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25566">25566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12458</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin port query tcp request (<a href="http://www.snort.org/search/sid/12458?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0722">2003-0722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8615">8615</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12459</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio 6 PDWizard.ocx ActiveX clsid access (<a href="http://www.snort.org/search/sid/12459?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4891">2007-4891</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25638">25638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12460</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio 6 PDWizard.ocx ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12460?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4891">2007-4891</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25638">25638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12461</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio 6 VBTOVSI.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12461?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4890">2007-4890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25635">25635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12462</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio 6 VBTOVSI.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12462?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4890">2007-4890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25635">25635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12468</td><td class="ruletablebody" valign="top">WEB-ACTIVEX COWON America JetAudio JetFlExt.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12468?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4983">2007-4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25723">25723</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12469</td><td class="ruletablebody" valign="top">WEB-ACTIVEX COWON America JetAudio JetFlExt.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12469?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4983">2007-4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25723">25723</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12470</td><td class="ruletablebody" valign="top">WEB-ACTIVEX COWON America JetAudio JetFlExt.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/12470?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4983">2007-4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25723">25723</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12471</td><td class="ruletablebody" valign="top">WEB-ACTIVEX COWON America JetAudio JetFlExt.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12471?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4983">2007-4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25723">25723</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12476</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger CYFT ActiveX clsid access (<a href="http://www.snort.org/search/sid/12476?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5017">2007-5017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25727">25727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12477</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger CYFT ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12477?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5017">2007-5017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25727">25727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12478</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger CYFT ActiveX function call access (<a href="http://www.snort.org/search/sid/12478?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5017">2007-5017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25727">25727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12479</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Yahoo Messenger CYFT ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12479?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5017">2007-5017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25727">25727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12598</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xunlei Web Thunder ActiveX clsid access (<a href="http://www.snort.org/search/sid/12598?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5064">2007-5064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25751">25751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12599</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xunlei Web Thunder ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12599?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5064">2007-5064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25751">25751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12600</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt IncrementalHash ActiveX clsid access (<a href="http://www.snort.org/search/sid/12600?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5111">2007-5111</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25789">25789</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12601</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt IncrementalHash ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12601?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5111">2007-5111</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25789">25789</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12602</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt IncrementalHash ActiveX function call access (<a href="http://www.snort.org/search/sid/12602?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5111">2007-5111</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25789">25789</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12603</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt IncrementalHash ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12603?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5111">2007-5111</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25789">25789</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12604</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt PRNGenerator ActiveX clsid access (<a href="http://www.snort.org/search/sid/12604?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5110">2007-5110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25787">25787</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12605</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt PRNGenerator ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12605?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5110">2007-5110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25787">25787</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12606</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt PRNGenerator ActiveX function call access (<a href="http://www.snort.org/search/sid/12606?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5110">2007-5110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25787">25787</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12607</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ebCrypt PRNGenerator ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12607?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5110">2007-5110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25787">25787</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12608</td><td class="ruletablebody" valign="top">RPC portmap walld udp request (<a href="http://www.snort.org/search/sid/12608?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0573">2002-0573</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4639">4639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12609</td><td class="ruletablebody" valign="top">RPC portmap walld udp format string attack attempt (<a href="http://www.snort.org/search/sid/12609?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0573">2002-0573</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4639">4639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12616</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio 6 PDWizard.ocx ActiveX function call access (<a href="http://www.snort.org/search/sid/12616?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4891">2007-4891</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25638">25638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12617</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Studio 6 PDWizard.ocx ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12617?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4891">2007-4891</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25638">25638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12626</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin port query udp request (<a href="http://www.snort.org/search/sid/12626?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0722">2003-0722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8615">8615</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12627</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin port query tcp portmapper sadmin port query attempt (<a href="http://www.snort.org/search/sid/12627?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0722">2003-0722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8615">8615</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12628</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin port query udp portmapper sadmin port query attempt (<a href="http://www.snort.org/search/sid/12628?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0722">2003-0722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8615">8615</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12631</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Kodak Imaging small offset malformed jpeg tables (<a href="http://www.snort.org/search/sid/12631?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2217">2007-2217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-055.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12632</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Kodak Imaging large offset malformed jpeg tables (<a href="http://www.snort.org/search/sid/12632?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2217">2007-2217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-055.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12635</td><td class="ruletablebody" valign="top">DOS RPC NTLMSSP malformed credentials (<a href="http://www.snort.org/search/sid/12635?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2228">2007-2228</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-058.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12637</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky Online Scanner KAVWebScan.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/12637?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3675">2007-3675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26004">26004</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12638</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky Online Scanner KAVWebScan.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12638?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3675">2007-3675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26004">26004</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12639</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky Online Scanner KAVWebScan.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/12639?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3675">2007-3675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26004">26004</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12640</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Kaspersky Online Scanner KAVWebScan.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12640?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3675">2007-3675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26004">26004</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12642</td><td class="ruletablebody" valign="top">DOS RPC NTLMSSP malformed credentials (<a href="http://www.snort.org/search/sid/12642?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2228">2007-2228</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-058.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12644</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PBEmail7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/12644?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5446">2007-5446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26058">26058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12645</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PBEmail7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12645?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5446">2007-5446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26058">26058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12646</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PBEmail7 ActiveX function call access (<a href="http://www.snort.org/search/sid/12646?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5446">2007-5446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26058">26058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12647</td><td class="ruletablebody" valign="top">WEB-ACTIVEX PBEmail7 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12647?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5446">2007-5446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26058">26058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12648</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory VImpX ActiveX clsid access (<a href="http://www.snort.org/search/sid/12648?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5445">2007-5445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26064">26064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12649</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory VImpX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12649?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5445">2007-5445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26064">26064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12650</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory VImpX ActiveX function call access (<a href="http://www.snort.org/search/sid/12650?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5445">2007-5445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26064">26064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12651</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DB Software Laboratory VImpX ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5445">2007-5445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26064">26064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12689</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GlobalLink ConnectAndEnterRoom ActiveX clsid access (<a href="http://www.snort.org/search/sid/12689?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5722">2007-5722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26244">26244</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12690</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GlobalLink ConnectAndEnterRoom ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12690?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5722">2007-5722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26244">26244</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12714</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx GPCContainer ActiveX clsid access (<a href="http://www.snort.org/search/sid/12714?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6005">2007-6005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26430">26430</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12715</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx GPCContainer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12715?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6005">2007-6005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26430">26430</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12716</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx GPCContainer ActiveX function call access (<a href="http://www.snort.org/search/sid/12716?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6005">2007-6005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26430">26430</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12717</td><td class="ruletablebody" valign="top">WEB-ACTIVEX WebEx GPCContainer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12717?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6005">2007-6005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26430">26430</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12729</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Radio AmpX ActiveX clsid access (<a href="http://www.snort.org/search/sid/12729?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5755">2007-5755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26396">26396</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12730</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Radio AmpX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12730?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5755">2007-5755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26396">26396</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12731</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Radio AmpX ActiveX function call access (<a href="http://www.snort.org/search/sid/12731?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5755">2007-5755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/35028">35028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12732</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL Radio AmpX ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12732?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5755">2007-5755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26396">26396</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12733</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne FlexGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/12733?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6028">2007-6028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26467">26467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12734</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne FlexGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12734?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6028">2007-6028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26467">26467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12735</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne FlexGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/12735?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6028">2007-6028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26467">26467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12736</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ComponentOne FlexGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12736?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6028">2007-6028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26467">26467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12737</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xunlei Thunder PPLAYER.DLL ActiveX clsid access (<a href="http://www.snort.org/search/sid/12737?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6144">2007-6144</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26536">26536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12738</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xunlei Thunder PPLAYER.DLL ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12738?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6144">2007-6144</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26536">26536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12739</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xunlei Thunder PPLAYER.DLL ActiveX function call access (<a href="http://www.snort.org/search/sid/12739?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6144">2007-6144</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26536">26536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12740</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Xunlei Thunder PPLAYER.DLL ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12740?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6144">2007-6144</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26536">26536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12747</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BitDefender Online Scanner ActiveX clsid access (<a href="http://www.snort.org/search/sid/12747?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5775">2007-5775</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26210">26210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12748</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BitDefender Online Scanner ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12748?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5775">2007-5775</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26210">26210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12749</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BitDefender Online Scanner ActiveX function call access (<a href="http://www.snort.org/search/sid/12749?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5775">2007-5775</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26210">26210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12750</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BitDefender Online Scanner ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12750?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5775">2007-5775</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26210">26210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12780</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Vulnerable Methods ActiveX clsid access (<a href="http://www.snort.org/search/sid/12780?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12781</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Vulnerable Methods ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12781?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12782</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Vulnerable Methods ActiveX function call access (<a href="http://www.snort.org/search/sid/12782?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12783</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Vulnerable Methods ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12783?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12905</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft SPNEGO ASN.1 library heap corruption overflow attempt (<a href="http://www.snort.org/search/sid/12905?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9633">9633</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12940</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor-arc2 CA call 269 overflow attempt (<a href="http://www.snort.org/search/sid/12940?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5327">2007-5327</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26015">26015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12977</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP mqqm QMCreateObjectInternal overflow attempt (<a href="http://www.snort.org/search/sid/12977?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3039">2007-3039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12978</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP mqqm QMCreateObjectInternal overflow attempt (<a href="http://www.snort.org/search/sid/12978?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3039">2007-3039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12984</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP srvsvc NetSetFileSecurity integer overflow attempt (<a href="http://www.snort.org/search/sid/12984?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24196">24196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12985</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP srvsvc NetSetFileSecurity integer overflow attempt (<a href="http://www.snort.org/search/sid/12985?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24196">24196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13210</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP mqqm QMObjectPathToObjectFormat overflow attempt (<a href="http://www.snort.org/search/sid/13210?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3039">2007-3039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13211</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP mqqm QMObjectPathToObjectFormat overflow attempt (<a href="http://www.snort.org/search/sid/13211?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3039">2007-3039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13228</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13228?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26967">26967</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13229</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13229?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26967">26967</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13230</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13230?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26967">26967</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13231</td><td class="ruletablebody" valign="top">WEB-ACTIVEX HP eSupportDiagnostics 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13231?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26967">26967</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13232</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Persits Software XUpload ActiveX clsid access (<a href="http://www.snort.org/search/sid/13232?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3693">2009-3693</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/36550">36550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13233</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Persits Software XUpload ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13233?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3693">2009-3693</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/36550">36550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13234</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Persits Software XUpload ActiveX function call access (<a href="http://www.snort.org/search/sid/13234?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3693">2009-3693</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/36550">36550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13235</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Persits Software XUpload ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13235?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3693">2009-3693</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/36550">36550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13434</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Property Overflows ActiveX clsid access (<a href="http://www.snort.org/search/sid/13434?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13435</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Property Overflows ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13435?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13436</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Property Overflows ActiveX function call access (<a href="http://www.snort.org/search/sid/13436?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13437</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 4 Property Overflows ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13437?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13438</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Vulnerable Methods ActiveX clsid access (<a href="http://www.snort.org/search/sid/13438?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13439</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Vulnerable Methods ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13439?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13440</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Vulnerable Methods ActiveX function call access (<a href="http://www.snort.org/search/sid/13440?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13441</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Vulnerable Methods ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13441?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13442</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Property Overflows ActiveX clsid access (<a href="http://www.snort.org/search/sid/13442?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13443</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Property Overflows ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13443?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13444</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Property Overflows ActiveX function call access (<a href="http://www.snort.org/search/sid/13444?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13445</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Aurigma Image Uploader 5 Property Overflows ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13445?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27577">27577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/advisory/953839.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13451</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro foxtlib ActiveX clsid access (<a href="http://www.snort.org/search/sid/13451?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5322">2007-5322</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25977">25977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13452</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual FoxPro foxtlib ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13452?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5322">2007-5322</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25977">25977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13454</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DXLUTBuilder ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13454?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0078">2008-0078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13456</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DXLUTBuilder ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13456?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0078">2008-0078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13458</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13458?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0065">2007-0065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13460</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Forms 2.0 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13460?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0065">2007-0065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13472</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Works invalid chunk size (<a href="http://www.snort.org/search/sid/13472?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0108">2008-0108</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13475</td><td class="ruletablebody" valign="top">DOS Microsoft Active Directory LDAP denial of service attempt (<a href="http://www.snort.org/search/sid/13475?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0088">2008-0088</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13594</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows print spooler little endian DoS attempt (<a href="http://www.snort.org/search/sid/13594?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6296">2006-6296</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21401">21401</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13669</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13669?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13671</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13671?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13673</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13673?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13675</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Help 2.0 Contents Control 2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13675?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1086">2008-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13828</td><td class="ruletablebody" valign="top">WEB-ACTIVEX sapi.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/13828?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0675">2007-0675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13829</td><td class="ruletablebody" valign="top">WEB-ACTIVEX sapi.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13829?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0675">2007-0675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13830</td><td class="ruletablebody" valign="top">WEB-ACTIVEX sapi.dll alternate killbit ActiveX clsid access (<a href="http://www.snort.org/search/sid/13830?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0675">2007-0675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13831</td><td class="ruletablebody" valign="top">WEB-ACTIVEX sapi.dll alternate killbit ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13831?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0675">2007-0675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13832</td><td class="ruletablebody" valign="top">WEB-ACTIVEX backweb ActiveX clsid access (<a href="http://www.snort.org/search/sid/13832?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0675">2007-0675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13833</td><td class="ruletablebody" valign="top">WEB-ACTIVEX backweb ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13833?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0675">2007-0675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13835</td><td class="ruletablebody" valign="top">DOS Microsoft Active Directory LDAP cookie denial of service attempt (<a href="http://www.snort.org/search/sid/13835?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1445">2008-1445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-035.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13966</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Message System ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13966?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0082">2008-0082</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13968</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Message System ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13968?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0082">2008-0082</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-050.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13976</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Event System ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13976?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1457">2008-1457</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13978</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Event System ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13978?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1457">2008-1457</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14033</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Orbit Downloader ActiveX clsid access (<a href="http://www.snort.org/search/sid/14033?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1602">2008-1602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14034</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Orbit Downloader ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14034?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1602">2008-1602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14035</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Orbit Downloader ActiveX function call access (<a href="http://www.snort.org/search/sid/14035?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1602">2008-1602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14036</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Orbit Downloader ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14036?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1602">2008-1602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14038</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX target-frame parameter overflow attempt (<a href="http://www.snort.org/search/sid/14038?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/29736">29736</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14066</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware winsecuredisc runtime detection (<a href="http://www.snort.org/search/sid/14066?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.spywareremove.com/removeWinSecureDisc.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14078</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware winspywareprotect runtime detection - download malicous code (<a href="http://www.snort.org/search/sid/14078?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2008-042206-4253-99&amp;tabid=1">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14079</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware winspywareprotect runtime detection - connection to malicious sites (<a href="http://www.snort.org/search/sid/14079?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2008-042206-4253-99&amp;tabid=1">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14080</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware winspywareprotect runtime detection - connection to malicious server (<a href="http://www.snort.org/search/sid/14080?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2008-042206-4253-99&amp;tabid=1">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14232</td><td class="ruletablebody" valign="top">WEB-ACTIVEX SoftArtisans XFile FileManager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14232?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1682">2007-1682</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30826">30826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.softartisans.com/Support-114.aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15085</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Common Controls Animation Object ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4255">2008-4255</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15087</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Common Controls Animation Object ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4255">2008-4255</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15109</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell.Explorer 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15109?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4258">2008-4258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15110</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell.Explorer 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15110?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4258">2008-4258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15111</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell.Explorer 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15111?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4258">2008-4258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11466">11466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15112</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell.Explorer 2 ActiveX function call access (<a href="http://www.snort.org/search/sid/15112?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4258">2008-4258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11466">11466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15113</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell.Explorer 2 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15113?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4258">2008-4258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11466">11466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15122</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Shell.Explorer 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15122?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4258">2008-4258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11466">11466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15448</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCADG-IP-UDP srvsvc NetrShareEnum null policy handle attempt (<a href="http://www.snort.org/search/sid/15448?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15507</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS DCERPC NCACN-IP-TCP lsarpc LsarLookupSids translated_names overflow attempt (<a href="http://www.snort.org/search/sid/15507?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24196">24196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15508</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS DCERPC NCADG-IP-UDP lsarpc LsarLookupSids translated_names overflow attempt (<a href="http://www.snort.org/search/sid/15508?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24196">24196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15862</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Remote Desktop Client ActiveX clsid unicode access  (<a href="http://www.snort.org/search/sid/15862?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1929">2009-1929</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15864</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Remote Desktop Client ActiveX function call unicode access  (<a href="http://www.snort.org/search/sid/15864?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1929">2009-1929</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15881</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss EnumPrinters Name Field attempt (<a href="http://www.snort.org/search/sid/15881?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0639">2008-0639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15911</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP spoolss RouteRefreshPrinterChangeNotification attempt (<a href="http://www.snort.org/search/sid/15911?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16012</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Symantec SupportSoft SmartIssue ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16012?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6490">2006-6490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22564">22564</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://securityresponse.symantec.com/avcenter/security/Content/2007.02.22.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16016</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft client for netware overflow attempt (<a href="http://www.snort.org/search/sid/16016?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4688">2006-4688</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-066.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16034</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Samba spools RPC smb_io_notify_option_type_data request handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/16034?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2446">2007-2446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16058</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Samba WINS Server Name Registration handling stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16058?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5398">2007-5398</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26455">26455</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16066</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows Server driver crafted SMB data denial of service  (<a href="http://www.snort.org/search/sid/16066?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3942">2006-3942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-063.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16081</td><td class="ruletablebody" valign="top">RPC portmap 395650 tcp XDR SString buffer overflow attempt (<a href="http://www.snort.org/search/sid/16081?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2242">2008-2242</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/29283">29283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=176798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16082</td><td class="ruletablebody" valign="top">RPC portmap 395650 udp XDR SString buffer overflow attempt (<a href="http://www.snort.org/search/sid/16082?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2242">2008-2242</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/29283">29283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=176798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16083</td><td class="ruletablebody" valign="top">RPC portmap 395650 tcp request (<a href="http://www.snort.org/search/sid/16083?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2242">2008-2242</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=176798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16084</td><td class="ruletablebody" valign="top">RPC portmap 395650 udp request (<a href="http://www.snort.org/search/sid/16084?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2242">2008-2242</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=176798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16085</td><td class="ruletablebody" valign="top">RPC portmap 395650 tcp xml buffer overflow attempt (<a href="http://www.snort.org/search/sid/16085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2242">2008-2242</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=176798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16086</td><td class="ruletablebody" valign="top">RPC portmap 395650 udp xml buffer overflow attempt (<a href="http://www.snort.org/search/sid/16086?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2242">2008-2242</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=176798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16221</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft ISA and Forefront Threat Management Web Proxy TCP Listener denial of service attempt (<a href="http://www.snort.org/search/sid/16221?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0077">2009-0077</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/34414">34414</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16294</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows TCP stack zero window size exploit attempt (<a href="http://www.snort.org/search/sid/16294?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4609">2008-4609</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/31545">31545</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16386</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX clsid access (<a href="http://www.snort.org/search/sid/16386?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2987">2009-2987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16387</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16387?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2987">2009-2987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16388</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX function call access (<a href="http://www.snort.org/search/sid/16388?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2987">2009-2987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16389</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AcroPDF.PDF ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16389?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2987">2009-2987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16397</td><td class="ruletablebody" valign="top">NETBIOS SMB andx invalid server name share access (<a href="http://www.snort.org/search/sid/16397?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16398</td><td class="ruletablebody" valign="top">NETBIOS SMB invalid server name share access (<a href="http://www.snort.org/search/sid/16398?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16399</td><td class="ruletablebody" valign="top">NETBIOS SMB unicode andx invalid server name share access (<a href="http://www.snort.org/search/sid/16399?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16400</td><td class="ruletablebody" valign="top">NETBIOS SMB unicode invalid server name share access (<a href="http://www.snort.org/search/sid/16400?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16401</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB andx invalid server name share access (<a href="http://www.snort.org/search/sid/16401?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16402</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB invalid server name share access (<a href="http://www.snort.org/search/sid/16402?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16403</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB unicode andx invalid server name share access (<a href="http://www.snort.org/search/sid/16403?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16404</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB unicode invalid server name share access (<a href="http://www.snort.org/search/sid/16404?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0022">2010-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16413</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft PowerPoint invalid TextCharsAtom remote code execution attempt (<a href="http://www.snort.org/search/sid/16413?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0034">2010-0034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16420</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Data Analyzer 3.5 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16420?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0252">2010-0252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-008.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16446</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin tcp request (<a href="http://www.snort.org/search/sid/16446?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4556">2008-4556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/31751">31751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16447</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin udp request (<a href="http://www.snort.org/search/sid/16447?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4556">2008-4556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/31751">31751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16448</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin tcp adm_build_path overflow attempt (<a href="http://www.snort.org/search/sid/16448?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4556">2008-4556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/31751">31751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16449</td><td class="ruletablebody" valign="top">RPC portmap Solaris sadmin udp adm_build_path overflow attempt (<a href="http://www.snort.org/search/sid/16449?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4556">2008-4556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/31751">31751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16533</td><td class="ruletablebody" valign="top">BAD-TRAFFIC Microsoft Windows ISATAP-addressed IPv6 traffic spoofing attempt (<a href="http://www.snort.org/search/sid/16533?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0812">2010-0812</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16540</td><td class="ruletablebody" valign="top">NETBIOS SMB2 client NetBufferList NULL entry remote code execution attempt (<a href="http://www.snort.org/search/sid/16540?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0477">2010-0477</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16581</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Persits Software XUpload ActiveX clsid unsafe function access attempt (<a href="http://www.snort.org/search/sid/16581?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3693">2009-3693</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/36550">36550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16926</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - strMode=setup&amp;strID=pcvaccine&amp;strPC= (<a href="http://www.snort.org/search/sid/16926?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16926.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17111</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Video ActiveX Control stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/17111?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/35558">35558</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17112</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS DCERPC rpcss2 _RemoteGetClassObject attempt (<a href="http://www.snort.org/search/sid/17112?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0715">2003-0715</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8205">8205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS03-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17133</td><td class="ruletablebody" valign="top">WEB-CLIENT MSXML2 ActiveX malformed HTTP response (<a href="http://www.snort.org/search/sid/17133?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2561">2010-2561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms10-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17205</td><td class="ruletablebody" valign="top">RPC Multiple vendors librpc.dll stack buffer overflow attempt - udp (<a href="http://www.snort.org/search/sid/17205?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2754">2009-2754</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/38472">38472</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17206</td><td class="ruletablebody" valign="top">RPC Multiple vendors librpc.dll stack buffer overflow attempt - tcp (<a href="http://www.snort.org/search/sid/17206?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2754">2009-2754</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/38472">38472</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17231</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Kodak Imaging small offset malformed tiff - little-endian (<a href="http://www.snort.org/search/sid/17231?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2217">2007-2217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-055.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17232</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Kodak Imaging large offset malformed tiff - big-endian (<a href="http://www.snort.org/search/sid/17232?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2217">2007-2217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-055.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17252</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows Print Spooler arbitrary file write attempt (<a href="http://www.snort.org/search/sid/17252?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2729">2010-2729</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17253</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows Print Spooler arbitrary file write attempt (<a href="http://www.snort.org/search/sid/17253?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2729">2010-2729</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-061.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17435</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceList attempt (<a href="http://www.snort.org/search/sid/17435?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2120">2005-2120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15065">15065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17437</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP umpnpmgr PNP_GetDeviceList attempt (<a href="http://www.snort.org/search/sid/17437?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2120">2005-2120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15065">15065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms05-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17439</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Distributed Transaction Controller TIP DoS attempt (<a href="http://www.snort.org/search/sid/17439?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1979">2005-1979</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15058">15058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17634</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCPbrightstor-arc function 0 little endian object call overflow attempt (<a href="http://www.snort.org/search/sid/17634?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4398">2008-4398</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=188143">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17635</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCPbrightstor-arc function 0 little endian overflow attempt (<a href="http://www.snort.org/search/sid/17635?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4398">2008-4398</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=188143">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17636</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCPbrightstor-arc function 0 object call overflow attempt (<a href="http://www.snort.org/search/sid/17636?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4398">2008-4398</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=188143">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17637</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCPbrightstor-arc function 0 overflow attempt (<a href="http://www.snort.org/search/sid/17637?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4398">2008-4398</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=188143">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17640</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP brightstor opnum 43 overflow attempt (<a href="http://www.snort.org/search/sid/17640?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0169">2007-0169</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22005">22005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.kb.cert.org/vuls/id/180336">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17707</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect trend_req_num buffer overflow attempt (<a href="http://www.snort.org/search/sid/17707?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1070">2007-1070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22639">22639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034290">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17714</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect CMON_ActiveUpdate attempt (<a href="http://www.snort.org/search/sid/17714?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1070">2007-1070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22639">22639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034290">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17715</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP trend-serverprotect CMON_ActiveUpdate attempt (<a href="http://www.snort.org/search/sid/17715?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1070">2007-1070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22639">22639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://esupport.trendmicro.com/support/viewxml.do?ContentID=EN-1034290">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18072</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Forefront UAG external redirect attempt (<a href="http://www.snort.org/search/sid/18072?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2732">2010-2732</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-089.mspx">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="120"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: OS / Linux</div></p><span class="group"># of attack rules in this group: 4</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15490</td><td class="ruletablebody" valign="top">EXPLOIT Linux SCTP malformed forward-tsn chunk arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/15490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0065">2009-0065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33113">33113</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16352</td><td class="ruletablebody" valign="top">EXPLOIT Linux Kernel NFSD Subsystem overflow attempt (<a href="http://www.snort.org/search/sid/16352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3915">2008-3915</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31133">31133</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17324</td><td class="ruletablebody" valign="top">SHELLCODE x86 Linux reverse connect shellcode (<a href="http://www.snort.org/search/sid/17324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17738</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Linux Kernel SNMP Netfilter Memory Corruption attempt (<a href="http://www.snort.org/search/sid/17738?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2444">2006-2444</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18081">18081</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 19</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">213</td><td class="ruletablebody" valign="top">BACKDOOR MISC Linux rootkit attempt (<a href="http://www.snort.org/search/sid/213?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">214</td><td class="ruletablebody" valign="top">BACKDOOR MISC Linux rootkit attempt lrkr0x (<a href="http://www.snort.org/search/sid/214?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">215</td><td class="ruletablebody" valign="top">BACKDOOR MISC Linux rootkit attempt (<a href="http://www.snort.org/search/sid/215?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">216</td><td class="ruletablebody" valign="top">BACKDOOR MISC Linux rootkit satori attempt (<a href="http://www.snort.org/search/sid/216?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">292</td><td class="ruletablebody" valign="top">EXPLOIT x86 Linux samba overflow (<a href="http://www.snort.org/search/sid/292?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0811">1999-0811</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/536">536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">302</td><td class="ruletablebody" valign="top">EXPLOIT Redhat 7.0 lprd overflow (<a href="http://www.snort.org/search/sid/302?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0917">2000-0917</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1712">1712</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">313</td><td class="ruletablebody" valign="top">EXPLOIT ntalkd x86 Linux overflow (<a href="http://www.snort.org/search/sid/313?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/210">210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">315</td><td class="ruletablebody" valign="top">EXPLOIT x86 Linux mountd overflow (<a href="http://www.snort.org/search/sid/315?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0002">1999-0002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/121">121</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">316</td><td class="ruletablebody" valign="top">EXPLOIT x86 Linux mountd overflow (<a href="http://www.snort.org/search/sid/316?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0002">1999-0002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/121">121</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">317</td><td class="ruletablebody" valign="top">EXPLOIT x86 Linux mountd overflow (<a href="http://www.snort.org/search/sid/317?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0002">1999-0002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/121">121</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">601</td><td class="ruletablebody" valign="top">RSERVICES rlogin LinuxNIS (<a href="http://www.snort.org/search/sid/601?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">652</td><td class="ruletablebody" valign="top">SHELLCODE Linux shellcode (<a href="http://www.snort.org/search/sid/652?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1225</td><td class="ruletablebody" valign="top">X11 MIT Magic Cookie detected (<a href="http://www.snort.org/search/sid/1225?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1226</td><td class="ruletablebody" valign="top">X11 xopen (<a href="http://www.snort.org/search/sid/1226?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7021</td><td class="ruletablebody" valign="top">DOS linux kernel SCTP chunkless packet denial of service attempt (<a href="http://www.snort.org/search/sid/7021?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2934">2006-2934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18755">18755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15906</td><td class="ruletablebody" valign="top">EXPLOIT Linux Kernel DCCP Protocol Handler dccp_setsockopt_change integer overflow attempt (<a href="http://www.snort.org/search/sid/15906?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3276">2008-3276</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30704">30704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15907</td><td class="ruletablebody" valign="top">EXPLOIT Linux Kernel DCCP Protocol Handler dccp_setsockopt_change integer overflow attempt (<a href="http://www.snort.org/search/sid/15907?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3276">2008-3276</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30704">30704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16724</td><td class="ruletablebody" valign="top">EXPLOIT Linux kernel sctp_process_unk_param SCTPChunkInit buffer overflow attempt (<a href="http://www.snort.org/search/sid/16724?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1173">2010-1173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/39794">39794</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17302</td><td class="ruletablebody" valign="top">DOS Linux kernel SCTP Unknown Chunk Types denial of service attempt (<a href="http://www.snort.org/search/sid/17302?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2876">2007-2876</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24376">24376</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="130"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: OS / Other</div></p><span class="group"># of attack rules in this group: 30</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5760</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker marketscore runtime detection (<a href="http://www.snort.org/search/sid/5760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=43974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5798</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware mydailyhoroscope runtime detection (<a href="http://www.snort.org/search/sid/5798?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088207">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5799</td><td class="ruletablebody" valign="top">SPYWARE-PUT mydailyhoroscope update or installation in progress (<a href="http://www.snort.org/search/sid/5799?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088207">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5834</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler conscorr runtime detection (<a href="http://www.snort.org/search/sid/5834?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1034">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6017</td><td class="ruletablebody" valign="top">BACKDOOR dsk lite 1.0 runtime detection - disconnect (<a href="http://www.snort.org/search/sid/6017?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075866">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6384</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger stealthwatcher 2000 runtime detection - agent discover broadcast (<a href="http://www.snort.org/search/sid/6384?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075982">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7020</td><td class="ruletablebody" valign="top">WEB-CLIENT isComponentInstalled function buffer overflow (<a href="http://www.snort.org/search/sid/7020?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1016">2006-1016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16870">16870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7720</td><td class="ruletablebody" valign="top">BACKDOOR desktop scout runtime detection (<a href="http://www.snort.org/search/sid/7720?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074737">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8090</td><td class="ruletablebody" valign="top">WEB-MISC HP Openview NNM freeIPaddrs.ovpl Unix command execution attempt (<a href="http://www.snort.org/search/sid/8090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2773">2005-2773</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14662">14662</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9635</td><td class="ruletablebody" valign="top">EXPLOIT Computer Associates Product Discovery Service type 9B remote buffer overflow attempt UDP (<a href="http://www.snort.org/search/sid/9635?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6379">2006-6379</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21502">21502</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10134</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CA Brightstor discovery service buffer overflow attempt (<a href="http://www.snort.org/search/sid/10134?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0260">2005-0260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12491">12491</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10998</td><td class="ruletablebody" valign="top">EXPLOIT Novell GroupWise WebAccess authentication overflow (<a href="http://www.snort.org/search/sid/10998?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2171">2007-2171</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23556">23556</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11970</td><td class="ruletablebody" valign="top">VOIP-SIP Cisco 7940/7960 INVITE Remote-Party-ID denial of service attempt (<a href="http://www.snort.org/search/sid/11970?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1542">2007-1542</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23047">23047</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cisco.com/warp/public/707/cisco-sr-20070320-sip.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13363</td><td class="ruletablebody" valign="top">EXPLOIT Cisco Unified Communications Manager heap overflow attempt (<a href="http://www.snort.org/search/sid/13363?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0027">2008-0027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27313">27313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13613</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Solaris username overflow authentication bypass attempt (<a href="http://www.snort.org/search/sid/13613?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0797">2001-0797</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13912</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS isComponentInstalled Metasploit attack attempt (<a href="http://www.snort.org/search/sid/13912?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16870">16870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14989</td><td class="ruletablebody" valign="top">WEB-MISC Novell eDirectory SOAP Accept Language header overflow attempt (<a href="http://www.snort.org/search/sid/14989?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4479">2008-4479</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15446</td><td class="ruletablebody" valign="top">WEB-MISC Novell eDirectory management console Accept-Language buffer overflow attempt (<a href="http://www.snort.org/search/sid/15446?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5094">2008-5094</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31553">31553</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://download.novell.com/Download?buildid=Cf15mVyA3GI~">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15958</td><td class="ruletablebody" valign="top">WEB-MISC Novell ZENworks Remote Management overflow attempt (<a href="http://www.snort.org/search/sid/15958?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1543">2005-1543</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13678">13678</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16019</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Novell Distributed Print Services integer overflow attempt (<a href="http://www.snort.org/search/sid/16019?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2327">2006-2327</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16194</td><td class="ruletablebody" valign="top">WEB-MISC Novell eDirectory HTTP request content-length heap buffer overflow attempt (<a href="http://www.snort.org/search/sid/16194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4478">2008-4478</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16195</td><td class="ruletablebody" valign="top">WEB-MISC Novell eDirectory HTTP request content-length heap buffer overflow attempt (<a href="http://www.snort.org/search/sid/16195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4478">2008-4478</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16429</td><td class="ruletablebody" valign="top">WEB-MISC Novell iManager eDirectory plugin schema buffer overflow attempt - GET request (<a href="http://www.snort.org/search/sid/16429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4486">2009-4486</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37672">37672</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16430</td><td class="ruletablebody" valign="top">WEB-MISC Novell iManager eDirectory plugin schema buffer overflow attempt - POST request (<a href="http://www.snort.org/search/sid/16430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4486">2009-4486</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37672">37672</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16522</td><td class="ruletablebody" valign="top">WEB-CLIENT Novell QuickFinder server cross-site-scripting attempt (<a href="http://www.snort.org/search/sid/16522?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0611">2009-0611</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16587</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Symantec multiple products AeXNSConsoleUtilities buffer overflow attempt (<a href="http://www.snort.org/search/sid/16587?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3031">2009-3031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36698">36698</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16787</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Symantec multiple products AeXNSConsoleUtilities RunCMD buffer overflow attempt (<a href="http://www.snort.org/search/sid/16787?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3033">2009-3033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37092">37092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17057</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Novell Client NetIdentity Agent remote arbitrary pointer dereference code execution attempt (<a href="http://www.snort.org/search/sid/17057?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1350">2009-1350</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34400">34400</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17620</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Products Discovery Service Buffer Overflow (<a href="http://www.snort.org/search/sid/17620?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5143">2006-5143</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20364">20364</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17621</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Products Discovery Service Buffer Overflow (<a href="http://www.snort.org/search/sid/17621?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5143">2006-5143</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20364">20364</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 53</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">218</td><td class="ruletablebody" valign="top">BACKDOOR MISC Solaris 2.5 attempt (<a href="http://www.snort.org/search/sid/218?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">300</td><td class="ruletablebody" valign="top">EXPLOIT nlps x86 Solaris overflow (<a href="http://www.snort.org/search/sid/300?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2319">2319</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">304</td><td class="ruletablebody" valign="top">EXPLOIT SCO calserver overflow (<a href="http://www.snort.org/search/sid/304?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0306">2000-0306</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2353">2353</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">640</td><td class="ruletablebody" valign="top">SHELLCODE AIX NOOP (<a href="http://www.snort.org/search/sid/640?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">641</td><td class="ruletablebody" valign="top">SHELLCODE Digital UNIX NOOP (<a href="http://www.snort.org/search/sid/641?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1132</td><td class="ruletablebody" valign="top">WEB-MISC Netscape Unixware overflow (<a href="http://www.snort.org/search/sid/1132?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0744">1999-0744</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/908">908</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1165</td><td class="ruletablebody" valign="top">WEB-MISC Novell Groupwise gwweb.exe access (<a href="http://www.snort.org/search/sid/1165?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1006">1999-1006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/879">879</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10877">10877</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1209</td><td class="ruletablebody" valign="top">WEB-MISC .nsconfig access (<a href="http://www.snort.org/search/sid/1209?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.osvdb.org/5709">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1250</td><td class="ruletablebody" valign="top">WEB-MISC Cisco IOS HTTP configuration attempt (<a href="http://www.snort.org/search/sid/1250?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0537">2001-0537</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2936">2936</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10700">10700</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1499</td><td class="ruletablebody" valign="top">WEB-MISC SiteScope Service access (<a href="http://www.snort.org/search/sid/1499?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10778">10778</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1544</td><td class="ruletablebody" valign="top">WEB-MISC Cisco Catalyst command execution attempt (<a href="http://www.snort.org/search/sid/1544?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0945">2000-0945</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1846">1846</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10545">10545</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1545</td><td class="ruletablebody" valign="top">DOS Cisco attempt (<a href="http://www.snort.org/search/sid/1545?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1614</td><td class="ruletablebody" valign="top">WEB-MISC Novell Groupwise gwweb.exe attempt (<a href="http://www.snort.org/search/sid/1614?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1006">1999-1006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/879">879</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10877">10877</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1814</td><td class="ruletablebody" valign="top">WEB-MISC CISCO VoIP DOS ATTEMPT (<a href="http://www.snort.org/search/sid/1814?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0882">2002-0882</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4794">4794</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11013">11013</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1858</td><td class="ruletablebody" valign="top">WEB-MISC CISCO PIX Firewall Manager directory traversal attempt (<a href="http://www.snort.org/search/sid/1858?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0158">1999-0158</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/691">691</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10819">10819</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3467</td><td class="ruletablebody" valign="top">WEB-MISC CISCO VoIP Portinformation access (<a href="http://www.snort.org/search/sid/3467?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0882">2002-0882</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4798">4798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3527</td><td class="ruletablebody" valign="top">EXPLOIT Solaris LPD overflow attempt (<a href="http://www.snort.org/search/sid/3527?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3274">3274</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4127</td><td class="ruletablebody" valign="top">EXPLOIT Novell eDirectory Server iMonitor overflow attempt (<a href="http://www.snort.org/search/sid/4127?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2551">2005-2551</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14548">14548</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4129</td><td class="ruletablebody" valign="top">EXPLOIT Novell ZenWorks Remote Management Agent large login packet DoS attempt (<a href="http://www.snort.org/search/sid/4129?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1543">2005-1543</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13678">13678</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4130</td><td class="ruletablebody" valign="top">EXPLOIT Novell ZenWorks Remote Management Agent buffer overflow Attempt (<a href="http://www.snort.org/search/sid/4130?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1543">2005-1543</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13678">13678</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4144</td><td class="ruletablebody" valign="top">EXPLOIT lpd Solaris control file upload attempt (<a href="http://www.snort.org/search/sid/4144?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6414</td><td class="ruletablebody" valign="top">WEB-MISC Novell GroupWise Messenger Accept-Language header buffer overflow attempt (<a href="http://www.snort.org/search/sid/6414?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0992">2006-0992</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17503">17503</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6507</td><td class="ruletablebody" valign="top">WEB-MISC novell edirectory imonitor overflow attempt (<a href="http://www.snort.org/search/sid/6507?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2496">2006-2496</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18026">18026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8081</td><td class="ruletablebody" valign="top">SCAN UPnP service discover attempt (<a href="http://www.snort.org/search/sid/8081?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">network-scan</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8085</td><td class="ruletablebody" valign="top">WEB-MISC HP Openview NNM connectedNodes.ovpl port 3443 Unix command execution attempt (<a href="http://www.snort.org/search/sid/8085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2773">2005-2773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14662">14662</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8086</td><td class="ruletablebody" valign="top">WEB-MISC HP Openview NNM cdpView.ovpl port 3443 Unix command execution attempt (<a href="http://www.snort.org/search/sid/8086?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2773">2005-2773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14662">14662</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8087</td><td class="ruletablebody" valign="top">WEB-MISC HP Openview NNM freeIPaddrs.ovpl port 3443 Unix command execution attempt (<a href="http://www.snort.org/search/sid/8087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2773">2005-2773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14662">14662</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8088</td><td class="ruletablebody" valign="top">WEB-MISC HP Openview NNM connectedNodes.ovpl Unix command execution attempt (<a href="http://www.snort.org/search/sid/8088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2773">2005-2773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14662">14662</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8089</td><td class="ruletablebody" valign="top">WEB-MISC HP Openview NNM cdpView.ovpl Unix command execution attempt (<a href="http://www.snort.org/search/sid/8089?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2773">2005-2773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14662">14662</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8711</td><td class="ruletablebody" valign="top">WEB-MISC Novell eDirectory HTTP redirection buffer overflow attempt (<a href="http://www.snort.org/search/sid/8711?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5478">2006-5478</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20655">20655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9633</td><td class="ruletablebody" valign="top">EXPLOIT Computer Associates Product Discovery Service type 9B remote buffer overflow attempt TCP (<a href="http://www.snort.org/search/sid/9633?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6379">2006-6379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21502">21502</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9634</td><td class="ruletablebody" valign="top">EXPLOIT Computer Associates Product Discovery Service type 9C remote buffer overflow attempt TCP (<a href="http://www.snort.org/search/sid/9634?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6379">2006-6379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21502">21502</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9636</td><td class="ruletablebody" valign="top">EXPLOIT Computer Associates Product Discovery Service type 9C remote buffer overflow attempt UDP (<a href="http://www.snort.org/search/sid/9636?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6379">2006-6379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21502">21502</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10418</td><td class="ruletablebody" valign="top">EXPLOIT lpd Solaris unlink file attempt (<a href="http://www.snort.org/search/sid/10418?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4797">2005-4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14510">14510</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11670</td><td class="ruletablebody" valign="top">EXPLOIT Symantec Discovery logging buffer overflow (<a href="http://www.snort.org/search/sid/11670?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1173">2007-1173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24002">24002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12080</td><td class="ruletablebody" valign="top">EXPLOIT Sun Solaris printd arbitrary file deletion vulnerability (<a href="http://www.snort.org/search/sid/12080?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4797">2005-4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14510">14510</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12223</td><td class="ruletablebody" valign="top">EXPLOIT Novell WebAdmin long user name (<a href="http://www.snort.org/search/sid/12223?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1350">2007-1350</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22857">22857</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12299</td><td class="ruletablebody" valign="top">EXPLOIT Cisco NHRP incorrect packet size (<a href="http://www.snort.org/search/sid/12299?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4286">2007-4286</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25238">25238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12300</td><td class="ruletablebody" valign="top">EXPLOIT Cisco NHRP incorrect packet size (<a href="http://www.snort.org/search/sid/12300?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4286">2007-4286</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25238">25238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13510</td><td class="ruletablebody" valign="top">EXPLOIT Novell eDirectory EventsRequest heap overflow attempt (<a href="http://www.snort.org/search/sid/13510?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4509">2006-4509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20663">20663</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=427">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13511</td><td class="ruletablebody" valign="top">EXPLOIT Novell eDirectory EventsRequest invalid event count exploit attempt (<a href="http://www.snort.org/search/sid/13511?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4510">2006-4510</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20663">20663</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=428">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13620</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CA Brightstor discovery service alternate buffer overflow attempt (<a href="http://www.snort.org/search/sid/13620?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0260">2005-0260</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14990</td><td class="ruletablebody" valign="top">WEB-MISC Novell eDirectory SOAP Accept Charset header overflow attempt (<a href="http://www.snort.org/search/sid/14990?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4479">2008-4479</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15960</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Novell eDirectory MS-DOS device name DoS attempt (<a href="http://www.snort.org/search/sid/15960?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1729">2005-1729</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15973</td><td class="ruletablebody" valign="top">EXPLOIT Novell eDirectory LDAP null search parameter buffer overflow attempt (<a href="http://www.snort.org/search/sid/15973?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1809">2008-1809</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30175">30175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.novell.com/support/viewContent.do?externalId=3843876">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16014</td><td class="ruletablebody" valign="top">DOS Novell eDirectory HTTP headers denial of service attempt (<a href="http://www.snort.org/search/sid/16014?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0927">2008-0927</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/28757">28757</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16950</td><td class="ruletablebody" valign="top">PHISHING-SPAM tabscotti71i.ru known spam email attempt (<a href="http://www.snort.org/search/sid/16950?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17027</td><td class="ruletablebody" valign="top">PHISHING-SPAM scoreenjoy.ru known spam email attempt (<a href="http://www.snort.org/search/sid/17027?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17287</td><td class="ruletablebody" valign="top">WEB-MISC Cisco IOS HTTP service HTML injection attempt (<a href="http://www.snort.org/search/sid/17287?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3921">2005-3921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15602">15602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17353</td><td class="ruletablebody" valign="top">EXPLOIT Sun Solaris printd Daemon Arbitrary File Deletion attempt (<a href="http://www.snort.org/search/sid/17353?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4797">2005-4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14510">14510</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17433</td><td class="ruletablebody" valign="top">EXPLOIT Sun Solaris DHCP Client Arbitrary Code Execution attempt (<a href="http://www.snort.org/search/sid/17433?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2870">2005-2870</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14687">14687</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17504</td><td class="ruletablebody" valign="top">EXPLOIT Novell ZENworks Asset Management buffer overflow attempt (<a href="http://www.snort.org/search/sid/17504?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6299">2006-6299</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21395">21395</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17713</td><td class="ruletablebody" valign="top">EXPLOIT Novell NetMail NMAP STOR buffer overflow attempt (<a href="http://www.snort.org/search/sid/17713?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6424">2006-6424</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21725">21725</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="200"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="210"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="211"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / Common</div></p><span class="group"># of attack rules in this group: 22</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13258</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 6 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13258?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13259</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 6 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13259?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13260</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 6 ActiveX function call access (<a href="http://www.snort.org/search/sid/13260?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13261</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 6 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13261?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13262</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 7 ActiveX clsid access (<a href="http://www.snort.org/search/sid/13262?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13263</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 7 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13263?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13264</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 7 ActiveX function call access (<a href="http://www.snort.org/search/sid/13264?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13265</td><td class="ruletablebody" valign="top">WEB-ACTIVEX IBM Lotus Domino Web Access 7 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13265?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15956</td><td class="ruletablebody" valign="top">ORACLE http Server mod_access restriction bypass attempt (<a href="http://www.snort.org/search/sid/15956?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1383">2005-1383</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13418">13418</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16017</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS IBM Lotus Domino LDAP server invalid DN message buffer overflow attempt (<a href="http://www.snort.org/search/sid/16017?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1739">2007-1739</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23174">23174</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16052</td><td class="ruletablebody" valign="top">WEB-CLIENT Novell iManager Tomcat http post handling DoS attempt (<a href="http://www.snort.org/search/sid/16052?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4517">2006-4517</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20841">20841</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16060</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS IBM Lotus Domino LDAP server memory exception attempt (<a href="http://www.snort.org/search/sid/16060?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0580">2006-0580</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16523">16523</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16216</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS IBM Tivoli Provisioning Manager for OS deployment HTTP server buffer attempt (<a href="http://www.snort.org/search/sid/16216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0401">2008-0401</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27387">27387</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16671</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS IBM Lotus Domino Web Access ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/16671?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17391</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat UNIX platform directory traversal (<a href="http://www.snort.org/search/sid/17391?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0450">2007-0450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22960">22960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tomcat.apache.org/tomcat-6.0-doc/changelog.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17466</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS IBM Lotus Domino Web Access 7 ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/17466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26972">26972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17498</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat UNIX platform directory traversal (<a href="http://www.snort.org/search/sid/17498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0450">2007-0450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22960">22960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tomcat.apache.org/tomcat-6.0-doc/changelog.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17499</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat UNIX platform directory traversal (<a href="http://www.snort.org/search/sid/17499?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0450">2007-0450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22960">22960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tomcat.apache.org/tomcat-6.0-doc/changelog.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17500</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat UNIX platform directory traversal (<a href="http://www.snort.org/search/sid/17500?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0450">2007-0450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22960">22960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tomcat.apache.org/tomcat-6.0-doc/changelog.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17501</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat UNIX platform directory traversal (<a href="http://www.snort.org/search/sid/17501?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0450">2007-0450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22960">22960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tomcat.apache.org/tomcat-6.0-doc/changelog.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17502</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat UNIX platform directory traversal (<a href="http://www.snort.org/search/sid/17502?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0450">2007-0450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22960">22960</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tomcat.apache.org/tomcat-6.0-doc/changelog.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17545</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Lotus Domino Web Access ActiveX Controls buffer overflow attempt (<a href="http://www.snort.org/search/sid/17545?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0919">2010-0919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/38457">38457</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www-01.ibm.com/support/docview.wss?uid=swg21421808">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 70</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">903</td><td class="ruletablebody" valign="top">WEB-COLDFUSION cfcache.map access (<a href="http://www.snort.org/search/sid/903?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0057">2000-0057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/917">917</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">904</td><td class="ruletablebody" valign="top">WEB-COLDFUSION exampleapp application.cfm (<a href="http://www.snort.org/search/sid/904?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0535">2001-0535</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1021">1021</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">905</td><td class="ruletablebody" valign="top">WEB-COLDFUSION application.cfm access (<a href="http://www.snort.org/search/sid/905?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0535">2001-0535</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1021">1021</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">906</td><td class="ruletablebody" valign="top">WEB-COLDFUSION getfile.cfm access (<a href="http://www.snort.org/search/sid/906?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0535">2001-0535</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/229">229</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">907</td><td class="ruletablebody" valign="top">WEB-COLDFUSION addcontent.cfm access (<a href="http://www.snort.org/search/sid/907?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0535">2001-0535</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">908</td><td class="ruletablebody" valign="top">WEB-COLDFUSION administrator access (<a href="http://www.snort.org/search/sid/908?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0538">2000-0538</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1314">1314</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10581">10581</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">909</td><td class="ruletablebody" valign="top">WEB-COLDFUSION datasource username attempt (<a href="http://www.snort.org/search/sid/909?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">910</td><td class="ruletablebody" valign="top">WEB-COLDFUSION fileexists.cfm access (<a href="http://www.snort.org/search/sid/910?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">911</td><td class="ruletablebody" valign="top">WEB-COLDFUSION exprcalc access (<a href="http://www.snort.org/search/sid/911?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">912</td><td class="ruletablebody" valign="top">WEB-COLDFUSION parks access (<a href="http://www.snort.org/search/sid/912?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">913</td><td class="ruletablebody" valign="top">WEB-COLDFUSION cfappman access (<a href="http://www.snort.org/search/sid/913?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">914</td><td class="ruletablebody" valign="top">WEB-COLDFUSION beaninfo access (<a href="http://www.snort.org/search/sid/914?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">915</td><td class="ruletablebody" valign="top">WEB-COLDFUSION evaluate.cfm access (<a href="http://www.snort.org/search/sid/915?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">916</td><td class="ruletablebody" valign="top">WEB-COLDFUSION getodbcdsn access (<a href="http://www.snort.org/search/sid/916?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">917</td><td class="ruletablebody" valign="top">WEB-COLDFUSION db connections flush attempt (<a href="http://www.snort.org/search/sid/917?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">918</td><td class="ruletablebody" valign="top">WEB-COLDFUSION expeval access (<a href="http://www.snort.org/search/sid/918?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">919</td><td class="ruletablebody" valign="top">WEB-COLDFUSION datasource passwordattempt (<a href="http://www.snort.org/search/sid/919?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">920</td><td class="ruletablebody" valign="top">WEB-COLDFUSION datasource attempt (<a href="http://www.snort.org/search/sid/920?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">921</td><td class="ruletablebody" valign="top">WEB-COLDFUSION admin encrypt attempt (<a href="http://www.snort.org/search/sid/921?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">922</td><td class="ruletablebody" valign="top">WEB-COLDFUSION displayfile access (<a href="http://www.snort.org/search/sid/922?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">923</td><td class="ruletablebody" valign="top">WEB-COLDFUSION getodbcin attempt (<a href="http://www.snort.org/search/sid/923?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">924</td><td class="ruletablebody" valign="top">WEB-COLDFUSION admin decrypt attempt (<a href="http://www.snort.org/search/sid/924?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">925</td><td class="ruletablebody" valign="top">WEB-COLDFUSION mainframeset access (<a href="http://www.snort.org/search/sid/925?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">926</td><td class="ruletablebody" valign="top">WEB-COLDFUSION set odbc ini attempt (<a href="http://www.snort.org/search/sid/926?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">927</td><td class="ruletablebody" valign="top">WEB-COLDFUSION settings refresh attempt (<a href="http://www.snort.org/search/sid/927?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">928</td><td class="ruletablebody" valign="top">WEB-COLDFUSION exampleapp access (<a href="http://www.snort.org/search/sid/928?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0535">2001-0535</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">929</td><td class="ruletablebody" valign="top">WEB-COLDFUSION CFUSION_VERIFYMAIL access (<a href="http://www.snort.org/search/sid/929?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">930</td><td class="ruletablebody" valign="top">WEB-COLDFUSION snippets attempt (<a href="http://www.snort.org/search/sid/930?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">931</td><td class="ruletablebody" valign="top">WEB-COLDFUSION cfmlsyntaxcheck.cfm access (<a href="http://www.snort.org/search/sid/931?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">932</td><td class="ruletablebody" valign="top">WEB-COLDFUSION application.cfm access (<a href="http://www.snort.org/search/sid/932?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0189">2000-0189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">933</td><td class="ruletablebody" valign="top">WEB-COLDFUSION onrequestend.cfm access (<a href="http://www.snort.org/search/sid/933?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0189">2000-0189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">935</td><td class="ruletablebody" valign="top">WEB-COLDFUSION startstop DOS access (<a href="http://www.snort.org/search/sid/935?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0756">1999-0756</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/247">247</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">936</td><td class="ruletablebody" valign="top">WEB-COLDFUSION gettempdirectory.cfm access  (<a href="http://www.snort.org/search/sid/936?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1056</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat view source attempt (<a href="http://www.snort.org/search/sid/1056?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0590">2001-0590</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2527">2527</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1072</td><td class="ruletablebody" valign="top">WEB-MISC Lotus Domino directory traversal (<a href="http://www.snort.org/search/sid/1072?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0009">2001-0009</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2173">2173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12248">12248</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1108</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat server snoop access (<a href="http://www.snort.org/search/sid/1108?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0760">2000-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1532">1532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10478">10478</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1111</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat server exploit access (<a href="http://www.snort.org/search/sid/1111?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0672">2000-0672</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1548">1548</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10477">10477</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1115</td><td class="ruletablebody" valign="top">WEB-MISC ICQ webserver DOS (<a href="http://www.snort.org/search/sid/1115?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0474">1999-0474</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securiteam.com/exploits/2ZUQ1QAQOG.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1150</td><td class="ruletablebody" valign="top">WEB-MISC Domino catalog.nsf access (<a href="http://www.snort.org/search/sid/1150?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1151</td><td class="ruletablebody" valign="top">WEB-MISC Domino domcfg.nsf access (<a href="http://www.snort.org/search/sid/1151?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1152</td><td class="ruletablebody" valign="top">WEB-MISC Domino domlog.nsf access (<a href="http://www.snort.org/search/sid/1152?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1153</td><td class="ruletablebody" valign="top">WEB-MISC Domino log.nsf access (<a href="http://www.snort.org/search/sid/1153?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1154</td><td class="ruletablebody" valign="top">WEB-MISC Domino names.nsf access (<a href="http://www.snort.org/search/sid/1154?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1540</td><td class="ruletablebody" valign="top">WEB-COLDFUSION ?Mode=debug attempt (<a href="http://www.snort.org/search/sid/1540?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10797">10797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1575</td><td class="ruletablebody" valign="top">WEB-MISC Domino mab.nsf access (<a href="http://www.snort.org/search/sid/1575?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4022">4022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10953">10953</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1576</td><td class="ruletablebody" valign="top">WEB-MISC Domino cersvr.nsf access (<a href="http://www.snort.org/search/sid/1576?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1577</td><td class="ruletablebody" valign="top">WEB-MISC Domino setup.nsf access (<a href="http://www.snort.org/search/sid/1577?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1578</td><td class="ruletablebody" valign="top">WEB-MISC Domino statrep.nsf access (<a href="http://www.snort.org/search/sid/1578?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1579</td><td class="ruletablebody" valign="top">WEB-MISC Domino webadmin.nsf access (<a href="http://www.snort.org/search/sid/1579?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9901">9901</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1580</td><td class="ruletablebody" valign="top">WEB-MISC Domino events4.nsf access (<a href="http://www.snort.org/search/sid/1580?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1581</td><td class="ruletablebody" valign="top">WEB-MISC Domino ntsync4.nsf access (<a href="http://www.snort.org/search/sid/1581?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1582</td><td class="ruletablebody" valign="top">WEB-MISC Domino collect4.nsf access (<a href="http://www.snort.org/search/sid/1582?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1583</td><td class="ruletablebody" valign="top">WEB-MISC Domino mailw46.nsf access (<a href="http://www.snort.org/search/sid/1583?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1584</td><td class="ruletablebody" valign="top">WEB-MISC Domino bookmark.nsf access (<a href="http://www.snort.org/search/sid/1584?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1585</td><td class="ruletablebody" valign="top">WEB-MISC Domino agentrunner.nsf access (<a href="http://www.snort.org/search/sid/1585?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1586</td><td class="ruletablebody" valign="top">WEB-MISC Domino mail.box access (<a href="http://www.snort.org/search/sid/1586?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/881">881</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10629">10629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1659</td><td class="ruletablebody" valign="top">WEB-COLDFUSION sendmail.cfm access (<a href="http://www.snort.org/search/sid/1659?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0535">2001-0535</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1827</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat servlet mapping cross site scripting attempt (<a href="http://www.snort.org/search/sid/1827?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0682">2002-0682</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5193">5193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11041">11041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1829</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat TroubleShooter servlet access (<a href="http://www.snort.org/search/sid/1829?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4575">4575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11046">11046</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1830</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat SnoopServlet servlet access (<a href="http://www.snort.org/search/sid/1830?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4575">4575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11046">11046</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2061</td><td class="ruletablebody" valign="top">WEB-MISC Tomcat null byte directory listing attempt (<a href="http://www.snort.org/search/sid/2061?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0042">2003-0042</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6721">6721</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11438">11438</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8485</td><td class="ruletablebody" valign="top">WEB-COLDFUSION CFNEWINTERNALADMINSECURITY access (<a href="http://www.snort.org/search/sid/8485?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8486</td><td class="ruletablebody" valign="top">WEB-COLDFUSION CFNEWINTERNALREGISTRY access (<a href="http://www.snort.org/search/sid/8486?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8487</td><td class="ruletablebody" valign="top">WEB-COLDFUSION CFADMIN_REGISTRY_SET access (<a href="http://www.snort.org/search/sid/8487?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8488</td><td class="ruletablebody" valign="top">WEB-COLDFUSION CFADMIN_REGISTRY_GET access (<a href="http://www.snort.org/search/sid/8488?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8489</td><td class="ruletablebody" valign="top">WEB-COLDFUSION CFADMIN_REGISTRY_DELETE access (<a href="http://www.snort.org/search/sid/8489?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8490</td><td class="ruletablebody" valign="top">WEB-COLDFUSION viewexample.cfm access (<a href="http://www.snort.org/search/sid/8490?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8491</td><td class="ruletablebody" valign="top">WEB-COLDFUSION eval.cfm access (<a href="http://www.snort.org/search/sid/8491?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8492</td><td class="ruletablebody" valign="top">WEB-COLDFUSION openfile.cfm access (<a href="http://www.snort.org/search/sid/8492?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0760">1999-0760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8493</td><td class="ruletablebody" valign="top">WEB-COLDFUSION sourcewindow.cfm access (<a href="http://www.snort.org/search/sid/8493?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0922">1999-0922</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/550">550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="212"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / Apache</div></p><span class="group"># of attack rules in this group: 10</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14771</td><td class="ruletablebody" valign="top">WEB-MISC BEA WebLogic Apache Oracle connector Transfer-Encoding buffer overflow (<a href="http://www.snort.org/search/sid/14771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4008">2008-4008</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.bea.com/application_content/product_portlets/securityadvisories/2806.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16198</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache mod_auth_pgsql module logging facility format string exploit attempt (<a href="http://www.snort.org/search/sid/16198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3656">2005-3656</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16153">16153</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16479</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache mod_isapi dangling pointer exploit attempt - public shell code (<a href="http://www.snort.org/search/sid/16479?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0425">2010-0425</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/38494">38494</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16480</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache mod_isapi dangling pointer exploit attempt (<a href="http://www.snort.org/search/sid/16480?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0425">2010-0425</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/38494">38494</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16611</td><td class="ruletablebody" valign="top">WEB-MISC Apache 413 error HTTP request method cross-site scripting attack (<a href="http://www.snort.org/search/sid/16611?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6203">2007-6203</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26663">26663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17156</td><td class="ruletablebody" valign="top">EXPLOIT HP Performance Manager Apache Tomcat policy bypass attempt (<a href="http://www.snort.org/search/sid/17156?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3548">2009-3548</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36954">36954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17387</td><td class="ruletablebody" valign="top">WEB-MISC Apache Tomcat allowLinking URIencoding directory traversal attempt (<a href="http://www.snort.org/search/sid/17387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2938">2008-2938</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30633">30633</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17533</td><td class="ruletablebody" valign="top">WEB-MISC Apache Struts Information Disclosure Attempt (<a href="http://www.snort.org/search/sid/17533?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-6505">2008-6505</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32104">32104</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17656</td><td class="ruletablebody" valign="top">WEB-MISC Apache HTTP server mod_rewrite module LDAP scheme handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/17656?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3747">2006-3747</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18096</td><td class="ruletablebody" valign="top">WEB-MISC Apache Tomcat username enumeration attempt (<a href="http://www.snort.org/search/sid/18096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0580">2009-0580</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35196">35196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 18</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1110</td><td class="ruletablebody" valign="top">WEB-MISC apache source.asp file access (<a href="http://www.snort.org/search/sid/1110?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0628">2000-0628</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1457">1457</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10480">10480</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1519</td><td class="ruletablebody" valign="top">WEB-MISC apache ?M=D directory list attempt (<a href="http://www.snort.org/search/sid/1519?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0731">2001-0731</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3009">3009</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10704">10704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1808</td><td class="ruletablebody" valign="top">WEB-MISC apache chunked encoding memory corruption exploit attempt (<a href="http://www.snort.org/search/sid/1808?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0392">2002-0392</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5033">5033</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1809</td><td class="ruletablebody" valign="top">WEB-MISC Apache Chunked-Encoding worm attempt (<a href="http://www.snort.org/search/sid/1809?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0392">2002-0392</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5033">5033</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10932">10932</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11272</td><td class="ruletablebody" valign="top">WEB-MISC Apache newline exploit attempt (<a href="http://www.snort.org/search/sid/11272?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0132">2003-0132</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7254">7254</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11273</td><td class="ruletablebody" valign="top">WEB-MISC Apache header parsing space saturation denial of service attempt (<a href="http://www.snort.org/search/sid/11273?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0942">2004-0942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11679</td><td class="ruletablebody" valign="top">WEB-MISC Apache mod_rewrite buffer overflow attempt (<a href="http://www.snort.org/search/sid/11679?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3747">2006-3747</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12465</td><td class="ruletablebody" valign="top">EXPLOIT Apache APR memory corruption attempt (<a href="http://www.snort.org/search/sid/12465?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0245">2003-0245</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7723">7723</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12591</td><td class="ruletablebody" valign="top">DOS Apache mod_cache denial of service attempt (<a href="http://www.snort.org/search/sid/12591?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1863">2007-1863</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24649">24649</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12711</td><td class="ruletablebody" valign="top">WEB-MISC Apache Tomcat WebDAV system tag remote file disclosure attempt (<a href="http://www.snort.org/search/sid/12711?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5461">2007-5461</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26070">26070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://issues.apache.org/jira/browse/GERONIMO-3549">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13302</td><td class="ruletablebody" valign="top">WEB-CLIENT Apache mod_imagemap cross site scripting attempt (<a href="http://www.snort.org/search/sid/13302?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5000">2007-5000</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26838">26838</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15511</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Oracle WebLogic Apache Connector buffer overflow attempt (<a href="http://www.snort.org/search/sid/15511?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3257">2008-3257</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30273">30273</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.oracle.com/technology/deploy/security/alerts/alert_cve2008-3257.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15578</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Slowloris http DoS tool (<a href="http://www.snort.org/search/sid/15578?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0086">2007-0086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15980</td><td class="ruletablebody" valign="top">WEB-MISC Apache mod_ssl hook functions format string attempt (<a href="http://www.snort.org/search/sid/15980?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0700">2004-0700</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10736">10736</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16021</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache http Server mod_tcl format string attempt (<a href="http://www.snort.org/search/sid/16021?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4154">2006-4154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20527">20527</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17107</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache Tomcat JK Web Server Connector long URL stack overflow attempt - 1 (<a href="http://www.snort.org/search/sid/17107?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0774">2007-0774</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22791">22791</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17108</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache Tomcat JK Web Server Connector long URL stack overflow attempt - 2 (<a href="http://www.snort.org/search/sid/17108?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0774">2007-0774</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22791">22791</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17354</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apache Byte-Range Filter denial of service attempt (<a href="http://www.snort.org/search/sid/17354?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2728">2005-2728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14660">14660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="213"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / Microsoft IIS</div></p><span class="group"># of attack rules in this group: 17</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1002</td><td class="ruletablebody" valign="top">WEB-IIS cmd.exe access (<a href="http://www.snort.org/search/sid/1002?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1661</td><td class="ruletablebody" valign="top">WEB-IIS cmd32.exe access (<a href="http://www.snort.org/search/sid/1661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2091</td><td class="ruletablebody" valign="top">WEB-IIS WEBDAV nessus safe scan attempt (<a href="http://www.snort.org/search/sid/2091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0109">2003-0109</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7116">7116</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11413">11413</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms03-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15470</td><td class="ruletablebody" valign="top">WEB-MISC IIS ASP/ASP.NET potentially malicious file upload attempt (<a href="http://www.snort.org/search/sid/15470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0080">2009-0080</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15974</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft IIS ASP handling buffer overflow (<a href="http://www.snort.org/search/sid/15974?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0075">2008-0075</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27676">27676</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16147</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft IIS malformed URL .dll denial of service attempt (<a href="http://www.snort.org/search/sid/16147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4360">2005-4360</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15921">15921</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16312</td><td class="ruletablebody" valign="top">WEB-IIS ADFS custom header arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/16312?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2509">2009-2509</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16356</td><td class="ruletablebody" valign="top">WEB-IIS multiple extension code execution attempt (<a href="http://www.snort.org/search/sid/16356?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4444">2009-4444</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17103</td><td class="ruletablebody" valign="top">WEB-IIS IIS 5.1 alternate data stream authentication bypass attempt (<a href="http://www.snort.org/search/sid/17103?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2731">2010-2731</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17254</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft IIS stack exhaustion DoS attempt (<a href="http://www.snort.org/search/sid/17254?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1899">2010-1899</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17255</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft IIS FastCGI heap overflow attempt (<a href="http://www.snort.org/search/sid/17255?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2730">2010-2730</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17431</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft IIS SChannel improper certificate verification (<a href="http://www.snort.org/search/sid/17431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0085">2009-0085</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17525</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft IIS 5.0 WebDav Request Directory Security Bypass (<a href="http://www.snort.org/search/sid/17525?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1122">2009-1122</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35232">35232</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17564</td><td class="ruletablebody" valign="top">WEB-IIS WebDAV Request Directory Security Bypass attempt (<a href="http://www.snort.org/search/sid/17564?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1535">2009-1535</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34993">34993</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17652</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft IIS source code disclosure attempt (<a href="http://www.snort.org/search/sid/17652?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2678">2005-2678</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/16548">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17653</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft IIS source code disclosure attempt (<a href="http://www.snort.org/search/sid/17653?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2678">2005-2678</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/16548">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18243</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows 7 IIS7.5 FTPSVC buffer overflow attempt (<a href="http://www.snort.org/search/sid/18243?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/45542">45542</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 138</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">971</td><td class="ruletablebody" valign="top">WEB-IIS ISAPI .printer access (<a href="http://www.snort.org/search/sid/971?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0241">2001-0241</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2674">2674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10661">10661</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">973</td><td class="ruletablebody" valign="top">WEB-IIS *.idc attempt (<a href="http://www.snort.org/search/sid/973?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0661">2000-0661</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1448">1448</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">974</td><td class="ruletablebody" valign="top">WEB-IIS Directory transversal attempt (<a href="http://www.snort.org/search/sid/974?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0229">1999-0229</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2218">2218</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">975</td><td class="ruletablebody" valign="top">WEB-IIS Alternate Data streams ASP file access attempt (<a href="http://www.snort.org/search/sid/975?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0278">1999-0278</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/149">149</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10362">10362</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.microsoft.com/default.aspx?scid=kb\;EN-US\;q188806">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">977</td><td class="ruletablebody" valign="top">WEB-IIS .cnf access (<a href="http://www.snort.org/search/sid/977?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1717">2002-1717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4078">4078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10575">10575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">978</td><td class="ruletablebody" valign="top">WEB-IIS ASP contents view (<a href="http://www.snort.org/search/sid/978?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0302">2000-0302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1084">1084</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10356">10356</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">979</td><td class="ruletablebody" valign="top">WEB-IIS ASP contents view (<a href="http://www.snort.org/search/sid/979?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0942">2000-0942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1861">1861</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">980</td><td class="ruletablebody" valign="top">WEB-IIS CGImail.exe access (<a href="http://www.snort.org/search/sid/980?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0726">2000-0726</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1623">1623</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11721">11721</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">984</td><td class="ruletablebody" valign="top">WEB-IIS JET VBA access (<a href="http://www.snort.org/search/sid/984?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0874">1999-0874</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/307">307</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10116">10116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">985</td><td class="ruletablebody" valign="top">WEB-IIS JET VBA access (<a href="http://www.snort.org/search/sid/985?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0874">1999-0874</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/286">286</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">986</td><td class="ruletablebody" valign="top">WEB-IIS MSProxy access (<a href="http://www.snort.org/search/sid/986?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://support.microsoft.com/?kbid=331066">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">987</td><td class="ruletablebody" valign="top">WEB-IIS .htr access (<a href="http://www.snort.org/search/sid/987?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0630">2000-0630</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1488">1488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10680">10680</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">991</td><td class="ruletablebody" valign="top">WEB-IIS achg.htr access (<a href="http://www.snort.org/search/sid/991?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0407">1999-0407</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2110">2110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">992</td><td class="ruletablebody" valign="top">WEB-IIS adctest.asp access (<a href="http://www.snort.org/search/sid/992?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">993</td><td class="ruletablebody" valign="top">WEB-IIS iisadmin access (<a href="http://www.snort.org/search/sid/993?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1538">1999-1538</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/189">189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">994</td><td class="ruletablebody" valign="top">WEB-IIS /scripts/iisadmin/default.htm access (<a href="http://www.snort.org/search/sid/994?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">995</td><td class="ruletablebody" valign="top">WEB-IIS ism.dll access (<a href="http://www.snort.org/search/sid/995?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0630">2000-0630</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/189">189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">996</td><td class="ruletablebody" valign="top">WEB-IIS anot.htr access (<a href="http://www.snort.org/search/sid/996?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0407">1999-0407</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2110">2110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">997</td><td class="ruletablebody" valign="top">WEB-IIS asp-dot attempt (<a href="http://www.snort.org/search/sid/997?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1814">1814</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10363">10363</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">998</td><td class="ruletablebody" valign="top">WEB-IIS asp-srch attempt (<a href="http://www.snort.org/search/sid/998?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">999</td><td class="ruletablebody" valign="top">WEB-IIS bdir access (<a href="http://www.snort.org/search/sid/999?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2280">2280</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1000</td><td class="ruletablebody" valign="top">WEB-IIS bdir.htr access (<a href="http://www.snort.org/search/sid/1000?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2280">2280</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10577">10577</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1003</td><td class="ruletablebody" valign="top">WEB-IIS cmd? access (<a href="http://www.snort.org/search/sid/1003?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1004</td><td class="ruletablebody" valign="top">WEB-IIS codebrowser Exair access (<a href="http://www.snort.org/search/sid/1004?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0815">1999-0815</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1005</td><td class="ruletablebody" valign="top">WEB-IIS codebrowser SDK access (<a href="http://www.snort.org/search/sid/1005?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0736">1999-0736</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/167">167</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1007</td><td class="ruletablebody" valign="top">WEB-IIS Form_JScript.asp access (<a href="http://www.snort.org/search/sid/1007?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1104">2000-1104</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1595">1595</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10572">10572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1008</td><td class="ruletablebody" valign="top">WEB-IIS del attempt (<a href="http://www.snort.org/search/sid/1008?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1009</td><td class="ruletablebody" valign="top">WEB-IIS directory listing (<a href="http://www.snort.org/search/sid/1009?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10573">10573</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1011</td><td class="ruletablebody" valign="top">WEB-IIS exec-src access (<a href="http://www.snort.org/search/sid/1011?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1012</td><td class="ruletablebody" valign="top">WEB-IIS fpcount attempt (<a href="http://www.snort.org/search/sid/1012?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1376">1999-1376</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2252">2252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1013</td><td class="ruletablebody" valign="top">WEB-IIS fpcount access (<a href="http://www.snort.org/search/sid/1013?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1376">1999-1376</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2252">2252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1015</td><td class="ruletablebody" valign="top">WEB-IIS getdrvs.exe access (<a href="http://www.snort.org/search/sid/1015?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1016</td><td class="ruletablebody" valign="top">WEB-IIS global.asa access (<a href="http://www.snort.org/search/sid/1016?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0778">2000-0778</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10991">10991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1017</td><td class="ruletablebody" valign="top">WEB-IIS idc-srch attempt (<a href="http://www.snort.org/search/sid/1017?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0874">1999-0874</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1018</td><td class="ruletablebody" valign="top">WEB-IIS iisadmpwd attempt (<a href="http://www.snort.org/search/sid/1018?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0407">1999-0407</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2110">2110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10371">10371</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1019</td><td class="ruletablebody" valign="top">WEB-IIS Malformed Hit-Highlighting Argument File Access Attempt (<a href="http://www.snort.org/search/sid/1019?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0097">2000-0097</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/950">950</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/archive/1/43762">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1020</td><td class="ruletablebody" valign="top">WEB-IIS isc$data attempt (<a href="http://www.snort.org/search/sid/1020?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0874">1999-0874</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/307">307</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10116">10116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1021</td><td class="ruletablebody" valign="top">WEB-IIS ism.dll attempt (<a href="http://www.snort.org/search/sid/1021?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0457">2000-0457</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1193">1193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10680">10680</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-031.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1022</td><td class="ruletablebody" valign="top">WEB-IIS jet vba access (<a href="http://www.snort.org/search/sid/1022?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0874">1999-0874</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/286">286</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-030.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1023</td><td class="ruletablebody" valign="top">WEB-IIS msadcs.dll access (<a href="http://www.snort.org/search/sid/1023?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1011">1999-1011</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/529">529</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10357">10357</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1024</td><td class="ruletablebody" valign="top">WEB-IIS newdsn.exe access (<a href="http://www.snort.org/search/sid/1024?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0191">1999-0191</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1818">1818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10360">10360</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1025</td><td class="ruletablebody" valign="top">WEB-IIS perl access (<a href="http://www.snort.org/search/sid/1025?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1026</td><td class="ruletablebody" valign="top">WEB-IIS perl-browse newline attempt (<a href="http://www.snort.org/search/sid/1026?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6833">6833</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1027</td><td class="ruletablebody" valign="top">WEB-IIS perl-browse space attempt (<a href="http://www.snort.org/search/sid/1027?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6833">6833</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1028</td><td class="ruletablebody" valign="top">WEB-IIS query.asp access (<a href="http://www.snort.org/search/sid/1028?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0449">1999-0449</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/193">193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1029</td><td class="ruletablebody" valign="top">WEB-IIS scripts-browse access (<a href="http://www.snort.org/search/sid/1029?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1030</td><td class="ruletablebody" valign="top">WEB-IIS search97.vts access (<a href="http://www.snort.org/search/sid/1030?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/162">162</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1031</td><td class="ruletablebody" valign="top">WEB-IIS /SiteServer/Publishing/viewcode.asp access (<a href="http://www.snort.org/search/sid/1031?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1032</td><td class="ruletablebody" valign="top">WEB-IIS showcode access (<a href="http://www.snort.org/search/sid/1032?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0737">1999-0737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1033</td><td class="ruletablebody" valign="top">WEB-IIS viewcode access (<a href="http://www.snort.org/search/sid/1033?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0737">1999-0737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1034</td><td class="ruletablebody" valign="top">WEB-IIS viewcode access (<a href="http://www.snort.org/search/sid/1034?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0737">1999-0737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1035</td><td class="ruletablebody" valign="top">WEB-IIS viewcode access (<a href="http://www.snort.org/search/sid/1035?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0737">1999-0737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1036</td><td class="ruletablebody" valign="top">WEB-IIS viewcode access (<a href="http://www.snort.org/search/sid/1036?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0737">1999-0737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms99-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1037</td><td class="ruletablebody" valign="top">WEB-IIS showcode.asp access (<a href="http://www.snort.org/search/sid/1037?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0736">1999-0736</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/167">167</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10007">10007</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS99-013.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1038</td><td class="ruletablebody" valign="top">WEB-IIS site server config access (<a href="http://www.snort.org/search/sid/1038?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1520">1999-1520</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/256">256</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1039</td><td class="ruletablebody" valign="top">WEB-IIS srch.htm access (<a href="http://www.snort.org/search/sid/1039?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1040</td><td class="ruletablebody" valign="top">WEB-IIS srchadm access (<a href="http://www.snort.org/search/sid/1040?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1041</td><td class="ruletablebody" valign="top">WEB-IIS uploadn.asp access (<a href="http://www.snort.org/search/sid/1041?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0360">1999-0360</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1811">1811</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1043</td><td class="ruletablebody" valign="top">WEB-IIS viewcode.asp access (<a href="http://www.snort.org/search/sid/1043?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0737">1999-0737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10576">10576</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1044</td><td class="ruletablebody" valign="top">WEB-IIS webhits access (<a href="http://www.snort.org/search/sid/1044?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0097">2000-0097</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/950">950</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1045</td><td class="ruletablebody" valign="top">WEB-IIS Unauthorized IP Access Attempt (<a href="http://www.snort.org/search/sid/1045?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1046</td><td class="ruletablebody" valign="top">WEB-IIS site/iisamples access (<a href="http://www.snort.org/search/sid/1046?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10370">10370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1075</td><td class="ruletablebody" valign="top">WEB-IIS postinfo.asp access (<a href="http://www.snort.org/search/sid/1075?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0360">1999-0360</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1811">1811</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1076</td><td class="ruletablebody" valign="top">WEB-IIS repost.asp access (<a href="http://www.snort.org/search/sid/1076?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10372">10372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1242</td><td class="ruletablebody" valign="top">WEB-IIS ISAPI .ida access (<a href="http://www.snort.org/search/sid/1242?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0071">2000-0071</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1065">1065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1243</td><td class="ruletablebody" valign="top">WEB-IIS ISAPI .ida attempt (<a href="http://www.snort.org/search/sid/1243?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0500">2001-0500</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1065">1065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1244</td><td class="ruletablebody" valign="top">WEB-IIS ISAPI .idq attempt (<a href="http://www.snort.org/search/sid/1244?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0500">2001-0500</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/968">968</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10115">10115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1245</td><td class="ruletablebody" valign="top">WEB-IIS ISAPI .idq access (<a href="http://www.snort.org/search/sid/1245?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0071">2000-0071</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1065">1065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1256</td><td class="ruletablebody" valign="top">WEB-IIS CodeRed v2 root.exe access (<a href="http://www.snort.org/search/sid/1256?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-19.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1283</td><td class="ruletablebody" valign="top">WEB-IIS outlook web dos (<a href="http://www.snort.org/search/sid/1283?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3223">3223</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1285</td><td class="ruletablebody" valign="top">WEB-IIS msdac access (<a href="http://www.snort.org/search/sid/1285?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1286</td><td class="ruletablebody" valign="top">WEB-IIS _mem_bin access (<a href="http://www.snort.org/search/sid/1286?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1380</td><td class="ruletablebody" valign="top">WEB-IIS Form_VBScript.asp access (<a href="http://www.snort.org/search/sid/1380?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1104">2000-1104</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1595">1595</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10572">10572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1400</td><td class="ruletablebody" valign="top">WEB-IIS /scripts/samples/ access (<a href="http://www.snort.org/search/sid/1400?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10370">10370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1401</td><td class="ruletablebody" valign="top">WEB-IIS /msadc/samples/ access (<a href="http://www.snort.org/search/sid/1401?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0736">1999-0736</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/167">167</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=1007">1007</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1402</td><td class="ruletablebody" valign="top">WEB-IIS iissamples access (<a href="http://www.snort.org/search/sid/1402?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1485</td><td class="ruletablebody" valign="top">WEB-IIS mkilog.exe access (<a href="http://www.snort.org/search/sid/1485?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10359">10359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.osvdb.org/274">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1486</td><td class="ruletablebody" valign="top">WEB-IIS ctss.idc access (<a href="http://www.snort.org/search/sid/1486?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10359">10359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1487</td><td class="ruletablebody" valign="top">WEB-IIS /iisadmpwd/aexp2.htr access (<a href="http://www.snort.org/search/sid/1487?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0421">2002-0421</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4236">4236</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10371">10371</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1567</td><td class="ruletablebody" valign="top">WEB-IIS /exchange/root.asp attempt (<a href="http://www.snort.org/search/sid/1567?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0660">2001-0660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3301">3301</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10781">10781</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1568</td><td class="ruletablebody" valign="top">WEB-IIS /exchange/root.asp access (<a href="http://www.snort.org/search/sid/1568?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0660">2001-0660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3301">3301</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10781">10781</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1595</td><td class="ruletablebody" valign="top">WEB-IIS htimage.exe access (<a href="http://www.snort.org/search/sid/1595?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0256">2000-0256</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/964">964</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10376">10376</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1618</td><td class="ruletablebody" valign="top">WEB-IIS .asp chunked Transfer-Encoding (<a href="http://www.snort.org/search/sid/1618?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0079">2002-0079</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4485">4485</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10932">10932</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1626</td><td class="ruletablebody" valign="top">WEB-IIS /StoreCSVS/InstantOrder.asmx request (<a href="http://www.snort.org/search/sid/1626?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1660</td><td class="ruletablebody" valign="top">WEB-IIS trace.axd access (<a href="http://www.snort.org/search/sid/1660?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10993">10993</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1725</td><td class="ruletablebody" valign="top">WEB-IIS +.htr code fragment attempt (<a href="http://www.snort.org/search/sid/1725?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0630">2000-0630</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1488">1488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10680">10680</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1726</td><td class="ruletablebody" valign="top">WEB-IIS doctodep.btr access (<a href="http://www.snort.org/search/sid/1726?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1750</td><td class="ruletablebody" valign="top">WEB-IIS users.xml access (<a href="http://www.snort.org/search/sid/1750?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1753</td><td class="ruletablebody" valign="top">WEB-IIS as_web.exe access (<a href="http://www.snort.org/search/sid/1753?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4670">4670</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1754</td><td class="ruletablebody" valign="top">WEB-IIS as_web4.exe access (<a href="http://www.snort.org/search/sid/1754?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4670">4670</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1756</td><td class="ruletablebody" valign="top">WEB-IIS NewsPro administration authentication attempt (<a href="http://www.snort.org/search/sid/1756?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1734">2002-1734</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4672">4672</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1772</td><td class="ruletablebody" valign="top">WEB-IIS pbserver access (<a href="http://www.snort.org/search/sid/1772?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1089">2000-1089</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1802</td><td class="ruletablebody" valign="top">WEB-IIS .asa HTTP header buffer overflow attempt (<a href="http://www.snort.org/search/sid/1802?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0150">2002-0150</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4476">4476</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10936">10936</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1803</td><td class="ruletablebody" valign="top">WEB-IIS .cer HTTP header buffer overflow attempt (<a href="http://www.snort.org/search/sid/1803?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0150">2002-0150</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4476">4476</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10936">10936</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1804</td><td class="ruletablebody" valign="top">WEB-IIS .cdx HTTP header buffer overflow attempt (<a href="http://www.snort.org/search/sid/1804?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0150">2002-0150</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4476">4476</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10936">10936</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1806</td><td class="ruletablebody" valign="top">WEB-IIS .htr chunked Transfer-Encoding (<a href="http://www.snort.org/search/sid/1806?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0364">2002-0364</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5003">5003</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11028">11028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1817</td><td class="ruletablebody" valign="top">WEB-IIS MS Site Server default login attempt (<a href="http://www.snort.org/search/sid/1817?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11018">11018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1818</td><td class="ruletablebody" valign="top">WEB-IIS MS Site Server admin attempt (<a href="http://www.snort.org/search/sid/1818?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11018">11018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1970</td><td class="ruletablebody" valign="top">WEB-IIS MDAC Content-Type overflow attempt (<a href="http://www.snort.org/search/sid/1970?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1142">2002-1142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6214">6214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11161">11161</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS98-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2090</td><td class="ruletablebody" valign="top">WEB-IIS WEBDAV exploit attempt (<a href="http://www.snort.org/search/sid/2090?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0109">2003-0109</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7716">7716</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11413">11413</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms03-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2117</td><td class="ruletablebody" valign="top">WEB-IIS Battleaxe Forum login.asp access (<a href="http://www.snort.org/search/sid/2117?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0215">2003-0215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7416">7416</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11548">11548</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2129</td><td class="ruletablebody" valign="top">WEB-IIS nsiislog.dll access (<a href="http://www.snort.org/search/sid/2129?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0349">2003-0349</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8035">8035</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11664">11664</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms03-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2130</td><td class="ruletablebody" valign="top">WEB-IIS IISProtect siteadmin.asp access (<a href="http://www.snort.org/search/sid/2130?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0377">2003-0377</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7675">7675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11662">11662</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2131</td><td class="ruletablebody" valign="top">WEB-IIS IISProtect access (<a href="http://www.snort.org/search/sid/2131?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11661">11661</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2132</td><td class="ruletablebody" valign="top">WEB-IIS Synchrologic Email Accelerator userid list access attempt (<a href="http://www.snort.org/search/sid/2132?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11657">11657</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2133</td><td class="ruletablebody" valign="top">WEB-IIS MS BizTalk server access (<a href="http://www.snort.org/search/sid/2133?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0118">2003-0118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7470">7470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11638">11638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS03-016.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2157</td><td class="ruletablebody" valign="top">WEB-IIS IISProtect globaladmin.asp access (<a href="http://www.snort.org/search/sid/2157?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11661">11661</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2247</td><td class="ruletablebody" valign="top">WEB-IIS UploadScript11.asp access (<a href="http://www.snort.org/search/sid/2247?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0938">2001-0938</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3608">3608</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11746">11746</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2248</td><td class="ruletablebody" valign="top">WEB-IIS DirectoryListing.asp access (<a href="http://www.snort.org/search/sid/2248?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0938">2001-0938</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2249</td><td class="ruletablebody" valign="top">WEB-IIS /pcadmin/login.asp access (<a href="http://www.snort.org/search/sid/2249?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8103">8103</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11785">11785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2321</td><td class="ruletablebody" valign="top">WEB-IIS foxweb.exe access (<a href="http://www.snort.org/search/sid/2321?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11939">11939</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2322</td><td class="ruletablebody" valign="top">WEB-IIS foxweb.dll access (<a href="http://www.snort.org/search/sid/2322?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11939">11939</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2324</td><td class="ruletablebody" valign="top">WEB-IIS VP-ASP shopsearch.asp access (<a href="http://www.snort.org/search/sid/2324?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9134">9134</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11942">11942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2325</td><td class="ruletablebody" valign="top">WEB-IIS VP-ASP ShopDisplayProducts.asp access (<a href="http://www.snort.org/search/sid/2325?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9134">9134</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11942">11942</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2326</td><td class="ruletablebody" valign="top">WEB-IIS sgdynamo.exe access (<a href="http://www.snort.org/search/sid/2326?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0375">2002-0375</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4720">4720</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11955">11955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2386</td><td class="ruletablebody" valign="top">WEB-IIS NTLM ASN1 vulnerability scan attempt (<a href="http://www.snort.org/search/sid/2386?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0818">2003-0818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9635">9635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12065">12065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-007.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2571</td><td class="ruletablebody" valign="top">WEB-IIS SmarterTools SmarterMail frmGetAttachment.aspx access (<a href="http://www.snort.org/search/sid/2571?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9805">9805</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2572</td><td class="ruletablebody" valign="top">WEB-IIS SmarterTools SmarterMail login.aspx buffer overflow attempt (<a href="http://www.snort.org/search/sid/2572?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9805">9805</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2573</td><td class="ruletablebody" valign="top">WEB-IIS SmarterTools SmarterMail frmCompose.asp access (<a href="http://www.snort.org/search/sid/2573?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9805">9805</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2667</td><td class="ruletablebody" valign="top">WEB-IIS ping.asp access (<a href="http://www.snort.org/search/sid/2667?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10968">10968</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3087</td><td class="ruletablebody" valign="top">WEB-IIS w3who.dll buffer overflow attempt (<a href="http://www.snort.org/search/sid/3087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1134">2004-1134</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11820">11820</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3150</td><td class="ruletablebody" valign="top">WEB-IIS SQLXML content type overflow (<a href="http://www.snort.org/search/sid/3150?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0186">2002-0186</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5004">5004</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11304">11304</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.westpoint.ltd.uk/advisories/wp-02-0007.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3193</td><td class="ruletablebody" valign="top">WEB-IIS .cmd executable file parsing attack (<a href="http://www.snort.org/search/sid/3193?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0886">2000-0886</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1912">1912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3194</td><td class="ruletablebody" valign="top">WEB-IIS .bat executable file parsing attack (<a href="http://www.snort.org/search/sid/3194?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0886">2000-0886</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1912">1912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3201</td><td class="ruletablebody" valign="top">WEB-IIS httpodbc.dll access - nimda (<a href="http://www.snort.org/search/sid/3201?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0333">2001-0333</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2708">2708</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5695</td><td class="ruletablebody" valign="top">WEB-IIS web agent redirect overflow attempt (<a href="http://www.snort.org/search/sid/5695?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1471">2005-1471</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13524">13524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7027</td><td class="ruletablebody" valign="top">WEB-IIS frontpage server extensions 2002 cross site scripting attempt (<a href="http://www.snort.org/search/sid/7027?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0015">2006-0015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17452">17452</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7028</td><td class="ruletablebody" valign="top">WEB-IIS frontpage server extensions 2002 cross site scripting attempt (<a href="http://www.snort.org/search/sid/7028?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0015">2006-0015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17452">17452</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7029</td><td class="ruletablebody" valign="top">WEB-IIS frontpage server extensions 2002 cross site scripting attempt (<a href="http://www.snort.org/search/sid/7029?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0015">2006-0015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17452">17452</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8349</td><td class="ruletablebody" valign="top">WEB-IIS Indexing Service ciRestriction cross-site scripting attempt (<a href="http://www.snort.org/search/sid/8349?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0032">2006-0032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19927">19927</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8700</td><td class="ruletablebody" valign="top">WEB-IIS ASP.NET 2.0 cross-site scripting attempt (<a href="http://www.snort.org/search/sid/8700?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3436">2006-3436</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20337">20337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS06-056.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11191</td><td class="ruletablebody" valign="top">WEB-IIS Microsoft Content Management Server memory corruption (<a href="http://www.snort.org/search/sid/11191?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0938">2007-0938</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22861">22861</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12043</td><td class="ruletablebody" valign="top">DOS Microsoft XML parser IIS WebDAV attack attempt (<a href="http://www.snort.org/search/sid/12043?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0718">2003-0718</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11384">11384</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12064</td><td class="ruletablebody" valign="top">WEB-IIS w3svc _vti_bin null pointer dereference attempt (<a href="http://www.snort.org/search/sid/12064?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4360">2005-4360</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15921">15921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-041.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12595</td><td class="ruletablebody" valign="top">WEB-IIS malicious ASP file upload attempt (<a href="http://www.snort.org/search/sid/12595?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0026">2006-0026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18858">18858</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13922</td><td class="ruletablebody" valign="top">WEB-IIS Microsoft IIS HTMLEncode Unicode string buffer overflow (<a href="http://www.snort.org/search/sid/13922?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0075">2008-0075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17648</td><td class="ruletablebody" valign="top">WEB-IIS source code disclosure attempt (<a href="http://www.snort.org/search/sid/17648?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14764">14764</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17705</td><td class="ruletablebody" valign="top">WEB-IIS web agent chunked encoding overflow attempt (<a href="http://www.snort.org/search/sid/17705?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1471">2005-1471</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13524">13524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="214"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / Other</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="215"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / Coldfusion</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="216"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / Frontpage</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 38</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">937</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE _vti_rpc access (<a href="http://www.snort.org/search/sid/937?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0096">2001-0096</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2144">2144</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10585">10585</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">939</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE posting (<a href="http://www.snort.org/search/sid/939?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0096">2001-0096</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2144">2144</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10585">10585</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-100.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">940</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE shtml.dll access (<a href="http://www.snort.org/search/sid/940?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0746">2000-0746</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1595">1595</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11395">11395</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">941</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE contents.htm access (<a href="http://www.snort.org/search/sid/941?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">942</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE orders.htm access (<a href="http://www.snort.org/search/sid/942?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">943</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE fpsrvadm.exe access (<a href="http://www.snort.org/search/sid/943?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">944</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE fpremadm.exe access (<a href="http://www.snort.org/search/sid/944?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">945</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE fpadmin.htm access (<a href="http://www.snort.org/search/sid/945?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">946</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE fpadmcgi.exe access (<a href="http://www.snort.org/search/sid/946?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">947</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE orders.txt access (<a href="http://www.snort.org/search/sid/947?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">948</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE form_results access (<a href="http://www.snort.org/search/sid/948?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1052">1999-1052</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">949</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE registrations.htm access (<a href="http://www.snort.org/search/sid/949?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">950</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE cfgwiz.exe access (<a href="http://www.snort.org/search/sid/950?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">951</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE authors.pwd access (<a href="http://www.snort.org/search/sid/951?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0386">1999-0386</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/989">989</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10078">10078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">952</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE author.exe access (<a href="http://www.snort.org/search/sid/952?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">953</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE administrators.pwd access (<a href="http://www.snort.org/search/sid/953?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1205">1205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">954</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE form_results.htm access (<a href="http://www.snort.org/search/sid/954?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1052">1999-1052</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">955</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE access.cnf access (<a href="http://www.snort.org/search/sid/955?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1717">2002-1717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4078">4078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10575">10575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">956</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE register.txt access (<a href="http://www.snort.org/search/sid/956?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">957</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE registrations.txt access (<a href="http://www.snort.org/search/sid/957?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">958</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE service.cnf access (<a href="http://www.snort.org/search/sid/958?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1717">2002-1717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4078">4078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10575">10575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">959</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE service.pwd (<a href="http://www.snort.org/search/sid/959?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1205">1205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">960</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE service.stp access (<a href="http://www.snort.org/search/sid/960?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">961</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE services.cnf access (<a href="http://www.snort.org/search/sid/961?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1717">2002-1717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4078">4078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10575">10575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">962</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE shtml.exe access (<a href="http://www.snort.org/search/sid/962?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0692">2002-0692</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5804">5804</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11311">11311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">963</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE svcacl.cnf access (<a href="http://www.snort.org/search/sid/963?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1717">2002-1717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4078">4078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10575">10575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">964</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE users.pwd access (<a href="http://www.snort.org/search/sid/964?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">965</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE writeto.cnf access (<a href="http://www.snort.org/search/sid/965?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1717">2002-1717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4078">4078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10575">10575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">966</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE .... request (<a href="http://www.snort.org/search/sid/966?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0153">2000-0153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/989">989</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10142">10142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">967</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE dvwssr.dll access (<a href="http://www.snort.org/search/sid/967?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0260">2000-0260</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1109">1109</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10369">10369</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">968</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE register.htm access (<a href="http://www.snort.org/search/sid/968?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">990</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE _vti_inf.html access (<a href="http://www.snort.org/search/sid/990?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11455">11455</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1248</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE rad fp30reg.dll access (<a href="http://www.snort.org/search/sid/1248?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0822">2003-0822</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2906">2906</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10699">10699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-035.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1249</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE frontpage rad fp4areg.dll access (<a href="http://www.snort.org/search/sid/1249?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0341">2001-0341</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2906">2906</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10699">10699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1288</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE /_vti_bin/ access (<a href="http://www.snort.org/search/sid/1288?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6409</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE frontpage server extension long host string overflow attempt (<a href="http://www.snort.org/search/sid/6409?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0824">2003-0824</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9008">9008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS03-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6410</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE frontpage server extension long host string overflow attempt (<a href="http://www.snort.org/search/sid/6410?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0824">2003-0824</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9008">9008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS03-051.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6411</td><td class="ruletablebody" valign="top">WEB-FRONTPAGE frontpage server extension long host string overflow attempt (<a href="http://www.snort.org/search/sid/6411?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0824">2003-0824</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9008">9008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS03-051.mspx">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="217"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / PHP</div></p><span class="group"># of attack rules in this group: 25</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5744</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker actualnames runtime detection - online.php request (<a href="http://www.snort.org/search/sid/5744?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074941">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5848</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - ip.php request (<a href="http://www.snort.org/search/sid/5848?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6020</td><td class="ruletablebody" valign="top">BACKDOOR dsk lite 1.0 runtime detection - php notification (<a href="http://www.snort.org/search/sid/6020?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075866">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6042</td><td class="ruletablebody" valign="top">BACKDOOR fear 0.2 runtime detection - php notification (<a href="http://www.snort.org/search/sid/6042?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6403</td><td class="ruletablebody" valign="top">WEB-PHP horde help module arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/6403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1491">2006-1491</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17292">17292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7149</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sars notifier runtime detection - php notification (<a href="http://www.snort.org/search/sid/7149?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078294">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7639</td><td class="ruletablebody" valign="top">BACKDOOR air runtime detection - php notification (<a href="http://www.snort.org/search/sid/7639?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9653</td><td class="ruletablebody" valign="top">BACKDOOR apofis 1.0 runtime detection - php notification (<a href="http://www.snort.org/search/sid/9653?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/a/apofis/Apofis1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10196</td><td class="ruletablebody" valign="top">BACKDOOR Wordpress backdoor feed.php code execution attempt (<a href="http://www.snort.org/search/sid/10196?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1277">2007-1277</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22797">22797</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/461794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10197</td><td class="ruletablebody" valign="top">BACKDOOR Wordpress backdoor theme.php code execution attempt (<a href="http://www.snort.org/search/sid/10197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1277">2007-1277</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22797">22797</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/461794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13816</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Metasploit Framework xmlrpc.php command injection attempt (<a href="http://www.snort.org/search/sid/13816?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1921">2005-1921</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13817</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS xmlrpc.php command injection attempt (<a href="http://www.snort.org/search/sid/13817?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1921">2005-1921</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13818</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS alternate xmlrpc.php command injection attempt (<a href="http://www.snort.org/search/sid/13818?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1921">2005-1921</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14610</td><td class="ruletablebody" valign="top">WEB-PHP Joomla invalid token administrative password reset attempt (<a href="http://www.snort.org/search/sid/14610?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3681">2008-3681</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30667">30667</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://developer.joomla.org/security/news/241-20080801-core-password-remind-functionality.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15257</td><td class="ruletablebody" valign="top">ORACLE Secure Backup common.php variable based command injection attempt (<a href="http://www.snort.org/search/sid/15257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4006">2008-4006</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15258</td><td class="ruletablebody" valign="top">ORACLE Secure Backup login.php variable based command injection attempt (<a href="http://www.snort.org/search/sid/15258?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5449">2008-5449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15424</td><td class="ruletablebody" valign="top">WEB-PHP phpBB mod shoutbox sql injection attempt (<a href="http://www.snort.org/search/sid/15424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-6301">2008-6301</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32123">32123</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15425</td><td class="ruletablebody" valign="top">WEB-PHP phpBB mod tag board sql injection attempt (<a href="http://www.snort.org/search/sid/15425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-6314">2008-6314</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32701">32701</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15432</td><td class="ruletablebody" valign="top">WEB-PHP wordpress cat parameter arbitrary file execution attempt (<a href="http://www.snort.org/search/sid/15432?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4769">2008-4769</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28845">28845</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15977</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS PHP strip_tags bypass vulnerability exploit attempt (<a href="http://www.snort.org/search/sid/15977?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0595">2004-0595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10724">10724</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16190</td><td class="ruletablebody" valign="top">ORACLE Oracle Secure Backup Administration server property_box.php command injection attempt (<a href="http://www.snort.org/search/sid/16190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1978">2009-1978</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35678">35678</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16678</td><td class="ruletablebody" valign="top">WEB-PHP Tandberg VCS local file disclosure attempt (<a href="http://www.snort.org/search/sid/16678?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4511">2009-4511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/39275/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16924</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - /inst.php?fff= (<a href="http://www.snort.org/search/sid/16924?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.snort.org/docs/16924.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17597</td><td class="ruletablebody" valign="top">WEB-PHP TikiWiki jhot.php script file upload attempt (<a href="http://www.snort.org/search/sid/17597?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19819">19819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://tikiwiki.org/tiki-read_article.php?articleid=136">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17638</td><td class="ruletablebody" valign="top">Oracle Secure Backup Administration Server login.php Cookies Command Injection attempt (<a href="http://www.snort.org/search/sid/17638?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4006">2008-4006</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33177">33177</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 165</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">824</td><td class="ruletablebody" valign="top">WEB-CGI php.cgi access (<a href="http://www.snort.org/search/sid/824?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0238">1999-0238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/712">712</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10178">10178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1085</td><td class="ruletablebody" valign="top">WEB-PHP strings overflow (<a href="http://www.snort.org/search/sid/1085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/802">802</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1086</td><td class="ruletablebody" valign="top">WEB-PHP strings overflow (<a href="http://www.snort.org/search/sid/1086?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0967">2000-0967</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1786">1786</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1134</td><td class="ruletablebody" valign="top">WEB-PHP Phorum admin access (<a href="http://www.snort.org/search/sid/1134?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2271">2271</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1137</td><td class="ruletablebody" valign="top">WEB-PHP Phorum authentication access (<a href="http://www.snort.org/search/sid/1137?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2274">2274</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1161</td><td class="ruletablebody" valign="top">WEB-PHP piranha passwd.php3 access (<a href="http://www.snort.org/search/sid/1161?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0322">2000-0322</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1149">1149</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1178</td><td class="ruletablebody" valign="top">WEB-PHP Phorum read access (<a href="http://www.snort.org/search/sid/1178?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1179</td><td class="ruletablebody" valign="top">WEB-PHP Phorum violation access (<a href="http://www.snort.org/search/sid/1179?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2272">2272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1197</td><td class="ruletablebody" valign="top">WEB-PHP Phorum code access (<a href="http://www.snort.org/search/sid/1197?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1254</td><td class="ruletablebody" valign="top">WEB-PHP PHPLIB remote command attempt (<a href="http://www.snort.org/search/sid/1254?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1370">2001-1370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3079">3079</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=14910">14910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1255</td><td class="ruletablebody" valign="top">WEB-PHP PHPLIB remote command attempt (<a href="http://www.snort.org/search/sid/1255?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1370">2001-1370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3079">3079</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1300</td><td class="ruletablebody" valign="top">WEB-PHP admin.php file upload attempt (<a href="http://www.snort.org/search/sid/1300?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1032">2001-1032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3361">3361</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1301</td><td class="ruletablebody" valign="top">WEB-PHP admin.php access (<a href="http://www.snort.org/search/sid/1301?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1032">2001-1032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9270">9270</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1399</td><td class="ruletablebody" valign="top">WEB-PHP PHP-Nuke remote file include attempt (<a href="http://www.snort.org/search/sid/1399?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0206">2002-0206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3889">3889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1407</td><td class="ruletablebody" valign="top">WEB-PHP smssend.php access (<a href="http://www.snort.org/search/sid/1407?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0220">2002-0220</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3982">3982</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1423</td><td class="ruletablebody" valign="top">WEB-PHP content-disposition memchr overflow (<a href="http://www.snort.org/search/sid/1423?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0081">2002-0081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4183">4183</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10867">10867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1490</td><td class="ruletablebody" valign="top">WEB-PHP Phorum /support/common.php attempt (<a href="http://www.snort.org/search/sid/1490?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1997">1997</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1491</td><td class="ruletablebody" valign="top">WEB-PHP Phorum /support/common.php access (<a href="http://www.snort.org/search/sid/1491?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9361">9361</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1736</td><td class="ruletablebody" valign="top">WEB-PHP squirrel mail spell-check arbitrary command attempt (<a href="http://www.snort.org/search/sid/1736?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3952">3952</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1737</td><td class="ruletablebody" valign="top">WEB-PHP squirrel mail theme arbitrary command attempt (<a href="http://www.snort.org/search/sid/1737?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0516">2002-0516</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4385">4385</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1739</td><td class="ruletablebody" valign="top">WEB-PHP DNSTools administrator authentication bypass attempt (<a href="http://www.snort.org/search/sid/1739?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0613">2002-0613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4617">4617</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1740</td><td class="ruletablebody" valign="top">WEB-PHP DNSTools authentication bypass attempt (<a href="http://www.snort.org/search/sid/1740?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0613">2002-0613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4617">4617</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1741</td><td class="ruletablebody" valign="top">WEB-PHP DNSTools access (<a href="http://www.snort.org/search/sid/1741?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0613">2002-0613</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4617">4617</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1742</td><td class="ruletablebody" valign="top">WEB-PHP Blahz-DNS dostuff.php modify user attempt (<a href="http://www.snort.org/search/sid/1742?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0599">2002-0599</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4618">4618</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1743</td><td class="ruletablebody" valign="top">WEB-PHP Blahz-DNS dostuff.php access (<a href="http://www.snort.org/search/sid/1743?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0599">2002-0599</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4618">4618</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1745</td><td class="ruletablebody" valign="top">WEB-PHP Messagerie supp_membre.php access (<a href="http://www.snort.org/search/sid/1745?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4635">4635</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1773</td><td class="ruletablebody" valign="top">WEB-PHP php.exe access (<a href="http://www.snort.org/search/sid/1773?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securitytracker.com/alerts/2002/Jan/1003104.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1774</td><td class="ruletablebody" valign="top">WEB-PHP bb_smilies.php access (<a href="http://www.snort.org/search/sid/1774?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securiteam.com/securitynews/Serious_security_hole_in_PHP-Nuke__bb_smilies_.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1815</td><td class="ruletablebody" valign="top">WEB-PHP directory.php arbitrary command attempt (<a href="http://www.snort.org/search/sid/1815?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0434">2002-0434</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4278">4278</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11017">11017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1816</td><td class="ruletablebody" valign="top">WEB-PHP directory.php access (<a href="http://www.snort.org/search/sid/1816?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0434">2002-0434</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4278">4278</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1834</td><td class="ruletablebody" valign="top">WEB-PHP PHP-Wiki cross site scripting attempt (<a href="http://www.snort.org/search/sid/1834?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1070">2002-1070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5254">5254</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1967</td><td class="ruletablebody" valign="top">WEB-PHP phpbb quick-reply.php arbitrary command attempt (<a href="http://www.snort.org/search/sid/1967?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6173">6173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1968</td><td class="ruletablebody" valign="top">WEB-PHP phpbb quick-reply.php access (<a href="http://www.snort.org/search/sid/1968?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6173">6173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1999</td><td class="ruletablebody" valign="top">WEB-PHP edit_image.php access (<a href="http://www.snort.org/search/sid/1999?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1020">2001-1020</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3288">3288</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11104">11104</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2000</td><td class="ruletablebody" valign="top">WEB-PHP readmsg.php access (<a href="http://www.snort.org/search/sid/2000?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1408">2001-1408</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11073">11073</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2074</td><td class="ruletablebody" valign="top">WEB-PHP Mambo uploadimage.php upload php file attempt (<a href="http://www.snort.org/search/sid/2074?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1204">2003-1204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6572">6572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=16315">16315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2075</td><td class="ruletablebody" valign="top">WEB-PHP Mambo upload.php upload php file attempt (<a href="http://www.snort.org/search/sid/2075?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1204">2003-1204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6572">6572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=16315">16315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2076</td><td class="ruletablebody" valign="top">WEB-PHP Mambo uploadimage.php access (<a href="http://www.snort.org/search/sid/2076?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1204">2003-1204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6572">6572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=16315">16315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2078</td><td class="ruletablebody" valign="top">WEB-PHP phpBB privmsg.php access (<a href="http://www.snort.org/search/sid/2078?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6634">6634</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2140</td><td class="ruletablebody" valign="top">WEB-PHP p-news.php access (<a href="http://www.snort.org/search/sid/2140?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11669">11669</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2141</td><td class="ruletablebody" valign="top">WEB-PHP shoutbox.php directory traversal attempt (<a href="http://www.snort.org/search/sid/2141?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11668">11668</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2142</td><td class="ruletablebody" valign="top">WEB-PHP shoutbox.php access (<a href="http://www.snort.org/search/sid/2142?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11668">11668</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2143</td><td class="ruletablebody" valign="top">WEB-PHP b2 cafelog gm-2-b2.php remote file include attempt (<a href="http://www.snort.org/search/sid/2143?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11667">11667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2144</td><td class="ruletablebody" valign="top">WEB-PHP b2 cafelog gm-2-b2.php access (<a href="http://www.snort.org/search/sid/2144?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11667">11667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2145</td><td class="ruletablebody" valign="top">WEB-PHP TextPortal admin.php default password admin attempt (<a href="http://www.snort.org/search/sid/2145?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7673">7673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11660">11660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2146</td><td class="ruletablebody" valign="top">WEB-PHP TextPortal admin.php default password 12345 attempt (<a href="http://www.snort.org/search/sid/2146?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7673">7673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11660">11660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2147</td><td class="ruletablebody" valign="top">WEB-PHP BLNews objects.inc.php4 remote file include attempt (<a href="http://www.snort.org/search/sid/2147?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0394">2003-0394</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7677">7677</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11647">11647</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2148</td><td class="ruletablebody" valign="top">WEB-PHP BLNews objects.inc.php4 access (<a href="http://www.snort.org/search/sid/2148?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0394">2003-0394</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7677">7677</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11647">11647</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2149</td><td class="ruletablebody" valign="top">WEB-PHP Turba status.php access (<a href="http://www.snort.org/search/sid/2149?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11646">11646</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2150</td><td class="ruletablebody" valign="top">WEB-PHP ttCMS header.php remote file include attempt (<a href="http://www.snort.org/search/sid/2150?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7625">7625</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11636">11636</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2151</td><td class="ruletablebody" valign="top">WEB-PHP ttCMS header.php access (<a href="http://www.snort.org/search/sid/2151?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7625">7625</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11636">11636</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2152</td><td class="ruletablebody" valign="top">WEB-PHP test.php access (<a href="http://www.snort.org/search/sid/2152?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11617">11617</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2153</td><td class="ruletablebody" valign="top">WEB-PHP autohtml.php directory traversal attempt (<a href="http://www.snort.org/search/sid/2153?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11630">11630</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2154</td><td class="ruletablebody" valign="top">WEB-PHP autohtml.php access (<a href="http://www.snort.org/search/sid/2154?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11630">11630</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2155</td><td class="ruletablebody" valign="top">WEB-PHP ttforum remote file include attempt (<a href="http://www.snort.org/search/sid/2155?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7543">7543</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11615">11615</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2226</td><td class="ruletablebody" valign="top">WEB-PHP pmachine remote file include attempt (<a href="http://www.snort.org/search/sid/2226?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7919">7919</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11739">11739</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2227</td><td class="ruletablebody" valign="top">WEB-PHP forum_details.php access (<a href="http://www.snort.org/search/sid/2227?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7933">7933</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11760">11760</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2228</td><td class="ruletablebody" valign="top">WEB-PHP phpMyAdmin db_details_importdocsql.php access (<a href="http://www.snort.org/search/sid/2228?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7965">7965</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11761">11761</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2229</td><td class="ruletablebody" valign="top">WEB-PHP viewtopic.php access (<a href="http://www.snort.org/search/sid/2229?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0486">2003-0486</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7979">7979</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11767">11767</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2279</td><td class="ruletablebody" valign="top">WEB-PHP UpdateClasses.php access (<a href="http://www.snort.org/search/sid/2279?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9057">9057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2282</td><td class="ruletablebody" valign="top">WEB-PHP GlobalFunctions.php access (<a href="http://www.snort.org/search/sid/2282?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9057">9057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2283</td><td class="ruletablebody" valign="top">WEB-PHP DatabaseFunctions.php access (<a href="http://www.snort.org/search/sid/2283?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9057">9057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2284</td><td class="ruletablebody" valign="top">WEB-PHP rolis guestbook remote file include attempt (<a href="http://www.snort.org/search/sid/2284?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9057">9057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2285</td><td class="ruletablebody" valign="top">WEB-PHP rolis guestbook access (<a href="http://www.snort.org/search/sid/2285?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9057">9057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2287</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_comment.php access (<a href="http://www.snort.org/search/sid/2287?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2288</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_edit.php access (<a href="http://www.snort.org/search/sid/2288?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2289</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_embed.php access (<a href="http://www.snort.org/search/sid/2289?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2290</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_help.php access (<a href="http://www.snort.org/search/sid/2290?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2291</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_license.php access (<a href="http://www.snort.org/search/sid/2291?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2292</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_logout.php access (<a href="http://www.snort.org/search/sid/2292?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2293</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_password.php access (<a href="http://www.snort.org/search/sid/2293?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2294</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_preview.php access (<a href="http://www.snort.org/search/sid/2294?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2295</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_settings.php access (<a href="http://www.snort.org/search/sid/2295?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2296</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_stats.php access (<a href="http://www.snort.org/search/sid/2296?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2297</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_templates_misc.php access (<a href="http://www.snort.org/search/sid/2297?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2298</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_templates.php access (<a href="http://www.snort.org/search/sid/2298?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2299</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_tpl_misc_new.php access (<a href="http://www.snort.org/search/sid/2299?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2300</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll admin_tpl_new.php access (<a href="http://www.snort.org/search/sid/2300?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2301</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll booth.php access (<a href="http://www.snort.org/search/sid/2301?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2302</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll poll_ssi.php access (<a href="http://www.snort.org/search/sid/2302?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2303</td><td class="ruletablebody" valign="top">WEB-PHP Advanced Poll popup.php access (<a href="http://www.snort.org/search/sid/2303?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8890">8890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11487">11487</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2304</td><td class="ruletablebody" valign="top">WEB-PHP files.inc.php access (<a href="http://www.snort.org/search/sid/2304?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8910">8910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2305</td><td class="ruletablebody" valign="top">WEB-PHP chatbox.php access (<a href="http://www.snort.org/search/sid/2305?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8930">8930</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2306</td><td class="ruletablebody" valign="top">WEB-PHP gallery remote file include attempt (<a href="http://www.snort.org/search/sid/2306?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8814">8814</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11876">11876</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2307</td><td class="ruletablebody" valign="top">WEB-PHP PayPal Storefront remote file include attempt (<a href="http://www.snort.org/search/sid/2307?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8791">8791</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11873">11873</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2328</td><td class="ruletablebody" valign="top">WEB-PHP authentication_index.php access (<a href="http://www.snort.org/search/sid/2328?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0032">2004-0032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11982">11982</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2331</td><td class="ruletablebody" valign="top">WEB-PHP MatrikzGB privilege escalation attempt (<a href="http://www.snort.org/search/sid/2331?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8430">8430</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2341</td><td class="ruletablebody" valign="top">WEB-PHP DCP-Portal remote file include editor script attempt (<a href="http://www.snort.org/search/sid/2341?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6525">6525</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2342</td><td class="ruletablebody" valign="top">WEB-PHP DCP-Portal remote file include lib script attempt (<a href="http://www.snort.org/search/sid/2342?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6525">6525</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2345</td><td class="ruletablebody" valign="top">WEB-PHP PhpGedView search.php access (<a href="http://www.snort.org/search/sid/2345?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0032">2004-0032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9369">9369</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2346</td><td class="ruletablebody" valign="top">WEB-PHP myPHPNuke chatheader.php access (<a href="http://www.snort.org/search/sid/2346?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6544">6544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2353</td><td class="ruletablebody" valign="top">WEB-PHP IdeaBox cord.php file include (<a href="http://www.snort.org/search/sid/2353?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7488">7488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2354</td><td class="ruletablebody" valign="top">WEB-PHP IdeaBox notification.php file include (<a href="http://www.snort.org/search/sid/2354?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7488">7488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2355</td><td class="ruletablebody" valign="top">WEB-PHP Invision Board emailer.php file include (<a href="http://www.snort.org/search/sid/2355?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7204">7204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2356</td><td class="ruletablebody" valign="top">WEB-PHP WebChat db_mysql.php file include (<a href="http://www.snort.org/search/sid/2356?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7000">7000</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2357</td><td class="ruletablebody" valign="top">WEB-PHP WebChat english.php file include (<a href="http://www.snort.org/search/sid/2357?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7000">7000</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2358</td><td class="ruletablebody" valign="top">WEB-PHP Typo3 translations.php file include (<a href="http://www.snort.org/search/sid/2358?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6984">6984</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2359</td><td class="ruletablebody" valign="top">WEB-PHP Invision Board ipchat.php file include (<a href="http://www.snort.org/search/sid/2359?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6976">6976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2360</td><td class="ruletablebody" valign="top">WEB-PHP myphpPagetool pt_config.inc file include (<a href="http://www.snort.org/search/sid/2360?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6744">6744</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2361</td><td class="ruletablebody" valign="top">WEB-PHP news.php file include (<a href="http://www.snort.org/search/sid/2361?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6674">6674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2362</td><td class="ruletablebody" valign="top">WEB-PHP YaBB SE packages.php file include (<a href="http://www.snort.org/search/sid/2362?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6663">6663</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2363</td><td class="ruletablebody" valign="top">WEB-PHP Cyboards default_header.php access (<a href="http://www.snort.org/search/sid/2363?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6597">6597</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2364</td><td class="ruletablebody" valign="top">WEB-PHP Cyboards options_form.php access (<a href="http://www.snort.org/search/sid/2364?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6597">6597</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2365</td><td class="ruletablebody" valign="top">WEB-PHP newsPHP Language file include attempt (<a href="http://www.snort.org/search/sid/2365?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8488">8488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2366</td><td class="ruletablebody" valign="top">WEB-PHP PhpGedView PGV authentication_index.php base directory manipulation attempt (<a href="http://www.snort.org/search/sid/2366?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0030">2004-0030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9368">9368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2367</td><td class="ruletablebody" valign="top">WEB-PHP PhpGedView PGV functions.php base directory manipulation attempt (<a href="http://www.snort.org/search/sid/2367?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0030">2004-0030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9368">9368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2368</td><td class="ruletablebody" valign="top">WEB-PHP PhpGedView PGV config_gedcom.php base directory manipulation attempt (<a href="http://www.snort.org/search/sid/2368?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0030">2004-0030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9368">9368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2372</td><td class="ruletablebody" valign="top">WEB-PHP Photopost PHP Pro showphoto.php access (<a href="http://www.snort.org/search/sid/2372?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9557">9557</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2393</td><td class="ruletablebody" valign="top">WEB-PHP /_admin access (<a href="http://www.snort.org/search/sid/2393?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9537">9537</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12032">12032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2398</td><td class="ruletablebody" valign="top">WEB-PHP WAnewsletter newsletter.php file include attempt (<a href="http://www.snort.org/search/sid/2398?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6965">6965</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2399</td><td class="ruletablebody" valign="top">WEB-PHP WAnewsletter db_type.php access (<a href="http://www.snort.org/search/sid/2399?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6964">6964</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2405</td><td class="ruletablebody" valign="top">WEB-PHP phptest.php access (<a href="http://www.snort.org/search/sid/2405?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9737">9737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2410</td><td class="ruletablebody" valign="top">WEB-PHP IGeneric Free Shopping Cart page.php access (<a href="http://www.snort.org/search/sid/2410?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9773">9773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2566</td><td class="ruletablebody" valign="top">WEB-PHP PHPBB viewforum.php access (<a href="http://www.snort.org/search/sid/2566?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9866">9866</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12093">12093</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2575</td><td class="ruletablebody" valign="top">WEB-PHP Opt-X header.php remote file include attempt (<a href="http://www.snort.org/search/sid/2575?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9732">9732</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2588</td><td class="ruletablebody" valign="top">WEB-PHP TUTOS path disclosure attempt (<a href="http://www.snort.org/search/sid/2588?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10129">10129</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securiteam.com/unixfocus/5FP0J15CKE.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2654</td><td class="ruletablebody" valign="top">WEB-PHP PHPNuke Forum viewtopic SQL insertion attempt (<a href="http://www.snort.org/search/sid/2654?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7193">7193</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2926</td><td class="ruletablebody" valign="top">WEB-PHP PhpGedView PGV base directory manipulation (<a href="http://www.snort.org/search/sid/2926?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9368">9368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3544</td><td class="ruletablebody" valign="top">WEB-MISC TrackerCam ComGetLogFile.php3 directory traversal attempt (<a href="http://www.snort.org/search/sid/3544?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0481">2005-0481</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12592">12592</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17160">17160</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3545</td><td class="ruletablebody" valign="top">WEB-MISC TrackerCam ComGetLogFile.php3 log information disclosure (<a href="http://www.snort.org/search/sid/3545?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0481">2005-0481</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12592">12592</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17160">17160</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3547</td><td class="ruletablebody" valign="top">WEB-MISC TrackerCam overly long php parameter overflow attempt (<a href="http://www.snort.org/search/sid/3547?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0481">2005-0481</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12592">12592</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3690</td><td class="ruletablebody" valign="top">WEB-CGI Nucleus CMS action.php itemid SQL injection (<a href="http://www.snort.org/search/sid/3690?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2056">2004-2056</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10798">10798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=14194">14194</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3827</td><td class="ruletablebody" valign="top">WEB-PHP xmlrpc.php post attempt (<a href="http://www.snort.org/search/sid/3827?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1921">2005-1921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14088">14088</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4650</td><td class="ruletablebody" valign="top">WEB-MISC cacti graph_image.php access (<a href="http://www.snort.org/search/sid/4650?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14042">14042</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5709</td><td class="ruletablebody" valign="top">WEB-PHP file upload directory traversal (<a href="http://www.snort.org/search/sid/5709?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://bugs.php.net/bug.php?id=28456">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8708</td><td class="ruletablebody" valign="top">WEB-PHP Wordpress cache_lastpostdate code injection attempt (<a href="http://www.snort.org/search/sid/8708?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2612">2005-2612</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14533">14533</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8712</td><td class="ruletablebody" valign="top">WEB-PHP cacti graph_image arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/8712?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1524">2005-1524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14129">14129</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8713</td><td class="ruletablebody" valign="top">WEB-PHP cacti graph_image SQL injection attempt (<a href="http://www.snort.org/search/sid/8713?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2148">2005-2148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14129">14129</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8714</td><td class="ruletablebody" valign="top">WEB-PHP cacti graph_image SQL injection attempt (<a href="http://www.snort.org/search/sid/8714?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2148">2005-2148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14129">14129</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8715</td><td class="ruletablebody" valign="top">WEB-PHP cacti graph_image SQL injection attempt (<a href="http://www.snort.org/search/sid/8715?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2148">2005-2148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14129">14129</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8716</td><td class="ruletablebody" valign="top">WEB-PHP cacti graph_image SQL injection attempt (<a href="http://www.snort.org/search/sid/8716?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2148">2005-2148</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14129">14129</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11664</td><td class="ruletablebody" valign="top">WEB-PHP sphpblog password.txt access attempt (<a href="http://www.snort.org/search/sid/11664?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2733">2005-2733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14667">14667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11665</td><td class="ruletablebody" valign="top">WEB-PHP sphpblog install03_cgi access attempt (<a href="http://www.snort.org/search/sid/11665?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2733">2005-2733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14667">14667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11666</td><td class="ruletablebody" valign="top">WEB-PHP sphpblog upload_img_cgi access attempt (<a href="http://www.snort.org/search/sid/11666?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2733">2005-2733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14667">14667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11667</td><td class="ruletablebody" valign="top">WEB-PHP sphpblog arbitrary file delete attempt (<a href="http://www.snort.org/search/sid/11667?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2733">2005-2733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14667">14667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11668</td><td class="ruletablebody" valign="top">WEB-PHP vbulletin php code injection (<a href="http://www.snort.org/search/sid/11668?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0511">2005-0511</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://marc.info/?l=bugtraq&amp;m=110910899415763&amp;w=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12221</td><td class="ruletablebody" valign="top">WEB-PHP file upload GLOBAL variable overwrite attempt (<a href="http://www.snort.org/search/sid/12221?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3390">2005-3390</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15250">15250</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12610</td><td class="ruletablebody" valign="top">WEB-PHP phpBB viewtopic double URL encoding attempt (<a href="http://www.snort.org/search/sid/12610?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1315">2004-1315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16078</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS PHP memory_limit vulnerability exploit attempt (<a href="http://www.snort.org/search/sid/16078?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0594">2004-0594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10725">10725</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16243</td><td class="ruletablebody" valign="top">BACKDOOR downloader-ash.gen.b runtime detection - 3264.php (<a href="http://www.snort.org/search/sid/16243?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.threatexpert.com/report.aspx?md5=bffe465b5949e78821ffb76b0ed25bb4">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16613</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - cmd (<a href="http://www.snort.org/search/sid/16613?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16614</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - search (<a href="http://www.snort.org/search/sid/16614?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16615</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - upload (<a href="http://www.snort.org/search/sid/16615?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16616</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - about (<a href="http://www.snort.org/search/sid/16616?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16617</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - encoder (<a href="http://www.snort.org/search/sid/16617?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16618</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - bind (<a href="http://www.snort.org/search/sid/16618?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16619</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - ps_aux (<a href="http://www.snort.org/search/sid/16619?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16620</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - ftpquickbrute (<a href="http://www.snort.org/search/sid/16620?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16621</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - security (<a href="http://www.snort.org/search/sid/16621?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16622</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - sql (<a href="http://www.snort.org/search/sid/16622?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16623</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - eval (<a href="http://www.snort.org/search/sid/16623?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16624</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - feedback (<a href="http://www.snort.org/search/sid/16624?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16625</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - selfremove (<a href="http://www.snort.org/search/sid/16625?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16626</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - fsbuff (<a href="http://www.snort.org/search/sid/16626?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16627</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - ls (<a href="http://www.snort.org/search/sid/16627?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16628</td><td class="ruletablebody" valign="top">BACKDOOR c99shell.php command request - phpinfo (<a href="http://www.snort.org/search/sid/16628?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://vil.nai.com/vil/content/v_136948.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16913</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - count_log/log/boot.php?p= (<a href="http://www.snort.org/search/sid/16913?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16913.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16923</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - /search.php?username=coolweb07&amp;keywords= (<a href="http://www.snort.org/search/sid/16923?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16923.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16925</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - /message.php?subid= (<a href="http://www.snort.org/search/sid/16925?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16925.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16927</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - MGWEB.php?c=TestUrl (<a href="http://www.snort.org/search/sid/16927?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16927.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16929</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - gate.php?guid= (<a href="http://www.snort.org/search/sid/16929?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16929.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16931</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - feedbigfoot.php?m= (<a href="http://www.snort.org/search/sid/16931?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16931.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17898</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - /get2.php?c=VTOXUGUI&amp;d=26606B6739343F216560 (<a href="http://www.snort.org/search/sid/17898?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17898.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17905</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - 1de49069b6044785e9dfcd4c035cfd0c.php (<a href="http://www.snort.org/search/sid/17905?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17905.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17906</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - 2x/.*php (<a href="http://www.snort.org/search/sid/17906?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17906.html">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="218"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / HTTP / CGI</div></p><span class="group"># of attack rules in this group: 21</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5764</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker begin2search runtime detection - fcgi query (<a href="http://www.snort.org/search/sid/5764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088175">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5945</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware weirdontheweb runtime detection - track.cgi request (<a href="http://www.snort.org/search/sid/5945?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6019</td><td class="ruletablebody" valign="top">BACKDOOR dsk lite 1.0 runtime detection - cgi notification (<a href="http://www.snort.org/search/sid/6019?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075866">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6043</td><td class="ruletablebody" valign="top">BACKDOOR fear 0.2 runtime detection - cgi notification (<a href="http://www.snort.org/search/sid/6043?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6059</td><td class="ruletablebody" valign="top">BACKDOOR neurotickat1.3 runtime detection - cgi notification (<a href="http://www.snort.org/search/sid/6059?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=31859">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7076</td><td class="ruletablebody" valign="top">BACKDOOR minimo v0.6 runtime detection - cgi notification (<a href="http://www.snort.org/search/sid/7076?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7148</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sars notifier runtime detection - cgi notification (<a href="http://www.snort.org/search/sid/7148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078294">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7524</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker moneybar runtime detection - cgispy counter (<a href="http://www.snort.org/search/sid/7524?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.aladdin.com/home/csrt/grayware-list2.asp?GraywareNo=277">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7540</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool unify runtime detection - cgi notification (<a href="http://www.snort.org/search/sid/7540?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074224">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7722</td><td class="ruletablebody" valign="top">BACKDOOR prorat 1.9 cgi notification detection (<a href="http://www.snort.org/search/sid/7722?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082779">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7742</td><td class="ruletablebody" valign="top">BACKDOOR nova 1.0 runtime detection - cgi notification client-to-server (<a href="http://www.snort.org/search/sid/7742?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073030">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7743</td><td class="ruletablebody" valign="top">BACKDOOR nova 1.0 runtime detection - cgi notification server-to-client (<a href="http://www.snort.org/search/sid/7743?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073030">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13161</td><td class="ruletablebody" valign="top">EXPLOIT HP OpenView CGI parameter buffer overflow attempt (<a href="http://www.snort.org/search/sid/13161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0067">2008-0067</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26741">26741</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13591</td><td class="ruletablebody" valign="top">WEB-CGI Trend Micro OfficeScan CGI password decryption buffer overflow attempt (<a href="http://www.snort.org/search/sid/13591?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1365">2008-1365</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28020">28020</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/29124">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13656</td><td class="ruletablebody" valign="top">WEB-MISC Cisco Secure Access Control Server UCP Application CSuserCGI.exe buffer overflow attempt (<a href="http://www.snort.org/search/sid/13656?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0532">2008-0532</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28222">28222</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cisco.com/warp/public/707/cisco-sa-20080312-ucp.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15264</td><td class="ruletablebody" valign="top">WEB-CGI Oracle TimesTen In-Memory Database evtdump CGI module format string exploit attempt (<a href="http://www.snort.org/search/sid/15264?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5440">2008-5440</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33177">33177</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15510</td><td class="ruletablebody" valign="top">WEB-CLIENT Trend Micro OfficeScan Server cgiRecvFile overflow attempt (<a href="http://www.snort.org/search/sid/15510?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2437">2008-2437</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31139">31139</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16079</td><td class="ruletablebody" valign="top">WEB-CGI uselang code injection (<a href="http://www.snort.org/search/sid/16079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4031">2005-4031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15703">15703</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16674</td><td class="ruletablebody" valign="top">WEB-MISC HP OpenView CGI parameter buffer overflow attempt (<a href="http://www.snort.org/search/sid/16674?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1555">2010-1555</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17386</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Lighttpd mod_fastcgi Extension CGI Variable Overwriting Vulnerability attempt (<a href="http://www.snort.org/search/sid/17386?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4727">2007-4727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25622">25622</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17605</td><td class="ruletablebody" valign="top">WEB-CGI Trend Micro OfficeScan CGI password decryption buffer overflow attempt (<a href="http://www.snort.org/search/sid/17605?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1365">2008-1365</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28020">28020</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/29124">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 365</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">803</td><td class="ruletablebody" valign="top">WEB-CGI HyperSeek hsx.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/803?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0253">2001-0253</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2314">2314</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10602">10602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">804</td><td class="ruletablebody" valign="top">WEB-CGI SWSoft ASPSeek Overflow attempt (<a href="http://www.snort.org/search/sid/804?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0476">2001-0476</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2492">2492</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">805</td><td class="ruletablebody" valign="top">WEB-CGI webspeed access (<a href="http://www.snort.org/search/sid/805?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0127">2000-0127</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/969">969</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10304">10304</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">806</td><td class="ruletablebody" valign="top">WEB-CGI yabb directory traversal attempt (<a href="http://www.snort.org/search/sid/806?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0853">2000-0853</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1668">1668</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10512">10512</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">807</td><td class="ruletablebody" valign="top">WEB-CGI /wwwboard/passwd.txt access (<a href="http://www.snort.org/search/sid/807?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0954">1999-0954</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/649">649</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10321">10321</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">808</td><td class="ruletablebody" valign="top">WEB-CGI webdriver access (<a href="http://www.snort.org/search/sid/808?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2166">2166</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10592">10592</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">809</td><td class="ruletablebody" valign="top">WEB-CGI whois_raw.cgi arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/809?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1063">1999-1063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/304">304</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10306">10306</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">810</td><td class="ruletablebody" valign="top">WEB-CGI whois_raw.cgi access (<a href="http://www.snort.org/search/sid/810?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1063">1999-1063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/304">304</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10306">10306</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">811</td><td class="ruletablebody" valign="top">WEB-CGI websitepro path access (<a href="http://www.snort.org/search/sid/811?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0066">2000-0066</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/932">932</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10303">10303</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">812</td><td class="ruletablebody" valign="top">WEB-CGI webplus version access (<a href="http://www.snort.org/search/sid/812?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0282">2000-0282</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1102">1102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">813</td><td class="ruletablebody" valign="top">WEB-CGI webplus directory traversal (<a href="http://www.snort.org/search/sid/813?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0282">2000-0282</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1102">1102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10367">10367</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">815</td><td class="ruletablebody" valign="top">WEB-CGI websendmail access (<a href="http://www.snort.org/search/sid/815?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0196">1999-0196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2077">2077</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10301">10301</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">817</td><td class="ruletablebody" valign="top">WEB-CGI dcboard.cgi invalid user addition attempt (<a href="http://www.snort.org/search/sid/817?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0527">2001-0527</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2728">2728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10583">10583</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">818</td><td class="ruletablebody" valign="top">WEB-CGI dcforum.cgi access (<a href="http://www.snort.org/search/sid/818?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0527">2001-0527</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2728">2728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10583">10583</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">819</td><td class="ruletablebody" valign="top">WEB-CGI mmstdod.cgi access (<a href="http://www.snort.org/search/sid/819?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0021">2001-0021</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2063">2063</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10566">10566</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">820</td><td class="ruletablebody" valign="top">WEB-CGI anaconda directory transversal attempt (<a href="http://www.snort.org/search/sid/820?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0308">2001-0308</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2388">2388</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10536">10536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">821</td><td class="ruletablebody" valign="top">WEB-CGI imagemap.exe overflow attempt (<a href="http://www.snort.org/search/sid/821?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0951">1999-0951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/739">739</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10122">10122</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">823</td><td class="ruletablebody" valign="top">WEB-CGI cvsweb.cgi access (<a href="http://www.snort.org/search/sid/823?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0670">2000-0670</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1469">1469</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10465">10465</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">825</td><td class="ruletablebody" valign="top">WEB-CGI glimpse access (<a href="http://www.snort.org/search/sid/825?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0147">1999-0147</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2026">2026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10095">10095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">826</td><td class="ruletablebody" valign="top">WEB-CGI htmlscript access (<a href="http://www.snort.org/search/sid/826?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0264">1999-0264</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2001">2001</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10106">10106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">827</td><td class="ruletablebody" valign="top">WEB-CGI info2www access (<a href="http://www.snort.org/search/sid/827?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0266">1999-0266</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1995">1995</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10127">10127</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">828</td><td class="ruletablebody" valign="top">WEB-CGI maillist.pl access (<a href="http://www.snort.org/search/sid/828?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">829</td><td class="ruletablebody" valign="top">WEB-CGI nph-test-cgi access (<a href="http://www.snort.org/search/sid/829?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0045">1999-0045</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/686">686</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10165">10165</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">832</td><td class="ruletablebody" valign="top">WEB-CGI perl.exe access (<a href="http://www.snort.org/search/sid/832?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10173">10173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">833</td><td class="ruletablebody" valign="top">WEB-CGI rguest.exe access (<a href="http://www.snort.org/search/sid/833?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0287">1999-0287</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2024">2024</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">834</td><td class="ruletablebody" valign="top">WEB-CGI rwwwshell.pl access (<a href="http://www.snort.org/search/sid/834?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.itsecurity.com/papers/p37.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">835</td><td class="ruletablebody" valign="top">WEB-CGI test-cgi access (<a href="http://www.snort.org/search/sid/835?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0070">1999-0070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2003">2003</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10282">10282</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">836</td><td class="ruletablebody" valign="top">WEB-CGI textcounter.pl access (<a href="http://www.snort.org/search/sid/836?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1479">1999-1479</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2265">2265</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11451">11451</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">837</td><td class="ruletablebody" valign="top">WEB-CGI uploader.exe access (<a href="http://www.snort.org/search/sid/837?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0769">2000-0769</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1611">1611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10291">10291</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">838</td><td class="ruletablebody" valign="top">WEB-CGI webgais access (<a href="http://www.snort.org/search/sid/838?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0176">1999-0176</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2058">2058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10300">10300</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">839</td><td class="ruletablebody" valign="top">WEB-CGI finger access (<a href="http://www.snort.org/search/sid/839?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0612">1999-0612</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10071">10071</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">840</td><td class="ruletablebody" valign="top">WEB-CGI perlshop.cgi access (<a href="http://www.snort.org/search/sid/840?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1374">1999-1374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">842</td><td class="ruletablebody" valign="top">WEB-CGI aglimpse access (<a href="http://www.snort.org/search/sid/842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0147">1999-0147</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2026">2026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10095">10095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">843</td><td class="ruletablebody" valign="top">WEB-CGI anform2 access (<a href="http://www.snort.org/search/sid/843?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0066">1999-0066</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/719">719</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">844</td><td class="ruletablebody" valign="top">WEB-CGI args.bat access (<a href="http://www.snort.org/search/sid/844?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1180">1999-1180</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11465">11465</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">845</td><td class="ruletablebody" valign="top">WEB-CGI AT-admin.cgi access (<a href="http://www.snort.org/search/sid/845?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1072">1999-1072</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">846</td><td class="ruletablebody" valign="top">WEB-CGI bnbform.cgi access (<a href="http://www.snort.org/search/sid/846?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0937">1999-0937</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2147">2147</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">847</td><td class="ruletablebody" valign="top">WEB-CGI campas access (<a href="http://www.snort.org/search/sid/847?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0146">1999-0146</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1975">1975</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10035">10035</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">848</td><td class="ruletablebody" valign="top">WEB-CGI view-source directory traversal (<a href="http://www.snort.org/search/sid/848?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0174">1999-0174</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8883">8883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">849</td><td class="ruletablebody" valign="top">WEB-CGI view-source access (<a href="http://www.snort.org/search/sid/849?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0174">1999-0174</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8883">8883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">850</td><td class="ruletablebody" valign="top">WEB-CGI wais.pl access (<a href="http://www.snort.org/search/sid/850?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">851</td><td class="ruletablebody" valign="top">WEB-CGI files.pl access (<a href="http://www.snort.org/search/sid/851?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1081">1999-1081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">852</td><td class="ruletablebody" valign="top">WEB-CGI wguest.exe access (<a href="http://www.snort.org/search/sid/852?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0467">1999-0467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2024">2024</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">854</td><td class="ruletablebody" valign="top">WEB-CGI classifieds.cgi access (<a href="http://www.snort.org/search/sid/854?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0934">1999-0934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2020">2020</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">856</td><td class="ruletablebody" valign="top">WEB-CGI environ.cgi access (<a href="http://www.snort.org/search/sid/856?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">857</td><td class="ruletablebody" valign="top">WEB-CGI faxsurvey access (<a href="http://www.snort.org/search/sid/857?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0262">1999-0262</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2056">2056</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10067">10067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">858</td><td class="ruletablebody" valign="top">WEB-CGI filemail access (<a href="http://www.snort.org/search/sid/858?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1154">1999-1154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">859</td><td class="ruletablebody" valign="top">WEB-CGI man.sh access (<a href="http://www.snort.org/search/sid/859?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1179">1999-1179</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2276">2276</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">860</td><td class="ruletablebody" valign="top">WEB-CGI snork.bat access (<a href="http://www.snort.org/search/sid/860?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0233">1999-0233</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2023">2023</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">861</td><td class="ruletablebody" valign="top">WEB-CGI w3-msql access (<a href="http://www.snort.org/search/sid/861?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0012">2000-0012</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/898">898</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10296">10296</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">863</td><td class="ruletablebody" valign="top">WEB-CGI day5datacopier.cgi access (<a href="http://www.snort.org/search/sid/863?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1232">1999-1232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">864</td><td class="ruletablebody" valign="top">WEB-CGI day5datanotifier.cgi access (<a href="http://www.snort.org/search/sid/864?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1232">1999-1232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">865</td><td class="ruletablebody" valign="top">WEB-CGI ksh access (<a href="http://www.snort.org/search/sid/865?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">866</td><td class="ruletablebody" valign="top">WEB-CGI post-query access (<a href="http://www.snort.org/search/sid/866?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0291">2001-0291</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6752">6752</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">867</td><td class="ruletablebody" valign="top">WEB-CGI visadmin.exe access (<a href="http://www.snort.org/search/sid/867?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0970">1999-0970</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1808">1808</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10295">10295</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">868</td><td class="ruletablebody" valign="top">WEB-CGI rsh access (<a href="http://www.snort.org/search/sid/868?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">869</td><td class="ruletablebody" valign="top">WEB-CGI dumpenv.pl access (<a href="http://www.snort.org/search/sid/869?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1178">1999-1178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10060">10060</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">870</td><td class="ruletablebody" valign="top">WEB-CGI snorkerz.cmd access (<a href="http://www.snort.org/search/sid/870?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">871</td><td class="ruletablebody" valign="top">WEB-CGI survey.cgi access (<a href="http://www.snort.org/search/sid/871?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0936">1999-0936</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1817">1817</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">872</td><td class="ruletablebody" valign="top">WEB-CGI tcsh access (<a href="http://www.snort.org/search/sid/872?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">875</td><td class="ruletablebody" valign="top">WEB-CGI win-c-sample.exe access (<a href="http://www.snort.org/search/sid/875?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0178">1999-0178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2078">2078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10008">10008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">877</td><td class="ruletablebody" valign="top">WEB-CGI rksh access (<a href="http://www.snort.org/search/sid/877?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">878</td><td class="ruletablebody" valign="top">WEB-CGI w3tvars.pm access (<a href="http://www.snort.org/search/sid/878?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">879</td><td class="ruletablebody" valign="top">WEB-CGI admin.pl access (<a href="http://www.snort.org/search/sid/879?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1748">2002-1748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3839">3839</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://online.securityfocus.com/archive/1/249355">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">880</td><td class="ruletablebody" valign="top">WEB-CGI LWGate access (<a href="http://www.snort.org/search/sid/880?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.wiretrip.net/rfp/p/doc.asp/i2/d6.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">881</td><td class="ruletablebody" valign="top">WEB-CGI archie access (<a href="http://www.snort.org/search/sid/881?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">883</td><td class="ruletablebody" valign="top">WEB-CGI flexform access (<a href="http://www.snort.org/search/sid/883?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.wiretrip.net/rfp/p/doc.asp/i2/d6.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">887</td><td class="ruletablebody" valign="top">WEB-CGI www-sql access (<a href="http://www.snort.org/search/sid/887?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://marc.theaimsgroup.com/?l=bugtraq&amp;m=88704258804054&amp;w=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">888</td><td class="ruletablebody" valign="top">WEB-CGI wwwadmin.pl access (<a href="http://www.snort.org/search/sid/888?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">889</td><td class="ruletablebody" valign="top">WEB-CGI ppdscgi.exe access (<a href="http://www.snort.org/search/sid/889?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/491">491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10187">10187</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://online.securityfocus.com/archive/1/16878">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">890</td><td class="ruletablebody" valign="top">WEB-CGI sendform.cgi access (<a href="http://www.snort.org/search/sid/890?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0710">2002-0710</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5286">5286</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.scn.org/help/sendform.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">892</td><td class="ruletablebody" valign="top">WEB-CGI AnyForm2 access (<a href="http://www.snort.org/search/sid/892?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0066">1999-0066</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/719">719</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10277">10277</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">894</td><td class="ruletablebody" valign="top">WEB-CGI bb-hist.sh access (<a href="http://www.snort.org/search/sid/894?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1462">1999-1462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/142">142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10025">10025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">896</td><td class="ruletablebody" valign="top">WEB-CGI way-board access (<a href="http://www.snort.org/search/sid/896?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0214">2001-0214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2370">2370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10610">10610</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">897</td><td class="ruletablebody" valign="top">WEB-CGI pals-cgi access (<a href="http://www.snort.org/search/sid/897?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0217">2001-0217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2372">2372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10611">10611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">898</td><td class="ruletablebody" valign="top">WEB-CGI commerce.cgi access (<a href="http://www.snort.org/search/sid/898?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0210">2001-0210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2361">2361</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10612">10612</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">899</td><td class="ruletablebody" valign="top">WEB-CGI Amaya templates sendtemp.pl directory traversal attempt (<a href="http://www.snort.org/search/sid/899?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0272">2001-0272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2504">2504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10614">10614</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">900</td><td class="ruletablebody" valign="top">WEB-CGI webspirs.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/900?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0211">2001-0211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2362">2362</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10616">10616</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">901</td><td class="ruletablebody" valign="top">WEB-CGI webspirs.cgi access (<a href="http://www.snort.org/search/sid/901?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0211">2001-0211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2362">2362</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10616">10616</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">902</td><td class="ruletablebody" valign="top">WEB-CGI tstisapi.dll access (<a href="http://www.snort.org/search/sid/902?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0302">2001-0302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2381">2381</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1051</td><td class="ruletablebody" valign="top">WEB-CGI technote main.cgi file directory traversal attempt (<a href="http://www.snort.org/search/sid/1051?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0075">2001-0075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2156">2156</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10584">10584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1052</td><td class="ruletablebody" valign="top">WEB-CGI technote print.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1052?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0075">2001-0075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2156">2156</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10584">10584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1053</td><td class="ruletablebody" valign="top">WEB-CGI ads.cgi command execution attempt (<a href="http://www.snort.org/search/sid/1053?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0025">2001-0025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2103">2103</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11464">11464</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1088</td><td class="ruletablebody" valign="top">WEB-CGI eXtropia webstore directory traversal (<a href="http://www.snort.org/search/sid/1088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1005">2000-1005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1774">1774</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10532">10532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1089</td><td class="ruletablebody" valign="top">WEB-CGI shopping cart directory traversal (<a href="http://www.snort.org/search/sid/1089?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0921">2000-0921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1777">1777</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1090</td><td class="ruletablebody" valign="top">WEB-CGI Allaire Pro Web Shell attempt (<a href="http://www.snort.org/search/sid/1090?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1092</td><td class="ruletablebody" valign="top">WEB-CGI Armada Style Master Index directory traversal (<a href="http://www.snort.org/search/sid/1092?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0924">2000-0924</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1772">1772</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10562">10562</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.synnergy.net/downloads/advisories/SLA-2000-16.masterindex.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1093</td><td class="ruletablebody" valign="top">WEB-CGI cached_feed.cgi moreover shopping cart directory traversal (<a href="http://www.snort.org/search/sid/1093?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0906">2000-0906</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1762">1762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1097</td><td class="ruletablebody" valign="top">WEB-CGI Talentsoft Web+ exploit attempt (<a href="http://www.snort.org/search/sid/1097?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1725">1725</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1106</td><td class="ruletablebody" valign="top">WEB-CGI Poll-it access (<a href="http://www.snort.org/search/sid/1106?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0590">2000-0590</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1431">1431</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10459">10459</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1149</td><td class="ruletablebody" valign="top">WEB-CGI count.cgi access (<a href="http://www.snort.org/search/sid/1149?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0021">1999-0021</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/128">128</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10049">10049</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1163</td><td class="ruletablebody" valign="top">WEB-CGI webdist.cgi access (<a href="http://www.snort.org/search/sid/1163?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0039">1999-0039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/374">374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10299">10299</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1172</td><td class="ruletablebody" valign="top">WEB-CGI bigconf.cgi access (<a href="http://www.snort.org/search/sid/1172?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1550">1999-1550</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/778">778</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10027">10027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1174</td><td class="ruletablebody" valign="top">WEB-CGI /cgi-bin/jj access (<a href="http://www.snort.org/search/sid/1174?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0260">1999-0260</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2002">2002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10131">10131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1185</td><td class="ruletablebody" valign="top">WEB-CGI bizdbsearch attempt (<a href="http://www.snort.org/search/sid/1185?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0287">2000-0287</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1104">1104</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10383">10383</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1194</td><td class="ruletablebody" valign="top">WEB-CGI sojourn.cgi File attempt (<a href="http://www.snort.org/search/sid/1194?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0180">2000-0180</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1052">1052</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10349">10349</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1195</td><td class="ruletablebody" valign="top">WEB-CGI sojourn.cgi access (<a href="http://www.snort.org/search/sid/1195?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0180">2000-0180</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1052">1052</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10349">10349</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1196</td><td class="ruletablebody" valign="top">WEB-CGI SGI InfoSearch fname attempt (<a href="http://www.snort.org/search/sid/1196?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0207">2000-0207</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1031">1031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10128">10128</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1204</td><td class="ruletablebody" valign="top">WEB-CGI ax-admin.cgi access (<a href="http://www.snort.org/search/sid/1204?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1205</td><td class="ruletablebody" valign="top">WEB-CGI axs.cgi access (<a href="http://www.snort.org/search/sid/1205?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1206</td><td class="ruletablebody" valign="top">WEB-CGI cachemgr.cgi access (<a href="http://www.snort.org/search/sid/1206?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0710">1999-0710</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2059">2059</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10034">10034</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1208</td><td class="ruletablebody" valign="top">WEB-CGI responder.cgi access (<a href="http://www.snort.org/search/sid/1208?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3155">3155</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1211</td><td class="ruletablebody" valign="top">WEB-CGI web-map.cgi access (<a href="http://www.snort.org/search/sid/1211?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1215</td><td class="ruletablebody" valign="top">WEB-CGI ministats admin access (<a href="http://www.snort.org/search/sid/1215?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1219</td><td class="ruletablebody" valign="top">WEB-CGI dfire.cgi access (<a href="http://www.snort.org/search/sid/1219?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0913">1999-0913</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/564">564</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1221</td><td class="ruletablebody" valign="top">WEB-MISC Muscat Empower cgi access (<a href="http://www.snort.org/search/sid/1221?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0224">2001-0224</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2374">2374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10609">10609</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1222</td><td class="ruletablebody" valign="top">WEB-CGI pals-cgi arbitrary file access attempt (<a href="http://www.snort.org/search/sid/1222?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0217">2001-0217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2372">2372</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10611">10611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1304</td><td class="ruletablebody" valign="top">WEB-CGI txt2html.cgi access (<a href="http://www.snort.org/search/sid/1304?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1305</td><td class="ruletablebody" valign="top">WEB-CGI txt2html.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1305?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1306</td><td class="ruletablebody" valign="top">WEB-CGI store.cgi product directory traversal attempt (<a href="http://www.snort.org/search/sid/1306?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0305">2001-0305</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2385">2385</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1307</td><td class="ruletablebody" valign="top">WEB-CGI store.cgi access (<a href="http://www.snort.org/search/sid/1307?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0305">2001-0305</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2385">2385</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10639">10639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1308</td><td class="ruletablebody" valign="top">WEB-CGI sendmessage.cgi access (<a href="http://www.snort.org/search/sid/1308?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1100">2001-1100</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3673">3673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1309</td><td class="ruletablebody" valign="top">WEB-CGI zsh access (<a href="http://www.snort.org/search/sid/1309?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1392</td><td class="ruletablebody" valign="top">WEB-CGI lastlines.cgi access (<a href="http://www.snort.org/search/sid/1392?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1206">2001-1206</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3755">3755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1395</td><td class="ruletablebody" valign="top">WEB-CGI zml.cgi attempt (<a href="http://www.snort.org/search/sid/1395?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1209">2001-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3759">3759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10830">10830</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1396</td><td class="ruletablebody" valign="top">WEB-CGI zml.cgi access (<a href="http://www.snort.org/search/sid/1396?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1209">2001-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3759">3759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10830">10830</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1397</td><td class="ruletablebody" valign="top">WEB-CGI wayboard attempt (<a href="http://www.snort.org/search/sid/1397?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0214">2001-0214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2370">2370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10610">10610</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1405</td><td class="ruletablebody" valign="top">WEB-CGI AHG search.cgi access (<a href="http://www.snort.org/search/sid/1405?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3985">3985</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1406</td><td class="ruletablebody" valign="top">WEB-CGI agora.cgi access (<a href="http://www.snort.org/search/sid/1406?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0215">2002-0215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3976">3976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10836">10836</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1410</td><td class="ruletablebody" valign="top">WEB-CGI dcboard.cgi access (<a href="http://www.snort.org/search/sid/1410?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0527">2001-0527</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2728">2728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10583">10583</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1451</td><td class="ruletablebody" valign="top">WEB-CGI NPH-maillist access (<a href="http://www.snort.org/search/sid/1451?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0400">2001-0400</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2563">2563</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10164">10164</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1452</td><td class="ruletablebody" valign="top">WEB-CGI args.cmd access (<a href="http://www.snort.org/search/sid/1452?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1180">1999-1180</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11465">11465</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1453</td><td class="ruletablebody" valign="top">WEB-CGI AT-generated.cgi access (<a href="http://www.snort.org/search/sid/1453?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1072">1999-1072</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1454</td><td class="ruletablebody" valign="top">WEB-CGI wwwwais access (<a href="http://www.snort.org/search/sid/1454?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0223">2001-0223</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10597">10597</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1455</td><td class="ruletablebody" valign="top">WEB-CGI calendar.pl access (<a href="http://www.snort.org/search/sid/1455?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0432">2000-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1215">1215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1456</td><td class="ruletablebody" valign="top">WEB-CGI calender_admin.pl access (<a href="http://www.snort.org/search/sid/1456?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0432">2000-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10506">10506</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1457</td><td class="ruletablebody" valign="top">WEB-CGI user_update_admin.pl access (<a href="http://www.snort.org/search/sid/1457?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0627">2000-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1486">1486</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1458</td><td class="ruletablebody" valign="top">WEB-CGI user_update_passwd.pl access (<a href="http://www.snort.org/search/sid/1458?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0627">2000-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1486">1486</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1459</td><td class="ruletablebody" valign="top">WEB-CGI bb-histlog.sh access (<a href="http://www.snort.org/search/sid/1459?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1462">1999-1462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/142">142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10025">10025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1460</td><td class="ruletablebody" valign="top">WEB-CGI bb-histsvc.sh access (<a href="http://www.snort.org/search/sid/1460?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1462">1999-1462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/142">142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1461</td><td class="ruletablebody" valign="top">WEB-CGI bb-rep.sh access (<a href="http://www.snort.org/search/sid/1461?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1462">1999-1462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/142">142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1462</td><td class="ruletablebody" valign="top">WEB-CGI bb-replog.sh access (<a href="http://www.snort.org/search/sid/1462?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1462">1999-1462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/142">142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1465</td><td class="ruletablebody" valign="top">WEB-CGI auktion.cgi access (<a href="http://www.snort.org/search/sid/1465?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0212">2001-0212</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2367">2367</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10638">10638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1466</td><td class="ruletablebody" valign="top">WEB-CGI cgiforum.pl access (<a href="http://www.snort.org/search/sid/1466?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1171">2000-1171</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1963">1963</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10552">10552</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1467</td><td class="ruletablebody" valign="top">WEB-CGI directorypro.cgi access (<a href="http://www.snort.org/search/sid/1467?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0780">2001-0780</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2793">2793</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10679">10679</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1468</td><td class="ruletablebody" valign="top">WEB-CGI Web Shopper shopper.cgi attempt (<a href="http://www.snort.org/search/sid/1468?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0922">2000-0922</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1776">1776</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10533">10533</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1469</td><td class="ruletablebody" valign="top">WEB-CGI Web Shopper shopper.cgi access (<a href="http://www.snort.org/search/sid/1469?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0922">2000-0922</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1776">1776</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1470</td><td class="ruletablebody" valign="top">WEB-CGI listrec.pl access (<a href="http://www.snort.org/search/sid/1470?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0997">2001-0997</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3328">3328</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10769">10769</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1471</td><td class="ruletablebody" valign="top">WEB-CGI mailnews.cgi access (<a href="http://www.snort.org/search/sid/1471?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0271">2001-0271</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2391">2391</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10641">10641</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1472</td><td class="ruletablebody" valign="top">WEB-CGI book.cgi access (<a href="http://www.snort.org/search/sid/1472?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1114">2001-1114</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3178">3178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10721">10721</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1473</td><td class="ruletablebody" valign="top">WEB-CGI newsdesk.cgi access (<a href="http://www.snort.org/search/sid/1473?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0232">2001-0232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2172">2172</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10586">10586</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1474</td><td class="ruletablebody" valign="top">WEB-CGI cal_make.pl access (<a href="http://www.snort.org/search/sid/1474?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0463">2001-0463</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2663">2663</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10664">10664</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1475</td><td class="ruletablebody" valign="top">WEB-CGI mailit.pl access (<a href="http://www.snort.org/search/sid/1475?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10417">10417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1476</td><td class="ruletablebody" valign="top">WEB-CGI sdbsearch.cgi access (<a href="http://www.snort.org/search/sid/1476?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1130">2001-1130</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1658">1658</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10720">10720</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1478</td><td class="ruletablebody" valign="top">WEB-CGI swc access (<a href="http://www.snort.org/search/sid/1478?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10493">10493</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1479</td><td class="ruletablebody" valign="top">WEB-CGI ttawebtop.cgi arbitrary file attempt (<a href="http://www.snort.org/search/sid/1479?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0805">2001-0805</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2890">2890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10696">10696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1480</td><td class="ruletablebody" valign="top">WEB-CGI ttawebtop.cgi access (<a href="http://www.snort.org/search/sid/1480?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0805">2001-0805</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2890">2890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10696">10696</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1481</td><td class="ruletablebody" valign="top">WEB-CGI upload.cgi access (<a href="http://www.snort.org/search/sid/1481?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10290">10290</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1482</td><td class="ruletablebody" valign="top">WEB-CGI view_source access (<a href="http://www.snort.org/search/sid/1482?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0174">1999-0174</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2251">2251</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10294">10294</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1483</td><td class="ruletablebody" valign="top">WEB-CGI ustorekeeper.pl access (<a href="http://www.snort.org/search/sid/1483?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0466">2001-0466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10645">10645</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1488</td><td class="ruletablebody" valign="top">WEB-CGI store.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1488?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0305">2001-0305</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2385">2385</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10639">10639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1494</td><td class="ruletablebody" valign="top">WEB-CGI SIX webboard generate.cgi attempt (<a href="http://www.snort.org/search/sid/1494?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1115">2001-1115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3175">3175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10725">10725</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1495</td><td class="ruletablebody" valign="top">WEB-CGI SIX webboard generate.cgi access (<a href="http://www.snort.org/search/sid/1495?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1115">2001-1115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3175">3175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10725">10725</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1496</td><td class="ruletablebody" valign="top">WEB-CGI spin_client.cgi access (<a href="http://www.snort.org/search/sid/1496?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10393">10393</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1501</td><td class="ruletablebody" valign="top">WEB-CGI a1stats a1disp3.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1501?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0561">2001-0561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2705">2705</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10669">10669</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1502</td><td class="ruletablebody" valign="top">WEB-CGI a1stats a1disp3.cgi access (<a href="http://www.snort.org/search/sid/1502?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0561">2001-0561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2705">2705</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10669">10669</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1503</td><td class="ruletablebody" valign="top">WEB-CGI admentor admin.asp access (<a href="http://www.snort.org/search/sid/1503?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0308">2002-0308</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4152">4152</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10880">10880</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securiteam.com/windowsntfocus/5DP0N1F6AW.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1505</td><td class="ruletablebody" valign="top">WEB-CGI alchemy http server PRN arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1505?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0871">2001-0871</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3599">3599</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10818">10818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1506</td><td class="ruletablebody" valign="top">WEB-CGI alchemy http server NUL arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1506?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0871">2001-0871</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3599">3599</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10818">10818</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1507</td><td class="ruletablebody" valign="top">WEB-CGI alibaba.pl arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1507?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0885">1999-0885</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/770">770</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10013">10013</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1508</td><td class="ruletablebody" valign="top">WEB-CGI alibaba.pl access (<a href="http://www.snort.org/search/sid/1508?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0885">1999-0885</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/770">770</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10013">10013</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1509</td><td class="ruletablebody" valign="top">WEB-CGI AltaVista Intranet Search directory traversal attempt (<a href="http://www.snort.org/search/sid/1509?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0039">2000-0039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/896">896</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10015">10015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1510</td><td class="ruletablebody" valign="top">WEB-CGI test.bat arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1510?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1511</td><td class="ruletablebody" valign="top">WEB-CGI test.bat access (<a href="http://www.snort.org/search/sid/1511?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1512</td><td class="ruletablebody" valign="top">WEB-CGI input.bat arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1512?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1513</td><td class="ruletablebody" valign="top">WEB-CGI input.bat access (<a href="http://www.snort.org/search/sid/1513?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1514</td><td class="ruletablebody" valign="top">WEB-CGI input2.bat arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1514?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1515</td><td class="ruletablebody" valign="top">WEB-CGI input2.bat access (<a href="http://www.snort.org/search/sid/1515?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1516</td><td class="ruletablebody" valign="top">WEB-CGI envout.bat arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1516?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1517</td><td class="ruletablebody" valign="top">WEB-CGI envout.bat access (<a href="http://www.snort.org/search/sid/1517?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0947">1999-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/762">762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10016">10016</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1531</td><td class="ruletablebody" valign="top">WEB-CGI bb-hist.sh attempt (<a href="http://www.snort.org/search/sid/1531?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1462">1999-1462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/142">142</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10025">10025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1532</td><td class="ruletablebody" valign="top">WEB-CGI bb-hostscv.sh attempt (<a href="http://www.snort.org/search/sid/1532?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0638">2000-0638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1455">1455</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10460">10460</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1533</td><td class="ruletablebody" valign="top">WEB-CGI bb-hostscv.sh access (<a href="http://www.snort.org/search/sid/1533?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0638">2000-0638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1455">1455</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10460">10460</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1534</td><td class="ruletablebody" valign="top">WEB-CGI agora.cgi attempt (<a href="http://www.snort.org/search/sid/1534?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0215">2002-0215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3976">3976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10836">10836</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1535</td><td class="ruletablebody" valign="top">WEB-CGI bizdbsearch access (<a href="http://www.snort.org/search/sid/1535?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0287">2000-0287</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1104">1104</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10383">10383</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1536</td><td class="ruletablebody" valign="top">WEB-CGI calendar_admin.pl arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1536?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0432">2000-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1215">1215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10506">10506</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1537</td><td class="ruletablebody" valign="top">WEB-CGI calendar_admin.pl access (<a href="http://www.snort.org/search/sid/1537?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0432">2000-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1215">1215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10506">10506</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1539</td><td class="ruletablebody" valign="top">WEB-CGI /cgi-bin/ls access (<a href="http://www.snort.org/search/sid/1539?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0079">2000-0079</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/936">936</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10037">10037</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1542</td><td class="ruletablebody" valign="top">WEB-CGI cgimail access (<a href="http://www.snort.org/search/sid/1542?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0726">2000-0726</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1623">1623</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11721">11721</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1543</td><td class="ruletablebody" valign="top">WEB-CGI cgiwrap access (<a href="http://www.snort.org/search/sid/1543?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0987">2001-0987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/777">777</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10041">10041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1547</td><td class="ruletablebody" valign="top">WEB-CGI csSearch.cgi arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1547?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0495">2002-0495</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4368">4368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10924">10924</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1548</td><td class="ruletablebody" valign="top">WEB-CGI csSearch.cgi access (<a href="http://www.snort.org/search/sid/1548?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0495">2002-0495</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4368">4368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10924">10924</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1554</td><td class="ruletablebody" valign="top">WEB-CGI dbman db.cgi access (<a href="http://www.snort.org/search/sid/1554?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0381">2000-0381</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1178">1178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10403">10403</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1555</td><td class="ruletablebody" valign="top">WEB-CGI DCShop access (<a href="http://www.snort.org/search/sid/1555?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0821">2001-0821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2889">2889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1556</td><td class="ruletablebody" valign="top">WEB-CGI DCShop orders.txt access (<a href="http://www.snort.org/search/sid/1556?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0821">2001-0821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2889">2889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1557</td><td class="ruletablebody" valign="top">WEB-CGI DCShop auth_user_file.txt access (<a href="http://www.snort.org/search/sid/1557?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0821">2001-0821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2889">2889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1565</td><td class="ruletablebody" valign="top">WEB-CGI eshop.pl arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1565?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1014">2001-1014</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3340">3340</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1566</td><td class="ruletablebody" valign="top">WEB-CGI eshop.pl access (<a href="http://www.snort.org/search/sid/1566?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1014">2001-1014</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3340">3340</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1569</td><td class="ruletablebody" valign="top">WEB-CGI loadpage.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1569?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1092">2000-1092</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2109">2109</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10065">10065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1570</td><td class="ruletablebody" valign="top">WEB-CGI loadpage.cgi access (<a href="http://www.snort.org/search/sid/1570?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1092">2000-1092</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2109">2109</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10065">10065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1571</td><td class="ruletablebody" valign="top">WEB-CGI dcforum.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1571?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0437">2001-0437</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2611">2611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10583">10583</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1572</td><td class="ruletablebody" valign="top">WEB-CGI commerce.cgi arbitrary file access attempt (<a href="http://www.snort.org/search/sid/1572?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0210">2001-0210</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2361">2361</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10612">10612</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1573</td><td class="ruletablebody" valign="top">WEB-CGI cgiforum.pl attempt (<a href="http://www.snort.org/search/sid/1573?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1171">2000-1171</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1963">1963</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10552">10552</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1574</td><td class="ruletablebody" valign="top">WEB-CGI directorypro.cgi attempt (<a href="http://www.snort.org/search/sid/1574?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0780">2001-0780</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2793">2793</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10679">10679</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1587</td><td class="ruletablebody" valign="top">WEB-MISC cgitest.exe access (<a href="http://www.snort.org/search/sid/1587?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0128">2002-0128</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3885">3885</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11131">11131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1590</td><td class="ruletablebody" valign="top">WEB-CGI faqmanager.cgi arbitrary file access attempt (<a href="http://www.snort.org/search/sid/1590?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3810">3810</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10837">10837</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1591</td><td class="ruletablebody" valign="top">WEB-CGI faqmanager.cgi access (<a href="http://www.snort.org/search/sid/1591?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3810">3810</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10837">10837</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1592</td><td class="ruletablebody" valign="top">WEB-CGI /fcgi-bin/echo.exe access (<a href="http://www.snort.org/search/sid/1592?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10838">10838</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1593</td><td class="ruletablebody" valign="top">WEB-CGI FormHandler.cgi external site redirection attempt (<a href="http://www.snort.org/search/sid/1593?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1050">1999-1050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/799">799</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10075">10075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1594</td><td class="ruletablebody" valign="top">WEB-CGI FormHandler.cgi access (<a href="http://www.snort.org/search/sid/1594?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1050">1999-1050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/799">799</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10075">10075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1597</td><td class="ruletablebody" valign="top">WEB-CGI guestbook.cgi access (<a href="http://www.snort.org/search/sid/1597?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0237">1999-0237</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10098">10098</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1598</td><td class="ruletablebody" valign="top">WEB-CGI Home Free search.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1598?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0054">2000-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/921">921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10101">10101</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1599</td><td class="ruletablebody" valign="top">WEB-CGI search.cgi access (<a href="http://www.snort.org/search/sid/1599?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0054">2000-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/921">921</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1600</td><td class="ruletablebody" valign="top">WEB-CGI htsearch arbitrary configuration file attempt (<a href="http://www.snort.org/search/sid/1600?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0834">2001-0834</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3410">3410</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1601</td><td class="ruletablebody" valign="top">WEB-CGI htsearch arbitrary file read attempt (<a href="http://www.snort.org/search/sid/1601?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0208">2000-0208</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1026">1026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10105">10105</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1602</td><td class="ruletablebody" valign="top">WEB-CGI htsearch access (<a href="http://www.snort.org/search/sid/1602?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0208">2000-0208</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1026">1026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10105">10105</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1606</td><td class="ruletablebody" valign="top">WEB-CGI icat access (<a href="http://www.snort.org/search/sid/1606?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1069">1999-1069</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1607</td><td class="ruletablebody" valign="top">WEB-CGI HyperSeek hsx.cgi access (<a href="http://www.snort.org/search/sid/1607?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0253">2001-0253</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2314">2314</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10602">10602</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1608</td><td class="ruletablebody" valign="top">WEB-CGI htmlscript attempt (<a href="http://www.snort.org/search/sid/1608?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0264">1999-0264</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2001">2001</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10106">10106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1611</td><td class="ruletablebody" valign="top">WEB-CGI eXtropia webstore access (<a href="http://www.snort.org/search/sid/1611?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1005">2000-1005</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1774">1774</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10532">10532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1617</td><td class="ruletablebody" valign="top">WEB-CGI Bugzilla doeditvotes.cgi access (<a href="http://www.snort.org/search/sid/1617?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0011">2002-0011</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3800">3800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1628</td><td class="ruletablebody" valign="top">WEB-CGI FormHandler.cgi directory traversal attempt attempt (<a href="http://www.snort.org/search/sid/1628?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1050">1999-1050</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/799">799</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10075">10075</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1637</td><td class="ruletablebody" valign="top">WEB-CGI yabb access (<a href="http://www.snort.org/search/sid/1637?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0853">2000-0853</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1668">1668</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10512">10512</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1642</td><td class="ruletablebody" valign="top">WEB-CGI document.d2w access (<a href="http://www.snort.org/search/sid/1642?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1110">2000-1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2017">2017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1643</td><td class="ruletablebody" valign="top">WEB-CGI db2www access (<a href="http://www.snort.org/search/sid/1643?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0677">2000-0677</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1644</td><td class="ruletablebody" valign="top">WEB-CGI test-cgi attempt (<a href="http://www.snort.org/search/sid/1644?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0070">1999-0070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2003">2003</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10282">10282</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1645</td><td class="ruletablebody" valign="top">WEB-CGI testcgi access (<a href="http://www.snort.org/search/sid/1645?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7214">7214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11610">11610</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1646</td><td class="ruletablebody" valign="top">WEB-CGI test.cgi access (<a href="http://www.snort.org/search/sid/1646?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1648</td><td class="ruletablebody" valign="top">WEB-CGI perl.exe command attempt (<a href="http://www.snort.org/search/sid/1648?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10173">10173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1649</td><td class="ruletablebody" valign="top">WEB-CGI perl command attempt (<a href="http://www.snort.org/search/sid/1649?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0509">1999-0509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10173">10173</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1996-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1650</td><td class="ruletablebody" valign="top">WEB-CGI tst.bat access (<a href="http://www.snort.org/search/sid/1650?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0885">1999-0885</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/770">770</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10014">10014</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1651</td><td class="ruletablebody" valign="top">WEB-CGI environ.pl access (<a href="http://www.snort.org/search/sid/1651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1652</td><td class="ruletablebody" valign="top">WEB-CGI campas attempt (<a href="http://www.snort.org/search/sid/1652?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0146">1999-0146</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1975">1975</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10035">10035</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1654</td><td class="ruletablebody" valign="top">WEB-CGI cart32.exe access (<a href="http://www.snort.org/search/sid/1654?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1153">1153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10389">10389</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1655</td><td class="ruletablebody" valign="top">WEB-CGI pfdispaly.cgi arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1655?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0270">1999-0270</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10174">10174</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1656</td><td class="ruletablebody" valign="top">WEB-CGI pfdispaly.cgi access (<a href="http://www.snort.org/search/sid/1656?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0270">1999-0270</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/64">64</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10174">10174</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1657</td><td class="ruletablebody" valign="top">WEB-CGI pagelog.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1657?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0940">2000-0940</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1864">1864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10591">10591</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1658</td><td class="ruletablebody" valign="top">WEB-CGI pagelog.cgi access (<a href="http://www.snort.org/search/sid/1658?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0940">2000-0940</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1864">1864</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10591">10591</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1666</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES index of /cgi-bin/ response (<a href="http://www.snort.org/search/sid/1666?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10039">10039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1668</td><td class="ruletablebody" valign="top">WEB-CGI /cgi-bin/ access (<a href="http://www.snort.org/search/sid/1668?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1669</td><td class="ruletablebody" valign="top">WEB-CGI /cgi-dos/ access (<a href="http://www.snort.org/search/sid/1669?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1700</td><td class="ruletablebody" valign="top">WEB-CGI imagemap.exe access (<a href="http://www.snort.org/search/sid/1700?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0951">1999-0951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/739">739</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10122">10122</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1701</td><td class="ruletablebody" valign="top">WEB-CGI calendar-admin.pl access (<a href="http://www.snort.org/search/sid/1701?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0432">2000-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1215">1215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10506">10506</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1702</td><td class="ruletablebody" valign="top">WEB-CGI Amaya templates sendtemp.pl access (<a href="http://www.snort.org/search/sid/1702?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0272">2001-0272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2504">2504</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1703</td><td class="ruletablebody" valign="top">WEB-CGI auktion.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1703?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0212">2001-0212</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2367">2367</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10638">10638</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1704</td><td class="ruletablebody" valign="top">WEB-CGI cal_make.pl directory traversal attempt (<a href="http://www.snort.org/search/sid/1704?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0463">2001-0463</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2663">2663</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10664">10664</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1705</td><td class="ruletablebody" valign="top">WEB-CGI echo.bat arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1705?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0213">2000-0213</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1002">1002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10246">10246</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1706</td><td class="ruletablebody" valign="top">WEB-CGI echo.bat access (<a href="http://www.snort.org/search/sid/1706?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0213">2000-0213</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1002">1002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10246">10246</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1707</td><td class="ruletablebody" valign="top">WEB-CGI hello.bat arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1707?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0213">2000-0213</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1002">1002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10246">10246</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1708</td><td class="ruletablebody" valign="top">WEB-CGI hello.bat access (<a href="http://www.snort.org/search/sid/1708?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0213">2000-0213</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1002">1002</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10246">10246</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1709</td><td class="ruletablebody" valign="top">WEB-CGI ad.cgi access (<a href="http://www.snort.org/search/sid/1709?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0025">2001-0025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2103">2103</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11464">11464</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1710</td><td class="ruletablebody" valign="top">WEB-CGI bbs_forum.cgi access (<a href="http://www.snort.org/search/sid/1710?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0123">2001-0123</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2177">2177</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cgisecurity.com/advisory/3.1.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1711</td><td class="ruletablebody" valign="top">WEB-CGI bsguest.cgi access (<a href="http://www.snort.org/search/sid/1711?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0099">2001-0099</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2159">2159</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1712</td><td class="ruletablebody" valign="top">WEB-CGI bslist.cgi access (<a href="http://www.snort.org/search/sid/1712?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0100">2001-0100</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2160">2160</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1713</td><td class="ruletablebody" valign="top">WEB-CGI cgforum.cgi access (<a href="http://www.snort.org/search/sid/1713?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1132">2000-1132</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1951">1951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1714</td><td class="ruletablebody" valign="top">WEB-CGI newdesk access (<a href="http://www.snort.org/search/sid/1714?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1715</td><td class="ruletablebody" valign="top">WEB-CGI register.cgi access (<a href="http://www.snort.org/search/sid/1715?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0076">2001-0076</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2157">2157</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1716</td><td class="ruletablebody" valign="top">WEB-CGI gbook.cgi access (<a href="http://www.snort.org/search/sid/1716?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1131">2000-1131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1940">1940</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1717</td><td class="ruletablebody" valign="top">WEB-CGI simplestguest.cgi access (<a href="http://www.snort.org/search/sid/1717?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0022">2001-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2106">2106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1718</td><td class="ruletablebody" valign="top">WEB-CGI statsconfig.pl access (<a href="http://www.snort.org/search/sid/1718?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0113">2001-0113</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2211">2211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1719</td><td class="ruletablebody" valign="top">WEB-CGI talkback.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1719?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0420">2001-0420</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2547">2547</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1720</td><td class="ruletablebody" valign="top">WEB-CGI talkback.cgi access (<a href="http://www.snort.org/search/sid/1720?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0420">2001-0420</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2547">2547</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1722</td><td class="ruletablebody" valign="top">WEB-CGI MachineInfo access (<a href="http://www.snort.org/search/sid/1722?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1067">1999-1067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1723</td><td class="ruletablebody" valign="top">WEB-CGI emumail.cgi NULL attempt (<a href="http://www.snort.org/search/sid/1723?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1526">2002-1526</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5824">5824</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1724</td><td class="ruletablebody" valign="top">WEB-CGI emumail.cgi access (<a href="http://www.snort.org/search/sid/1724?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1526">2002-1526</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5824">5824</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1727</td><td class="ruletablebody" valign="top">WEB-CGI SGI InfoSearch fname access (<a href="http://www.snort.org/search/sid/1727?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0207">2000-0207</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1031">1031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1730</td><td class="ruletablebody" valign="top">WEB-CGI ustorekeeper.pl directory traversal attempt (<a href="http://www.snort.org/search/sid/1730?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0466">2001-0466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2536">2536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10645">10645</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1731</td><td class="ruletablebody" valign="top">WEB-CGI a1stats access (<a href="http://www.snort.org/search/sid/1731?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0561">2001-0561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2705">2705</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10669">10669</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1762</td><td class="ruletablebody" valign="top">WEB-CGI phf arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1762?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0067">1999-0067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/629">629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1763</td><td class="ruletablebody" valign="top">WEB-CGI Nortel Contivity cgiproc DOS attempt (<a href="http://www.snort.org/search/sid/1763?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0064">2000-0064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/938">938</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10160">10160</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1764</td><td class="ruletablebody" valign="top">WEB-CGI Nortel Contivity cgiproc DOS attempt (<a href="http://www.snort.org/search/sid/1764?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0064">2000-0064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/938">938</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10160">10160</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1765</td><td class="ruletablebody" valign="top">WEB-CGI Nortel Contivity cgiproc access (<a href="http://www.snort.org/search/sid/1765?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0064">2000-0064</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/938">938</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10160">10160</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1787</td><td class="ruletablebody" valign="top">WEB-CGI csPassword.cgi access (<a href="http://www.snort.org/search/sid/1787?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0918">2002-0918</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4889">4889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1788</td><td class="ruletablebody" valign="top">WEB-CGI csPassword password.cgi.tmp access (<a href="http://www.snort.org/search/sid/1788?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0920">2002-0920</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4889">4889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1805</td><td class="ruletablebody" valign="top">WEB-CGI Oracle reports CGI access (<a href="http://www.snort.org/search/sid/1805?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0947">2002-0947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4848">4848</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1822</td><td class="ruletablebody" valign="top">WEB-CGI alienform.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1822?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0934">2002-0934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4983">4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11027">11027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1823</td><td class="ruletablebody" valign="top">WEB-CGI AlienForm af.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1823?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0934">2002-0934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4983">4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11027">11027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1824</td><td class="ruletablebody" valign="top">WEB-CGI alienform.cgi access (<a href="http://www.snort.org/search/sid/1824?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0934">2002-0934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4983">4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11027">11027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1825</td><td class="ruletablebody" valign="top">WEB-CGI AlienForm af.cgi access (<a href="http://www.snort.org/search/sid/1825?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0934">2002-0934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4983">4983</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11027">11027</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1850</td><td class="ruletablebody" valign="top">WEB-CGI way-board.cgi access (<a href="http://www.snort.org/search/sid/1850?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10610">10610</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1862</td><td class="ruletablebody" valign="top">WEB-CGI mrtg.cgi directory traversal attempt (<a href="http://www.snort.org/search/sid/1862?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0232">2002-0232</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4017">4017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11001">11001</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1865</td><td class="ruletablebody" valign="top">WEB-CGI webdist.cgi arbitrary command attempt (<a href="http://www.snort.org/search/sid/1865?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0039">1999-0039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/374">374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10299">10299</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1868</td><td class="ruletablebody" valign="top">WEB-CGI story.pl arbitrary file read attempt (<a href="http://www.snort.org/search/sid/1868?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">default-login-attempt</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0804">2001-0804</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3028">3028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10817">10817</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1869</td><td class="ruletablebody" valign="top">WEB-CGI story.pl access (<a href="http://www.snort.org/search/sid/1869?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">default-login-attempt</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0804">2001-0804</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3028">3028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10817">10817</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1870</td><td class="ruletablebody" valign="top">WEB-CGI siteUserMod.cgi access (<a href="http://www.snort.org/search/sid/1870?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0117">2000-0117</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/951">951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10253">10253</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1875</td><td class="ruletablebody" valign="top">WEB-CGI cgicso access (<a href="http://www.snort.org/search/sid/1875?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1652">2002-1652</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6141">6141</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10780">10780</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1876</td><td class="ruletablebody" valign="top">WEB-CGI nph-publish.cgi access (<a href="http://www.snort.org/search/sid/1876?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1177">1999-1177</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10164">10164</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1877</td><td class="ruletablebody" valign="top">WEB-CGI printenv access (<a href="http://www.snort.org/search/sid/1877?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0868">2000-0868</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1658">1658</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10503">10503</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1878</td><td class="ruletablebody" valign="top">WEB-CGI sdbsearch.cgi access (<a href="http://www.snort.org/search/sid/1878?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0868">2000-0868</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1658">1658</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10503">10503</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1879</td><td class="ruletablebody" valign="top">WEB-CGI book.cgi arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/1879?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1114">2001-1114</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3178">3178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10721">10721</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1931</td><td class="ruletablebody" valign="top">WEB-CGI rpc-nlog.pl access (<a href="http://www.snort.org/search/sid/1931?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1278">1999-1278</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://marc.theaimsgroup.com/?l=bugtraq&amp;m=91471400632145&amp;w=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1932</td><td class="ruletablebody" valign="top">WEB-CGI rpc-smb.pl access (<a href="http://www.snort.org/search/sid/1932?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1278">1999-1278</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1933</td><td class="ruletablebody" valign="top">WEB-CGI cart.cgi access (<a href="http://www.snort.org/search/sid/1933?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0252">2000-0252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1115">1115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10368">10368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1994</td><td class="ruletablebody" valign="top">WEB-CGI vpasswd.cgi access (<a href="http://www.snort.org/search/sid/1994?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6038">6038</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11165">11165</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1995</td><td class="ruletablebody" valign="top">WEB-CGI alya.cgi access (<a href="http://www.snort.org/search/sid/1995?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11118">11118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1996</td><td class="ruletablebody" valign="top">WEB-CGI viralator.cgi access (<a href="http://www.snort.org/search/sid/1996?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0849">2001-0849</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3495">3495</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11107">11107</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2001</td><td class="ruletablebody" valign="top">WEB-CGI smartsearch.cgi access (<a href="http://www.snort.org/search/sid/2001?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7133">7133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2051</td><td class="ruletablebody" valign="top">WEB-CGI cached_feed.cgi moreover shopping cart access (<a href="http://www.snort.org/search/sid/2051?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0906">2000-0906</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1762">1762</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2052</td><td class="ruletablebody" valign="top">WEB-CGI overflow.cgi access (<a href="http://www.snort.org/search/sid/2052?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1361">2002-1361</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6326">6326</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11190">11190</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2002-35.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2053</td><td class="ruletablebody" valign="top">WEB-CGI process_bug.cgi access (<a href="http://www.snort.org/search/sid/2053?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0008">2002-0008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3272">3272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2054</td><td class="ruletablebody" valign="top">WEB-CGI enter_bug.cgi arbitrary command attempt (<a href="http://www.snort.org/search/sid/2054?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0008">2002-0008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3272">3272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2055</td><td class="ruletablebody" valign="top">WEB-CGI enter_bug.cgi access (<a href="http://www.snort.org/search/sid/2055?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0008">2002-0008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3272">3272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2085</td><td class="ruletablebody" valign="top">WEB-CGI parse_xml.cgi access (<a href="http://www.snort.org/search/sid/2085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0054">2003-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6960">6960</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2086</td><td class="ruletablebody" valign="top">WEB-CGI streaming server parse_xml.cgi access (<a href="http://www.snort.org/search/sid/2086?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0054">2003-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6960">6960</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11278">11278</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2115</td><td class="ruletablebody" valign="top">WEB-CGI album.pl access (<a href="http://www.snort.org/search/sid/2115?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7444">7444</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11581">11581</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2116</td><td class="ruletablebody" valign="top">WEB-CGI chipcfg.cgi access (<a href="http://www.snort.org/search/sid/2116?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1341">2001-1341</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2767">2767</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://archives.neohapsis.com/archives/bugtraq/2001-05/0233.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2127</td><td class="ruletablebody" valign="top">WEB-CGI ikonboard.cgi access (<a href="http://www.snort.org/search/sid/2127?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7361">7361</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11605">11605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2128</td><td class="ruletablebody" valign="top">WEB-CGI swsrv.cgi access (<a href="http://www.snort.org/search/sid/2128?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0217">2003-0217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7510">7510</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11608">11608</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2194</td><td class="ruletablebody" valign="top">WEB-CGI CSMailto.cgi access (<a href="http://www.snort.org/search/sid/2194?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0749">2002-0749</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6265">6265</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2195</td><td class="ruletablebody" valign="top">WEB-CGI alert.cgi access (<a href="http://www.snort.org/search/sid/2195?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0346">2002-0346</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2196</td><td class="ruletablebody" valign="top">WEB-CGI catgy.cgi access (<a href="http://www.snort.org/search/sid/2196?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1212">2001-1212</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2197</td><td class="ruletablebody" valign="top">WEB-CGI cvsview2.cgi access (<a href="http://www.snort.org/search/sid/2197?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0153">2003-0153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5517">5517</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2198</td><td class="ruletablebody" valign="top">WEB-CGI cvslog.cgi access (<a href="http://www.snort.org/search/sid/2198?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0153">2003-0153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5517">5517</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2199</td><td class="ruletablebody" valign="top">WEB-CGI multidiff.cgi access (<a href="http://www.snort.org/search/sid/2199?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0153">2003-0153</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5517">5517</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2200</td><td class="ruletablebody" valign="top">WEB-CGI dnewsweb.cgi access (<a href="http://www.snort.org/search/sid/2200?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0423">2000-0423</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2202</td><td class="ruletablebody" valign="top">WEB-CGI edit_action.cgi access (<a href="http://www.snort.org/search/sid/2202?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1196">2001-1196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2203</td><td class="ruletablebody" valign="top">WEB-CGI everythingform.cgi access (<a href="http://www.snort.org/search/sid/2203?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0023">2001-0023</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2204</td><td class="ruletablebody" valign="top">WEB-CGI ezadmin.cgi access (<a href="http://www.snort.org/search/sid/2204?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0263">2002-0263</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2205</td><td class="ruletablebody" valign="top">WEB-CGI ezboard.cgi access (<a href="http://www.snort.org/search/sid/2205?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0263">2002-0263</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2206</td><td class="ruletablebody" valign="top">WEB-CGI ezman.cgi access (<a href="http://www.snort.org/search/sid/2206?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0263">2002-0263</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2207</td><td class="ruletablebody" valign="top">WEB-CGI fileseek.cgi access (<a href="http://www.snort.org/search/sid/2207?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0611">2002-0611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6784">6784</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2208</td><td class="ruletablebody" valign="top">WEB-CGI fom.cgi access (<a href="http://www.snort.org/search/sid/2208?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0230">2002-0230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2209</td><td class="ruletablebody" valign="top">WEB-CGI getdoc.cgi access (<a href="http://www.snort.org/search/sid/2209?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0288">2000-0288</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2210</td><td class="ruletablebody" valign="top">WEB-CGI global.cgi access (<a href="http://www.snort.org/search/sid/2210?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0952">2000-0952</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2211</td><td class="ruletablebody" valign="top">WEB-CGI guestserver.cgi access (<a href="http://www.snort.org/search/sid/2211?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0180">2001-0180</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2212</td><td class="ruletablebody" valign="top">WEB-CGI imageFolio.cgi access (<a href="http://www.snort.org/search/sid/2212?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1334">2002-1334</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6265">6265</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2213</td><td class="ruletablebody" valign="top">WEB-CGI mailfile.cgi access (<a href="http://www.snort.org/search/sid/2213?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0977">2000-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2214</td><td class="ruletablebody" valign="top">WEB-CGI mailview.cgi access (<a href="http://www.snort.org/search/sid/2214?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0526">2000-0526</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2215</td><td class="ruletablebody" valign="top">WEB-CGI nsManager.cgi access (<a href="http://www.snort.org/search/sid/2215?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1023">2000-1023</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2216</td><td class="ruletablebody" valign="top">WEB-CGI readmail.cgi access (<a href="http://www.snort.org/search/sid/2216?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1283">2001-1283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2217</td><td class="ruletablebody" valign="top">WEB-CGI printmail.cgi access (<a href="http://www.snort.org/search/sid/2217?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1283">2001-1283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2218</td><td class="ruletablebody" valign="top">WEB-CGI service.cgi access (<a href="http://www.snort.org/search/sid/2218?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0346">2002-0346</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2219</td><td class="ruletablebody" valign="top">WEB-CGI setpasswd.cgi access (<a href="http://www.snort.org/search/sid/2219?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0133">2001-0133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2220</td><td class="ruletablebody" valign="top">WEB-CGI simplestmail.cgi access (<a href="http://www.snort.org/search/sid/2220?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0022">2001-0022</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2221</td><td class="ruletablebody" valign="top">WEB-CGI ws_mail.cgi access (<a href="http://www.snort.org/search/sid/2221?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1343">2001-1343</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4579">4579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11748">11748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2222</td><td class="ruletablebody" valign="top">WEB-CGI nph-exploitscanget.cgi access (<a href="http://www.snort.org/search/sid/2222?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0434">2003-0434</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7913">7913</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11740">11740</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2223</td><td class="ruletablebody" valign="top">WEB-CGI csNews.cgi access (<a href="http://www.snort.org/search/sid/2223?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0923">2002-0923</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4994">4994</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11726">11726</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2224</td><td class="ruletablebody" valign="top">WEB-CGI psunami.cgi access (<a href="http://www.snort.org/search/sid/2224?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6607">6607</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11750">11750</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2225</td><td class="ruletablebody" valign="top">WEB-CGI gozila.cgi access (<a href="http://www.snort.org/search/sid/2225?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1236">2002-1236</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6086">6086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11773">11773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2237</td><td class="ruletablebody" valign="top">WEB-MISC cgiWebupdate.exe access (<a href="http://www.snort.org/search/sid/2237?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1150">2001-1150</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3216">3216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11722">11722</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2242</td><td class="ruletablebody" valign="top">WEB-MISC ddicgi.exe access (<a href="http://www.snort.org/search/sid/2242?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0826">2000-0826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1657">1657</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11728">11728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2243</td><td class="ruletablebody" valign="top">WEB-MISC ndcgi.exe access (<a href="http://www.snort.org/search/sid/2243?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0922">2001-0922</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3583">3583</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11730">11730</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2277</td><td class="ruletablebody" valign="top">WEB-MISC PeopleSoft PeopleBooks psdoccgi access (<a href="http://www.snort.org/search/sid/2277?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0627">2003-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9038">9038</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2323</td><td class="ruletablebody" valign="top">WEB-CGI quickstore.cgi access (<a href="http://www.snort.org/search/sid/2323?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9282">9282</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11975">11975</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2387</td><td class="ruletablebody" valign="top">WEB-CGI view_broadcast.cgi access (<a href="http://www.snort.org/search/sid/2387?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0422">2003-0422</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8257">8257</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2388</td><td class="ruletablebody" valign="top">WEB-CGI streaming server view_broadcast.cgi access (<a href="http://www.snort.org/search/sid/2388?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0422">2003-0422</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8257">8257</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2396</td><td class="ruletablebody" valign="top">WEB-CGI CCBill whereami.cgi arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/2396?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8095">8095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/9191/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2397</td><td class="ruletablebody" valign="top">WEB-CGI CCBill whereami.cgi access (<a href="http://www.snort.org/search/sid/2397?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8095">8095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/9191/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2433</td><td class="ruletablebody" valign="top">WEB-CGI MDaemon form2raw.cgi overflow attempt (<a href="http://www.snort.org/search/sid/2433?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1200">2003-1200</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9317">9317</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/10512/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2434</td><td class="ruletablebody" valign="top">WEB-CGI MDaemon form2raw.cgi access (<a href="http://www.snort.org/search/sid/2434?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1200">2003-1200</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9317">9317</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/10512/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2567</td><td class="ruletablebody" valign="top">WEB-CGI Emumail init.emu access (<a href="http://www.snort.org/search/sid/2567?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9861">9861</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12095">12095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2568</td><td class="ruletablebody" valign="top">WEB-CGI Emumail emumail.fcgi access (<a href="http://www.snort.org/search/sid/2568?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9861">9861</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12095">12095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2663</td><td class="ruletablebody" valign="top">WEB-CGI WhatsUpGold instancename overflow attempt (<a href="http://www.snort.org/search/sid/2663?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0798">2004-0798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11043">11043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2668</td><td class="ruletablebody" valign="top">WEB-CGI processit access (<a href="http://www.snort.org/search/sid/2668?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10649">10649</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2669</td><td class="ruletablebody" valign="top">WEB-CGI ibillpm.pl access (<a href="http://www.snort.org/search/sid/2669?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0839">2001-0839</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3476">3476</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11083">11083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2670</td><td class="ruletablebody" valign="top">WEB-CGI pgpmail.pl access (<a href="http://www.snort.org/search/sid/2670?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0937">2001-0937</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3605">3605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11070">11070</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3062</td><td class="ruletablebody" valign="top">WEB-CGI NetScreen SA 5000 delhomepage.cgi access (<a href="http://www.snort.org/search/sid/3062?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0347">2004-0347</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9791">9791</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3131</td><td class="ruletablebody" valign="top">WEB-CGI mailman directory traversal attempt (<a href="http://www.snort.org/search/sid/3131?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0202">2005-0202</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3463</td><td class="ruletablebody" valign="top">WEB-CGI awstats access (<a href="http://www.snort.org/search/sid/3463?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12572">12572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=16456">16456</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3464</td><td class="ruletablebody" valign="top">WEB-CGI awstats.pl command execution attempt (<a href="http://www.snort.org/search/sid/3464?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12572">12572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=16456">16456</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3465</td><td class="ruletablebody" valign="top">WEB-CGI RiSearch show.pl proxy attempt (<a href="http://www.snort.org/search/sid/3465?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10812">10812</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3468</td><td class="ruletablebody" valign="top">WEB-CGI math_sum.mscgi access (<a href="http://www.snort.org/search/sid/3468?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10831">10831</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=14182">14182</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3469</td><td class="ruletablebody" valign="top">WEB-CGI Ipswitch WhatsUp Gold dos attempt (<a href="http://www.snort.org/search/sid/3469?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0799">2004-0799</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11110">11110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.secunia.com/advisories/12578/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3638</td><td class="ruletablebody" valign="top">WEB-CGI SoftCart.exe CGI buffer overflow attempt (<a href="http://www.snort.org/search/sid/3638?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2221">2004-2221</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10926">10926</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3674</td><td class="ruletablebody" valign="top">WEB-CGI db4web_c directory traversal attempt (<a href="http://www.snort.org/search/sid/3674?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1483">2002-1483</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5723">5723</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11182">11182</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3813</td><td class="ruletablebody" valign="top">WEB-CGI awstats.pl configdir command execution attempt (<a href="http://www.snort.org/search/sid/3813?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0116">2005-0116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12298">12298</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=16189">16189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4128</td><td class="ruletablebody" valign="top">WEB-CGI 4DWebstar ShellExample.cgi information disclosure (<a href="http://www.snort.org/search/sid/4128?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10721">10721</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.atstake.com/research/advisories/2004/a071304-1.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8084</td><td class="ruletablebody" valign="top">WEB-CGI CVSTrac filediff function access (<a href="http://www.snort.org/search/sid/8084?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1456">2004-1456</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10878">10878</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=14238">14238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.kb.cert.org/vuls/id/770816">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10999</td><td class="ruletablebody" valign="top">WEB-CGI chetcpasswd access (<a href="http://www.snort.org/search/sid/10999?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6679">2006-6679</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6472">6472</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11817</td><td class="ruletablebody" valign="top">WEB-CGI WhatsUpGold configuration access (<a href="http://www.snort.org/search/sid/11817?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0798">2004-0798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11043">11043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12056</td><td class="ruletablebody" valign="top">WEB-CGI WhatsUpGold instancename overflow attempt (<a href="http://www.snort.org/search/sid/12056?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0798">2004-0798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11043">11043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12057</td><td class="ruletablebody" valign="top">WEB-CGI WhatsUpGold configuration access (<a href="http://www.snort.org/search/sid/12057?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0798">2004-0798</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11043">11043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12255</td><td class="ruletablebody" valign="top">WEB-CGI CSGuestbook setup attempt (<a href="http://www.snort.org/search/sid/12255?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1750">2002-1750</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4448">4448</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15908</td><td class="ruletablebody" valign="top">WEB-MISC Trend Micro OfficeScan multiple CGI modules HTTP form processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/15908?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3862">2008-3862</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16922</td><td class="ruletablebody" valign="top">BLACKLIST URI request for known malicious URI - /cgi-bin/rd.cgi?f=/vercfg.dat?AgentID= (<a href="http://www.snort.org/search/sid/16922?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16922.html">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="220"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Mail</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="221"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Mail / Microsoft Exchange</div></p><span class="group"># of attack rules in this group: 12</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7165</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - information exchange - flowbit set 1 (<a href="http://www.snort.org/search/sid/7165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7166</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - information exchange - flowbit set 2 (<a href="http://www.snort.org/search/sid/7166?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7167</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - information exchange - flowbit set 3 (<a href="http://www.snort.org/search/sid/7167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7168</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - information exchange - flowbit set 4 (<a href="http://www.snort.org/search/sid/7168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7169</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - information exchange (<a href="http://www.snort.org/search/sid/7169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076050">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11222</td><td class="ruletablebody" valign="top">SMTP Exchange MODPROPS denial of service attempt (<a href="http://www.snort.org/search/sid/11222?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0039">2007-0039</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23808">23808</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12619</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Exchange ical/vcal malformed property (<a href="http://www.snort.org/search/sid/12619?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0027">2006-0027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17908">17908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15301</td><td class="ruletablebody" valign="top">SMTP Exchange compressed RTF remote code execution attempt (<a href="http://www.snort.org/search/sid/15301?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0098">2009-0098</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15302</td><td class="ruletablebody" valign="top">DOS Microsoft Exchange System Attendant denial of service attempt (<a href="http://www.snort.org/search/sid/15302?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0099">2009-0099</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15329</td><td class="ruletablebody" valign="top">SMTP Microsoft Exchange MODPROPS memory corruption attempt (<a href="http://www.snort.org/search/sid/15329?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0027">2006-0027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17908">17908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15964</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Exchange OWA XSS and spoofing attempt (<a href="http://www.snort.org/search/sid/15964?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0203">2004-0203</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10902">10902</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17481</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Exchange and Outlook TNEF Decoding Integer Overflow attempt (<a href="http://www.snort.org/search/sid/17481?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0002">2006-0002</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16197">16197</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 5</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">658</td><td class="ruletablebody" valign="top">SMTP exchange mime DOS (<a href="http://www.snort.org/search/sid/658?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1006">2000-1006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1869">1869</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10558">10558</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS00-082.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3815</td><td class="ruletablebody" valign="top">SMTP eXchange POP3 mail server overflow attempt (<a href="http://www.snort.org/search/sid/3815?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1945">2004-1945</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10180">10180</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10010</td><td class="ruletablebody" valign="top">EXPLOIT Putty Server key exchange buffer overflow attempt (<a href="http://www.snort.org/search/sid/10010?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1359">2002-1359</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6407">6407</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.rapid7.com/advisories/R7-0009.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14742</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Exchange MODPROPS denial of service PoC attempt (<a href="http://www.snort.org/search/sid/14742?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0039">2007-0039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23808">23808</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16108</td><td class="ruletablebody" valign="top">BACKDOOR trojan downloader exchanger.gen2 runtime detection (<a href="http://www.snort.org/search/sid/16108?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ca.com/us/securityadvisor/pest/pest.aspx?id=453143306">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="222"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Mail / Sendmail</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 21</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">655</td><td class="ruletablebody" valign="top">SMTP sendmail 8.6.9 exploit (<a href="http://www.snort.org/search/sid/655?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">662</td><td class="ruletablebody" valign="top">SMTP sendmail 5.5.5 exploit (<a href="http://www.snort.org/search/sid/662?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0203">1999-0203</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10258">10258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">665</td><td class="ruletablebody" valign="top">SMTP sendmail 5.6.5 exploit (<a href="http://www.snort.org/search/sid/665?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0203">1999-0203</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2308">2308</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">667</td><td class="ruletablebody" valign="top">SMTP sendmail 8.6.10 exploit (<a href="http://www.snort.org/search/sid/667?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">668</td><td class="ruletablebody" valign="top">SMTP sendmail 8.6.10 exploit (<a href="http://www.snort.org/search/sid/668?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">669</td><td class="ruletablebody" valign="top">SMTP sendmail 8.6.9 exploit (<a href="http://www.snort.org/search/sid/669?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">670</td><td class="ruletablebody" valign="top">SMTP sendmail 8.6.9 exploit (<a href="http://www.snort.org/search/sid/670?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">671</td><td class="ruletablebody" valign="top">SMTP sendmail 8.6.9c exploit (<a href="http://www.snort.org/search/sid/671?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1526</td><td class="ruletablebody" valign="top">WEB-MISC basilix sendmail.inc access (<a href="http://www.snort.org/search/sid/1526?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1044">2001-1044</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2198">2198</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10601">10601</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2261</td><td class="ruletablebody" valign="top">SMTP SEND FROM sendmail prescan too many addresses overflow (<a href="http://www.snort.org/search/sid/2261?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1337">2002-1337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6991">6991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11316">11316</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2262</td><td class="ruletablebody" valign="top">SMTP SEND FROM sendmail prescan too long addresses overflow (<a href="http://www.snort.org/search/sid/2262?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11499">11499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2263</td><td class="ruletablebody" valign="top">SMTP SAML FROM sendmail prescan too many addresses overflow (<a href="http://www.snort.org/search/sid/2263?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1337">2002-1337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6991">6991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2264</td><td class="ruletablebody" valign="top">SMTP SAML FROM sendmail prescan too long addresses overflow (<a href="http://www.snort.org/search/sid/2264?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11499">11499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2265</td><td class="ruletablebody" valign="top">SMTP SOML FROM sendmail prescan too many addresses overflow (<a href="http://www.snort.org/search/sid/2265?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1337">2002-1337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6991">6991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2266</td><td class="ruletablebody" valign="top">SMTP SOML FROM sendmail prescan too long addresses overflow (<a href="http://www.snort.org/search/sid/2266?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11499">11499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2267</td><td class="ruletablebody" valign="top">SMTP MAIL FROM sendmail prescan too many addresses overflow (<a href="http://www.snort.org/search/sid/2267?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1337">2002-1337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6991">6991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2268</td><td class="ruletablebody" valign="top">SMTP MAIL FROM sendmail prescan too long addresses overflow (<a href="http://www.snort.org/search/sid/2268?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11499">11499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2269</td><td class="ruletablebody" valign="top">SMTP RCPT TO sendmail prescan too many addresses overflow (<a href="http://www.snort.org/search/sid/2269?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1337">2002-1337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6991">6991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2270</td><td class="ruletablebody" valign="top">SMTP RCPT TO sendmail prescan too long addresses overflow (<a href="http://www.snort.org/search/sid/2270?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0694">2003-0694</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11499">11499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15936</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sendmail identd command parsing vulnerability (<a href="http://www.snort.org/search/sid/15936?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0204">1999-0204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2311">2311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16057</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS sendmail smtp timeout buffer overflow attempt (<a href="http://www.snort.org/search/sid/16057?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0058">2006-0058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17192">17192</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="223"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Mail / POP3</div></p><span class="group"># of attack rules in this group: 11</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2535</td><td class="ruletablebody" valign="top">POP3 SSLv3 Client_Hello request (<a href="http://www.snort.org/search/sid/2535?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2536</td><td class="ruletablebody" valign="top">POP3 SSLv3 Server_Hello request (<a href="http://www.snort.org/search/sid/2536?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3499</td><td class="ruletablebody" valign="top">POP3 SSLv2 Client_Hello request (<a href="http://www.snort.org/search/sid/3499?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3500</td><td class="ruletablebody" valign="top">POP3 SSLv2 Client_Hello with pad request (<a href="http://www.snort.org/search/sid/3500?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3501</td><td class="ruletablebody" valign="top">POP3 TLSv1 Client_Hello request (<a href="http://www.snort.org/search/sid/3501?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3502</td><td class="ruletablebody" valign="top">POP3 TLSv1 Client_Hello via SSLv2 handshake request (<a href="http://www.snort.org/search/sid/3502?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3503</td><td class="ruletablebody" valign="top">POP3 SSLv2 Server_Hello request (<a href="http://www.snort.org/search/sid/3503?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3504</td><td class="ruletablebody" valign="top">POP3 TLSv1 Server_Hello request (<a href="http://www.snort.org/search/sid/3504?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16594</td><td class="ruletablebody" valign="top">POP3 STAT command (<a href="http://www.snort.org/search/sid/16594?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16799</td><td class="ruletablebody" valign="top">POP3 Eureka Mail 2.2q server error response overflow attempt (<a href="http://www.snort.org/search/sid/16799?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3837">2009-3837</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://archives.neohapsis.com/archives/bugtraq/2009-10/0170.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17331</td><td class="ruletablebody" valign="top">POP3 Lotus Notes HTML Speed Reader Long URL buffer overflow attempt (<a href="http://www.snort.org/search/sid/17331?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2618">2005-2618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16576">16576</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 29</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">286</td><td class="ruletablebody" valign="top">POP3 EXPLOIT x86 BSD overflow (<a href="http://www.snort.org/search/sid/286?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0006">1999-0006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/133">133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10196">10196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">287</td><td class="ruletablebody" valign="top">POP3 EXPLOIT x86 BSD overflow (<a href="http://www.snort.org/search/sid/287?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">288</td><td class="ruletablebody" valign="top">POP3 EXPLOIT x86 Linux overflow (<a href="http://www.snort.org/search/sid/288?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">289</td><td class="ruletablebody" valign="top">POP3 EXPLOIT x86 SCO overflow (<a href="http://www.snort.org/search/sid/289?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0006">1999-0006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/156">156</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">290</td><td class="ruletablebody" valign="top">POP3 EXPLOIT qpopper overflow (<a href="http://www.snort.org/search/sid/290?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0822">1999-0822</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/830">830</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10184">10184</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1634</td><td class="ruletablebody" valign="top">POP3 PASS overflow attempt (<a href="http://www.snort.org/search/sid/1634?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6605">2006-6605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/791">791</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10325">10325</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1635</td><td class="ruletablebody" valign="top">POP3 APOP overflow attempt (<a href="http://www.snort.org/search/sid/1635?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0841">2000-0841</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1652">1652</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10559">10559</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1866</td><td class="ruletablebody" valign="top">POP3 USER overflow attempt (<a href="http://www.snort.org/search/sid/1866?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4364">2006-4364</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/789">789</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10311">10311</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1936</td><td class="ruletablebody" valign="top">POP3 AUTH overflow attempt (<a href="http://www.snort.org/search/sid/1936?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0822">1999-0822</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/830">830</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10184">10184</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1937</td><td class="ruletablebody" valign="top">POP3 LIST overflow attempt (<a href="http://www.snort.org/search/sid/1937?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0096">2000-0096</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/948">948</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10197">10197</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1938</td><td class="ruletablebody" valign="top">POP3 XTND overflow attempt (<a href="http://www.snort.org/search/sid/1938?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2108</td><td class="ruletablebody" valign="top">POP3 CAPA overflow attempt (<a href="http://www.snort.org/search/sid/2108?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2109</td><td class="ruletablebody" valign="top">POP3 TOP overflow attempt (<a href="http://www.snort.org/search/sid/2109?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2110</td><td class="ruletablebody" valign="top">POP3 STAT overflow attempt (<a href="http://www.snort.org/search/sid/2110?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2111</td><td class="ruletablebody" valign="top">POP3 DELE overflow attempt (<a href="http://www.snort.org/search/sid/2111?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2112</td><td class="ruletablebody" valign="top">POP3 RSET overflow attempt (<a href="http://www.snort.org/search/sid/2112?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2121</td><td class="ruletablebody" valign="top">POP3 DELE negative argument attempt (<a href="http://www.snort.org/search/sid/2121?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1539">2002-1539</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7445">7445</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11570">11570</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2122</td><td class="ruletablebody" valign="top">POP3 UIDL negative argument attempt (<a href="http://www.snort.org/search/sid/2122?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1539">2002-1539</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6053">6053</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11570">11570</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2250</td><td class="ruletablebody" valign="top">POP3 USER format string attempt (<a href="http://www.snort.org/search/sid/2250?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0391">2003-0391</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7667">7667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11742">11742</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2274</td><td class="ruletablebody" valign="top">POP3 login brute force attempt (<a href="http://www.snort.org/search/sid/2274?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2409</td><td class="ruletablebody" valign="top">POP3 APOP USER overflow attempt (<a href="http://www.snort.org/search/sid/2409?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9794">9794</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2502</td><td class="ruletablebody" valign="top">POP3 SSLv3 invalid data version attempt (<a href="http://www.snort.org/search/sid/2502?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10115">10115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2518</td><td class="ruletablebody" valign="top">POP3 PCT Client_Hello overflow attempt (<a href="http://www.snort.org/search/sid/2518?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0719">2003-0719</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10116">10116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2537</td><td class="ruletablebody" valign="top">POP3 SSLv3 invalid Client_Hello attempt (<a href="http://www.snort.org/search/sid/2537?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2666</td><td class="ruletablebody" valign="top">POP3 PASS format string attempt (<a href="http://www.snort.org/search/sid/2666?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10976">10976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8429</td><td class="ruletablebody" valign="top">POP3 SSLv2 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8429?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22083">22083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8430</td><td class="ruletablebody" valign="top">POP3 SSLv3 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8430?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25831">25831</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8431</td><td class="ruletablebody" valign="top">POP3 SSLv2 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8431?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22083">22083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16595</td><td class="ruletablebody" valign="top">POP3 Windows Mail remote code execution attempt (<a href="http://www.snort.org/search/sid/16595?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0816">2010-0816</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-030.mspx">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="224"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Mail / IMAP</div></p><span class="group"># of attack rules in this group: 34</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1844</td><td class="ruletablebody" valign="top">IMAP authenticate overflow attempt (<a href="http://www.snort.org/search/sid/1844?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0042">1999-0042</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/130">130</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10292">10292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1930</td><td class="ruletablebody" valign="top">IMAP auth literal overflow attempt (<a href="http://www.snort.org/search/sid/1930?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6424">2006-6424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21724">21724</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2330</td><td class="ruletablebody" valign="top">IMAP auth overflow attempt (<a href="http://www.snort.org/search/sid/2330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1177">2003-1177</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8861">8861</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11910">11910</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2529</td><td class="ruletablebody" valign="top">IMAP SSLv3 Client_Hello request (<a href="http://www.snort.org/search/sid/2529?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2530</td><td class="ruletablebody" valign="top">IMAP SSLv3 Server_Hello request (<a href="http://www.snort.org/search/sid/2530?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2665</td><td class="ruletablebody" valign="top">IMAP login literal format string attempt (<a href="http://www.snort.org/search/sid/2665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0221">2007-0221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10976">10976</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3067</td><td class="ruletablebody" valign="top">IMAP examine literal overflow attempt (<a href="http://www.snort.org/search/sid/3067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1211">2004-1211</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11775">11775</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3068</td><td class="ruletablebody" valign="top">IMAP examine overflow attempt (<a href="http://www.snort.org/search/sid/3068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3155">2005-3155</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15006">15006</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3069</td><td class="ruletablebody" valign="top">IMAP fetch literal overflow attempt (<a href="http://www.snort.org/search/sid/3069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1211">2004-1211</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11775">11775</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3073</td><td class="ruletablebody" valign="top">IMAP SUBSCRIBE literal overflow attempt (<a href="http://www.snort.org/search/sid/3073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3510">2007-3510</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26219">26219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3074</td><td class="ruletablebody" valign="top">IMAP SUBSCRIBE overflow attempt (<a href="http://www.snort.org/search/sid/3074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3510">2007-3510</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26219">26219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3487</td><td class="ruletablebody" valign="top">IMAP SSLv2 Client_Hello request (<a href="http://www.snort.org/search/sid/3487?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3488</td><td class="ruletablebody" valign="top">IMAP SSLv2 Client_Hello with pad request (<a href="http://www.snort.org/search/sid/3488?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3489</td><td class="ruletablebody" valign="top">IMAP TLSv1 Client_Hello request (<a href="http://www.snort.org/search/sid/3489?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3490</td><td class="ruletablebody" valign="top">IMAP TLSv1 Client_Hello via SSLv2 handshake request (<a href="http://www.snort.org/search/sid/3490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3491</td><td class="ruletablebody" valign="top">IMAP SSLv2 Server_Hello request (<a href="http://www.snort.org/search/sid/3491?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3492</td><td class="ruletablebody" valign="top">IMAP TLSv1 Server_Hello request (<a href="http://www.snort.org/search/sid/3492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10011</td><td class="ruletablebody" valign="top">IMAP Novell NetMail APPEND command buffer overflow attempt (<a href="http://www.snort.org/search/sid/10011?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6425">2006-6425</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21723">21723</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11004</td><td class="ruletablebody" valign="top">IMAP CRAM-MD5 authentication method buffer overflow (<a href="http://www.snort.org/search/sid/11004?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1675">2007-1675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23172">23172</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12114</td><td class="ruletablebody" valign="top">IMAP Ipswitch IMail search command buffer overflow attempt (<a href="http://www.snort.org/search/sid/12114?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3925">2007-3925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24962">24962</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=563">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12115</td><td class="ruletablebody" valign="top">IMAP Ipswitch IMail search command buffer overflow attempt (<a href="http://www.snort.org/search/sid/12115?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3925">2007-3925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24962">24962</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=563">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12212</td><td class="ruletablebody" valign="top">IMAP Ipswitch IMail literal search date command buffer overflow attempt (<a href="http://www.snort.org/search/sid/12212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3925">2007-3925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24962">24962</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=563">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12213</td><td class="ruletablebody" valign="top">IMAP Ipswitch IMail search date command buffer overflow attempt (<a href="http://www.snort.org/search/sid/12213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3925">2007-3925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24962">24962</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=563">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13663</td><td class="ruletablebody" valign="top">IMAP Alt-N MDaemon IMAP Server FETCH command buffer overflow attempt (<a href="http://www.snort.org/search/sid/13663?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1358">2008-1358</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28245">28245</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://files.altn.com/MDaemon/Release/RelNotes_en.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15484</td><td class="ruletablebody" valign="top">IMAP CRAM-MD5 authentication method buffer overflow (<a href="http://www.snort.org/search/sid/15484?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1675">2007-1675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23172">23172</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16779</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EasyMail IMAP4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16779?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16780</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EasyMail IMAP4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16780?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16781</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EasyMail IMAP4 ActiveX function call access (<a href="http://www.snort.org/search/sid/16781?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16782</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EasyMail IMAP4 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/16782?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4607">2007-4607</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25467">25467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17239</td><td class="ruletablebody" valign="top">IMAP Alt-N MDaemon IMAP server CREATE command buffer overflow attempt (<a href="http://www.snort.org/search/sid/17239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14315">14315</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17240</td><td class="ruletablebody" valign="top">IMAP Alt-N MDaemon IMAP server literal CREATE command buffer overflow attempt (<a href="http://www.snort.org/search/sid/17240?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14315">14315</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17327</td><td class="ruletablebody" valign="top">IMAP Qualcomm WorldMail Server Response (<a href="http://www.snort.org/search/sid/17327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17328</td><td class="ruletablebody" valign="top">IMAP Qualcomm WorldMail IMAP Literal Token Parsing Buffer Overflow (<a href="http://www.snort.org/search/sid/17328?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4267">2005-4267</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15980">15980</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17503</td><td class="ruletablebody" valign="top">IMAP MailEnable IMAP Service Invalid Command Buffer Overlow LOGIN (<a href="http://www.snort.org/search/sid/17503?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21252">21252</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 44</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1755</td><td class="ruletablebody" valign="top">IMAP partial body buffer overflow attempt (<a href="http://www.snort.org/search/sid/1755?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0379">2002-0379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4713">4713</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10966">10966</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1842</td><td class="ruletablebody" valign="top">IMAP login buffer overflow attempt (<a href="http://www.snort.org/search/sid/1842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2795">2007-2795</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/502">502</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10125">10125</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1845</td><td class="ruletablebody" valign="top">IMAP list literal overflow attempt (<a href="http://www.snort.org/search/sid/1845?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0284">2000-0284</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1110">1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1902</td><td class="ruletablebody" valign="top">IMAP lsub literal overflow attempt (<a href="http://www.snort.org/search/sid/1902?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0284">2000-0284</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1110">1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1903</td><td class="ruletablebody" valign="top">IMAP rename overflow attempt (<a href="http://www.snort.org/search/sid/1903?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0284">2000-0284</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1110">1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1904</td><td class="ruletablebody" valign="top">IMAP find overflow attempt (<a href="http://www.snort.org/search/sid/1904?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0284">2000-0284</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1110">1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1993</td><td class="ruletablebody" valign="top">IMAP login literal buffer overflow attempt (<a href="http://www.snort.org/search/sid/1993?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6424">2006-6424</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6298">6298</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12532">12532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2046</td><td class="ruletablebody" valign="top">IMAP partial body.peek buffer overflow attempt (<a href="http://www.snort.org/search/sid/2046?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0379">2002-0379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4713">4713</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10966">10966</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2105</td><td class="ruletablebody" valign="top">IMAP authenticate literal overflow attempt (<a href="http://www.snort.org/search/sid/2105?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6424">2006-6424</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21724">21724</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10292">10292</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2106</td><td class="ruletablebody" valign="top">IMAP lsub overflow attempt (<a href="http://www.snort.org/search/sid/2106?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3155">2005-3155</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15006">15006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2107</td><td class="ruletablebody" valign="top">IMAP create buffer overflow attempt (<a href="http://www.snort.org/search/sid/2107?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7446">7446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2118</td><td class="ruletablebody" valign="top">IMAP list overflow attempt (<a href="http://www.snort.org/search/sid/2118?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3155">2005-3155</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15006">15006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2119</td><td class="ruletablebody" valign="top">IMAP rename literal overflow attempt (<a href="http://www.snort.org/search/sid/2119?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0284">2000-0284</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1110">1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2120</td><td class="ruletablebody" valign="top">IMAP create literal buffer overflow attempt (<a href="http://www.snort.org/search/sid/2120?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7446">7446</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2273</td><td class="ruletablebody" valign="top">IMAP login brute force attempt (<a href="http://www.snort.org/search/sid/2273?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2497</td><td class="ruletablebody" valign="top">IMAP SSLv3 invalid data version attempt (<a href="http://www.snort.org/search/sid/2497?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10115">10115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2531</td><td class="ruletablebody" valign="top">IMAP SSLv3 invalid Client_Hello attempt (<a href="http://www.snort.org/search/sid/2531?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2664</td><td class="ruletablebody" valign="top">IMAP login format string attempt (<a href="http://www.snort.org/search/sid/2664?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10976">10976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3007</td><td class="ruletablebody" valign="top">IMAP delete overflow attempt (<a href="http://www.snort.org/search/sid/3007?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3155">2005-3155</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15006">15006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15771">15771</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3008</td><td class="ruletablebody" valign="top">IMAP delete literal overflow attempt (<a href="http://www.snort.org/search/sid/3008?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1520">2004-1520</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11675">11675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15771">15771</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3058</td><td class="ruletablebody" valign="top">IMAP copy literal overflow attempt (<a href="http://www.snort.org/search/sid/3058?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0284">2000-0284</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1110">1110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10374">10374</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3066</td><td class="ruletablebody" valign="top">IMAP append overflow attempt (<a href="http://www.snort.org/search/sid/3066?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6425">2006-6425</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21729">21729</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3070</td><td class="ruletablebody" valign="top">IMAP fetch overflow attempt (<a href="http://www.snort.org/search/sid/3070?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1211">2004-1211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11775">11775</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3071</td><td class="ruletablebody" valign="top">IMAP status literal overflow attempt (<a href="http://www.snort.org/search/sid/3071?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1211">2004-1211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15491">15491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3072</td><td class="ruletablebody" valign="top">IMAP status overflow attempt (<a href="http://www.snort.org/search/sid/3072?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3314">2005-3314</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15491">15491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3075</td><td class="ruletablebody" valign="top">IMAP unsubscribe literal overflow attempt (<a href="http://www.snort.org/search/sid/3075?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1211">2004-1211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11775">11775</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3076</td><td class="ruletablebody" valign="top">IMAP UNSUBSCRIBE overflow attempt (<a href="http://www.snort.org/search/sid/3076?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4645</td><td class="ruletablebody" valign="top">IMAP search format string attempt (<a href="http://www.snort.org/search/sid/4645?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10976">10976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4646</td><td class="ruletablebody" valign="top">IMAP search literal format string attempt (<a href="http://www.snort.org/search/sid/4646?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10976">10976</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5696</td><td class="ruletablebody" valign="top">IMAP delete directory traversal attempt (<a href="http://www.snort.org/search/sid/5696?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5697</td><td class="ruletablebody" valign="top">IMAP examine directory traversal attempt (<a href="http://www.snort.org/search/sid/5697?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5698</td><td class="ruletablebody" valign="top">IMAP list directory traversal attempt (<a href="http://www.snort.org/search/sid/5698?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5699</td><td class="ruletablebody" valign="top">IMAP lsub directory traversal attempt (<a href="http://www.snort.org/search/sid/5699?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5700</td><td class="ruletablebody" valign="top">IMAP rename directory traversal attempt (<a href="http://www.snort.org/search/sid/5700?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5701</td><td class="ruletablebody" valign="top">IMAP status directory traversal attempt (<a href="http://www.snort.org/search/sid/5701?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5702</td><td class="ruletablebody" valign="top">IMAP SUBSCRIBE directory traversal attempt (<a href="http://www.snort.org/search/sid/5702?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3510">2007-3510</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26219">26219</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15867">15867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5703</td><td class="ruletablebody" valign="top">IMAP unsubscribe directory traversal attempt (<a href="http://www.snort.org/search/sid/5703?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3189">2005-3189</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15488">15488</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5704</td><td class="ruletablebody" valign="top">IMAP SELECT overflow attempt (<a href="http://www.snort.org/search/sid/5704?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1255">2006-1255</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15006">15006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5705</td><td class="ruletablebody" valign="top">IMAP CAPABILITY overflow attempt (<a href="http://www.snort.org/search/sid/5705?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3155">2005-3155</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15006">15006</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8438</td><td class="ruletablebody" valign="top">IMAP SSLv2 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8438?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22083">22083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8439</td><td class="ruletablebody" valign="top">IMAP SSLv3 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8439?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25831">25831</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12392</td><td class="ruletablebody" valign="top">IMAP GNU Mailutils request tag format string vulnerability (<a href="http://www.snort.org/search/sid/12392?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1523">2005-1523</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13764">13764</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13921</td><td class="ruletablebody" valign="top">IMAP Altrium Software MERCUR IMAPD NTLMSSP command handling memory corruption attempt (<a href="http://www.snort.org/search/sid/13921?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1578">2007-1578</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23058">23058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/24596">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17369</td><td class="ruletablebody" valign="top">IMAP MailEnable Service APPEND Command Handling Buffer Overflow (<a href="http://www.snort.org/search/sid/17369?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0494">2007-0494</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22792">22792</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="225"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Mail / SMTP</div></p><span class="group"># of attack rules in this group: 165</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">654</td><td class="ruletablebody" valign="top">SMTP RCPT TO overflow (<a href="http://www.snort.org/search/sid/654?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0410">2009-0410</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9696">9696</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1549</td><td class="ruletablebody" valign="top">SMTP HELO overflow attempt (<a href="http://www.snort.org/search/sid/1549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0042">2000-0042</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/895">895</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11674">11674</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2183</td><td class="ruletablebody" valign="top">SMTP Content-Transfer-Encoding overflow attempt (<a href="http://www.snort.org/search/sid/2183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cert.org/advisories/CA-2003-12.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2253</td><td class="ruletablebody" valign="top">SMTP XEXCH50 overflow attempt (<a href="http://www.snort.org/search/sid/2253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0714">2003-0714</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8838">8838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11889">11889</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-046.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2259</td><td class="ruletablebody" valign="top">SMTP EXPN overflow attempt (<a href="http://www.snort.org/search/sid/2259?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2260</td><td class="ruletablebody" valign="top">SMTP VRFY overflow attempt (<a href="http://www.snort.org/search/sid/2260?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0161">2003-0161</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7230">7230</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2527</td><td class="ruletablebody" valign="top">SMTP STARTTLS attempt (<a href="http://www.snort.org/search/sid/2527?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2542</td><td class="ruletablebody" valign="top">SMTP SSLv3 Client_Hello request (<a href="http://www.snort.org/search/sid/2542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2543</td><td class="ruletablebody" valign="top">SMTP SSLv3 Server_Hello request (<a href="http://www.snort.org/search/sid/2543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3461</td><td class="ruletablebody" valign="top">SMTP Content-Type overflow attempt (<a href="http://www.snort.org/search/sid/3461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0113">2003-0113</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7419">7419</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-015.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3462</td><td class="ruletablebody" valign="top">SMTP Content-Encoding overflow attempt (<a href="http://www.snort.org/search/sid/3462?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0113">2003-0113</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7419">7419</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-015.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3493</td><td class="ruletablebody" valign="top">SMTP SSLv2 Client_Hello request (<a href="http://www.snort.org/search/sid/3493?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3494</td><td class="ruletablebody" valign="top">SMTP SSLv2 Client_Hello with pad request (<a href="http://www.snort.org/search/sid/3494?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3495</td><td class="ruletablebody" valign="top">SMTP TLSv1 Client_Hello request (<a href="http://www.snort.org/search/sid/3495?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3496</td><td class="ruletablebody" valign="top">SMTP TLSv1 Client_Hello via SSLv2 handshake request (<a href="http://www.snort.org/search/sid/3496?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3497</td><td class="ruletablebody" valign="top">SMTP SSLv2 Server_Hello request (<a href="http://www.snort.org/search/sid/3497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3498</td><td class="ruletablebody" valign="top">SMTP TLSv1 Server_Hello request (<a href="http://www.snort.org/search/sid/3498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5685</td><td class="ruletablebody" valign="top">SMTP TLSv1 Client_Hello via SSLv2 handshake request (<a href="http://www.snort.org/search/sid/5685?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5686</td><td class="ruletablebody" valign="top">SMTP TLSv1 Server_Hello request (<a href="http://www.snort.org/search/sid/5686?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5687</td><td class="ruletablebody" valign="top">SMTP SSLv2 Client_Hello request (<a href="http://www.snort.org/search/sid/5687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5688</td><td class="ruletablebody" valign="top">SMTP SSLv2 Client_Hello with pad request (<a href="http://www.snort.org/search/sid/5688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5689</td><td class="ruletablebody" valign="top">SMTP TLSv1 Client_Hello request (<a href="http://www.snort.org/search/sid/5689?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5690</td><td class="ruletablebody" valign="top">SMTP SSLv3 Client_Hello request (<a href="http://www.snort.org/search/sid/5690?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5691</td><td class="ruletablebody" valign="top">SMTP SSLv2 Server_Hello request (<a href="http://www.snort.org/search/sid/5691?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5790</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger pc actmon pro runtime detection - smtp (<a href="http://www.snort.org/search/sid/5790?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1989">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5880</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spyagent runtime detect - smtp delivery (<a href="http://www.snort.org/search/sid/5880?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=22">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6125</td><td class="ruletablebody" valign="top">BACKDOOR dkangel runtime detection - smtp (<a href="http://www.snort.org/search/sid/6125?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076278">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6126</td><td class="ruletablebody" valign="top">BACKDOOR dkangel runtime detection - smtp (<a href="http://www.snort.org/search/sid/6126?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076278">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6207</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger winsession runtime detection - smtp (<a href="http://www.snort.org/search/sid/6207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097713">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6301</td><td class="ruletablebody" valign="top">BACKDOOR cia 1.3 runtime detection - smtp notification (<a href="http://www.snort.org/search/sid/6301?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6397</td><td class="ruletablebody" valign="top">BACKDOOR http rat runtime detection - smtp (<a href="http://www.snort.org/search/sid/6397?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076346">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6477</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool beee runtime detection - smtp (<a href="http://www.snort.org/search/sid/6477?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060657">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7184</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger 007 spy software runtime detection - smtp (<a href="http://www.snort.org/search/sid/7184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7505</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger actualspy runtime detection - smtp (<a href="http://www.snort.org/search/sid/7505?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086496">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7551</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ardamax keylogger runtime detection - smtp (<a href="http://www.snort.org/search/sid/7551?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094248">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8544</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger nicespy runtime detection - smtp (<a href="http://www.snort.org/search/sid/8544?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097309">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8704</td><td class="ruletablebody" valign="top">SMTP YPOPS Banner (<a href="http://www.snort.org/search/sid/8704?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">not-suspicious</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9326</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.p smtp propagation detection (<a href="http://www.snort.org/search/sid/9326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FNETSKY%2EP&amp;VSect=T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9327</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.af smtp propagation detection (<a href="http://www.snort.org/search/sid/9327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_NETSKY.AF">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9328</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS zhangpo smtp propagation detection (<a href="http://www.snort.org/search/sid/9328?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareremove.com/removeZhangpo.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9329</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS yarner.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9329?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-021912-4244-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9330</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mydoom.e smtp propagation detection (<a href="http://www.snort.org/search/sid/9330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.f-secure.com/v-descs/mydoom_e.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9331</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mydoom.m smtp propagation detection (<a href="http://www.snort.org/search/sid/9331?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.f-secure.com/v-descs/mydoom_m.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9332</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32mimaila.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9333</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.e smtp propagation detection (<a href="http://www.snort.org/search/sid/9333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32mimaile.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9334</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovgate.c smtp propagation detection (<a href="http://www.snort.org/search/sid/9334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.f-secure.com/v-descs/lovgate.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9335</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9335?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_NETSKY.B">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9336</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.t smtp propagation detection (<a href="http://www.snort.org/search/sid/9336?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_NETSKY.T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9337</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.x smtp propagation detection (<a href="http://www.snort.org/search/sid/9337?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_NETSKY.X">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9338</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mydoom.i smtp propagation detection (<a href="http://www.snort.org/search/sid/9338?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.f-secure.com/v-descs/mydoom_i.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9342</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS paroc.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9342?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-061121-1025-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9343</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS kadra smtp propagation detection (<a href="http://www.snort.org/search/sid/9343?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kaspersky.com/news?id=260&amp;ipcountry=CA#kadra">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9344</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS kindal smtp propagation detection (<a href="http://www.snort.org/search/sid/9344?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-073016-2910-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9345</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS kipis.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9345?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=41312">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9348</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS morbex smtp propagation detection (<a href="http://www.snort.org/search/sid/9348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.www.f-secure.com/v-descs/morbex.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9349</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS plemood smtp propagation detection (<a href="http://www.snort.org/search/sid/9349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.2-spyware.com/remove-i-worm-plemood.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9350</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.k smtp propagation detection (<a href="http://www.snort.org/search/sid/9350?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32mimailk.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9352</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovgate.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=31576">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9358</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS fizzer smtp propagation detection (<a href="http://www.snort.org/search/sid/9358?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-050821-0316-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9359</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS zafi.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9359?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32zafib.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9360</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS cult.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32cultb.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9361</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.l smtp propagation detection (<a href="http://www.snort.org/search/sid/9361?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32mimaill.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9362</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.m smtp propagation detection (<a href="http://www.snort.org/search/sid/9362?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32mimailm.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9365</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS cult.c smtp propagation detection (<a href="http://www.snort.org/search/sid/9365?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32cultc.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9366</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.s smtp propagation detection (<a href="http://www.snort.org/search/sid/9366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32mimailm.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9367</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS anset.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.bullguard.com/virus/default.aspx?id=51">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9368</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS agist.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9368?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sarc.com/avcenter/venc/data/w32.agist.a@mm.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9369</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS atak.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9369?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32ataka.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9370</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9370?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-021713-3625-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9371</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.e smtp propagation detection (<a href="http://www.snort.org/search/sid/9371?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-022809-3232-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9372</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS blebla.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9372?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32bleblaa.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9373</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS clepa smtp propagation detection (<a href="http://www.snort.org/search/sid/9373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.logiguard.com/spyware/i/i-worm-clepa.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9374</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS creepy.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.emsisoft.com/en/malware/?Email-Worm.Win32.Creepy.b">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9375</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS duksten.c smtp propagation detection (<a href="http://www.snort.org/search/sid/9375?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-122016-4223-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9376</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS fishlet.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9376?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=12285">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9377</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mydoom.g smtp propagation detection (<a href="http://www.snort.org/search/sid/9377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-030213-0918-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9378</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.q smtp propagation detection (<a href="http://www.snort.org/search/sid/9378?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-032913-5722-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9379</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.s smtp propagation detection (<a href="http://www.snort.org/search/sid/9379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-040512-2436-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9381</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lara smtp propagation detection (<a href="http://www.snort.org/search/sid/9381?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/mirclara.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9382</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS fearso.c smtp propagation detection (<a href="http://www.snort.org/search/sid/9382?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=35646">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9383</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.y smtp propagation detection (<a href="http://www.snort.org/search/sid/9383?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-042011-2621-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9384</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS beglur.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9384?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.viruslibrary.com/virusinfo/I-Worm.Beglur.a.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9385</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS collo.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9385?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.viruslist.com/en/viruses/encyclopedia?virusid=23787">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9386</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.f smtp propagation detection (<a href="http://www.snort.org/search/sid/9386?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.pandasoftware.com/virus_info/encyclopedia/overview.aspx?lst=det&amp;idvirus=45199">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9388</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.g smtp propagation detection (<a href="http://www.snort.org/search/sid/9388?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=37467">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9389</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.i smtp propagation detection (<a href="http://www.snort.org/search/sid/9389?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sarc.com/avcenter/venc/data/w32.beagle.i@mm.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9391</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.i smtp propagation detection (<a href="http://www.snort.org/search/sid/9391?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-111317-1701-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9392</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.j smtp propagation detection (<a href="http://www.snort.org/search/sid/9392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FBAGLE%2EJ&amp;VSect=T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9393</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.k smtp propagation detection (<a href="http://www.snort.org/search/sid/9393?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FBAGLE%2EK&amp;VSect=T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9394</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.n smtp propagation detection (<a href="http://www.snort.org/search/sid/9394?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=PE%5FBAGLE%2EN&amp;VSect=T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9397</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS neysid smtp propagation detection (<a href="http://www.snort.org/search/sid/9397?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareremove.com/removeIWormNeysid.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9398</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS totilix.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.viruslist.com/en/viruslist.html?id=4097">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9399</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS hanged smtp propagation detection (<a href="http://www.snort.org/search/sid/9399?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.emsisoft.com/en/malware/?Worm.Win32.Hanged">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9400</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS abotus smtp propagation detection (<a href="http://www.snort.org/search/sid/9400?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2001-082919-3906-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9403</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.aa smtp propagation detection (<a href="http://www.snort.org/search/sid/9403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FNETSKY%2EAA&amp;VSect=T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9404</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.ac smtp propagation detection (<a href="http://www.snort.org/search/sid/9404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=39026">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9405</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.af smtp propagation detection (<a href="http://www.snort.org/search/sid/9405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_NETSKY.AF">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9406</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovgate.e smtp propagation detection (<a href="http://www.snort.org/search/sid/9406?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-030416-4942-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9408</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lacrow smtp propagation detection (<a href="http://www.snort.org/search/sid/9408?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=W32.Lacrow@mm&amp;threatid=53187">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9409</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS atak.b smtp propagation detection (<a href="http://www.snort.org/search/sid/9409?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-120309-3312-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9410</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky.z smtp propagation detection (<a href="http://www.snort.org/search/sid/9410?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=38949">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9411</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mimail.f smtp propagation detection (<a href="http://www.snort.org/search/sid/9411?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM%5FMIMAIL%2EF&amp;VSect=T">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9413</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS ganda smtp propagation detection (<a href="http://www.snort.org/search/sid/9413?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32gandaa.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9414</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovelorn.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9414?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=35041">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9415</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS plexus.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9415?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=39272">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9416</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.at smtp propagation detection (<a href="http://www.snort.org/search/sid/9416?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=41539">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9417</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS bagle.a smtp propagation detection (<a href="http://www.snort.org/search/sid/9417?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-011815-3332-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9827</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger paq keylog runtime detection - smtp (<a href="http://www.snort.org/search/sid/9827?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9841</td><td class="ruletablebody" valign="top">SMTP Microsoft Outlook VEVENT overflow attempt (<a href="http://www.snort.org/search/sid/9841?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0033">2007-0033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21931">21931</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10012</td><td class="ruletablebody" valign="top">SMTP Microsoft Outlook VEVENT non-TZID overflow attempt (<a href="http://www.snort.org/search/sid/10012?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0033">2007-0033</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21931">21931</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10065</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10065?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10066</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10066?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10067</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10068</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10069</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10070</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10070?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10071</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10071?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10072</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10072?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10073</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10074</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10075</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10075?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10076</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10076?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10077</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan Peacomm smtp propagation detection (<a href="http://www.snort.org/search/sid/10077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10078</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS W32.Nuwar.AY smtp propagation detection (<a href="http://www.snort.org/search/sid/10078?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10079</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS W32.Nuwar.AY smtp propagation detection (<a href="http://www.snort.org/search/sid/10079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10080</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS W32.Nuwar.AY smtp propagation detection (<a href="http://www.snort.org/search/sid/10080?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10081</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS W32.Nuwar.AY smtp propagation detection (<a href="http://www.snort.org/search/sid/10081?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10082</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS W32.Nuwar.AY smtp propagation detection (<a href="http://www.snort.org/search/sid/10082?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10083</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS W32.Nuwar.AY smtp propagation detection (<a href="http://www.snort.org/search/sid/10083?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10088</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger beyond Keylogger runtime detection - log sent by smtp (<a href="http://www.snort.org/search/sid/10088?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097340">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10453</td><td class="ruletablebody" valign="top">BACKDOOR zalivator 1.4.2 pro runtime detection - smtp notification (<a href="http://www.snort.org/search/sid/10453?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084203">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11305</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware childwebguardian runtime detection - send log through smtp (<a href="http://www.snort.org/search/sid/11305?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453099134">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12807</td><td class="ruletablebody" valign="top">SMTP Lotus 123 file attachment (<a href="http://www.snort.org/search/sid/12807?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6593">2007-6593</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27835">27835</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.coresecurity.com/index.php5?action=item&amp;id=2008">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13718</td><td class="ruletablebody" valign="top">SMTP BDAT buffer overflow attempt (<a href="http://www.snort.org/search/sid/13718?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0055">2002-0055</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4204">4204</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms02-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13894</td><td class="ruletablebody" valign="top">SMTP Microsoft Outlook Web Access From field cross-site scripting attempt (<a href="http://www.snort.org/search/sid/13894?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2247">2008-2247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13895</td><td class="ruletablebody" valign="top">SMTP Microsoft Outlook Web Access invalid CSS escape sequence script execution attempt (<a href="http://www.snort.org/search/sid/13895?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2248">2008-2248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13923</td><td class="ruletablebody" valign="top">SMTP MailEnable SMTP HELO command denial of service attempt (<a href="http://www.snort.org/search/sid/13923?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3277">2006-3277</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18630">18630</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15358</td><td class="ruletablebody" valign="top">SMTP Adobe PDF JBIG2 remote code execution attempt (<a href="http://www.snort.org/search/sid/15358?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15359</td><td class="ruletablebody" valign="top">SMTP Suspicious JBIG2 pdf file sent via email (<a href="http://www.snort.org/search/sid/15359?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15360</td><td class="ruletablebody" valign="top">SMTP Suspicious JBIG2 pdf file sent in email (<a href="http://www.snort.org/search/sid/15360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15367</td><td class="ruletablebody" valign="top">SMTP outlook web access script injection attempt (<a href="http://www.snort.org/search/sid/15367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1193">2006-1193</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18381">18381</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15494</td><td class="ruletablebody" valign="top">SMTP Suspicious JBIG2 pdf file sent from email (<a href="http://www.snort.org/search/sid/15494?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15495</td><td class="ruletablebody" valign="top">SMTP Suspicious JBIG2 pdf file sent by email (<a href="http://www.snort.org/search/sid/15495?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15496</td><td class="ruletablebody" valign="top">SMTP Suspicious JBIG2 pdf file sent through email (<a href="http://www.snort.org/search/sid/15496?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15497</td><td class="ruletablebody" valign="top">SMTP Suspicious JBIG2 pdf file sent with email (<a href="http://www.snort.org/search/sid/15497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15574</td><td class="ruletablebody" valign="top">SMTP MAIL FROM command overflow attempt (<a href="http://www.snort.org/search/sid/15574?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0399">2004-0399</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7506">7506</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.guninski.com/exim1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16025</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MailEnable SMTP service SPF lookup buffer overflow attempt (<a href="http://www.snort.org/search/sid/16025?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4616">2006-4616</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20091">20091</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16193</td><td class="ruletablebody" valign="top">SMTP Novell GroupWise Internet Agent SMTP AUTH LOGIN command buffer overflow attempt (<a href="http://www.snort.org/search/sid/16193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1636">2009-1636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35065">35065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16201</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Ipswitch Collaboration Suite SMTP format string exploit attempt (<a href="http://www.snort.org/search/sid/16201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2931">2005-2931</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15752">15752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16515</td><td class="ruletablebody" valign="top">SMTP Novell Groupwise Internet Agent RCPT command overflow attempt (<a href="http://www.snort.org/search/sid/16515?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0410">2009-0410</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33560">33560</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16534</td><td class="ruletablebody" valign="top">DOS Windows Server2000/2003/2008 SMTP service DNS MX lookup denial of service attempt (<a href="http://www.snort.org/search/sid/16534?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0024">2010-0024</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16597</td><td class="ruletablebody" valign="top">SMTP Novell GroupWise Internet Agent Email address processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/16597?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1636">2009-1636</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35064">35064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17034</td><td class="ruletablebody" valign="top">SMTP Outlook AttachMethods local file execution attempt (<a href="http://www.snort.org/search/sid/17034?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0266">2010-0266</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17035</td><td class="ruletablebody" valign="top">SMTP Outlook AttachMethods local file execution attempt (<a href="http://www.snort.org/search/sid/17035?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0266">2010-0266</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17036</td><td class="ruletablebody" valign="top">SMTP Outlook AttachMethods local file execution attempt (<a href="http://www.snort.org/search/sid/17036?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0266">2010-0266</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17099</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CommuniCrypt Mail ANSMTP.dll/AOSMTP.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/17099?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/64839">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17100</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CommuniCrypt Mail ANSMTP.dll/AOSMTP.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17100?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/64839">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17101</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CommuniCrypt Mail ANSMTP.dll/AOSMTP.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/17101?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/64839">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17102</td><td class="ruletablebody" valign="top">WEB-ACTIVEX CommuniCrypt Mail ANSMTP.dll/AOSMTP.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17102?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/64839">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17251</td><td class="ruletablebody" valign="top">SMTP Outlook RTF remote code execution attempt (<a href="http://www.snort.org/search/sid/17251?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2728">2010-2728</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-064.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17332</td><td class="ruletablebody" valign="top">SMTP Content-Disposition attachment (<a href="http://www.snort.org/search/sid/17332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17333</td><td class="ruletablebody" valign="top">SMTP Lotus Notes Attachment Viewer UUE file buffer overflow attempt (<a href="http://www.snort.org/search/sid/17333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2618">2005-2618</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16576">16576</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17693</td><td class="ruletablebody" valign="top">SMTP MailEnable NTLM Authentication buffer overflow attempt (<a href="http://www.snort.org/search/sid/17693?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5176">2006-5176</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20290">20290</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/22179/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17697</td><td class="ruletablebody" valign="top">SMTP GnuPG Message Packet Length overflow attempt (<a href="http://www.snort.org/search/sid/17697?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3746">2006-3746</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/21297/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17717</td><td class="ruletablebody" valign="top">SMTP IBM Lotus Notes HTML input tag buffer overflow attempt (<a href="http://www.snort.org/search/sid/17717?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4222">2007-4222</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26200">26200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www-1.ibm.com/support/docview.wss?rs=477&amp;uid=swg21272930">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 45</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">631</td><td class="ruletablebody" valign="top">SMTP ehlo cybercop attempt (<a href="http://www.snort.org/search/sid/631?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0531">1999-0531</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">632</td><td class="ruletablebody" valign="top">SMTP expn cybercop attempt (<a href="http://www.snort.org/search/sid/632?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0531">1999-0531</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">657</td><td class="ruletablebody" valign="top">SMTP chameleon overflow (<a href="http://www.snort.org/search/sid/657?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0261">1999-0261</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2387">2387</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">659</td><td class="ruletablebody" valign="top">SMTP expn decode (<a href="http://www.snort.org/search/sid/659?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0096">1999-0096</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10248">10248</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">660</td><td class="ruletablebody" valign="top">SMTP expn root (<a href="http://www.snort.org/search/sid/660?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0531">1999-0531</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10249">10249</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">661</td><td class="ruletablebody" valign="top">SMTP majordomo ifs (<a href="http://www.snort.org/search/sid/661?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0207">1999-0207</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2310">2310</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">663</td><td class="ruletablebody" valign="top">SMTP rcpt to command attempt (<a href="http://www.snort.org/search/sid/663?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0095">1999-0095</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1">1</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">664</td><td class="ruletablebody" valign="top">SMTP RCPT TO decode attempt (<a href="http://www.snort.org/search/sid/664?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0203">1999-0203</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2308">2308</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">672</td><td class="ruletablebody" valign="top">SMTP vrfy decode (<a href="http://www.snort.org/search/sid/672?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0096">1999-0096</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1446</td><td class="ruletablebody" valign="top">SMTP vrfy root (<a href="http://www.snort.org/search/sid/1446?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0531">1999-0531</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1450</td><td class="ruletablebody" valign="top">SMTP expn *@ (<a href="http://www.snort.org/search/sid/1450?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1200">1999-1200</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1550</td><td class="ruletablebody" valign="top">SMTP ETRN overflow attempt (<a href="http://www.snort.org/search/sid/1550?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0490">2000-0490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7515">7515</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10438">10438</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2087</td><td class="ruletablebody" valign="top">SMTP From comment overflow attempt (<a href="http://www.snort.org/search/sid/2087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1337">2002-1337</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6991">6991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.kb.cert.org/vuls/id/398025">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2275</td><td class="ruletablebody" valign="top">SMTP AUTH LOGON brute force attempt (<a href="http://www.snort.org/search/sid/2275?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2487</td><td class="ruletablebody" valign="top">SMTP WinZip MIME content-type buffer overflow (<a href="http://www.snort.org/search/sid/2487?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0333">2004-0333</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9758">9758</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12621">12621</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2488</td><td class="ruletablebody" valign="top">SMTP WinZip MIME content-disposition buffer overflow (<a href="http://www.snort.org/search/sid/2488?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0333">2004-0333</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9758">9758</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12621">12621</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2504</td><td class="ruletablebody" valign="top">SMTP SSLv3 invalid data version attempt (<a href="http://www.snort.org/search/sid/2504?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10115">10115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2528</td><td class="ruletablebody" valign="top">SMTP PCT Client_Hello overflow attempt (<a href="http://www.snort.org/search/sid/2528?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0719">2003-0719</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10116">10116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2541</td><td class="ruletablebody" valign="top">SMTP TLS SSLv3 invalid data version attempt (<a href="http://www.snort.org/search/sid/2541?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10115">10115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2544</td><td class="ruletablebody" valign="top">SMTP SSLv3 invalid Client_Hello attempt (<a href="http://www.snort.org/search/sid/2544?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0120">2004-0120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12204">12204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3511</td><td class="ruletablebody" valign="top">SMTP PCT Client_Hello overflow attempt (<a href="http://www.snort.org/search/sid/3511?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0719">2003-0719</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10116">10116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3653</td><td class="ruletablebody" valign="top">SMTP SAML overflow attempt (<a href="http://www.snort.org/search/sid/3653?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1546">2004-1546</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11238">11238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3654</td><td class="ruletablebody" valign="top">SMTP SOML overflow attempt (<a href="http://www.snort.org/search/sid/3654?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1546">2004-1546</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11238">11238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3655</td><td class="ruletablebody" valign="top">SMTP SEND overflow attempt (<a href="http://www.snort.org/search/sid/3655?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1546">2004-1546</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11238">11238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3656</td><td class="ruletablebody" valign="top">SMTP MDaemon 6.5.1 and prior versions MAIL overflow attempt (<a href="http://www.snort.org/search/sid/3656?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1546">2004-1546</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11238">11238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3682</td><td class="ruletablebody" valign="top">SMTP spoofed MIME-Type auto-execution attempt (<a href="http://www.snort.org/search/sid/3682?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0154">2001-0154</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2524">2524</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3824</td><td class="ruletablebody" valign="top">SMTP AUTH user overflow attempt (<a href="http://www.snort.org/search/sid/3824?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4440">2007-4440</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13772">13772</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5739</td><td class="ruletablebody" valign="top">SMTP headers too long server response (<a href="http://www.snort.org/search/sid/5739?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0058">2006-0058</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17192">17192</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6412</td><td class="ruletablebody" valign="top">SMTP Windows Address Book attachment detected (<a href="http://www.snort.org/search/sid/6412?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2386">2006-2386</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17459">17459</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-076.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6413</td><td class="ruletablebody" valign="top">SMTP Base64 encoded Windows Address Book attachment detected (<a href="http://www.snort.org/search/sid/6413?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2386">2006-2386</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17459">17459</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-076.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8432</td><td class="ruletablebody" valign="top">SMTP SSLv2 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8432?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22083">22083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8433</td><td class="ruletablebody" valign="top">SMTP SSLv2 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8433?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22083">22083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8434</td><td class="ruletablebody" valign="top">SMTP SSLv3 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8434?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25831">25831</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8435</td><td class="ruletablebody" valign="top">SMTP SSLv3 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8435?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25831">25831</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8436</td><td class="ruletablebody" valign="top">SMTP SSLv2 openssl get shared ciphers overflow attempt (<a href="http://www.snort.org/search/sid/8436?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5135">2007-5135</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22083">22083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openssl.org/news/secadv_20060928.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8705</td><td class="ruletablebody" valign="top">SMTP YPOPS buffer overflow attempt (<a href="http://www.snort.org/search/sid/8705?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1558">2004-1558</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11256">11256</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10186</td><td class="ruletablebody" valign="top">SMTP ClamAV mime parsing directory traversal (<a href="http://www.snort.org/search/sid/10186?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0898">2007-0898</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22581">22581</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=476">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12423</td><td class="ruletablebody" valign="top">SMTP Microsoft CDO long header name (<a href="http://www.snort.org/search/sid/12423?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1987">2005-1987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15067">15067</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms05-048.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12692</td><td class="ruletablebody" valign="top">SMTP RCPT TO IPSwitch proxy overflow attempt (<a href="http://www.snort.org/search/sid/12692?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4379">2006-4379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ipswitch.com/support/imail/releases/im20061.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12704</td><td class="ruletablebody" valign="top">SMTP Lotus Notes MIF viewer MIFFILE comment overflow (<a href="http://www.snort.org/search/sid/12704?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5910">2007-5910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26175">26175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12705</td><td class="ruletablebody" valign="top">SMTP Lotus Notes MIF viewer statement overflow (<a href="http://www.snort.org/search/sid/12705?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5910">2007-5910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26175">26175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12706</td><td class="ruletablebody" valign="top">SMTP Lotus Notes MIF viewer statement data overflow (<a href="http://www.snort.org/search/sid/12706?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5910">2007-5910</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26175">26175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13651</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger family cyber alert runtime detection - smtp traffic for recorded activities (<a href="http://www.snort.org/search/sid/13651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.ca.com/ca/en/securityadvisor/pest/pest.aspx?id=453117297">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17224</td><td class="ruletablebody" valign="top">SMTP McAfee WebShield SMTP bounce message format string attempt (<a href="http://www.snort.org/search/sid/17224?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0559">2006-0559</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/16742">16742</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17283</td><td class="ruletablebody" valign="top">SMTP Mercury Mail Transport System Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17283?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4411">2005-4411</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/16396">16396</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="230"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Database</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="231"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Database / Microsoft</div></p><span class="group"># of attack rules in this group: 10</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13888</td><td class="ruletablebody" valign="top">SQL Microsoft SQL Server Backup Database File integer overflow attempt (<a href="http://www.snort.org/search/sid/13888?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0107">2008-0107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13889</td><td class="ruletablebody" valign="top">SQL Microsoft SQL Server Backup Database File integer overflow attempt (<a href="http://www.snort.org/search/sid/13889?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0107">2008-0107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13890</td><td class="ruletablebody" valign="top">SQL Microsoft SQL Server Backup Database File integer overflow attempt (<a href="http://www.snort.org/search/sid/13890?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0107">2008-0107</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14756</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server 2000 Client Components ActiveX clsid access (<a href="http://www.snort.org/search/sid/14756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4110">2008-4110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31129">31129</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14757</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server 2000 Client Components ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4110">2008-4110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31129">31129</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14758</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server 2000 Client Components ActiveX function call access (<a href="http://www.snort.org/search/sid/14758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4110">2008-4110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31129">31129</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14759</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server 2000 Client Components ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4110">2008-4110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31129">31129</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16073</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MS-SQL convert function unicode overflow (<a href="http://www.snort.org/search/sid/16073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0086">2008-0086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16074</td><td class="ruletablebody" valign="top">MS-SQL Suspicious SQL ansi_padding option (<a href="http://www.snort.org/search/sid/16074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0106">2008-0106</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://msdn.microsoft.com/en-us/library/ms187403.aspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16208</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft SQL Server Distributed Management Objects overflow attempt (<a href="http://www.snort.org/search/sid/16208?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4814">2007-4814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25594">25594</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 8</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11264</td><td class="ruletablebody" valign="top">SQL Microsoft SQL Server 2000 Server hello buffer overflow attempt (<a href="http://www.snort.org/search/sid/11264?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1123">2002-1123</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5411">5411</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS02-056.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11683</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CA BrightStor Agent for Microsoft SQL overflow attempt (<a href="http://www.snort.org/search/sid/11683?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1272">2005-1272</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14453">14453</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12444</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server Distributed Management Objects ActiveX clsid access (<a href="http://www.snort.org/search/sid/12444?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4814">2007-4814</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25594">25594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12445</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server Distributed Management Objects ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12445?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4814">2007-4814</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25594">25594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12446</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server Distributed Management Objects ActiveX function call access (<a href="http://www.snort.org/search/sid/12446?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4814">2007-4814</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25594">25594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12447</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft SQL Server Distributed Management Objects ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12447?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4814">2007-4814</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25594">25594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13896</td><td class="ruletablebody" valign="top">SQL Microsoft SQL server MTF file download (<a href="http://www.snort.org/search/sid/13896?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0085">2008-0085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17307</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MS SQL Server INSERT Statement Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17307?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0106">2008-0106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="232"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Database / Oracle</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="233"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Database / MySQL</div></p><span class="group"># of attack rules in this group: 16</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3665</td><td class="ruletablebody" valign="top">MYSQL server greeting (<a href="http://www.snort.org/search/sid/3665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13593</td><td class="ruletablebody" valign="top">SQL MySQL yaSSL SSL Hello Message Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/13593?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0226">2008-0226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27140">27140</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://bugs.mysql.com/bug.php?id=33814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13709</td><td class="ruletablebody" valign="top">MYSQL yaSSL SSLv2 Server_Hello request (<a href="http://www.snort.org/search/sid/13709?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13710</td><td class="ruletablebody" valign="top">MYSQL yaSSL TLSv1 Server_Hello request (<a href="http://www.snort.org/search/sid/13710?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13711</td><td class="ruletablebody" valign="top">MYSQL yaSSL SSLv2 Client Hello Message Cipher Length Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/13711?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0226">2008-0226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27140">27140</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://bugs.mysql.com/bug.php?id=33814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13712</td><td class="ruletablebody" valign="top">MYSQL yaSSL SSLv2 Client Hello Message Session ID Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/13712?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0226">2008-0226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27140">27140</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://bugs.mysql.com/bug.php?id=33814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13713</td><td class="ruletablebody" valign="top">MYSQL yaSSL SSLv2 Client Hello Message Challenge Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/13713?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0226">2008-0226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27140">27140</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://bugs.mysql.com/bug.php?id=33814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13714</td><td class="ruletablebody" valign="top">MYSQL yaSSL SSLv3 Client Hello Message Cipher Specs Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/13714?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0226">2008-0226</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27140">27140</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://bugs.mysql.com/bug.php?id=33814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15442</td><td class="ruletablebody" valign="top">MYSQL XML Functions ExtractValue Scalar XPath denial of service attempt (<a href="http://www.snort.org/search/sid/15442?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0819">2009-0819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33972">33972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/34115">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15443</td><td class="ruletablebody" valign="top">MYSQL XML Functions UpdateXML Scalar XPath denial of service attempt (<a href="http://www.snort.org/search/sid/15443?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0819">2009-0819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33972">33972</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/34115">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15952</td><td class="ruletablebody" valign="top">MYSQL create function libc arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/15952?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0709">2005-0709</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12781">12781</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16020</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MySQL login handshake information disclosure attempt (<a href="http://www.snort.org/search/sid/16020?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1516">2006-1516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17780">17780</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16348</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun MySQL database PROCEDURE ANALYSE denial of service attempt - 1 (<a href="http://www.snort.org/search/sid/16348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4019">2009-4019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://dev.mysql.com/doc/refman/5.1/en/news-5-1-41.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16349</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun MySQL database Procedure Analyse denial of service attempt - 2 (<a href="http://www.snort.org/search/sid/16349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4019">2009-4019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://dev.mysql.com/doc/refman/5.1/en/news-5-1-41.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16385</td><td class="ruletablebody" valign="top">MYSQL yaSSL library cert parsing stack overflow attempt (<a href="http://www.snort.org/search/sid/16385?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4484">2009-4484</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37640">37640</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17412</td><td class="ruletablebody" valign="top">MYSQL CREATE FUNCTION mysql.func Arbitrary Library Injection attempt (<a href="http://www.snort.org/search/sid/17412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0710">2005-0710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12781">12781</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 19</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">509</td><td class="ruletablebody" valign="top">WEB-MISC PCCS mysql database admin tool access (<a href="http://www.snort.org/search/sid/509?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0707">2000-0707</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1557">1557</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10783">10783</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1527</td><td class="ruletablebody" valign="top">WEB-MISC basilix mysql.class access (<a href="http://www.snort.org/search/sid/1527?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1044">2001-1044</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2198">2198</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10601">10601</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1775</td><td class="ruletablebody" valign="top">MYSQL root login attempt (<a href="http://www.snort.org/search/sid/1775?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1776</td><td class="ruletablebody" valign="top">MYSQL show databases attempt (<a href="http://www.snort.org/search/sid/1776?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3456</td><td class="ruletablebody" valign="top">MYSQL 4.0 root login attempt (<a href="http://www.snort.org/search/sid/3456?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3518</td><td class="ruletablebody" valign="top">WEB-MISC MySQL MaxDB WebSQL wppassword buffer overflow (<a href="http://www.snort.org/search/sid/3518?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0111">2005-0111</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12265">12265</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.osvdb.org/displayvuln.php?osvdb_id=12919">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3519</td><td class="ruletablebody" valign="top">WEB-MISC MySQL MaxDB WebSQL wppassword buffer overflow default port (<a href="http://www.snort.org/search/sid/3519?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0111">2005-0111</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12265">12265</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.osvdb.org/displayvuln.php?osvdb_id=12919">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3528</td><td class="ruletablebody" valign="top">MYSQL create function access attempt (<a href="http://www.snort.org/search/sid/3528?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0709">2005-0709</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12781">12781</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3666</td><td class="ruletablebody" valign="top">MYSQL server greeting finished (<a href="http://www.snort.org/search/sid/3666?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3667</td><td class="ruletablebody" valign="top">MYSQL protocol 41 client authentication bypass attempt (<a href="http://www.snort.org/search/sid/3667?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3668</td><td class="ruletablebody" valign="top">MYSQL client authentication bypass attempt (<a href="http://www.snort.org/search/sid/3668?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3669</td><td class="ruletablebody" valign="top">MYSQL protocol 41 secure client overflow attempt (<a href="http://www.snort.org/search/sid/3669?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3670</td><td class="ruletablebody" valign="top">MYSQL secure client overflow attempt (<a href="http://www.snort.org/search/sid/3670?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3671</td><td class="ruletablebody" valign="top">MYSQL protocol 41 client overflow attempt (<a href="http://www.snort.org/search/sid/3671?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3672</td><td class="ruletablebody" valign="top">MYSQL client overflow attempt (<a href="http://www.snort.org/search/sid/3672?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0627">2004-0627</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10655">10655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12639">12639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/mysql-authbypass.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4649</td><td class="ruletablebody" valign="top">MYSQL create function buffer overflow attempt (<a href="http://www.snort.org/search/sid/4649?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2558">2005-2558</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14509">14509</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8057</td><td class="ruletablebody" valign="top">MYSQL Date_Format denial of service attempt (<a href="http://www.snort.org/search/sid/8057?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3469">2006-3469</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19032">19032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://dev.mysql.com/doc/refman/5.0/en/news-5-0-21.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11619</td><td class="ruletablebody" valign="top">MISC MySQL COM_TABLE_DUMP Function Stack Overflow attempt (<a href="http://www.snort.org/search/sid/11619?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1517">2006-1517</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17780">17780</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.wisec.it/vulns.php?page=8">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15951</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MySQL MaxDB Webtool GET command overflow attempt (<a href="http://www.snort.org/search/sid/15951?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0684">2005-0684</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13368">13368</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="234"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Database / Common SQL</div></p><span class="group"># of attack rules in this group: 60</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">688</td><td class="ruletablebody" valign="top">SQL sa login failed (<a href="http://www.snort.org/search/sid/688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">unsuccessful-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1209">2000-1209</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4797">4797</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10673">10673</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11204</td><td class="ruletablebody" valign="top">ORACLE Oracle Database DBMS_AQADM_SYS package GRANT_TYPE_ACCESS procedure SQL injection attempt (<a href="http://www.snort.org/search/sid/11204?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0977">2009-0977</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34461">34461</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.red-database-security.com/advisory/oracle_sql_injection_dbms_aqadm_sys.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12027</td><td class="ruletablebody" valign="top">SQL Ingres Database uuid_from_char buffer overflow attempt (<a href="http://www.snort.org/search/sid/12027?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3338">2007-3338</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24585">24585</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.ngssoftware.com/advisories/high-risk-vulnerability-in-ingres-stack-overflow">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13356</td><td class="ruletablebody" valign="top">SQL SAP MaxDB shell command injection attempt (<a href="http://www.snort.org/search/sid/13356?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0244">2008-0244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27206">27206</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13366</td><td class="ruletablebody" valign="top">ORACLE Oracle database SYS.LT.FINDRICSET SQL injection attempt (<a href="http://www.snort.org/search/sid/13366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5511">2007-5511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26098">26098</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13512</td><td class="ruletablebody" valign="top">SQL generic sql exec injection attempt - GET parameter (<a href="http://www.snort.org/search/sid/13512?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13513</td><td class="ruletablebody" valign="top">SQL generic sql insert injection atttempt - GET parameter (<a href="http://www.snort.org/search/sid/13513?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13551</td><td class="ruletablebody" valign="top">ORACLE Oracle XDB.XDB_PITRIG_PKG sql injection attempt (<a href="http://www.snort.org/search/sid/13551?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0339">2008-0339</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27229">27229</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13791</td><td class="ruletablebody" valign="top">SQL oversized cast statement - possible sql injection obfuscation (<a href="http://www.snort.org/search/sid/13791?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://isc.sans.org/diary.html?storyid=3823">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13928</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe RoboHelp r0 SQL injection attempt (<a href="http://www.snort.org/search/sid/13928?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2991">2008-2991</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13929</td><td class="ruletablebody" valign="top">WEB-MISC Adobe RoboHelp rx SQL injection attempt (<a href="http://www.snort.org/search/sid/13929?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2991">2008-2991</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13987</td><td class="ruletablebody" valign="top">SQL oversized convert statement - possible sql injection obfuscation (<a href="http://www.snort.org/search/sid/13987?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://isc.sans.org/diary.html?storyid=3823">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13988</td><td class="ruletablebody" valign="top">SQL large number of calls to ascii function - possible sql injection obfuscation (<a href="http://www.snort.org/search/sid/13988?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://isc.sans.org/diary.html?storyid=3823">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13990</td><td class="ruletablebody" valign="top">SQL union select - possible sql injection attempt - GET parameter (<a href="http://www.snort.org/search/sid/13990?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14008</td><td class="ruletablebody" valign="top">SQL large number of calls to concat function - possible sql injection obfuscation (<a href="http://www.snort.org/search/sid/14008?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://isc.sans.org/diary.html?storyid=3823">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14991</td><td class="ruletablebody" valign="top">SQL IBM DB2 Universal Database xmlquery buffer overflow attempt (<a href="http://www.snort.org/search/sid/14991?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3854">2008-3854</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29601">29601</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15143</td><td class="ruletablebody" valign="top">SQL sp_replwritetovarbin unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/15143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15144</td><td class="ruletablebody" valign="top">SQL sp_replwritetovarbin vulnerable function attempt (<a href="http://www.snort.org/search/sid/15144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5416">2008-5416</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32710">32710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15319</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /sql/query create tree attempt (<a href="http://www.snort.org/search/sid/15319?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15320</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /sql/query unicode create tree attempt (<a href="http://www.snort.org/search/sid/15320?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15321</td><td class="ruletablebody" valign="top">NETBIOS SMB /sql/query create tree attempt (<a href="http://www.snort.org/search/sid/15321?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15322</td><td class="ruletablebody" valign="top">NETBIOS SMB /sql/query unicode create tree attempt (<a href="http://www.snort.org/search/sid/15322?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15323</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /sql/query andx create tree attempt (<a href="http://www.snort.org/search/sid/15323?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15324</td><td class="ruletablebody" valign="top">NETBIOS-DG SMB /sql/query unicode andx create tree attempt (<a href="http://www.snort.org/search/sid/15324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15325</td><td class="ruletablebody" valign="top">NETBIOS SMB /sql/query andx create tree attempt (<a href="http://www.snort.org/search/sid/15325?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15326</td><td class="ruletablebody" valign="top">NETBIOS SMB /sql/query unicode andx create tree attempt (<a href="http://www.snort.org/search/sid/15326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15515</td><td class="ruletablebody" valign="top">ORACLE Oracle Database Server RollbackWorkspace SQL injection attempt (<a href="http://www.snort.org/search/sid/15515?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0978">2009-0978</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34461">34461</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2009.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15584</td><td class="ruletablebody" valign="top">SQL char and sysobjects - possible sql injection recon attempt (<a href="http://www.snort.org/search/sid/15584?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://isc.sans.org/diary.html?storyid=3823">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15722</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Oracle database server Workspace Manager multiple SQL injection attempt (<a href="http://www.snort.org/search/sid/15722?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3982">2008-3982</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31683">31683</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2008.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15723</td><td class="ruletablebody" valign="top">ORACLE Oracle database server CompressWorkspaceTree SQL injection attempt (<a href="http://www.snort.org/search/sid/15723?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3982">2008-3982</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31683">31683</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2008.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15724</td><td class="ruletablebody" valign="top">ORACLE Oracle database server MergeWorkspace SQL injection attempt (<a href="http://www.snort.org/search/sid/15724?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3982">2008-3982</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31683">31683</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2008.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15725</td><td class="ruletablebody" valign="top">ORACLE Oracle database server RemoveWorkspace SQL injection attempt (<a href="http://www.snort.org/search/sid/15725?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3982">2008-3982</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31683">31683</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2008.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15868</td><td class="ruletablebody" valign="top">SQL Borland InterBase username buffer overflow (<a href="http://www.snort.org/search/sid/15868?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2559">2008-2559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29302">29302</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15874</td><td class="ruletablebody" valign="top">SQL union select - possible sql injection attempt - POST parameter (<a href="http://www.snort.org/search/sid/15874?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15875</td><td class="ruletablebody" valign="top">SQL generic sql insert injection atttempt - POST parameter (<a href="http://www.snort.org/search/sid/15875?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15876</td><td class="ruletablebody" valign="top">SQL generic sql update injection attempt - POST parameter (<a href="http://www.snort.org/search/sid/15876?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15877</td><td class="ruletablebody" valign="top">SQL generic sql exec injection attempt - POST parameter (<a href="http://www.snort.org/search/sid/15877?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15896</td><td class="ruletablebody" valign="top">DOS Firebird SQL op_connect_request denial of service attempt (<a href="http://www.snort.org/search/sid/15896?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2620">2009-2620</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35842">35842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16049</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS GNU Radius SQL accounting format string exploit attempt (<a href="http://www.snort.org/search/sid/16049?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4181">2006-4181</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21303">21303</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16159</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16160</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16161</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16162</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16163</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 3 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16164</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 3 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16165</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 4 ActiveX clsid access (<a href="http://www.snort.org/search/sid/16165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16166</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Excel Add-in for SQL Analysis Services 4 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16166?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2493">2009-2493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16189</td><td class="ruletablebody" valign="top">ORACLE Oracle Database REPCAT_RPC.VALIDATE_REMOTE_RC SQL injection attempt (<a href="http://www.snort.org/search/sid/16189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1021">2009-1021</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35685">35685</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2009.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16290</td><td class="ruletablebody" valign="top">ORACLE Oracle database server CREATE_TABLES SQL injection attempt (<a href="http://www.snort.org/search/sid/16290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1991">2009-1991</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36748">36748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2009.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16364</td><td class="ruletablebody" valign="top">DOS IBM DB2 database server SQLSTT denial of service attempt (<a href="http://www.snort.org/search/sid/16364?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0173">2009-0173</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16513</td><td class="ruletablebody" valign="top">SQL Jive Software Openfire Jabber Server SQL injection attempt (<a href="http://www.snort.org/search/sid/16513?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-6510">2008-6510</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32189">32189</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16524</td><td class="ruletablebody" valign="top">FTP ProFTPD username sql injection attempt (<a href="http://www.snort.org/search/sid/16524?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0542">2009-0542</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33722">33722</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16722</td><td class="ruletablebody" valign="top">ORACLE Oracle Database Server DBMS_CDC_PUBLISH.DROP_CHANGE_SOURCE procedure SQL injection attempt (<a href="http://www.snort.org/search/sid/16722?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0870">2010-0870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39422">39422</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16723</td><td class="ruletablebody" valign="top">ORACLE Oracle Database Server DBMS_CDC_PUBLISH.ALTER_CHANGE_SOURCE procedure SQL injection attempt (<a href="http://www.snort.org/search/sid/16723?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0870">2010-0870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39422">39422</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17044</td><td class="ruletablebody" valign="top">SQL WinCC DB default password security bypass attempt (<a href="http://www.snort.org/search/sid/17044?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2772">2010-2772</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.automation.siemens.com/WW/view/en/43876783">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17209</td><td class="ruletablebody" valign="top">SQL IBM DB2 DATABASE SERVER SQL REPEAT Buffer Overflow (<a href="http://www.snort.org/search/sid/17209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0462">2010-0462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37976">37976</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17270</td><td class="ruletablebody" valign="top">ORACLE DBMS_METADATA Package SQL Injection attempt (<a href="http://www.snort.org/search/sid/17270?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1197">2005-1197</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17419</td><td class="ruletablebody" valign="top">ORACLE Oracle database SQL compiler read-only join auth bypass attempt (<a href="http://www.snort.org/search/sid/17419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3855">2007-3855</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17449</td><td class="ruletablebody" valign="top">WEB-MISC Novell ZENworks patch management SQL injection attempt (<a href="http://www.snort.org/search/sid/17449?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3315">2005-3315</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15220">15220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17590</td><td class="ruletablebody" valign="top">ORACLE DBMS_ASSERT.simple_sql_name double quote SQL injection attempt (<a href="http://www.snort.org/search/sid/17590?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19203">19203</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 113</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">673</td><td class="ruletablebody" valign="top">SQL sp_start_job - program execution (<a href="http://www.snort.org/search/sid/673?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">676</td><td class="ruletablebody" valign="top">SQL sp_start_job - program execution (<a href="http://www.snort.org/search/sid/676?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">677</td><td class="ruletablebody" valign="top">SQL sp_password password change (<a href="http://www.snort.org/search/sid/677?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">678</td><td class="ruletablebody" valign="top">SQL sp_delete_alert log file deletion (<a href="http://www.snort.org/search/sid/678?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">679</td><td class="ruletablebody" valign="top">SQL sp_adduser database user creation (<a href="http://www.snort.org/search/sid/679?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">681</td><td class="ruletablebody" valign="top">SQL xp_cmdshell program execution (<a href="http://www.snort.org/search/sid/681?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5309">5309</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">683</td><td class="ruletablebody" valign="top">SQL sp_password - password change (<a href="http://www.snort.org/search/sid/683?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">684</td><td class="ruletablebody" valign="top">SQL sp_delete_alert log file deletion (<a href="http://www.snort.org/search/sid/684?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">685</td><td class="ruletablebody" valign="top">SQL sp_adduser - database user creation (<a href="http://www.snort.org/search/sid/685?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">686</td><td class="ruletablebody" valign="top">SQL xp_reg* - registry access (<a href="http://www.snort.org/search/sid/686?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0642">2002-0642</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5205">5205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10642">10642</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">687</td><td class="ruletablebody" valign="top">SQL xp_cmdshell - program execution (<a href="http://www.snort.org/search/sid/687?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5309">5309</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">689</td><td class="ruletablebody" valign="top">SQL xp_reg* registry access (<a href="http://www.snort.org/search/sid/689?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0642">2002-0642</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5205">5205</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10642">10642</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-034">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">691</td><td class="ruletablebody" valign="top">SQL shellcode attempt (<a href="http://www.snort.org/search/sid/691?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">692</td><td class="ruletablebody" valign="top">SQL shellcode attempt (<a href="http://www.snort.org/search/sid/692?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">693</td><td class="ruletablebody" valign="top">SQL shellcode attempt (<a href="http://www.snort.org/search/sid/693?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">694</td><td class="ruletablebody" valign="top">SQL shellcode attempt (<a href="http://www.snort.org/search/sid/694?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">695</td><td class="ruletablebody" valign="top">SQL xp_sprintf possible buffer overflow (<a href="http://www.snort.org/search/sid/695?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1204">1204</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">704</td><td class="ruletablebody" valign="top">SQL xp_sprintf possible buffer overflow (<a href="http://www.snort.org/search/sid/704?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0542">2001-0542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3733">3733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1057</td><td class="ruletablebody" valign="top">SQL ftp attempt (<a href="http://www.snort.org/search/sid/1057?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1058</td><td class="ruletablebody" valign="top">SQL xp_enumdsn attempt (<a href="http://www.snort.org/search/sid/1058?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1059</td><td class="ruletablebody" valign="top">SQL xp_filelist attempt (<a href="http://www.snort.org/search/sid/1059?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1060</td><td class="ruletablebody" valign="top">SQL xp_availablemedia attempt (<a href="http://www.snort.org/search/sid/1060?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1061</td><td class="ruletablebody" valign="top">SQL xp_cmdshell attempt (<a href="http://www.snort.org/search/sid/1061?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5309">5309</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1069</td><td class="ruletablebody" valign="top">SQL xp_regread attempt (<a href="http://www.snort.org/search/sid/1069?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1077</td><td class="ruletablebody" valign="top">SQL queryhit.htm access (<a href="http://www.snort.org/search/sid/1077?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10370">10370</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1078</td><td class="ruletablebody" valign="top">SQL counter.exe access (<a href="http://www.snort.org/search/sid/1078?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1030">1999-1030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/267">267</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1385</td><td class="ruletablebody" valign="top">WEB-MISC mod-plsql administration access (<a href="http://www.snort.org/search/sid/1385?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1217">2001-1217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3727">3727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10849">10849</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1386</td><td class="ruletablebody" valign="top">SQL raiserror possible buffer overflow (<a href="http://www.snort.org/search/sid/1386?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0542">2001-0542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3733">3733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-060.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1387</td><td class="ruletablebody" valign="top">SQL raiserror possible buffer overflow (<a href="http://www.snort.org/search/sid/1387?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0542">2001-0542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3733">3733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11217">11217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1759</td><td class="ruletablebody" valign="top">SQL xp_cmdshell program execution 445 (<a href="http://www.snort.org/search/sid/1759?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5309">5309</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1871</td><td class="ruletablebody" valign="top">WEB-MISC Oracle XSQLConfig.xml access (<a href="http://www.snort.org/search/sid/1871?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0568">2002-0568</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4290">4290</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10855">10855</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2049</td><td class="ruletablebody" valign="top">SQL ping attempt (<a href="http://www.snort.org/search/sid/2049?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10674">10674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2063</td><td class="ruletablebody" valign="top">WEB-MISC Demarc SQL injection attempt (<a href="http://www.snort.org/search/sid/2063?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0539">2002-0539</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4520">4520</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2701</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQLPlus sid overflow attempt (<a href="http://www.snort.org/search/sid/2701?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10871">10871</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/ora-isqlplus.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2702</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQLPlus username overflow attempt (<a href="http://www.snort.org/search/sid/2702?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10871">10871</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/ora-isqlplus.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2703</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQLPlus login.uix username overflow attempt (<a href="http://www.snort.org/search/sid/2703?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10871">10871</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/ora-isqlplus.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2704</td><td class="ruletablebody" valign="top">WEB-MISC Oracle 10g iSQLPlus login.unix connectID overflow attempt (<a href="http://www.snort.org/search/sid/2704?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10871">10871</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/ora-isqlplus.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3152</td><td class="ruletablebody" valign="top">SQL sa brute force failed login attempt (<a href="http://www.snort.org/search/sid/3152?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">unsuccessful-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1209">2000-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4797">4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10673">10673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3273</td><td class="ruletablebody" valign="top">SQL sa brute force failed login unicode attempt (<a href="http://www.snort.org/search/sid/3273?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">unsuccessful-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1209">2000-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4797">4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10673">10673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3542</td><td class="ruletablebody" valign="top">SQL SA brute force login attempt (<a href="http://www.snort.org/search/sid/3542?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1209">2000-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4797">4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10673">10673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4984</td><td class="ruletablebody" valign="top">SQL sa brute force failed login unicode attempt (<a href="http://www.snort.org/search/sid/4984?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">unsuccessful-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1209">2000-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4797">4797</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10673">10673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4989</td><td class="ruletablebody" valign="top">SQL heap-based overflow attempt (<a href="http://www.snort.org/search/sid/4989?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0649">2002-0649</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5310">5310</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11214">11214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7207</td><td class="ruletablebody" valign="top">ORACLE DBMS_EXPORT_EXTENSION SQL injection attempt (<a href="http://www.snort.org/search/sid/7207?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3702">2006-3702</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19054">19054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8059</td><td class="ruletablebody" valign="top">ORACLE SYS.KUPW-WORKER sql injection attempt (<a href="http://www.snort.org/search/sid/8059?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3698">2006-3698</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19054">19054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2006.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8494</td><td class="ruletablebody" valign="top">SQL formatmessage possible buffer overflow (<a href="http://www.snort.org/search/sid/8494?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0542">2001-0542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3733">3733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8495</td><td class="ruletablebody" valign="top">SQL formatmessage possible buffer overflow (<a href="http://www.snort.org/search/sid/8495?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0542">2001-0542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3733">3733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8496</td><td class="ruletablebody" valign="top">SQL sp_oacreate unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8496?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8497</td><td class="ruletablebody" valign="top">SQL sp_oacreate vulnerable function attempt (<a href="http://www.snort.org/search/sid/8497?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8498</td><td class="ruletablebody" valign="top">SQL sp_oacreate unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8498?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8499</td><td class="ruletablebody" valign="top">SQL xp_displayparamstmt unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8499?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1081">2000-1081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2030">2030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8500</td><td class="ruletablebody" valign="top">SQL xp_displayparamstmt unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8500?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1081">2000-1081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2030">2030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8501</td><td class="ruletablebody" valign="top">SQL xp_displayparamstmt vulnerable function attempt (<a href="http://www.snort.org/search/sid/8501?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1081">2000-1081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2030">2030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8502</td><td class="ruletablebody" valign="top">SQL xp_enumresultset unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8502?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1082">2000-1082</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2031">2031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8503</td><td class="ruletablebody" valign="top">SQL xp_enumresultset unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8503?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1082">2000-1082</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2031">2031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8504</td><td class="ruletablebody" valign="top">SQL xp_enumresultset vulnerable function attempt (<a href="http://www.snort.org/search/sid/8504?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1082">2000-1082</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2031">2031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8505</td><td class="ruletablebody" valign="top">SQL xp_oadestroy unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8505?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8506</td><td class="ruletablebody" valign="top">SQL xp_oadestroy unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8506?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8507</td><td class="ruletablebody" valign="top">SQL xp_oadestroy vulnerable function attempt (<a href="http://www.snort.org/search/sid/8507?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8508</td><td class="ruletablebody" valign="top">SQL xp_oagetproperty unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8508?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8509</td><td class="ruletablebody" valign="top">SQL xp_oagetproperty unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8509?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8510</td><td class="ruletablebody" valign="top">SQL xp_oagetproperty vulnerable function attempt (<a href="http://www.snort.org/search/sid/8510?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8511</td><td class="ruletablebody" valign="top">SQL xp_oamethod unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8511?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8512</td><td class="ruletablebody" valign="top">SQL xp_oamethod vulnerable function attempt (<a href="http://www.snort.org/search/sid/8512?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8513</td><td class="ruletablebody" valign="top">SQL xp_oamethod unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8513?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8514</td><td class="ruletablebody" valign="top">SQL xp_oasetproperty unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8514?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8515</td><td class="ruletablebody" valign="top">SQL xp_oasetproperty unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8515?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8516</td><td class="ruletablebody" valign="top">SQL xp_oasetproperty vulnerable function attempt (<a href="http://www.snort.org/search/sid/8516?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8517</td><td class="ruletablebody" valign="top">SQL xp_peekqueue unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8517?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1085">2000-1085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2041">2041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8518</td><td class="ruletablebody" valign="top">SQL xp_peekqueue unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8518?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1085">2000-1085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2041">2041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8519</td><td class="ruletablebody" valign="top">SQL xp_peekqueue vulnerable function attempt (<a href="http://www.snort.org/search/sid/8519?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1085">2000-1085</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2041">2041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8520</td><td class="ruletablebody" valign="top">SQL xp_printstatements unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8520?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1086">2000-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2041">2041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8521</td><td class="ruletablebody" valign="top">SQL xp_printstatements unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8521?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1086">2000-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2041">2041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8522</td><td class="ruletablebody" valign="top">SQL xp_printstatements vulnerable function attempt (<a href="http://www.snort.org/search/sid/8522?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1086">2000-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2041">2041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8523</td><td class="ruletablebody" valign="top">SQL xp_proxiedmetadata unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8523?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1087">2000-1087</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2024">2024</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8524</td><td class="ruletablebody" valign="top">SQL xp_proxiedmetadata unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8524?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1087">2000-1087</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2024">2024</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8525</td><td class="ruletablebody" valign="top">SQL xp_proxiedmetadata vulnerable function attempt (<a href="http://www.snort.org/search/sid/8525?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1087">2000-1087</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2024">2024</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8526</td><td class="ruletablebody" valign="top">SQL xp_SetSQLSecurity unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8526?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1086">2000-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2043">2043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8527</td><td class="ruletablebody" valign="top">SQL xp_SetSQLSecurity unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8527?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1086">2000-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2043">2043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8528</td><td class="ruletablebody" valign="top">SQL xp_SetSQLSecurity vulnerable function attempt (<a href="http://www.snort.org/search/sid/8528?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1086">2000-1086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2043">2043</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8529</td><td class="ruletablebody" valign="top">SQL xp_showcolv unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8529?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1083">2000-1083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2038">2038</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8530</td><td class="ruletablebody" valign="top">SQL xp_showcolv unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8530?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1083">2000-1083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2038">2038</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8531</td><td class="ruletablebody" valign="top">SQL xp_showcolv vulnerable function attempt (<a href="http://www.snort.org/search/sid/8531?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1083">2000-1083</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2038">2038</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8532</td><td class="ruletablebody" valign="top">SQL xp_sqlagent_monitor unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8532?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8533</td><td class="ruletablebody" valign="top">SQL xp_sqlagent_monitor vulnerable function attempt (<a href="http://www.snort.org/search/sid/8533?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8534</td><td class="ruletablebody" valign="top">SQL xp_sqlagent_monitor unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8534?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8535</td><td class="ruletablebody" valign="top">SQL xp_sqlinventory unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8535?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8536</td><td class="ruletablebody" valign="top">SQL xp_sqlinventory vulnerable function attempt (<a href="http://www.snort.org/search/sid/8536?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8537</td><td class="ruletablebody" valign="top">SQL xp_sqlinventory unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8537?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8538</td><td class="ruletablebody" valign="top">SQL xp_updatecolvbm unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8538?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1084">2000-1084</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2039">2039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8539</td><td class="ruletablebody" valign="top">SQL xp_updatecolvbm unicode vulnerable function attempt (<a href="http://www.snort.org/search/sid/8539?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1084">2000-1084</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2039">2039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8540</td><td class="ruletablebody" valign="top">SQL xp_updatecolvbm vulnerable function attempt (<a href="http://www.snort.org/search/sid/8540?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-1084">2000-1084</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2039">2039</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms00-092.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11193</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQL Plus cross site scripting attempt (<a href="http://www.snort.org/search/sid/11193?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2115">2004-2115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9484">9484</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11194</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQL Plus cross site scripting attempt (<a href="http://www.snort.org/search/sid/11194?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2115">2004-2115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9484">9484</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11616</td><td class="ruletablebody" valign="top">WEB-MISC Symantec Sygate Policy Manager SQL injection (<a href="http://www.snort.org/search/sid/11616?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0522">2006-0522</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/16452">16452</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11685</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQL Plus cross site scripting attempt (<a href="http://www.snort.org/search/sid/11685?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2115">2004-2115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9484">9484</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12009</td><td class="ruletablebody" valign="top">SQL Firebird SQL Fbserver buffer overflow attempt (<a href="http://www.snort.org/search/sid/12009?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3181">2007-3181</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12059</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQL Plus cross site scripting attempt (<a href="http://www.snort.org/search/sid/12059?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2115">2004-2115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9484">9484</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12060</td><td class="ruletablebody" valign="top">WEB-MISC Oracle iSQL Plus cross site scripting attempt (<a href="http://www.snort.org/search/sid/12060?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-2115">2004-2115</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9484">9484</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13553</td><td class="ruletablebody" valign="top">EXPLOIT Sybase SQL Anywhere Mobilink username string buffer overflow (<a href="http://www.snort.org/search/sid/13553?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0912">2008-0912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27914">27914</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://aluigi.altervista.org/adv/mobilinkhof-adv.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13554</td><td class="ruletablebody" valign="top">EXPLOIT Sybase SQL Anywhere Mobilink version string buffer overflow (<a href="http://www.snort.org/search/sid/13554?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0912">2008-0912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27914">27914</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://aluigi.altervista.org/adv/mobilinkhof-adv.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13555</td><td class="ruletablebody" valign="top">EXPLOIT Sybase SQL Anywhere Mobilink remoteID string buffer overflow (<a href="http://www.snort.org/search/sid/13555?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0912">2008-0912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/27914">27914</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://aluigi.altervista.org/adv/mobilinkhof-adv.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13891</td><td class="ruletablebody" valign="top">SQL Memory page overwrite attempt (<a href="http://www.snort.org/search/sid/13891?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0106">2008-0106</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13892</td><td class="ruletablebody" valign="top">SQL Convert function style overwrite (<a href="http://www.snort.org/search/sid/13892?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0086">2008-0086</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-040.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13991</td><td class="ruletablebody" valign="top">SQL xp_regaddmultistring attempt (<a href="http://www.snort.org/search/sid/13991?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13992</td><td class="ruletablebody" valign="top">SQL xp_regdeletevalue attempt (<a href="http://www.snort.org/search/sid/13992?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13993</td><td class="ruletablebody" valign="top">SQL xp_regenumkeys attempt (<a href="http://www.snort.org/search/sid/13993?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13994</td><td class="ruletablebody" valign="top">SQL xp_regenumvalues attempt (<a href="http://www.snort.org/search/sid/13994?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13995</td><td class="ruletablebody" valign="top">SQL xp_regremovemultistring attempt (<a href="http://www.snort.org/search/sid/13995?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13996</td><td class="ruletablebody" valign="top">SQL xp_servicecontrol attempt (<a href="http://www.snort.org/search/sid/13996?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13997</td><td class="ruletablebody" valign="top">SQL xp_loginconfig attempt (<a href="http://www.snort.org/search/sid/13997?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13998</td><td class="ruletablebody" valign="top">SQL xp_terminate_process attempt (<a href="http://www.snort.org/search/sid/13998?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16393</td><td class="ruletablebody" valign="top">EXPLOIT Postgresql bit substring buffer overflow (<a href="http://www.snort.org/search/sid/16393?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0442">2010-0442</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/37973">37973</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16431</td><td class="ruletablebody" valign="top">SQL generic sql with comments injection attempt - GET parameter (<a href="http://www.snort.org/search/sid/16431?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securiteam.com/securityreviews/5DP0N1P76E.html">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="235"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Database / Common SQL</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="240"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="241"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / DNS</div></p><span class="group"># of attack rules in this group: 24</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">253</td><td class="ruletablebody" valign="top">DNS SPOOF query response PTR with TTL of 1 min. and no authority (<a href="http://www.snort.org/search/sid/253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1948</td><td class="ruletablebody" valign="top">DNS zone transfer UDP (<a href="http://www.snort.org/search/sid/1948?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0532">1999-0532</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10595">10595</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2921</td><td class="ruletablebody" valign="top">DNS UDP inverse query (<a href="http://www.snort.org/search/sid/2921?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0010">2001-0010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/2302">2302</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10605">10605</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8709</td><td class="ruletablebody" valign="top">DNS Windows NAT helper components tcp denial of service attempt (<a href="http://www.snort.org/search/sid/8709?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5614">2006-5614</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8710</td><td class="ruletablebody" valign="top">DNS Windows NAT helper components udp denial of service attempt (<a href="http://www.snort.org/search/sid/8710?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5614">2006-5614</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15327</td><td class="ruletablebody" valign="top">BAD-TRAFFIC libspf2 DNS TXT record parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/15327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2469">2008-2469</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31881">31881</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15991</td><td class="ruletablebody" valign="top">DOS Multiple vendor DNS message decompression denial of service attempt (<a href="http://www.snort.org/search/sid/15991?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0036">2005-0036</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13729">13729</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16029</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows DNS client ATMA buffer overrun attempt (<a href="http://www.snort.org/search/sid/16029?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3441">2006-3441</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19404">19404</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16030</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows DNS client TXT buffer overrun attempt (<a href="http://www.snort.org/search/sid/16030?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3441">2006-3441</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19404">19404</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16206</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows DNS server spoofing attempt (<a href="http://www.snort.org/search/sid/16206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3898">2007-3898</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25919">25919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16297</td><td class="ruletablebody" valign="top">BOTNET-CNC Palevo bot DNS request for C&amp;C attempt (<a href="http://www.snort.org/search/sid/16297?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.virustotal.com/analisis/c790a26f38070632759f481a87ed60c1628dea723ad63577cfe373de6b81e0a7-1249566492">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16298</td><td class="ruletablebody" valign="top">BOTNET-CNC Palevo bot DNS request attempt (<a href="http://www.snort.org/search/sid/16298?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.virustotal.com/analisis/c790a26f38070632759f481a87ed60c1628dea723ad63577cfe373de6b81e0a7-1249566492">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16299</td><td class="ruletablebody" valign="top">BOTNET-CNC Palevo bot DNS request attempt (<a href="http://www.snort.org/search/sid/16299?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.virustotal.com/analisis/c790a26f38070632759f481a87ed60c1628dea723ad63577cfe373de6b81e0a7-1249566492">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16302</td><td class="ruletablebody" valign="top">BOTNET-CNC Virut DNS request for C&amp;C attempt (<a href="http://www.snort.org/search/sid/16302?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://threatexpert.com/report.aspx?md5=9ddbec6a5eda7af31e2f5461df8fe4df">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16303</td><td class="ruletablebody" valign="top">BOTNET-CNC Virut DNS request attempt (<a href="http://www.snort.org/search/sid/16303?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://threatexpert.com/report.aspx?md5=9ddbec6a5eda7af31e2f5461df8fe4df">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16304</td><td class="ruletablebody" valign="top">BOTNET-CNC Virut DNS request attempt (<a href="http://www.snort.org/search/sid/16304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://threatexpert.com/report.aspx?md5=9ddbec6a5eda7af31e2f5461df8fe4df">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16693</td><td class="ruletablebody" valign="top">SPYWARE-PUT Torpig bot sinkhole server DNS lookup attempt (<a href="http://www.snort.org/search/sid/16693?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.virustotal.com/analisis/598c0628fb40a17405ee0a3146621460daeee46ac863810af822695153416a3f-1270655846">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17294</td><td class="ruletablebody" valign="top">DOS Microsoft Windows NAT Helper DNS query denial of service attempt (<a href="http://www.snort.org/search/sid/17294?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5614">2006-5614</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20804">20804</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17483</td><td class="ruletablebody" valign="top">DNS squid proxy dns A record response denial of service attempt (<a href="http://www.snort.org/search/sid/17483?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0446">2005-0446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12551">12551</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17484</td><td class="ruletablebody" valign="top">DNS squid proxy dns PTR record response denial of service attempt (<a href="http://www.snort.org/search/sid/17484?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0446">2005-0446</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12551">12551</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17485</td><td class="ruletablebody" valign="top">DNS Symantec Gateway products DNS cache poisoning attempt (<a href="http://www.snort.org/search/sid/17485?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0817">2005-0817</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17495</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Squid proxy DNS response spoofing attempt (<a href="http://www.snort.org/search/sid/17495?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1519">2005-1519</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13592">13592</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17680</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS ISC BIND DNSSEC Validation Multiple RRsets DoS (<a href="http://www.snort.org/search/sid/17680?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0494">2007-0494</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22231">22231</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17696</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft DNS Server ANY query cache weakness (<a href="http://www.snort.org/search/sid/17696?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0234">2009-0234</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-008.mspx">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 265</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">256</td><td class="ruletablebody" valign="top">DNS named authors attempt (<a href="http://www.snort.org/search/sid/256?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10728">10728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">257</td><td class="ruletablebody" valign="top">DNS named version attempt (<a href="http://www.snort.org/search/sid/257?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10028">10028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">258</td><td class="ruletablebody" valign="top">DNS EXPLOIT named 8.2-&gt;8.2.1 (<a href="http://www.snort.org/search/sid/258?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0833">1999-0833</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/788">788</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">259</td><td class="ruletablebody" valign="top">DNS EXPLOIT named overflow ADM (<a href="http://www.snort.org/search/sid/259?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0833">1999-0833</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/788">788</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">260</td><td class="ruletablebody" valign="top">DNS EXPLOIT named overflow ADMROCKS (<a href="http://www.snort.org/search/sid/260?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0833">1999-0833</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/788">788</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1999-14.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">261</td><td class="ruletablebody" valign="top">DNS EXPLOIT named overflow attempt (<a href="http://www.snort.org/search/sid/261?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-1998-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">262</td><td class="ruletablebody" valign="top">DNS EXPLOIT x86 Linux overflow attempt (<a href="http://www.snort.org/search/sid/262?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">264</td><td class="ruletablebody" valign="top">DNS EXPLOIT x86 Linux overflow attempt (<a href="http://www.snort.org/search/sid/264?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">265</td><td class="ruletablebody" valign="top">DNS EXPLOIT x86 Linux overflow attempt ADMv2 (<a href="http://www.snort.org/search/sid/265?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">266</td><td class="ruletablebody" valign="top">DNS EXPLOIT x86 FreeBSD overflow attempt (<a href="http://www.snort.org/search/sid/266?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">267</td><td class="ruletablebody" valign="top">DNS EXPLOIT sparc overflow attempt (<a href="http://www.snort.org/search/sid/267?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">303</td><td class="ruletablebody" valign="top">DNS EXPLOIT named tsig overflow attempt (<a href="http://www.snort.org/search/sid/303?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0010">2001-0010</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2302">2302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10605">10605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">314</td><td class="ruletablebody" valign="top">DNS EXPLOIT named tsig overflow attempt (<a href="http://www.snort.org/search/sid/314?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0010">2001-0010</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2302">2302</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1261</td><td class="ruletablebody" valign="top">EXPLOIT AIX pdnsd overflow (<a href="http://www.snort.org/search/sid/1261?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0745">1999-0745</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/590">590</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1435</td><td class="ruletablebody" valign="top">DNS named authors attempt (<a href="http://www.snort.org/search/sid/1435?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10728">10728</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1616</td><td class="ruletablebody" valign="top">DNS named version attempt (<a href="http://www.snort.org/search/sid/1616?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10028">10028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3154</td><td class="ruletablebody" valign="top">DNS UDP inverse query overflow (<a href="http://www.snort.org/search/sid/3154?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0009">1999-0009</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/134">134</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10603</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP dns R_DnssrvUpdateRecord2 overflow attempt (<a href="http://www.snort.org/search/sid/10603?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1748">2007-1748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23470">23470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10900</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP dns R_DnssrvEnumRecords overflow attempt (<a href="http://www.snort.org/search/sid/10900?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1748">2007-1748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23470">23470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12357</td><td class="ruletablebody" valign="top">EXPLOIT Apple mDNSresponder excessive HTTP headers (<a href="http://www.snort.org/search/sid/12357?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3744">2007-3744</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25159">25159</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15963</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Red Hat Enterprise Linux DNS resolver buffer overflow attempt (<a href="http://www.snort.org/search/sid/15963?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0029">2002-0029</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6186">6186</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15988</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft ISA Server DNS spoofing attempt (<a href="http://www.snort.org/search/sid/15988?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0892">2004-0892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11605">11605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16499</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP dns R_DnssrvUpdateRecord2 overflow attempt (<a href="http://www.snort.org/search/sid/16499?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1748">2007-1748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23470">23470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16500</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP dns R_DnssrvEnumRecords overflow attempt (<a href="http://www.snort.org/search/sid/16500?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1748">2007-1748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23470">23470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16612</td><td class="ruletablebody" valign="top">WEB-CLIENT Firefox oversized SOCKS5 DNS reply memory corruption attempt (<a href="http://www.snort.org/search/sid/16612?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2470">2009-2470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/35925">35925</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16834</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain qd.netkill.com.cn - Trojan-Downloader.Win32.Adload.rzx (<a href="http://www.snort.org/search/sid/16834?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16834.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16835</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain exe.146843.com - Trojan.Win32.Opeg.a (<a href="http://www.snort.org/search/sid/16835?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16835.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16836</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ra03.e5732.com - Trojan-Clicker.Win32.Small.afg (<a href="http://www.snort.org/search/sid/16836?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16836.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16837</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dangercheats.com.br - Trojan.Win32.Refroso.arnq (<a href="http://www.snort.org/search/sid/16837?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16837.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16838</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain xlm.ppvsr.com - Trojan-GameThief.Win32.OnLineGames.wwcf (<a href="http://www.snort.org/search/sid/16838?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16838.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16839</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain sh16.e8753.com - Trojan.Win32.Scar.ccqb (<a href="http://www.snort.org/search/sid/16839?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16839.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16840</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain rx11.e6532.com - Trojan.Win32.Opeg.a (<a href="http://www.snort.org/search/sid/16840?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16840.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16841</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain podgorz.org - Trojan-Spy.Win32.Zbot.gen (<a href="http://www.snort.org/search/sid/16841?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16841.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16842</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain sp19.e4578.com - Trojan-Downloader.Win32.Genome.njz (<a href="http://www.snort.org/search/sid/16842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16842.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16843</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 1.7zsm.com - Trojan-Downloader.Win32.Agent.dtuo (<a href="http://www.snort.org/search/sid/16843?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16843.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16844</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain rm08.e4562.com - Trojan-Downloader.Win32.Agent.dngx (<a href="http://www.snort.org/search/sid/16844?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16844.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16845</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain rc04.e6532.com - Trojan-Downloader.Win32.Genome.awld (<a href="http://www.snort.org/search/sid/16845?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16845.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16846</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain bedayton.com - Trojan-Downloader.Win32.Agent.dlhe (<a href="http://www.snort.org/search/sid/16846?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16846.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16847</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain rz12.e6805.com - Trojan-Downloader.Win32.Genome.awld (<a href="http://www.snort.org/search/sid/16847?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16847.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16848</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain in.chinaitlm.cn - Trojan.VBS.HideIcon.d (<a href="http://www.snort.org/search/sid/16848?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16848.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16849</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain re05.e6532.com - Trojan-Downloader.Win32.Genome.awld (<a href="http://www.snort.org/search/sid/16849?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16849.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16850</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain kldmten.net - Trojan-Spy.Win32.Zbot.akra (<a href="http://www.snort.org/search/sid/16850?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16850.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16851</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain forelc.cc - Trojan-Ransom.Win32.XBlocker.ahe (<a href="http://www.snort.org/search/sid/16851?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16851.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16852</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain v.yao63.com - Trojan-Downloader.Win32.Agent.dqns (<a href="http://www.snort.org/search/sid/16852?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16852.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16853</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain vh26.e4578.com - Trojan.Win32.Opeg.a (<a href="http://www.snort.org/search/sid/16853?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16853.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16854</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain up1.give2sms.com - Trojan-Downloader.Win32.Genome.est (<a href="http://www.snort.org/search/sid/16854?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16854.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16855</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain d.123kuaihuo.com - Trojan.Win32.Scar.clbx (<a href="http://www.snort.org/search/sid/16855?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16855.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16856</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain andy.cd - Backdoor.Win32.Agent.auto (<a href="http://www.snort.org/search/sid/16856?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16856.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16857</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain site.mynet.com - Trojan.Win32.Buzus.dxsr (<a href="http://www.snort.org/search/sid/16857?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16857.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16858</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain charter-x.biz - Packed.Win32.Krap.ae (<a href="http://www.snort.org/search/sid/16858?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16858.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16859</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain gerherber.com - Trojan-Spy.Win32.Zbot.akdw (<a href="http://www.snort.org/search/sid/16859?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16859.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16860</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain urodinam.net - Trojan.Win32.TDSS.azsj (<a href="http://www.snort.org/search/sid/16860?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16860.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16861</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain gite-eguisheim.com - Trojan-Downloader.Win32.Piker.clp (<a href="http://www.snort.org/search/sid/16861?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16861.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16862</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain phaizeipeu.ru - Packed.Win32.Krap.gx (<a href="http://www.snort.org/search/sid/16862?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16862.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16863</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain teendx.com - Trojan-Spy.Win32.Zbot.gen (<a href="http://www.snort.org/search/sid/16863?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16863.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16864</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain taiping2033.2288.org - Trojan-Downloader.Win32.Selvice.afy (<a href="http://www.snort.org/search/sid/16864?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16864.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16865</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain cnfg.maxsitesrevenues.net - Trojan.Win32.BHO.afke (<a href="http://www.snort.org/search/sid/16865?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16865.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16866</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain members.multimania.co.uk - Trojan.Win32.Inject.ahqv (<a href="http://www.snort.org/search/sid/16866?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16866.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16867</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain down.toopc.com - Trojan-Dropper.Win32.Clons.hai (<a href="http://www.snort.org/search/sid/16867?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16867.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16868</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain hostshack.net - Trojan.Win32.Buzus.empl (<a href="http://www.snort.org/search/sid/16868?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16868.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16869</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain tt.vv49.com - Trojan-GameThief.Win32.OnLineGames.bnkb (<a href="http://www.snort.org/search/sid/16869?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16869.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16870</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain search.sidegreen.com - Backdoor.Win32.Agent.arqi (<a href="http://www.snort.org/search/sid/16870?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16870.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16871</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain parfaitpournous.com - Trojan-Spy.Win32.Zbot.gen (<a href="http://www.snort.org/search/sid/16871?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16871.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16872</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain postmetoday.ru - Packed.Win32.Katusha.j (<a href="http://www.snort.org/search/sid/16872?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16872.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16873</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain youword.cn - Trojan.Win32.Scar.bvgu (<a href="http://www.snort.org/search/sid/16873?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16873.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16874</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ophaeghaev.ru - Trojan-Spy.Win32.Zbot.akmi (<a href="http://www.snort.org/search/sid/16874?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16874.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16875</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain up1.free-sms.co.kr - Trojan.Win32.Vilsel.akp (<a href="http://www.snort.org/search/sid/16875?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16875.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16876</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain c.softdowns.info - Trojan.BAT.Agent.yn (<a href="http://www.snort.org/search/sid/16876?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16876.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16877</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ddkom.biz - Trojan.Win32.Scar.ckhr (<a href="http://www.snort.org/search/sid/16877?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16877.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16878</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain vopret.ru - Trojan.Win32.FraudPack.axwn (<a href="http://www.snort.org/search/sid/16878?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16878.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16879</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dnfpomo.dnfranran.com - Trojan-GameThief.Win32.OnLineGames.bnkx (<a href="http://www.snort.org/search/sid/16879?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16879.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16880</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dnfuu.3322.org - Trojan-Downloader.Win32.Genome.asrx (<a href="http://www.snort.org/search/sid/16880?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16880.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16881</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain sex-gifts.ru - Trojan-Spy.Win32.Zbot.gen (<a href="http://www.snort.org/search/sid/16881?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16881.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16882</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 111.168lala.com - Backdoor.Win32.Popwin.cyn (<a href="http://www.snort.org/search/sid/16882?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16882.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16883</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain mcafee-registry.ru - Trojan-Spy.Win32.Zbot.akgb (<a href="http://www.snort.org/search/sid/16883?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16883.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16884</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain bits4ever.ru - Trojan-Spy.Win32.Zbot.aknt (<a href="http://www.snort.org/search/sid/16884?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16884.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16885</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain monicaecarlos.com - Trojan-Downloader.Win32.Genome.awxv (<a href="http://www.snort.org/search/sid/16885?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16885.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16886</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain d.trymedia.com - Trojan-Dropper.Win32.Delf.fkk (<a href="http://www.snort.org/search/sid/16886?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16886.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16888</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dbtte.com - Trojan-Banker.Win32.Banz.crk (<a href="http://www.snort.org/search/sid/16888?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16888.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16889</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain h1.ripway.com - Trojan.Win32.Refroso.bcdq (<a href="http://www.snort.org/search/sid/16889?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16889.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16890</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain in6cs.com - Trojan.Win32.Tdss.beea (<a href="http://www.snort.org/search/sid/16890?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16890.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16891</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain solo1928.ru - Trojan-Spy.Win32.Zbot.gen (<a href="http://www.snort.org/search/sid/16891?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16891.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16892</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain fg545633.host.zgridc.com - Trojan.Win32.Pincav.abub (<a href="http://www.snort.org/search/sid/16892?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16892.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16893</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain primusdns.ru - Backdoor.Win32.Havar.eh (<a href="http://www.snort.org/search/sid/16893?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16893.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16894</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain eq.pccppc.com - Trojan-Downloader.Win32.Pher.fkl (<a href="http://www.snort.org/search/sid/16894?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16894.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16895</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain alodh.in - Backdoor.Win32.Delf.vde (<a href="http://www.snort.org/search/sid/16895?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16895.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16896</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain reward.pnshop.co.kr - Backdoor.Win32.Agent.ahra (<a href="http://www.snort.org/search/sid/16896?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16896.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16897</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain sympathy.hdnews.net - Trojan-Spy.Win32.Zbot.gen (<a href="http://www.snort.org/search/sid/16897?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16897.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16898</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain sx21.e4578.com - Trojan.Win32.Scar.ccqb (<a href="http://www.snort.org/search/sid/16898?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16898.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16899</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain downloadering.9966.org - Trojan.Win32.Vilsel.adxv (<a href="http://www.snort.org/search/sid/16899?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16899.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16900</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain reportes201.com - Trojan-Downloader.Win32.Genome.ashe (<a href="http://www.snort.org/search/sid/16900?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16900.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16901</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain local.1140.co.kr - Trojan-Downloader.Win32.Genome.aobm (<a href="http://www.snort.org/search/sid/16901?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16901.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16902</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain promojoy.net - Packed.Win32.Krap.gx (<a href="http://www.snort.org/search/sid/16902?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16902.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16903</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain gpwg.ws - Worm.Win32.AutoRun.bjca (<a href="http://www.snort.org/search/sid/16903?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16903.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16904</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain xoomer.alice.it - Trojan-Downloader.Win32.Banload.kdu (<a href="http://www.snort.org/search/sid/16904?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16904.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16905</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain xoomer.virgilio.it - Backdoor.Win32.Clar.d (<a href="http://www.snort.org/search/sid/16905?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16905.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16906</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain down.p2pplay.com - Trojan-GameThief.Win32.OnLineGames.wgkv (<a href="http://www.snort.org/search/sid/16906?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16906.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16907</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain livetrust.info - Trojan-Spy.Win32.Zbot.akku (<a href="http://www.snort.org/search/sid/16907?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16907.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16908</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ootaivilei.ru - Trojan-Spy.Win32.Zbot.akme (<a href="http://www.snort.org/search/sid/16908?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16908.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16909</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain babah20122012.com - Trojan-Spy.Win32.Zbot.akbb (<a href="http://www.snort.org/search/sid/16909?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16909.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16910</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain pattern - 0-0-0-0-0-0-0.info (<a href="http://www.snort.org/search/sid/16910?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/16910.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17047</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows DNS Server RPC management interface buffer overflow attempt (<a href="http://www.snort.org/search/sid/17047?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1748">2007-1748</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23470">23470</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-029.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17818</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ktr.t134.net (<a href="http://www.snort.org/search/sid/17818?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17818.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17819</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain motuh.com (<a href="http://www.snort.org/search/sid/17819?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17819.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17820</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain myanimalclips.com (<a href="http://www.snort.org/search/sid/17820?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17820.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17821</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ketsymbol.com (<a href="http://www.snort.org/search/sid/17821?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17821.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17822</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ics.hotbar.com (<a href="http://www.snort.org/search/sid/17822?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17822.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17823</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.myroitracking.com (<a href="http://www.snort.org/search/sid/17823?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17823.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17824</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain teenxmovs.net (<a href="http://www.snort.org/search/sid/17824?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17824.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17825</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain px.smowtion.com (<a href="http://www.snort.org/search/sid/17825?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17825.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17826</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain cheaps1.info (<a href="http://www.snort.org/search/sid/17826?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17826.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17827</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain sexmoviesland.net (<a href="http://www.snort.org/search/sid/17827?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17827.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17828</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 67.201.36.16 (<a href="http://www.snort.org/search/sid/17828?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17828.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17829</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain c7.zxxds.net (<a href="http://www.snort.org/search/sid/17829?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17829.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17830</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dickvsclit.net (<a href="http://www.snort.org/search/sid/17830?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17830.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17831</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain edrichfinearts.com (<a href="http://www.snort.org/search/sid/17831?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17831.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17832</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain img100.xvideos.com (<a href="http://www.snort.org/search/sid/17832?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17832.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17833</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.dsnextgen.com (<a href="http://www.snort.org/search/sid/17833?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17833.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17834</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 343.boolans.com (<a href="http://www.snort.org/search/sid/17834?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17834.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17835</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain xpresdnet.com (<a href="http://www.snort.org/search/sid/17835?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17835.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17836</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain gbsup.com (<a href="http://www.snort.org/search/sid/17836?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17836.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17837</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain xxsmovies.com (<a href="http://www.snort.org/search/sid/17837?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17837.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17838</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain vc.iwriteweb.com (<a href="http://www.snort.org/search/sid/17838?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17838.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17839</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain js.222233.com (<a href="http://www.snort.org/search/sid/17839?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17839.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17840</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.grannyplanet.com (<a href="http://www.snort.org/search/sid/17840?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17840.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17841</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain coop.crwdcntrl.net (<a href="http://www.snort.org/search/sid/17841?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17841.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17842</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain extrahotx.net (<a href="http://www.snort.org/search/sid/17842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17842.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17843</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain extralargevideos.com (<a href="http://www.snort.org/search/sid/17843?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17843.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17844</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.derquda.com (<a href="http://www.snort.org/search/sid/17844?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17844.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17845</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain aahydrogen.com (<a href="http://www.snort.org/search/sid/17845?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17845.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17846</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain trumpetlicks.com (<a href="http://www.snort.org/search/sid/17846?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17846.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17847</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain mskla.com (<a href="http://www.snort.org/search/sid/17847?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17847.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17848</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain play.unionsky.cn (<a href="http://www.snort.org/search/sid/17848?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17848.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17849</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain fuckersucker.com (<a href="http://www.snort.org/search/sid/17849?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17849.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17850</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain pornfucklist.com (<a href="http://www.snort.org/search/sid/17850?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17850.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17851</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain game.685faiudeme.com (<a href="http://www.snort.org/search/sid/17851?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17851.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17852</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 447.cc (<a href="http://www.snort.org/search/sid/17852?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17852.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17853</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dommonview.com (<a href="http://www.snort.org/search/sid/17853?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17853.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17854</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.lamiaexragazza.com (<a href="http://www.snort.org/search/sid/17854?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17854.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17855</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain acofinder.com (<a href="http://www.snort.org/search/sid/17855?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17855.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17856</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain fuckfuckvids.com (<a href="http://www.snort.org/search/sid/17856?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17856.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17857</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.cnhack.cn (<a href="http://www.snort.org/search/sid/17857?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17857.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17858</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain kingsizematures.com (<a href="http://www.snort.org/search/sid/17858?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17858.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17859</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain promotds.com (<a href="http://www.snort.org/search/sid/17859?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17859.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17860</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain mejac.com (<a href="http://www.snort.org/search/sid/17860?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17860.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17861</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain zq2.9wee.com (<a href="http://www.snort.org/search/sid/17861?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17861.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17862</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 122.770304123.cn (<a href="http://www.snort.org/search/sid/17862?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17862.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17863</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain rpt2.21civ.com (<a href="http://www.snort.org/search/sid/17863?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17863.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17864</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain tubexxxmatures.com (<a href="http://www.snort.org/search/sid/17864?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17864.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17865</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 110.770304123.cn (<a href="http://www.snort.org/search/sid/17865?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17865.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17866</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain aebankonline.com (<a href="http://www.snort.org/search/sid/17866?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17866.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17867</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain utm.trk.myfuncards.com (<a href="http://www.snort.org/search/sid/17867?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17867.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17868</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain a.qq2233.com (<a href="http://www.snort.org/search/sid/17868?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17868.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17869</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain px.mgplatform.com (<a href="http://www.snort.org/search/sid/17869?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17869.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17870</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain trojan8.com (<a href="http://www.snort.org/search/sid/17870?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17870.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17871</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain brutalxvideos.com (<a href="http://www.snort.org/search/sid/17871?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17871.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17872</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www3.sexown.com (<a href="http://www.snort.org/search/sid/17872?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17872.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17873</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain mummimpegs.com (<a href="http://www.snort.org/search/sid/17873?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17873.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17874</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain f19dd4abb8b8bdf2.cn (<a href="http://www.snort.org/search/sid/17874?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17874.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17875</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.very-young-boys.com (<a href="http://www.snort.org/search/sid/17875?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17875.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17876</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 91629.com (<a href="http://www.snort.org/search/sid/17876?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17876.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17877</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain animal36.com (<a href="http://www.snort.org/search/sid/17877?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17877.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17878</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain ayb.host127-0-0-1.com (<a href="http://www.snort.org/search/sid/17878?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17878.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17879</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain cfg.353wanwan.com (<a href="http://www.snort.org/search/sid/17879?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17879.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17880</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.027dj.com (<a href="http://www.snort.org/search/sid/17880?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17880.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17881</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain fucktosky.com (<a href="http://www.snort.org/search/sid/17881?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17881.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17882</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain procca.com (<a href="http://www.snort.org/search/sid/17882?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17882.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17883</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain autouploaders.net (<a href="http://www.snort.org/search/sid/17883?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17883.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17884</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain gimmemyporn.com (<a href="http://www.snort.org/search/sid/17884?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17884.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17885</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain waytoall.com (<a href="http://www.snort.org/search/sid/17885?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17885.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17886</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.spamature.com (<a href="http://www.snort.org/search/sid/17886?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17886.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17887</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain info.collectionerrorreport.com (<a href="http://www.snort.org/search/sid/17887?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17887.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17888</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain bn.xp1.ru4.com (<a href="http://www.snort.org/search/sid/17888?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17888.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17889</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.ajie520.com (<a href="http://www.snort.org/search/sid/17889?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17889.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17890</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 114search1.118114.cn (<a href="http://www.snort.org/search/sid/17890?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17890.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17891</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain bestkind.ru (<a href="http://www.snort.org/search/sid/17891?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17891.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17892</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain clickpotato.tv (<a href="http://www.snort.org/search/sid/17892?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17892.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17893</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.zxc0001.com (<a href="http://www.snort.org/search/sid/17893?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17893.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17894</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain streq.cn (<a href="http://www.snort.org/search/sid/17894?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17894.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17895</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain pyow.prixi-soft.ir (<a href="http://www.snort.org/search/sid/17895?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17895.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17896</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 113552url.cptgt.com (<a href="http://www.snort.org/search/sid/17896?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17896.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17897</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.moneytw8.com (<a href="http://www.snort.org/search/sid/17897?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/17897.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18079</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain jsshmz.gotoip4.com (<a href="http://www.snort.org/search/sid/18079?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18080</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain netrand.house.sina.com.cn (<a href="http://www.snort.org/search/sid/18080?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18081</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain wenyixuan.3322.org (<a href="http://www.snort.org/search/sid/18081?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18082</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 3q.sbwanwan.com (<a href="http://www.snort.org/search/sid/18082?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18083</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 863.dclsba.com (<a href="http://www.snort.org/search/sid/18083?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18084</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain drs317a.gotoip4.com (<a href="http://www.snort.org/search/sid/18084?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18085</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain jsshmz.gotoip4.com (<a href="http://www.snort.org/search/sid/18085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18086</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain qq.sbwanwan.com (<a href="http://www.snort.org/search/sid/18086?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18087</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain tiantianzaixian.gotoip1.com (<a href="http://www.snort.org/search/sid/18087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18088</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain wenyixuan.3322.org (<a href="http://www.snort.org/search/sid/18088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18089</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.auto328.com (<a href="http://www.snort.org/search/sid/18089?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18090</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.comstelecom.com (<a href="http://www.snort.org/search/sid/18090?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18091</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.goodfriends.or.kr (<a href="http://www.snort.org/search/sid/18091?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18092</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.hao1345.com (<a href="http://www.snort.org/search/sid/18092?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18093</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.opusgame.com (<a href="http://www.snort.org/search/sid/18093?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18094</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.theoffstage.com (<a href="http://www.snort.org/search/sid/18094?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18095</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.wwmei.com (<a href="http://www.snort.org/search/sid/18095?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18103</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain 5yvod.net (<a href="http://www.snort.org/search/sid/18103?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18104</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain b.9s3.info (<a href="http://www.snort.org/search/sid/18104?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18105</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain baidutaobao.gotoip55.com (<a href="http://www.snort.org/search/sid/18105?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18106</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain e.msssm.com (<a href="http://www.snort.org/search/sid/18106?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18107</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain jsshmz.gotoip4.com (<a href="http://www.snort.org/search/sid/18107?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18108</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain phoroshop.es (<a href="http://www.snort.org/search/sid/18108?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18109</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain talk.cetizen.com (<a href="http://www.snort.org/search/sid/18109?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18110</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain tiantianzaixian.gotoip1.com (<a href="http://www.snort.org/search/sid/18110?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18111</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain v.9y9c.co.cc (<a href="http://www.snort.org/search/sid/18111?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18112</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain wenyixuan.3322.org. (<a href="http://www.snort.org/search/sid/18112?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18113</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain wusheng03.3322.org (<a href="http://www.snort.org/search/sid/18113?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18114</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.5fqq.com (<a href="http://www.snort.org/search/sid/18114?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18115</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.ajs2002.com (<a href="http://www.snort.org/search/sid/18115?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18116</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.bnbsoft.co.kr (<a href="http://www.snort.org/search/sid/18116?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18117</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.cineseoul.com (<a href="http://www.snort.org/search/sid/18117?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18118</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.hao1345.com (<a href="http://www.snort.org/search/sid/18118?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18119</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.ilbondrama.net (<a href="http://www.snort.org/search/sid/18119?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18120</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.iwebdy.net (<a href="http://www.snort.org/search/sid/18120?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18121</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.linzhiling123.com (<a href="http://www.snort.org/search/sid/18121?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18122</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.opusgame.com (<a href="http://www.snort.org/search/sid/18122?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18123</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.phoroshop.es (<a href="http://www.snort.org/search/sid/18123?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18124</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.sijianfeng.com (<a href="http://www.snort.org/search/sid/18124?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18125</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.tpydb.com (<a href="http://www.snort.org/search/sid/18125?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18126</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.tpydb.com (<a href="http://www.snort.org/search/sid/18126?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18127</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.univus.co.kr (<a href="http://www.snort.org/search/sid/18127?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18128</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.uwonderfull.com (<a href="http://www.snort.org/search/sid/18128?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18129</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.w22rt.com (<a href="http://www.snort.org/search/sid/18129?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18130</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.wwmei.com (<a href="http://www.snort.org/search/sid/18130?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18131</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.ybtour.co.kr (<a href="http://www.snort.org/search/sid/18131?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18133</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.001zs.com (<a href="http://www.snort.org/search/sid/18133?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18134</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.551sf.com (<a href="http://www.snort.org/search/sid/18134?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18135</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.555hd.com (<a href="http://www.snort.org/search/sid/18135?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18136</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.66xihu.com (<a href="http://www.snort.org/search/sid/18136?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18137</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.9292cs.cn (<a href="http://www.snort.org/search/sid/18137?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18138</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.chateaulegend.com (<a href="http://www.snort.org/search/sid/18138?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18139</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.china-aoben.com (<a href="http://www.snort.org/search/sid/18139?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18140</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.cqtjg.com (<a href="http://www.snort.org/search/sid/18140?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18141</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.dspenter.com (<a href="http://www.snort.org/search/sid/18141?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18142</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.eastadmin.com (<a href="http://www.snort.org/search/sid/18142?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18143</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.fp0755.cn (<a href="http://www.snort.org/search/sid/18143?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18144</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.fp0769.com (<a href="http://www.snort.org/search/sid/18144?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18145</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.fp360.net (<a href="http://www.snort.org/search/sid/18145?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18146</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.gdfp365.cn (<a href="http://www.snort.org/search/sid/18146?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18147</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.gev.cn (<a href="http://www.snort.org/search/sid/18147?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18148</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.haoleyou.com (<a href="http://www.snort.org/search/sid/18148?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18149</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.haosf08.com (<a href="http://www.snort.org/search/sid/18149?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18150</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.jxbaike.com (<a href="http://www.snort.org/search/sid/18150?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18151</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.kingsoftduba2009.com (<a href="http://www.snort.org/search/sid/18151?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18152</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.mainhu.com (<a href="http://www.snort.org/search/sid/18152?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18153</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.maoyiren.com (<a href="http://www.snort.org/search/sid/18153?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18154</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.nc57.com (<a href="http://www.snort.org/search/sid/18154?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18155</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.pplog.cn (<a href="http://www.snort.org/search/sid/18155?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18156</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.pxflm.com (<a href="http://www.snort.org/search/sid/18156?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18157</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.quyou365.com (<a href="http://www.snort.org/search/sid/18157?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18158</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.shzhaotian.cn (<a href="http://www.snort.org/search/sid/18158?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18159</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.soanala.com (<a href="http://www.snort.org/search/sid/18159?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18160</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.stony-skunk.com (<a href="http://www.snort.org/search/sid/18160?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18161</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.street08.com (<a href="http://www.snort.org/search/sid/18161?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18162</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.weilingcy.com (<a href="http://www.snort.org/search/sid/18162?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18163</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.yisaa.com (<a href="http://www.snort.org/search/sid/18163?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18164</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.yx240.com (<a href="http://www.snort.org/search/sid/18164?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18165</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain e.mssm.com (<a href="http://www.snort.org/search/sid/18165?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18166</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dfgdd.9y6c.co.cc (<a href="http://www.snort.org/search/sid/18166?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18183</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain mailzou.com (<a href="http://www.snort.org/search/sid/18183?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18184</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain dnf.gametime.co.kr (<a href="http://www.snort.org/search/sid/18184?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18185</td><td class="ruletablebody" valign="top">BLACKLIST DNS request for known malware domain www.dd0415.net (<a href="http://www.snort.org/search/sid/18185?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="242"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / FTP</div></p><span class="group"># of attack rules in this group: 39</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1941</td><td class="ruletablebody" valign="top">TFTP GET filename overflow attempt (<a href="http://www.snort.org/search/sid/1941?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2957">2009-2957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5328">5328</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18264">18264</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2338</td><td class="ruletablebody" valign="top">FTP LIST buffer overflow attempt (<a href="http://www.snort.org/search/sid/2338?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0351">2009-0351</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9675">9675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2374</td><td class="ruletablebody" valign="top">FTP NLST overflow attempt (<a href="http://www.snort.org/search/sid/2374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3023">2009-3023</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/7909">7909</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-053">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5881</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spyagent runtime detect - ftp delivery (<a href="http://www.snort.org/search/sid/5881?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=22">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6142</td><td class="ruletablebody" valign="top">BACKDOOR hellzaddiction v1.0e runtime detection - ftp open (<a href="http://www.snort.org/search/sid/6142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076338">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6208</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger winsession runtime detection - ftp (<a href="http://www.snort.org/search/sid/6208?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097713">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6288</td><td class="ruletablebody" valign="top">BACKDOOR fictional daemon 4.4 runtime detection - ftp (<a href="http://www.snort.org/search/sid/6288?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074164">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6319</td><td class="ruletablebody" valign="top">BACKDOOR evilftp runtime detection - init connection (<a href="http://www.snort.org/search/sid/6319?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1929">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7185</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger 007 spy software runtime detection - ftp (<a href="http://www.snort.org/search/sid/7185?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7504</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger actualspy runtime detection - ftp-data (<a href="http://www.snort.org/search/sid/7504?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086496">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7762</td><td class="ruletablebody" valign="top">BACKDOOR analftp 0.1 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/7762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59411">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7934</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ftp Asychronous Pluggable Protocol Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/7934?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7935</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ftp Asychronous Pluggable Protocol Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7935?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0218">2007-0218</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9341</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS sasser open ftp command shell (<a href="http://www.snort.org/search/sid/9341?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32sassera.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9402</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS welchia tftp propagation detection (<a href="http://www.snort.org/search/sid/9402?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-081815-2308-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9828</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger paq keylog runtime detection - ftp (<a href="http://www.snort.org/search/sid/9828?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10089</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger beyond Keylogger runtime detection - log sent by ftp (<a href="http://www.snort.org/search/sid/10089?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.ca.com/us/securityadvisor/pest/pest.aspx?id=453097340">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10135</td><td class="ruletablebody" valign="top">DOS Squid proxy FTP denial of service attempt (<a href="http://www.snort.org/search/sid/10135?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0247">2007-0247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22079">22079</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10444</td><td class="ruletablebody" valign="top">BACKDOOR acidbattery 1.0 runtime detection - open ftp serice (<a href="http://www.snort.org/search/sid/10444?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=109">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12237</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.10 runtime detection - ftp (<a href="http://www.snort.org/search/sid/12237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13927</td><td class="ruletablebody" valign="top">TFTP Server log generation buffer overflow attempt (<a href="http://www.snort.org/search/sid/13927?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2161">2008-2161</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14778</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dart Communications PowerTCP FTP ActiveX clsid access (<a href="http://www.snort.org/search/sid/14778?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31814">31814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14779</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dart Communications PowerTCP FTP ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14779?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31814">31814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14780</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dart Communications PowerTCP FTP ActiveX function call access (<a href="http://www.snort.org/search/sid/14780?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31814">31814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14781</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Dart Communications PowerTCP FTP ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14781?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31814">31814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15159</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Evans FTP ActiveX clsid access (<a href="http://www.snort.org/search/sid/15159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32814">32814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15160</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Evans FTP ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32814">32814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15161</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Evans FTP ActiveX function call access (<a href="http://www.snort.org/search/sid/15161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32814">32814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15162</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Evans FTP ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32814">32814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15368</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FathFTP ActiveX clsid access (<a href="http://www.snort.org/search/sid/15368?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33842">33842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15369</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FathFTP ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15369?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33842">33842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15370</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FathFTP ActiveX function call access (<a href="http://www.snort.org/search/sid/15370?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33842">33842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15371</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FathFTP ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15371?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33842">33842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15932</td><td class="ruletablebody" valign="top">FTP LIST globbing denial of service attack (<a href="http://www.snort.org/search/sid/15932?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2521">2009-2521</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16077</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Tripwire format string vulnerability ftp exploit attempt (<a href="http://www.snort.org/search/sid/16077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0536">2004-0536</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10454">10454</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16357</td><td class="ruletablebody" valign="top">FTP multiple extension code execution attempt (<a href="http://www.snort.org/search/sid/16357?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4444">2009-4444</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17059</td><td class="ruletablebody" valign="top">FTP Vermillion 1.31 vftpd port command memory corruption (<a href="http://www.snort.org/search/sid/17059?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.global-evolution.info/news/files/vftpd/vftpd.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17446</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer FTP client directory traversal attempt (<a href="http://www.snort.org/search/sid/17446?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1376">2004-1376</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17521</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS GoodTech SSH Server SFTP Processing Buffer Overflow (<a href="http://www.snort.org/search/sid/17521?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4726">2008-4726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31879">31879</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 123</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">144</td><td class="ruletablebody" valign="top">FTP ADMw0rm ftp login attempt (<a href="http://www.snort.org/search/sid/144?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">157</td><td class="ruletablebody" valign="top">BACKDOOR BackConstruction 2.1 Client FTP Open Request (<a href="http://www.snort.org/search/sid/157?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">158</td><td class="ruletablebody" valign="top">BACKDOOR BackConstruction 2.1 Server FTP Open Reply (<a href="http://www.snort.org/search/sid/158?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">308</td><td class="ruletablebody" valign="top">EXPLOIT NextFTP client overflow (<a href="http://www.snort.org/search/sid/308?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0671">1999-0671</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/572">572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">334</td><td class="ruletablebody" valign="top">FTP .forward (<a href="http://www.snort.org/search/sid/334?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">335</td><td class="ruletablebody" valign="top">FTP .rhosts (<a href="http://www.snort.org/search/sid/335?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">336</td><td class="ruletablebody" valign="top">FTP CWD ~root attempt (<a href="http://www.snort.org/search/sid/336?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0082">1999-0082</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">337</td><td class="ruletablebody" valign="top">FTP CEL overflow attempt (<a href="http://www.snort.org/search/sid/337?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0789">1999-0789</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/679">679</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10009">10009</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">353</td><td class="ruletablebody" valign="top">FTP adm scan (<a href="http://www.snort.org/search/sid/353?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">354</td><td class="ruletablebody" valign="top">FTP iss scan (<a href="http://www.snort.org/search/sid/354?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">355</td><td class="ruletablebody" valign="top">FTP pass wh00t (<a href="http://www.snort.org/search/sid/355?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">356</td><td class="ruletablebody" valign="top">FTP passwd retrieval attempt (<a href="http://www.snort.org/search/sid/356?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">357</td><td class="ruletablebody" valign="top">FTP piss scan (<a href="http://www.snort.org/search/sid/357?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.mines.edu/fs_home/dlarue/cc/baby-doe.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">358</td><td class="ruletablebody" valign="top">FTP saint scan (<a href="http://www.snort.org/search/sid/358?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">359</td><td class="ruletablebody" valign="top">FTP satan scan (<a href="http://www.snort.org/search/sid/359?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">360</td><td class="ruletablebody" valign="top">FTP serv-u directory transversal (<a href="http://www.snort.org/search/sid/360?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0054">2001-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2052">2052</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10565">10565</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">361</td><td class="ruletablebody" valign="top">FTP SITE EXEC attempt (<a href="http://www.snort.org/search/sid/361?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0955">1999-0955</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2241">2241</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">362</td><td class="ruletablebody" valign="top">FTP tar parameters (<a href="http://www.snort.org/search/sid/362?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0997">1999-0997</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2240">2240</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">489</td><td class="ruletablebody" valign="top">FTP no password (<a href="http://www.snort.org/search/sid/489?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">491</td><td class="ruletablebody" valign="top">FTP Bad login (<a href="http://www.snort.org/search/sid/491?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">518</td><td class="ruletablebody" valign="top">TFTP Put (<a href="http://www.snort.org/search/sid/518?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0183">1999-0183</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">519</td><td class="ruletablebody" valign="top">TFTP parent directory (<a href="http://www.snort.org/search/sid/519?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1209">2002-1209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">520</td><td class="ruletablebody" valign="top">TFTP root directory (<a href="http://www.snort.org/search/sid/520?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0183">1999-0183</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1068</td><td class="ruletablebody" valign="top">WEB-MISC tftp attempt (<a href="http://www.snort.org/search/sid/1068?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1107</td><td class="ruletablebody" valign="top">WEB-MISC ftp.pl access (<a href="http://www.snort.org/search/sid/1107?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0674">2000-0674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1471">1471</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10467">10467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1166</td><td class="ruletablebody" valign="top">WEB-MISC ws_ftp.ini access (<a href="http://www.snort.org/search/sid/1166?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1078">1999-1078</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/547">547</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1229</td><td class="ruletablebody" valign="top">FTP CWD ... (<a href="http://www.snort.org/search/sid/1229?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9237">9237</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1230</td><td class="ruletablebody" valign="top">WEB-MISC VirusWall FtpSave access (<a href="http://www.snort.org/search/sid/1230?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0432">2001-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2808">2808</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10733">10733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1234</td><td class="ruletablebody" valign="top">WEB-MISC VirusWall FtpSaveCSP access (<a href="http://www.snort.org/search/sid/1234?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0432">2001-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2808">2808</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10733">10733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1235</td><td class="ruletablebody" valign="top">WEB-MISC VirusWall FtpSaveCVP access (<a href="http://www.snort.org/search/sid/1235?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0432">2001-0432</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2808">2808</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10733">10733</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1289</td><td class="ruletablebody" valign="top">TFTP GET Admin.dll (<a href="http://www.snort.org/search/sid/1289?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-26.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1377</td><td class="ruletablebody" valign="top">FTP wu-ftp bad file completion attempt [ (<a href="http://www.snort.org/search/sid/1377?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0886">2001-0886</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/3707">3707</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10821">10821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1379</td><td class="ruletablebody" valign="top">FTP STAT overflow attempt (<a href="http://www.snort.org/search/sid/1379?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0772">2003-0772</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8542">8542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.defcom.com/adv/2001/def-2001-31.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1441</td><td class="ruletablebody" valign="top">TFTP GET nc.exe (<a href="http://www.snort.org/search/sid/1441?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1442</td><td class="ruletablebody" valign="top">TFTP GET shadow (<a href="http://www.snort.org/search/sid/1442?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1443</td><td class="ruletablebody" valign="top">TFTP GET passwd (<a href="http://www.snort.org/search/sid/1443?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1444</td><td class="ruletablebody" valign="top">TFTP Get (<a href="http://www.snort.org/search/sid/1444?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1529</td><td class="ruletablebody" valign="top">FTP SITE overflow attempt (<a href="http://www.snort.org/search/sid/1529?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0770">2001-0770</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1562</td><td class="ruletablebody" valign="top">FTP SITE CHOWN overflow attempt (<a href="http://www.snort.org/search/sid/1562?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0065">2001-0065</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2120">2120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10579">10579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1612</td><td class="ruletablebody" valign="top">WEB-MISC ftp.pl attempt (<a href="http://www.snort.org/search/sid/1612?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0674">2000-0674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1471">1471</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10467">10467</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1621</td><td class="ruletablebody" valign="top">FTP CMD overflow attempt (<a href="http://www.snort.org/search/sid/1621?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1622</td><td class="ruletablebody" valign="top">FTP RNFR ././ attempt (<a href="http://www.snort.org/search/sid/1622?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0081">1999-0081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1623</td><td class="ruletablebody" valign="top">FTP invalid MODE (<a href="http://www.snort.org/search/sid/1623?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.faqs.org/rfcs/rfc959.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1624</td><td class="ruletablebody" valign="top">FTP PWD overflow attempt (<a href="http://www.snort.org/search/sid/1624?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1625</td><td class="ruletablebody" valign="top">FTP SYST overflow attempt (<a href="http://www.snort.org/search/sid/1625?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.faqs.org/rfcs/rfc959.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1662</td><td class="ruletablebody" valign="top">WEB-MISC /~ftp access (<a href="http://www.snort.org/search/sid/1662?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1670</td><td class="ruletablebody" valign="top">WEB-MISC /home/ftp access (<a href="http://www.snort.org/search/sid/1670?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1672</td><td class="ruletablebody" valign="top">FTP CWD ~ attempt (<a href="http://www.snort.org/search/sid/1672?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0421">2001-0421</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9215">9215</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1734</td><td class="ruletablebody" valign="top">FTP USER overflow attempt (<a href="http://www.snort.org/search/sid/1734?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3683">2005-3683</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8376">8376</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1777</td><td class="ruletablebody" valign="top">FTP EXPLOIT STAT * dos attempt (<a href="http://www.snort.org/search/sid/1777?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0073">2002-0073</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4482">4482</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10934">10934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1778</td><td class="ruletablebody" valign="top">FTP EXPLOIT STAT ? dos attempt (<a href="http://www.snort.org/search/sid/1778?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0073">2002-0073</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4482">4482</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10934">10934</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1864</td><td class="ruletablebody" valign="top">FTP SITE NEWER attempt (<a href="http://www.snort.org/search/sid/1864?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0880">1999-0880</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10319">10319</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1888</td><td class="ruletablebody" valign="top">FTP SITE CPWD overflow attempt (<a href="http://www.snort.org/search/sid/1888?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0826">2002-0826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5427">5427</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1919</td><td class="ruletablebody" valign="top">FTP CWD overflow attempt (<a href="http://www.snort.org/search/sid/1919?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0405">2002-0405</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7950">7950</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1920</td><td class="ruletablebody" valign="top">FTP SITE NEWER overflow attempt (<a href="http://www.snort.org/search/sid/1920?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0800">1999-0800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/229">229</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1921</td><td class="ruletablebody" valign="top">FTP SITE ZIPCHK overflow attempt (<a href="http://www.snort.org/search/sid/1921?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0040">2000-0040</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1927</td><td class="ruletablebody" valign="top">FTP authorized_keys (<a href="http://www.snort.org/search/sid/1927?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1928</td><td class="ruletablebody" valign="top">FTP shadow retrieval attempt (<a href="http://www.snort.org/search/sid/1928?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1942</td><td class="ruletablebody" valign="top">FTP RMDIR overflow attempt (<a href="http://www.snort.org/search/sid/1942?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/819">819</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1971</td><td class="ruletablebody" valign="top">FTP SITE EXEC format string attempt (<a href="http://www.snort.org/search/sid/1971?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1505">1505</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1972</td><td class="ruletablebody" valign="top">FTP PASS overflow attempt (<a href="http://www.snort.org/search/sid/1972?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3683">2005-3683</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9285">9285</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1973</td><td class="ruletablebody" valign="top">FTP MKD overflow attempt (<a href="http://www.snort.org/search/sid/1973?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0625">2010-0625</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9872">9872</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12108">12108</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1974</td><td class="ruletablebody" valign="top">FTP REST overflow attempt (<a href="http://www.snort.org/search/sid/1974?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0826">2001-0826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2972">2972</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11755">11755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1976</td><td class="ruletablebody" valign="top">FTP RMD overflow attempt (<a href="http://www.snort.org/search/sid/1976?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0625">2010-0625</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/39041">39041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1992</td><td class="ruletablebody" valign="top">FTP LIST directory traversal attempt (<a href="http://www.snort.org/search/sid/1992?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1054">2002-1054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2618">2618</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11112">11112</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2125</td><td class="ruletablebody" valign="top">FTP CWD Root directory transversal attempt (<a href="http://www.snort.org/search/sid/2125?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0392">2003-0392</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7674">7674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11677">11677</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2178</td><td class="ruletablebody" valign="top">FTP USER format string attempt (<a href="http://www.snort.org/search/sid/2178?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0277">2004-0277</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9800">9800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11687">11687</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2179</td><td class="ruletablebody" valign="top">FTP PASS format string attempt (<a href="http://www.snort.org/search/sid/2179?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0699">2000-0699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9800">9800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10490">10490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2272</td><td class="ruletablebody" valign="top">FTP LIST integer overflow attempt (<a href="http://www.snort.org/search/sid/2272?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0854">2003-0854</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8875">8875</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11912">11912</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2332</td><td class="ruletablebody" valign="top">FTP MKD format string attempt (<a href="http://www.snort.org/search/sid/2332?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9262">9262</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2333</td><td class="ruletablebody" valign="top">FTP RENAME format string attempt (<a href="http://www.snort.org/search/sid/2333?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9262">9262</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2334</td><td class="ruletablebody" valign="top">FTP Yak! FTP server default account login attempt (<a href="http://www.snort.org/search/sid/2334?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9072">9072</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2335</td><td class="ruletablebody" valign="top">FTP RMD / attempt (<a href="http://www.snort.org/search/sid/2335?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9159">9159</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2337</td><td class="ruletablebody" valign="top">TFTP PUT filename overflow attempt (<a href="http://www.snort.org/search/sid/2337?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0380">2003-0380</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8505">8505</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18264">18264</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2339</td><td class="ruletablebody" valign="top">TFTP NULL command attempt (<a href="http://www.snort.org/search/sid/2339?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7575">7575</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2340</td><td class="ruletablebody" valign="top">FTP SITE CHMOD overflow attempt (<a href="http://www.snort.org/search/sid/2340?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0838">1999-0838</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9675">9675</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12037">12037</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2343</td><td class="ruletablebody" valign="top">FTP STOR overflow attempt (<a href="http://www.snort.org/search/sid/2343?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0133">2000-0133</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8668">8668</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2344</td><td class="ruletablebody" valign="top">FTP XCWD overflow attempt (<a href="http://www.snort.org/search/sid/2344?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8704">8704</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2373</td><td class="ruletablebody" valign="top">FTP XMKD overflow attempt (<a href="http://www.snort.org/search/sid/2373?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-1021">2001-1021</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7909">7909</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2389</td><td class="ruletablebody" valign="top">FTP RNTO overflow attempt (<a href="http://www.snort.org/search/sid/2389?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3683">2005-3683</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8315">8315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2390</td><td class="ruletablebody" valign="top">FTP STOU overflow attempt (<a href="http://www.snort.org/search/sid/2390?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0466">2003-0466</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8315">8315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2391</td><td class="ruletablebody" valign="top">FTP APPE overflow attempt (<a href="http://www.snort.org/search/sid/2391?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0772">2003-0772</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8542">8542</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2392</td><td class="ruletablebody" valign="top">FTP RETR overflow attempt (<a href="http://www.snort.org/search/sid/2392?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3683">2005-3683</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8315">8315</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2416</td><td class="ruletablebody" valign="top">FTP invalid MDTM command attempt (<a href="http://www.snort.org/search/sid/2416?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0330">2004-0330</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9751">9751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2417</td><td class="ruletablebody" valign="top">FTP format string attempt (<a href="http://www.snort.org/search/sid/2417?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">string-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2123">2005-2123</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9800">9800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2449</td><td class="ruletablebody" valign="top">FTP ALLO overflow attempt (<a href="http://www.snort.org/search/sid/2449?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1883">2004-1883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9953">9953</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=14598">14598</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2546</td><td class="ruletablebody" valign="top">FTP MDTM overflow attempt (<a href="http://www.snort.org/search/sid/2546?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0330">2004-0330</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9751">9751</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12080">12080</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2574</td><td class="ruletablebody" valign="top">FTP RETR format string attempt (<a href="http://www.snort.org/search/sid/2574?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1883">2004-1883</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9800">9800</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3077</td><td class="ruletablebody" valign="top">FTP RNFR overflow attempt (<a href="http://www.snort.org/search/sid/3077?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14339">14339</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3441</td><td class="ruletablebody" valign="top">FTP PORT bounce attempt (<a href="http://www.snort.org/search/sid/3441?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0017">1999-0017</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/126">126</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10081">10081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3460</td><td class="ruletablebody" valign="top">FTP REST with numeric argument (<a href="http://www.snort.org/search/sid/3460?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/7825">7825</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3523</td><td class="ruletablebody" valign="top">FTP SITE INDEX format string attempt (<a href="http://www.snort.org/search/sid/3523?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0573">2000-0573</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1387">1387</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3526</td><td class="ruletablebody" valign="top">ORACLE XDB FTP UNLOCK overflow attempt (<a href="http://www.snort.org/search/sid/3526?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0727">2003-0727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8375">8375</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3532</td><td class="ruletablebody" valign="top">ORACLE ftp password buffer overflow attempt (<a href="http://www.snort.org/search/sid/3532?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0727">2003-0727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8375">8375</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3630</td><td class="ruletablebody" valign="top">ORACLE ftp TEST command buffer overflow attempt (<a href="http://www.snort.org/search/sid/3630?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0727">2003-0727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8375">8375</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3631</td><td class="ruletablebody" valign="top">ORACLE ftp user name buffer overflow attempt (<a href="http://www.snort.org/search/sid/3631?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0727">2003-0727</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/8375">8375</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3817</td><td class="ruletablebody" valign="top">TFTP GET transfer mode overflow attempt (<a href="http://www.snort.org/search/sid/3817?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1812">2005-1812</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13821">13821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3818</td><td class="ruletablebody" valign="top">TFTP PUT transfer mode overflow attempt (<a href="http://www.snort.org/search/sid/3818?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6183">2006-6183</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21301">21301</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8415</td><td class="ruletablebody" valign="top">FTP SIZE overflow attempt (<a href="http://www.snort.org/search/sid/8415?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4318">2006-4318</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19617">19617</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8479</td><td class="ruletablebody" valign="top">FTP HELP overflow attempt (<a href="http://www.snort.org/search/sid/8479?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0826">2001-0826</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2972">2972</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8480</td><td class="ruletablebody" valign="top">FTP PORT overflow attempt (<a href="http://www.snort.org/search/sid/8480?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2226">2006-2226</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18711">18711</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8481</td><td class="ruletablebody" valign="top">FTP Microsoft NLST * dos attempt (<a href="http://www.snort.org/search/sid/8481?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0334">2001-0334</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2717">2717</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS01-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8707</td><td class="ruletablebody" valign="top">FTP WZD-FTPD SITE arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/8707?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3081">2005-3081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14935">14935</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9621</td><td class="ruletablebody" valign="top">TFTP 3COM server transport mode buffer overflow attempt (<a href="http://www.snort.org/search/sid/9621?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/21301">21301</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9638</td><td class="ruletablebody" valign="top">TFTP PUT Microsoft RIS filename overwrite attempt (<a href="http://www.snort.org/search/sid/9638?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5584">2006-5584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-077.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9792</td><td class="ruletablebody" valign="top">FTP PASV overflow attempt (<a href="http://www.snort.org/search/sid/9792?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.milw0rm.com/exploits/2952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10188</td><td class="ruletablebody" valign="top">FTP Wsftp XMD5 overflow attempt (<a href="http://www.snort.org/search/sid/10188?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5000">2006-5000</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20076">20076</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12076</td><td class="ruletablebody" valign="top">DOS Ipswitch WS_FTP log server long unicode string (<a href="http://www.snort.org/search/sid/12076?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3823">2007-3823</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/26040">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12238</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.10 runtime detection - ftp (<a href="http://www.snort.org/search/sid/12238?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-071209-4425-99">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12379</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger PaqKeylogger 5.1 runtime detection - ftp (<a href="http://www.snort.org/search/sid/12379?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.spywareguide.com/product_show.php?id=2709">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13925</td><td class="ruletablebody" valign="top">FTP Computer Associates eTrust Secure Content Manager PASV stack overflow attempt (<a href="http://www.snort.org/search/sid/13925?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2541">2008-2541</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14743</td><td class="ruletablebody" valign="top">FTP RNTO directory traversal attempt (<a href="http://www.snort.org/search/sid/14743?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-filename-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4501">2008-4501</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/31563">31563</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16697</td><td class="ruletablebody" valign="top">FTP httpdx USER null byte denial of service (<a href="http://www.snort.org/search/sid/16697?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.exploit-db.com/exploits/11734">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16698</td><td class="ruletablebody" valign="top">FTP httpdx PASS null byte denial of service (<a href="http://www.snort.org/search/sid/16698?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.exploit-db.com/exploits/11734">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16795</td><td class="ruletablebody" valign="top">DOS Google Chrome FTP handling out-of-bounds array index denial of service attempt (<a href="http://www.snort.org/search/sid/16795?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/39183">39183</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16806</td><td class="ruletablebody" valign="top">BACKDOOR Backdoor.Win32.Qakbot.E - FTP upload seclog (<a href="http://www.snort.org/search/sid/16806?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.threatexpert.com/report.aspx?md5=8171d3223f89a495f98c4e3a65537b8f">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16807</td><td class="ruletablebody" valign="top">BACKDOOR Backdoor.Win32.Qakbot.E - FTP Upload ps_dump (<a href="http://www.snort.org/search/sid/16807?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.threatexpert.com/report.aspx?md5=8171d3223f89a495f98c4e3a65537b8f">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17329</td><td class="ruletablebody" valign="top">FTP EPRT overflow attempt (<a href="http://www.snort.org/search/sid/17329?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4459">2005-4459</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15998">15998</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17367</td><td class="ruletablebody" valign="top">FTP Microsoft Internet Explorer FTP Response Parsing Memory Corruption (<a href="http://www.snort.org/search/sid/17367?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0217">2007-0217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22489">22489</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17518</td><td class="ruletablebody" valign="top">FTP FlashGet PWD command stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/17518?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4321">2008-4321</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30685">30685</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17712</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS TFTP PUT Microsoft RIS filename overwrite attempt (<a href="http://www.snort.org/search/sid/17712?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5584">2006-5584</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-077.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18181</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS ProFTPd 1.3.3c backdoor activity (<a href="http://www.snort.org/search/sid/18181?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://xorl.wordpress.com/2010/12/02/news-proftpd-owned-and-backdoored/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18182</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS ProFTPd 1.3.3c backdoor help access attempt (<a href="http://www.snort.org/search/sid/18182?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://xorl.wordpress.com/2010/12/02/news-proftpd-owned-and-backdoored/">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="243"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / SSH</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 8</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1326</td><td class="ruletablebody" valign="top">EXPLOIT ssh CRC32 overflow NOOP (<a href="http://www.snort.org/search/sid/1326?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0572">2001-0572</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2347">2347</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1638</td><td class="ruletablebody" valign="top">SCAN SSH Version map attempt (<a href="http://www.snort.org/search/sid/1638?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">network-scan</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1810</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS successful gobbles ssh exploit GOBBLE (<a href="http://www.snort.org/search/sid/1810?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">successful-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0640">2002-0640</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5093">5093</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1811</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS successful gobbles ssh exploit uname (<a href="http://www.snort.org/search/sid/1811?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0640">2002-0640</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5093">5093</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11031">11031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1812</td><td class="ruletablebody" valign="top">EXPLOIT gobbles SSH exploit attempt (<a href="http://www.snort.org/search/sid/1812?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0639">2002-0639</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5093">5093</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11031">11031</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1838</td><td class="ruletablebody" valign="top">EXPLOIT SSH server banner overflow (<a href="http://www.snort.org/search/sid/1838?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-1059">2002-1059</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5287">5287</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15822">15822</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13814</td><td class="ruletablebody" valign="top">BACKDOOR passhax runtime detection - initial connection (<a href="http://www.snort.org/search/sid/13814?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.spywareguide.com/spydet_30090_passhax.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17317</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS OpenSSH sshd Identical Blocks DOS attempt (<a href="http://www.snort.org/search/sid/17317?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4924">2006-4924</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/20216">20216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="244"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / Backup</div></p><span class="group"># of attack rules in this group: 19</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6010</td><td class="ruletablebody" valign="top">EXPLOIT VERITAS NetBackup vnetd connection attempt (<a href="http://www.snort.org/search/sid/6010?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6404</td><td class="ruletablebody" valign="top">EXPLOIT Veritas NetBackup Volume Manager connection attempt (<a href="http://www.snort.org/search/sid/6404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12667</td><td class="ruletablebody" valign="top">EXPLOIT CA BrightStor ARCServer malicious fileupload attempt (<a href="http://www.snort.org/search/sid/12667?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5005">2007-5005</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24348">24348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12784</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops rsxGetBackupLog second argument overflow (<a href="http://www.snort.org/search/sid/12784?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3216">2007-3216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24348">24348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12785</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops rsxGetBackupComplete overflow attemp (<a href="http://www.snort.org/search/sid/12785?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3216">2007-3216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24348">24348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12786</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops rxsSetDataGrowthScheduleAndFilter overflow attempt (<a href="http://www.snort.org/search/sid/12786?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3216">2007-3216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24348">24348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12787</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops rxsSetDefaultConfigName overflow attempt (<a href="http://www.snort.org/search/sid/12787?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3216">2007-3216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24348">24348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12788</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops rxsSetDefaultConfigName overflow attempt (<a href="http://www.snort.org/search/sid/12788?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3216">2007-3216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24348">24348</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12904</td><td class="ruletablebody" valign="top">EXPLOIT Veritas NetBackup vmd shared library buffer overflow attempt (<a href="http://www.snort.org/search/sid/12904?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3116">2005-3116</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15353">15353</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13552</td><td class="ruletablebody" valign="top">EXPLOIT Symantec VERITAS Storage Foundation Suite buffer overflow attempt (<a href="http://www.snort.org/search/sid/13552?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0638">2008-0638</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25778">25778</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/security/Content/2008.02.20a.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13800</td><td class="ruletablebody" valign="top">EXPLOIT ARCServe LGServer service data overflow attempt (<a href="http://www.snort.org/search/sid/13800?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1328">2008-1328</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28616">28616</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13846</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Veritas Backup Agent password overflow attempt (<a href="http://www.snort.org/search/sid/13846?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0773">2005-0773</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14741</td><td class="ruletablebody" valign="top">EXPLOIT Symantec Veritas Foundation Service NULL service authentication attempt (<a href="http://www.snort.org/search/sid/14741?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2279">2007-2279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14768</td><td class="ruletablebody" valign="top">MISC Symantec Veritas Storage Scheduler Service NULL Session auth bypass attempt (<a href="http://www.snort.org/search/sid/14768?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3703">2008-3703</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30596">30596</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14773</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CA ARCserve LGServer handshake buffer overflow attempt (<a href="http://www.snort.org/search/sid/14773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3175">2008-3175</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30472">30472</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15931</td><td class="ruletablebody" valign="top">MISC Veritas NetBackup java user interface service format string attack attempt (<a href="http://www.snort.org/search/sid/15931?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2715">2005-2715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16071</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCServe Backup Discovery Service denial of service attempt (<a href="http://www.snort.org/search/sid/16071?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1979">2008-1979</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28927">28927</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36440">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17520</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup DB Engine Denial of Service (<a href="http://www.snort.org/search/sid/17520?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4399">2008-4399</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31684">31684</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17706</td><td class="ruletablebody" valign="top">MISC Veritas NetBackup java user interface service format string attack attempt (<a href="http://www.snort.org/search/sid/17706?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2715">2005-2715</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 46</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3084</td><td class="ruletablebody" valign="top">EXPLOIT Veritas backup overflow attempt (<a href="http://www.snort.org/search/sid/3084?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1172">2004-1172</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11974">11974</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3453</td><td class="ruletablebody" valign="top">MISC Arkeia client backup system info probe (<a href="http://www.snort.org/search/sid/3453?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0491">2005-0491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12594">12594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3454</td><td class="ruletablebody" valign="top">MISC Arkeia client backup generic info probe (<a href="http://www.snort.org/search/sid/3454?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0491">2005-0491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12594">12594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3457</td><td class="ruletablebody" valign="top">EXPLOIT Arkeia backup client type 77 overflow attempt (<a href="http://www.snort.org/search/sid/3457?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0491">2005-0491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12594">12594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17158">17158</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3458</td><td class="ruletablebody" valign="top">EXPLOIT Arkeia backup client type 84 overflow attempt (<a href="http://www.snort.org/search/sid/3458?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0491">2005-0491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12594">12594</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3472</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve discovery service overflow (<a href="http://www.snort.org/search/sid/3472?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0260">2005-0260</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12491">12491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3474</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup TCP slot info msg client name overflow (<a href="http://www.snort.org/search/sid/3474?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3475</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup TCP slot info msg client domain overflow (<a href="http://www.snort.org/search/sid/3475?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3476</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup TCP product info msg 0x9b client domain overflow (<a href="http://www.snort.org/search/sid/3476?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3477</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup TCP product info msg 0x9b client name overflow (<a href="http://www.snort.org/search/sid/3477?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3478</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup TCP product info msg 0x9c client domain overflow (<a href="http://www.snort.org/search/sid/3478?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3479</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup TCP product info msg 0x9c client name overflow (<a href="http://www.snort.org/search/sid/3479?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3480</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP slot info msg client name overflow (<a href="http://www.snort.org/search/sid/3480?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3481</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP slot info msg client domain overflow (<a href="http://www.snort.org/search/sid/3481?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3482</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP product info msg 0x9b client name overflow (<a href="http://www.snort.org/search/sid/3482?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3483</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP product info msg 0x9b client domain overflow (<a href="http://www.snort.org/search/sid/3483?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3484</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP product info msg 0x9c client name overflow (<a href="http://www.snort.org/search/sid/3484?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3485</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP product info msg 0x9c client domain overflow (<a href="http://www.snort.org/search/sid/3485?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3530</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP msg 0x99 client name overflow (<a href="http://www.snort.org/search/sid/3530?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3531</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve backup UDP msg 0x99 client domain overflow (<a href="http://www.snort.org/search/sid/3531?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12536">12536</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3658</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve universal backup agent option 1000 little endian buffer overflow attempt (<a href="http://www.snort.org/search/sid/3658?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1018">2005-1018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13102">13102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18041">18041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3659</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve universal backup agent option 1000 buffer overflow attempt (<a href="http://www.snort.org/search/sid/3659?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1018">2005-1018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13102">13102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18041">18041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3660</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve universal backup agent option 00 little endian buffer overflow attempt (<a href="http://www.snort.org/search/sid/3660?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1018">2005-1018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13102">13102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18041">18041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3661</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve universal backup agent option 00 buffer overflow attempt (<a href="http://www.snort.org/search/sid/3661?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1018">2005-1018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13102">13102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18041">18041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3662</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve universal backup agent option 03 little endian buffer overflow attempt (<a href="http://www.snort.org/search/sid/3662?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1018">2005-1018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13102">13102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18041">18041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3663</td><td class="ruletablebody" valign="top">EXPLOIT ARCserve universal backup agent option 03 buffer overflow attempt (<a href="http://www.snort.org/search/sid/3663?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1018">2005-1018</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13102">13102</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18041">18041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3695</td><td class="ruletablebody" valign="top">EXPLOIT Veritas Backup Agent password overflow attempt (<a href="http://www.snort.org/search/sid/3695?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0773">2005-0773</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3696</td><td class="ruletablebody" valign="top">EXPLOIT Veritas Backup Agent DoS attempt (<a href="http://www.snort.org/search/sid/3696?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0772">2005-0772</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14201">14201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3697</td><td class="ruletablebody" valign="top">NETBIOS DCERPC NCACN-IP-TCP veritas bind attempt (<a href="http://www.snort.org/search/sid/3697?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0771">2005-0771</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14020">14020</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.idefense.com/application/poi/display?id=269&amp;type=vulnerabilities">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4126</td><td class="ruletablebody" valign="top">EXPLOIT Veritas Backup Exec root connection attempt using default password hash (<a href="http://www.snort.org/search/sid/4126?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">suspicious-login</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2611">2005-2611</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14551">14551</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6011</td><td class="ruletablebody" valign="top">EXPLOIT VERITAS NetBackup vnetd buffer overflow attempt (<a href="http://www.snort.org/search/sid/6011?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0991">2006-0991</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17264">17264</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6405</td><td class="ruletablebody" valign="top">EXPLOIT Veritas NetBackup Volume Manager overflow attempt (<a href="http://www.snort.org/search/sid/6405?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0989">2006-0989</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17264">17264</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10132</td><td class="ruletablebody" valign="top">RPC portmap BrightStor ARCserve denial of service attempt (<a href="http://www.snort.org/search/sid/10132?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0816">2007-0816</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22365">22365</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10133</td><td class="ruletablebody" valign="top">RPC portmap BrightStor ARCserve denial of service attempt (<a href="http://www.snort.org/search/sid/10133?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0816">2007-0816</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22365">22365</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10482</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve tcp request (<a href="http://www.snort.org/search/sid/10482?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1785">2007-1785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10483</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve udp request (<a href="http://www.snort.org/search/sid/10483?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1785">2007-1785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10484</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve tcp procedure 191 attempt (<a href="http://www.snort.org/search/sid/10484?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1785">2007-1785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10485</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve udp procedure 191 attempt (<a href="http://www.snort.org/search/sid/10485?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1785">2007-1785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13716</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve tcp procedure 232 attempt (<a href="http://www.snort.org/search/sid/13716?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13717</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve udp procedure 232 attempt (<a href="http://www.snort.org/search/sid/13717?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13805</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve tcp procedure 234 attempt (<a href="http://www.snort.org/search/sid/13805?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1785">2007-1785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13806</td><td class="ruletablebody" valign="top">RPC portmap CA BrightStor ARCserve udp procedure 234 attempt (<a href="http://www.snort.org/search/sid/13806?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1785">2007-1785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23209">23209</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17045</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops and Desktops LGServer handshake buffer overflow attempt (<a href="http://www.snort.org/search/sid/17045?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3175">2008-3175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30472">30472</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17046</td><td class="ruletablebody" valign="top">EXPLOIT CA ARCserve Backup for Laptops and Desktops LGServer handshake buffer overflow attempt (<a href="http://www.snort.org/search/sid/17046?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3175">2008-3175</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30472">30472</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17643</td><td class="ruletablebody" valign="top">EXPLOIT CA BrightStor ARCServe logger servie null-pointer dereference attempt (<a href="http://www.snort.org/search/sid/17643?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2772">2007-2772</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17710</td><td class="ruletablebody" valign="top">EXPLOIT Veritas NetBackup vmd shared library buffer overflow attempt (<a href="http://www.snort.org/search/sid/17710?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-3116">2005-3116</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15353">15353</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="245"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / TFTP</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="246"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / SNMP</div></p><span class="group"># of attack rules in this group: 3</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">569</td><td class="ruletablebody" valign="top">RPC snmpXdmi overflow attempt TCP (<a href="http://www.snort.org/search/sid/569?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0236">2001-0236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/2417">2417</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10659">10659</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cert.org/advisories/CA-2001-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16712</td><td class="ruletablebody" valign="top">WEB-MISC HP OpenView Network Node Manager ovwebsnmpsrv.exe OVwSelection buffer overflow attempt - GET (<a href="http://www.snort.org/search/sid/16712?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4181">2009-4181</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37343">37343</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16713</td><td class="ruletablebody" valign="top">WEB-MISC HP OpenView Network Node Manager ovwebsnmpsrv.exe OVwSelection buffer overflow attempt - POST (<a href="http://www.snort.org/search/sid/16713?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4181">2009-4181</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37343">37343</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 4</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">593</td><td class="ruletablebody" valign="top">RPC portmap snmpXdmi request TCP (<a href="http://www.snort.org/search/sid/593?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0236">2001-0236</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2417">2417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10659">10659</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1279</td><td class="ruletablebody" valign="top">RPC portmap snmpXdmi request UDP (<a href="http://www.snort.org/search/sid/1279?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0236">2001-0236</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2417">2417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10659">10659</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2045</td><td class="ruletablebody" valign="top">RPC snmpXdmi overflow attempt UDP (<a href="http://www.snort.org/search/sid/2045?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0236">2001-0236</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2417">2417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10659">10659</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.cert.org/advisories/CA-2001-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13773</td><td class="ruletablebody" valign="top">DOS linux kernel snmp nat netfilter memory corruption attempt (<a href="http://www.snort.org/search/sid/13773?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1673">2008-1673</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18081">18081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.25.5">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="247"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / Authentication</div></p><span class="group"># of attack rules in this group: 7</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13223</td><td class="ruletablebody" valign="top">RPC MIT Kerberos kadmind rpc library uninitialized pointer arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/13223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2442">2007-2442</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24655">24655</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-004.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13268</td><td class="ruletablebody" valign="top">RPC MIT Kerberos kadmind rpc library uninitialized pointer arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/13268?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2442">2007-2442</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24655">24655</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-004.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16207</td><td class="ruletablebody" valign="top">WEB-MISC MIT Kerberos V% KAdminD klog_vsyslog server overflow attempt (<a href="http://www.snort.org/search/sid/16207?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0957">2007-0957</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23285">23285</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16209</td><td class="ruletablebody" valign="top">DOS FreeRADIUS RADIUS server rad_decode remote denial of service attempt (<a href="http://www.snort.org/search/sid/16209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3111">2009-3111</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36263">36263</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17273</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MIT Kerberos V5 KDC krb5_unparse_name overflow attempt (<a href="http://www.snort.org/search/sid/17273?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1174">2005-1174</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/16041/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17274</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MIT Kerberos V5 KDC krb5_unparse_name overflow attempt (<a href="http://www.snort.org/search/sid/17274?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1175">2005-1175</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/16041/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17741</td><td class="ruletablebody" valign="top">EXPLOIT MIT Kerberos ASN.1 asn1_decode_generaltime uninitialized pointer reference attempt (<a href="http://www.snort.org/search/sid/17741?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0846">2009-0846</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34409">34409</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 12</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2578</td><td class="ruletablebody" valign="top">EXPLOIT kerberos principal name overflow UDP (<a href="http://www.snort.org/search/sid/2578?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0072">2003-0072</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11512">11512</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2003-005-buf.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2579</td><td class="ruletablebody" valign="top">EXPLOIT kerberos principal name overflow TCP (<a href="http://www.snort.org/search/sid/2579?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0072">2003-0072</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11512">11512</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2003-005-buf.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3538</td><td class="ruletablebody" valign="top">EXPLOIT RADIUS registration MSID overflow attempt (<a href="http://www.snort.org/search/sid/3538?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0699">2005-0699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12759">12759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=19120">19120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3539</td><td class="ruletablebody" valign="top">EXPLOIT RADIUS MSID overflow attempt (<a href="http://www.snort.org/search/sid/3539?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0699">2005-0699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12759">12759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=19120">19120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3540</td><td class="ruletablebody" valign="top">EXPLOIT RADIUS registration vendor ATTR_TYPE_STR overflow attempt (<a href="http://www.snort.org/search/sid/3540?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0699">2005-0699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12759">12759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=19120">19120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3541</td><td class="ruletablebody" valign="top">EXPLOIT RADIUS ATTR_TYPE_STR overflow attempt (<a href="http://www.snort.org/search/sid/3541?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0699">2005-0699</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12759">12759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=19120">19120</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12046</td><td class="ruletablebody" valign="top">RPC MIT Kerberos kadmind RPC Library unix authentication buffer overflow attempt (<a href="http://www.snort.org/search/sid/12046?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2443">2007-2443</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24657">24657</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-004.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12075</td><td class="ruletablebody" valign="top">RPC MIT Kerberos kadmind rpc library uninitialized pointer arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/12075?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2442">2007-2442</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24655">24655</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-004.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12424</td><td class="ruletablebody" valign="top">RPC MIT Kerberos kadmind rpc RPCSEC_GSS buffer overflow attempt (<a href="http://www.snort.org/search/sid/12424?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3999">2007-3999</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25534">25534</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://web.mit.edu/Kerberos/advisories/MITKRB5-SA-2007-006.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12708</td><td class="ruletablebody" valign="top">RPC MIT Kerberos kadmind auth buffer overflow attempt (<a href="http://www.snort.org/search/sid/12708?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2443">2007-2443</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24657">24657</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16394</td><td class="ruletablebody" valign="top">DOS Active Directory Kerberos referral TGT renewal DoS attempt (<a href="http://www.snort.org/search/sid/16394?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0035">2010-0035</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17243</td><td class="ruletablebody" valign="top">EXPLOIT MIT Kerberos V5 krb5_recvauth double free attempt (<a href="http://www.snort.org/search/sid/17243?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1689">2005-1689</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/14239">14239</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="248"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Server / Misc / CVS</div></p><span class="group"># of attack rules in this group: 1</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13616</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS CVS Argument overflow (<a href="http://www.snort.org/search/sid/13616?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0396">2004-0396</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 16</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1551</td><td class="ruletablebody" valign="top">WEB-MISC /CVS/Entries access (<a href="http://www.snort.org/search/sid/1551?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11032">11032</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1552</td><td class="ruletablebody" valign="top">WEB-MISC cvsweb version access (<a href="http://www.snort.org/search/sid/1552?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0670">2000-0670</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10465">10465</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2008</td><td class="ruletablebody" valign="top">MISC CVS invalid user authentication response (<a href="http://www.snort.org/search/sid/2008?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2009</td><td class="ruletablebody" valign="top">MISC CVS invalid repository response (<a href="http://www.snort.org/search/sid/2009?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2010</td><td class="ruletablebody" valign="top">MISC CVS double free exploit attempt response (<a href="http://www.snort.org/search/sid/2010?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0015">2003-0015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6650">6650</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11385">11385</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2011</td><td class="ruletablebody" valign="top">MISC CVS invalid directory response (<a href="http://www.snort.org/search/sid/2011?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0015">2003-0015</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/6650">6650</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11385">11385</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2012</td><td class="ruletablebody" valign="top">MISC CVS missing cvsroot response (<a href="http://www.snort.org/search/sid/2012?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2013</td><td class="ruletablebody" valign="top">MISC CVS invalid module response (<a href="http://www.snort.org/search/sid/2013?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2317</td><td class="ruletablebody" valign="top">MISC CVS non-relative path error response (<a href="http://www.snort.org/search/sid/2317?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0977">2003-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9178">9178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11947">11947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2318</td><td class="ruletablebody" valign="top">MISC CVS non-relative path access attempt (<a href="http://www.snort.org/search/sid/2318?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0977">2003-0977</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9178">9178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11947">11947</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2583</td><td class="ruletablebody" valign="top">MISC CVS Max-dotdot integer overflow attempt (<a href="http://www.snort.org/search/sid/2583?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0417">2004-0417</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10499">10499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3651</td><td class="ruletablebody" valign="top">EXPLOIT CVS rsh annotate revision overflow attempt (<a href="http://www.snort.org/search/sid/3651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0753">2005-0753</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13217">13217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18097">18097</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://ccvs.cvshome.org/servlets/NewsItemView?newsItemID=142">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3652</td><td class="ruletablebody" valign="top">EXPLOIT CVS pserver annotate revision overflow attempt (<a href="http://www.snort.org/search/sid/3652?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0753">2005-0753</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13217">13217</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18097">18097</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://ccvs.cvshome.org/servlets/NewsItemView?newsItemID=142">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13614</td><td class="ruletablebody" valign="top">EXPLOIT CVS Argument overflow attempt (<a href="http://www.snort.org/search/sid/13614?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0396">2004-0396</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13615</td><td class="ruletablebody" valign="top">EXPLOIT CVS Argument overflow attempt (<a href="http://www.snort.org/search/sid/13615?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0396">2004-0396</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15971</td><td class="ruletablebody" valign="top">EXPLOIT CVS Argumentx command double free attempt (<a href="http://www.snort.org/search/sid/15971?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0416">2004-0416</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10499">10499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="300"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="310"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client / Office</div></p><span class="group"># of attack rules in this group: 281</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4170</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Data Source Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/4170?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1201">2007-1201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4175</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000/2002 Web Components PivotTable ActiveX Object Access (<a href="http://www.snort.org/search/sid/4175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0727">2002-0727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4176</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Chart ActiveX Object Access (<a href="http://www.snort.org/search/sid/4176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0727">2002-0727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4177</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Spreadsheet ActiveX clsid access (<a href="http://www.snort.org/search/sid/4177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4695">2006-4695</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4453">4453</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4178</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Record Navigation Control ActiveX Object Access (<a href="http://www.snort.org/search/sid/4178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0727">2002-0727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4217</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Services on the Web Free/Busy ActiveX Object Access (<a href="http://www.snort.org/search/sid/4217?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4218</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic WebClass ActiveX Object Access (<a href="http://www.snort.org/search/sid/4218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5780</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwpe word filtered echelon log (<a href="http://www.snort.org/search/sid/5780?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5782</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwae word filtered echelon log (<a href="http://www.snort.org/search/sid/5782?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5892</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware wordiq toolbar runtime detection - get link info (<a href="http://www.snort.org/search/sid/5892?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softpedia.com/progReportSpyware/12-3-196">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5893</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware wordiq toolbar runtime detection - search keyword (<a href="http://www.snort.org/search/sid/5893?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softpedia.com/progReportSpyware/12-3-196">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5958</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool ghostvoice 1.02 runtime detection - init connection with password requirement (<a href="http://www.snort.org/search/sid/5958?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073224">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5959</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker raxsearch detection - send search keywords to raxsearch (<a href="http://www.snort.org/search/sid/5959?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2485">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5962</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker searchfast detection - catch search keyword (<a href="http://www.snort.org/search/sid/5962?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5992</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker getmirar runtime detection - get keyword-related content (<a href="http://www.snort.org/search/sid/5992?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077933">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6185</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware 180Search assistant runtime detection - reporting keyword (<a href="http://www.snort.org/search/sid/6185?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090677">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6192</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware seekmo runtime detection - reporting keyword (<a href="http://www.snort.org/search/sid/6192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6278</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler navexcel search toolbar runtime detection - activate/update (<a href="http://www.snort.org/search/sid/6278?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074928">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6309</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - initial connection - password request (<a href="http://www.snort.org/search/sid/6309?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6310</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - initial connection - password send (<a href="http://www.snort.org/search/sid/6310?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6311</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - initial connection - password accepted (<a href="http://www.snort.org/search/sid/6311?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7002</td><td class="ruletablebody" valign="top">WEB-CLIENT excel url unicode overflow attempt (<a href="http://www.snort.org/search/sid/7002?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3086">2006-3086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18500">18500</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7025</td><td class="ruletablebody" valign="top">WEB-CLIENT excel url unicode overflow attempt (<a href="http://www.snort.org/search/sid/7025?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3014">2006-3014</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18583">18583</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7047</td><td class="ruletablebody" valign="top">WEB-CLIENT excel object record overflow attempt (<a href="http://www.snort.org/search/sid/7047?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1306">2006-1306</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7048</td><td class="ruletablebody" valign="top">WEB-CLIENT excel object record overflow attempt (<a href="http://www.snort.org/search/sid/7048?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1306">2006-1306</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7087</td><td class="ruletablebody" valign="top">BACKDOOR sinique 1.0 runtime detection - initial connection with correct password client-to-server (<a href="http://www.snort.org/search/sid/7087?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7089</td><td class="ruletablebody" valign="top">BACKDOOR sinique 1.0 runtime detection - initial connection with wrong password -client-to-server (<a href="http://www.snort.org/search/sid/7089?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7098</td><td class="ruletablebody" valign="top">BACKDOOR remote hack 1.5 runtime detection - get password (<a href="http://www.snort.org/search/sid/7098?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1523">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7197</td><td class="ruletablebody" valign="top">WEB-CLIENT excel MSO.DLL malformed string parsing single byte buffer over attempt (<a href="http://www.snort.org/search/sid/7197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1540">2006-1540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17252">17252</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7198</td><td class="ruletablebody" valign="top">WEB-CLIENT excel MSO.DLL malformed string parsing multi byte buffer over attempt (<a href="http://www.snort.org/search/sid/7198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1540">2006-1540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17252">17252</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7199</td><td class="ruletablebody" valign="top">WEB-CLIENT excel label record overflow attempt (<a href="http://www.snort.org/search/sid/7199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0114">2008-0114</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28166">28166</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7200</td><td class="ruletablebody" valign="top">WEB-CLIENT microsoft word document summary information null string overflow attempt (<a href="http://www.snort.org/search/sid/7200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1540">2006-1540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7201</td><td class="ruletablebody" valign="top">WEB-CLIENT microsoft word summary information null string overflow attempt (<a href="http://www.snort.org/search/sid/7201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1540">2006-1540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7202</td><td class="ruletablebody" valign="top">WEB-CLIENT microsoft word document summary information string overflow attempt (<a href="http://www.snort.org/search/sid/7202?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1540">2006-1540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7203</td><td class="ruletablebody" valign="top">WEB-CLIENT microsoft word information string overflow attempt (<a href="http://www.snort.org/search/sid/7203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1540">2006-1540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7517</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker chinese keywords runtime detection (<a href="http://www.snort.org/search/sid/7517?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7616</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.0 runtime detection - connection without password (<a href="http://www.snort.org/search/sid/7616?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083786">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7617</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.0 runtime detection - connection request with password - flowbit 1 (<a href="http://www.snort.org/search/sid/7617?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7618</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.0 runtime detection - connection request with password - flowbit 2 (<a href="http://www.snort.org/search/sid/7618?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7619</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.0 runtime detection - connection request with password (<a href="http://www.snort.org/search/sid/7619?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083786">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7785</td><td class="ruletablebody" valign="top">BACKDOOR forced control uploader runtime detection - connection with password (<a href="http://www.snort.org/search/sid/7785?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7832</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker navexcel helper runtime detection - active/update (<a href="http://www.snort.org/search/sid/7832?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074928">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7833</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker navexcel helper runtime detection - search (<a href="http://www.snort.org/search/sid/7833?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074928">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7870</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 9.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/7870?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1201">2007-1201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28136">28136</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7871</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 9.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7871?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1201">2007-1201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28136">28136</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7874</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office PivotTable 10.0 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7874?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0861">2002-0861</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7875</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office PivotTable 10.0 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7875?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0861">2002-0861</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7876</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 10.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/7876?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0562">2009-0562</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35990">35990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7877</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 10.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7877?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0562">2009-0562</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35990">35990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8358</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker yok supersearch runtime detection - addressbar keyword search hijack (<a href="http://www.snort.org/search/sid/8358?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Yok.SuperSearch&amp;threatid=44407">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8397</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office List 11.0 ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8397?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8398</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office List 11.0 ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8448</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel colinfo XF record overflow attempt (<a href="http://www.snort.org/search/sid/8448?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3875">2006-3875</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-059.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8723</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 11.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/8723?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3729">2006-3729</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24462">24462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27111">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8724</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 11.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8724?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3729">2006-3729</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24462">24462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/27111">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8738</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision InstallShield Update Service ActiveX clsid access (<a href="http://www.snort.org/search/sid/8738?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5660">2007-5660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.installshield.com/kb/view.asp?articleid=Q113602">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8739</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision InstallShield Update Service ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8739?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5660">2007-5660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.installshield.com/kb/view.asp?articleid=Q113602">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8740</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision InstallShield Update Service ActiveX function call access (<a href="http://www.snort.org/search/sid/8740?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5660">2007-5660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.installshield.com/kb/view.asp?articleid=Q113602">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9645</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker sogou runtime detection - keyword hijack (<a href="http://www.snort.org/search/sid/9645?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098380">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10123</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS PA168 chipset based IP phone default password attempt (<a href="http://www.snort.org/search/sid/10123?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.procheckup.com/Vulner_PR0614.php">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10173</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro OfficeScan Client ActiveX clsid access (<a href="http://www.snort.org/search/sid/10173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0325">2007-0325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22585">22585</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10174</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro OfficeScan Client ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0325">2007-0325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22585">22585</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10175</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Trend Micro OfficeScan Client ActiveX function call access (<a href="http://www.snort.org/search/sid/10175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0325">2007-0325</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22585">22585</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10445</td><td class="ruletablebody" valign="top">BACKDOOR acidbattery 1.0 runtime detection - get password (<a href="http://www.snort.org/search/sid/10445?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=109">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11181</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Excel Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-02-excelviewerocx-v-31-multiple.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11182</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Excel Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-02-excelviewerocx-v-31-multiple.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11183</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Excel Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/11183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-02-excelviewerocx-v-31-multiple.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11184</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Excel Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-02-excelviewerocx-v-31-multiple.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11186</td><td class="ruletablebody" valign="top">DOS CA eTrust key handling dos -- password (<a href="http://www.snort.org/search/sid/11186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1005">2007-1005</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22743">22743</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11187</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Word Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-03-wordviewerocx-32-multiple_03.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11188</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Word Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-03-wordviewerocx-32-multiple_03.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11189</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Word Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/11189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-03-wordviewerocx-32-multiple_03.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11190</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Word Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33243">33243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-03-wordviewerocx-32-multiple_03.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11258</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel Malformed Named Graph Information unicode overflow (<a href="http://www.snort.org/search/sid/11258?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0215">2007-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11290</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel malformed named graph information ascii overflow (<a href="http://www.snort.org/search/sid/11290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0215">2007-0215</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11836</td><td class="ruletablebody" valign="top">MISC Visio version number anomaly (<a href="http://www.snort.org/search/sid/11836?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0934">2007-0934</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-030.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12233</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.10 runtime detection - connect with no password (<a href="http://www.snort.org/search/sid/12233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12235</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.10 runtime detection - connect with password (<a href="http://www.snort.org/search/sid/12235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12256</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel malformed FBI record (<a href="http://www.snort.org/search/sid/12256?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1747">2007-1747</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23826">23826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-023.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12285</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel Workspace file download (<a href="http://www.snort.org/search/sid/12285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sc.openoffice.org/excelfileformat.pdf">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12703</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision InstallShield Update Service ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12703?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5660">2007-5660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.installshield.com/kb/view.asp?articleid=Q113602">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13325</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision FLEXnet Connect ActiveX clsid access (<a href="http://www.snort.org/search/sid/13325?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27279">27279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13326</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision FLEXnet Connect ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27279">27279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13327</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision FLEXnet Connect ActiveX function call access (<a href="http://www.snort.org/search/sid/13327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27279">27279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13328</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision FLEXnet Connect ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13328?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27279">27279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13571</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel dval record arbitrary code excecution attempt (<a href="http://www.snort.org/search/sid/13571?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0111">2008-0111</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13665</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Visio DXF file invalid memory allocation exploit attempt (<a href="http://www.snort.org/search/sid/13665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1090">2008-1090</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13790</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word malformed css remote code execution attempt (<a href="http://www.snort.org/search/sid/13790?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1434">2008-1434</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13803</td><td class="ruletablebody" valign="top">WEB-CLIENT RTF control word overflow attempt (<a href="http://www.snort.org/search/sid/13803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1091">2008-1091</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13973</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel format record code execution attempt (<a href="http://www.snort.org/search/sid/13973?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3005">2008-3005</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13983</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office eps file download (<a href="http://www.snort.org/search/sid/13983?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14628</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Chart ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14628?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0727">2002-0727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14629</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components PivotTable ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14629?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0727">2002-0727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14630</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Data Source Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14630?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0727">2002-0727</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14641</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel invalid FRTWrapper record buffer overflow attempt (<a href="http://www.snort.org/search/sid/14641?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3471">2008-3471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14642</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel file with embedded ActiveX control (<a href="http://www.snort.org/search/sid/14642?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3477">2008-3477</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14764</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision InstallShield Update Service Agent ActiveX clsid access (<a href="http://www.snort.org/search/sid/14764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2470">2008-2470</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14765</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Macrovision InstallShield Update Service Agent ActiveX function call (<a href="http://www.snort.org/search/sid/14765?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2470">2008-2470</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14997</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DjVu MSOffice Converter ActiveX clsid access (<a href="http://www.snort.org/search/sid/14997?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4922">2008-4922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31987">31987</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14998</td><td class="ruletablebody" valign="top">WEB-ACTIVEX DjVu MSOffice Converter ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14998?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4922">2008-4922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31987">31987</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15083</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word .rtf file double free attempt (<a href="http://www.snort.org/search/sid/15083?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4027">2008-4027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15088</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Charts ActiveX clsid access (<a href="http://www.snort.org/search/sid/15088?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4256">2008-4256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15090</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Charts ActiveX function call access (<a href="http://www.snort.org/search/sid/15090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4256">2008-4256</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15092</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic DataGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/15092?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4252">2008-4252</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15094</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic DataGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/15094?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4252">2008-4252</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15096</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic FlexGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/15096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4253">2008-4253</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15098</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic FlexGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/15098?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4253">2008-4253</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15100</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Hierarchical FlexGrid ActiveX clsid access (<a href="http://www.snort.org/search/sid/15100?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4254">2008-4254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15102</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Hierarchical FlexGrid ActiveX function call access (<a href="http://www.snort.org/search/sid/15102?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4254">2008-4254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15104</td><td class="ruletablebody" valign="top">WEB-CLIENT Visual Basic 6.0 malformed AVI buffer overflow attempt (<a href="http://www.snort.org/search/sid/15104?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4255">2008-4255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15106</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word .rtf file integer overflow attempt (<a href="http://www.snort.org/search/sid/15106?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4025">2008-4025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15107</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word .rtf file stylesheet buffer overflow attempt (<a href="http://www.snort.org/search/sid/15107?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4031">2008-4031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15108</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Sharepoint Server elevation of privilege exploit attempt (<a href="http://www.snort.org/search/sid/15108?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4032">2008-4032</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-077.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15118</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Winsock ActiveX clsid access (<a href="http://www.snort.org/search/sid/15118?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4251">2008-4251</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15120</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Winsock ActiveX function call access (<a href="http://www.snort.org/search/sid/15120?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4251">2008-4251</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15163</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Visio Object Header Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/15163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1089">2008-1089</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15230</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office Viewer 2 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15230?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33245">33245</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15231</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office Viewer 2 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15231?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33245">33245</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15282</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FlexCell Grid ActiveX clsid access (<a href="http://www.snort.org/search/sid/15282?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0301">2009-0301</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33453">33453</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15283</td><td class="ruletablebody" valign="top">WEB-ACTIVEX FlexCell Grid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15283?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0301">2009-0301</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33453">33453</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15294</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Visio file download request (<a href="http://www.snort.org/search/sid/15294?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15298</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Visio could allow remote code execution (<a href="http://www.snort.org/search/sid/15298?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0097">2009-0097</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-005.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15299</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Visio invalid ho tag attempt (<a href="http://www.snort.org/search/sid/15299?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0096">2009-0096</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33660">33660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-005">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15303</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed Visio IconBitsComponent arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/15303?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0095">2009-0095</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-005.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15334</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 7000 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15335</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 7000 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15335?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15336</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 7000 ActiveX function call access (<a href="http://www.snort.org/search/sid/15336?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15337</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 7000 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15337?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15338</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8120 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15338?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15339</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8120 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15339?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15340</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8120 ActiveX function call access (<a href="http://www.snort.org/search/sid/15340?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15341</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8120 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15341?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15342</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8200 ActiveX clsid access (<a href="http://www.snort.org/search/sid/15342?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15343</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8200 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15343?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15344</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8200 ActiveX function call access (<a href="http://www.snort.org/search/sid/15344?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15345</td><td class="ruletablebody" valign="top">WEB-ACTIVEX GeoVision LiveX 8200 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15345?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33782">33782</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15365</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel extrst record arbitrary code excecution attempt (<a href="http://www.snort.org/search/sid/15365?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0238">2009-0238</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15454</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office PowerPoint malformed msofbtTextbox exploit attempt (<a href="http://www.snort.org/search/sid/15454?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0556">2009-0556</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15455</td><td class="ruletablebody" valign="top">EXPLOIT WordPad and Office Text Converters XST parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/15455?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4841">2008-4841</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15463</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel file request (<a href="http://www.snort.org/search/sid/15463?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15465</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel malformed object record remote code execution attempt (<a href="http://www.snort.org/search/sid/15465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0100">2009-0100</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15466</td><td class="ruletablebody" valign="top">EXPLOIT WordPad WordPerfect 6.x converter buffer overflow attempt (<a href="http://www.snort.org/search/sid/15466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0088">2009-0088</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15467</td><td class="ruletablebody" valign="top">EXPLOIT WordPad and Office Text Converters PlcPcd aCP buffer overflow attempt (<a href="http://www.snort.org/search/sid/15467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0235">2009-0235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15469</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft WordPad and Office text converters integer underflow attempt (<a href="http://www.snort.org/search/sid/15469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0087">2009-0087</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15488</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Oracle Database Application Express Component APEX password hash disclosure attempt (<a href="http://www.snort.org/search/sid/15488?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0981">2009-0981</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34461">34461</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2009.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15519</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel BRAI record remote code execution attempt (<a href="http://www.snort.org/search/sid/15519?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0549">2009-0549</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15520</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel FtCbls remote code execution attempt (<a href="http://www.snort.org/search/sid/15520?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0557">2009-0557</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15521</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel ExternSheet record remote code execution attempt (<a href="http://www.snort.org/search/sid/15521?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0558">2009-0558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15524</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word remote code execution attempt (<a href="http://www.snort.org/search/sid/15524?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0563">2009-0563</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15525</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word remote code execution attempt (<a href="http://www.snort.org/search/sid/15525?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0565">2009-0565</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15537</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel MsoDrawingGroup record remote code execution attempt (<a href="http://www.snort.org/search/sid/15537?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0559">2009-0559</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15541</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel SST record remote code execution attempt (<a href="http://www.snort.org/search/sid/15541?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3037">2009-3037</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36042">36042</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15542</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel Qsir and Qsif record remote code execution attempt (<a href="http://www.snort.org/search/sid/15542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1134">2009-1134</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15587</td><td class="ruletablebody" valign="top">WEB-CLIENT Word file download request (<a href="http://www.snort.org/search/sid/15587?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15685</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 10 Spreadsheet ActiveX clsid access (<a href="http://www.snort.org/search/sid/15685?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2496">2009-2496</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15687</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 10 Spreadsheet ActiveX function call access (<a href="http://www.snort.org/search/sid/15687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2496">2009-2496</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15689</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 11 Spreadsheet ActiveX clsid access (<a href="http://www.snort.org/search/sid/15689?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15691</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 11 Spreadsheet ActiveX function call access (<a href="http://www.snort.org/search/sid/15691?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15852</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components Datasource ActiveX clsid access (<a href="http://www.snort.org/search/sid/15852?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0562">2009-0562</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15853</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components Datasource ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15853?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0562">2009-0562</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15913</td><td class="ruletablebody" valign="top">WEB-CLIENT javascript arguments keyword override rce attempt (<a href="http://www.snort.org/search/sid/15913?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1920">2009-1920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15975</td><td class="ruletablebody" valign="top">WEB-CLIENT OpenOffice TIFF file in little endian format parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/15975?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2834">2007-2834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25690">25690</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15976</td><td class="ruletablebody" valign="top">WEB-CLIENT OpenOffice TIFF file in big endian format parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/15976?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2834">2007-2834</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25690">25690</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15987</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Visio DXF file download request (<a href="http://www.snort.org/search/sid/15987?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16177</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft GDI+ Word file Office Art Property Table remote code execution attempt (<a href="http://www.snort.org/search/sid/16177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2528">2009-2528</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16178</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft GDI+ Excel file Office Art Property Table remote code execution attempt (<a href="http://www.snort.org/search/sid/16178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2528">2009-2528</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16226</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Office Excel integer field in row record improper validation remote code execution attempt (<a href="http://www.snort.org/search/sid/16226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3130">2009-3130</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16229</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel oversized ib memory corruption attempt (<a href="http://www.snort.org/search/sid/16229?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3131">2009-3131</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16230</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel oversized ib memory corruption attempt (<a href="http://www.snort.org/search/sid/16230?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3131">2009-3131</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16233</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel oversized ptgFuncVar cparams value buffer overflow attempt (<a href="http://www.snort.org/search/sid/16233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3132">2009-3132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16234</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word Document remote code execution attempt (<a href="http://www.snort.org/search/sid/16234?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3135">2009-3135</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16235</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel file SXDB record exploit attempt (<a href="http://www.snort.org/search/sid/16235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3127">2009-3127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16236</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel file SxView record exploit attempt (<a href="http://www.snort.org/search/sid/16236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3128">2009-3128</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16240</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel file Window/Pane record exploit attempt (<a href="http://www.snort.org/search/sid/16240?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3133">2009-3133</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16241</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel FeatHdr BIFF record remote code execution attempt (<a href="http://www.snort.org/search/sid/16241?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3129">2009-3129</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16314</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft WordPad and Office text converter integer overflow attempt (<a href="http://www.snort.org/search/sid/16314?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2506">2009-2506</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16318</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Visio invalid ho tag attempt (<a href="http://www.snort.org/search/sid/16318?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0096">2009-0096</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33660">33660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-005">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16328</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Office Project file parsing arbitrary memory access attempt (<a href="http://www.snort.org/search/sid/16328?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0102">2009-0102</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-074.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16361</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office BMP header biClrUsed integer overflow attempt (<a href="http://www.snort.org/search/sid/16361?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2518">2009-2518</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36651">36651</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16461</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel write access violation attempt (<a href="http://www.snort.org/search/sid/16461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0257">2010-0257</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16462</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel BIFF8 formulas from records parsing code execution attempt (<a href="http://www.snort.org/search/sid/16462?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0258">2010-0258</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16463</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel BIFF5 formulas from records parsing code execution attempt (<a href="http://www.snort.org/search/sid/16463?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0258">2010-0258</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16464</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel ContinueFRT12 heap overflow attempt (<a href="http://www.snort.org/search/sid/16464?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0260">2010-0260</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16465</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel ContinueFRT12 and MDXSet heap overflow attempt (<a href="http://www.snort.org/search/sid/16465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0261">2010-0261</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16466</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel uninitialized stack variable code execution attempt (<a href="http://www.snort.org/search/sid/16466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0262">2010-0262</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16467</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel 2007 invalid comments.xml uninitialized pointer access attempt 1 (<a href="http://www.snort.org/search/sid/16467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0263">2010-0263</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16468</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel 2007 invalid comments.xml uninitialized pointer access attempt 2 (<a href="http://www.snort.org/search/sid/16468?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0263">2010-0263</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16469</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel DbOrParamQry.fOdbcConn parsing remote code execution attempt (<a href="http://www.snort.org/search/sid/16469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0264">2010-0264</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16470</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel DbOrParamQry.fWeb parsing remote code execution attempt (<a href="http://www.snort.org/search/sid/16470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0264">2010-0264</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16471</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel DbOrParamQry.fWeb parsing remote code execution attempt (<a href="http://www.snort.org/search/sid/16471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0264">2010-0264</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16553</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Office Excel ptg index parsing code execution attempt (<a href="http://www.snort.org/search/sid/16553?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3132">2009-3132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16565</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Ultra Shareware Office ActiveX clsid access (<a href="http://www.snort.org/search/sid/16565?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3878">2008-3878</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30861">30861</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16586</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word Document remote code execution attempt (<a href="http://www.snort.org/search/sid/16586?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3135">2009-3135</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-068.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16638</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel OBJ record stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16638?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0822">2010-0822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16639</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel OBJ record stack buffer overflow attempt - with macro (<a href="http://www.snort.org/search/sid/16639?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0822">2010-0822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16640</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel OBJ record stack buffer overflow attempt - with linkFmla (<a href="http://www.snort.org/search/sid/16640?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0822">2010-0822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16641</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel OBJ record stack buffer overflow attempt - with macro and linkFmla (<a href="http://www.snort.org/search/sid/16641?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0822">2010-0822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16643</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel Chart Sheet Substream memory corruption attempt (<a href="http://www.snort.org/search/sid/16643?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0823">2010-0823</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16644</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel WOpt record memory corruption attempt (<a href="http://www.snort.org/search/sid/16644?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0824">2010-0824</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16645</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel SxView record memory pointer corruption attempt (<a href="http://www.snort.org/search/sid/16645?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1245">2010-1245</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16646</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel RealTimeData record stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16646?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1246">2010-1246</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16647</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel RealTimeData record heap memory corruption attempt - 2 (<a href="http://www.snort.org/search/sid/16647?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1247">2010-1247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16648</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel RealTimeData record heap memory corruption attempt - 1 (<a href="http://www.snort.org/search/sid/16648?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1247">2010-1247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16649</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel HFPicture record stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16649?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1248">2010-1248</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16662</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel SxView heap overflow attempt (<a href="http://www.snort.org/search/sid/16662?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0821">2010-0821</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16786</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Office Web Components Spreadsheet ActiveX buffer overflow attempt (<a href="http://www.snort.org/search/sid/16786?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1534">2009-1534</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35992">35992</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16800</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel FRTWrapper record buffer overflow attempt (<a href="http://www.snort.org/search/sid/16800?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3471">2008-3471</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17119</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word sprmCMajority SPRM overflow attempt (<a href="http://www.snort.org/search/sid/17119?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1900">2010-1900</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-056.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17124</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word malformed table record memory corruption attempt (<a href="http://www.snort.org/search/sid/17124?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1903">2010-1903</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-056.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17227</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel sheet name memory corruption attempt (<a href="http://www.snort.org/search/sid/17227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3490">2007-3490</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24691">24691</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17250</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft WordPad sprmTSetBrc80 SPRM overflow attempt (<a href="http://www.snort.org/search/sid/17250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2563">2010-2563</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17284</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office malformed routing slip code execution attempt (<a href="http://www.snort.org/search/sid/17284?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0009">2006-0009</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17000">17000</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17286</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Visual Basic for Applications document properties overflow attempt (<a href="http://www.snort.org/search/sid/17286?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3649">2006-3649</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19414">19414</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17295</td><td class="ruletablebody" valign="top">WEB-MISC Trend Micro OfficeScan Console authentication buffer overflow attempt (<a href="http://www.snort.org/search/sid/17295?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3455">2007-3455</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24935">24935</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17301</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word TextBox sub-document memory corruption attempt (<a href="http://www.snort.org/search/sid/17301?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1910">2007-1910</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23380">23380</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17308</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word SmartTag record code execution attempt (<a href="http://www.snort.org/search/sid/17308?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2244">2008-2244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30124">30124</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17315</td><td class="ruletablebody" valign="top">WEB-CLIENT OpenOffice OLE File Stream Buffer Overflow (<a href="http://www.snort.org/search/sid/17315?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0320">2008-0320</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28819">28819</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17322</td><td class="ruletablebody" valign="top">SHELLCODE x86 OS agnostic fnstenv geteip dword xor decoder (<a href="http://www.snort.org/search/sid/17322?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17344</td><td class="ruletablebody" valign="top">SHELLCODE x86 OS agnostic xor dword decoder (<a href="http://www.snort.org/search/sid/17344?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17345</td><td class="ruletablebody" valign="top">SHELLCODE x86 OS agnostic dword additive feedback decoder (<a href="http://www.snort.org/search/sid/17345?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17362</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel IMDATA buffer overflow attempt (<a href="http://www.snort.org/search/sid/17362?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0027">2007-0027</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21856">21856</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17368</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word document stream handling code execution attempt (<a href="http://www.snort.org/search/sid/17368?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0870">2007-0870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25567">25567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17377</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft excel Malformed Filter Records Handling Code Execution attempt (<a href="http://www.snort.org/search/sid/17377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1214">2007-1214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23780">23780</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17403</td><td class="ruletablebody" valign="top">WEB-CLIENT OpenOffice RTF File parsing heap buffer overflow attempt (<a href="http://www.snort.org/search/sid/17403?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0245">2007-0245</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24450">24450</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17404</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word Converter XST structure buffer overflow attempt (<a href="http://www.snort.org/search/sid/17404?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4841">2008-4841</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17405</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word Converter XST structure buffer overflow attempt (<a href="http://www.snort.org/search/sid/17405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4841">2008-4841</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17406</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word Converter XST structure buffer overflow attempt (<a href="http://www.snort.org/search/sid/17406?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4841">2008-4841</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17488</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Excel Malformed Range Code Execution attempt (<a href="http://www.snort.org/search/sid/17488?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4131">2005-4131</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15780">15780</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17491</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Word mso.dll LsCreateLine Memory Corruption (<a href="http://www.snort.org/search/sid/17491?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3493">2006-3493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18905">18905</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17492</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Excel Malformed SELECTION Record Code Execution attempt (<a href="http://www.snort.org/search/sid/17492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1301">2006-1301</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18853">18853</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17505</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word formatted disk pages table memory corruption attempt (<a href="http://www.snort.org/search/sid/17505?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6561">2006-6561</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21589">21589</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17506</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word formatted disk pages table memory corruption attempt (<a href="http://www.snort.org/search/sid/17506?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6561">2006-6561</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21589">21589</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17507</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word formatted disk pages table memory corruption attempt (<a href="http://www.snort.org/search/sid/17507?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6561">2006-6561</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21589">21589</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17511</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel malformed Graphic Code Execution (<a href="http://www.snort.org/search/sid/17511?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0030">2006-0030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16181">16181</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17517</td><td class="ruletablebody" valign="top">WEB-CLIENT excel Malformed Record Code Execution attempt (<a href="http://www.snort.org/search/sid/17517?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0031">2006-0031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17101">17101</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17537</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Excel Unspecified Null Page Name Memory Corruption Attempt (<a href="http://www.snort.org/search/sid/17537?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0031">2006-0031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15926">15926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17538</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Excel Unspecified Page Name Memory Corruption Attempt (<a href="http://www.snort.org/search/sid/17538?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0031">2006-0031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15926">15926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17539</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Excel Unspecified Grafic Pointer Memory Corruption Attempt (<a href="http://www.snort.org/search/sid/17539?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0030">2006-0030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15926">15926</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17542</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Excel MalformedPalete Record Memory Corruption attempt (<a href="http://www.snort.org/search/sid/17542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0031">2007-0031</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21922">21922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17543</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel Column Record Handling Memory Corruption attempt (<a href="http://www.snort.org/search/sid/17543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0030">2007-0030</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21925">21925</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17550</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Word Font Parsing Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17550?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0564">2005-0564</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14216">14216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17555</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Macrovision InstallShield Update Service ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/17555?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5660">2007-5660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31235">31235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.installshield.com/kb/view.asp?articleid=Q113602">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17560</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Word Global Array Index Heap Overflow attempt (<a href="http://www.snort.org/search/sid/17560?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4026">2008-4026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32583">32583</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17565</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Office PowerPoint PP7 File Handling Memory Corruption attempt (<a href="http://www.snort.org/search/sid/17565?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0225">2009-0225</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34880">34880</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17568</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Office XP URL Handling Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17568?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0848">2004-0848</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12480">12480</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17574</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sophos Anti-Virus Visio File Parsing Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17574?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2768">2005-2768</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14362">14362</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17578</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Word Section Table Array Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17578?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0515">2007-0515</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22225">22225</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17579</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Office Drawing Record msofbtOPT Code Execution attempt (<a href="http://www.snort.org/search/sid/17579?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0671">2007-0671</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22383">22383</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17591</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word Crafted Sprm memory corruption attempt  (<a href="http://www.snort.org/search/sid/17591?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4837">2008-4837</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32584">32584</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17649</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word array data handling buffer overflow attempt  (<a href="http://www.snort.org/search/sid/17649?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0035">2007-0035</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23804">23804</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17655</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel malformed formula parsing code execution attempt (<a href="http://www.snort.org/search/sid/17655?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0115">2008-0115</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28167">28167</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17665</td><td class="ruletablebody" valign="top">WEB-CLIENT OpenOffice Word document table parsing multiple heap based buffer overflow attempt (<a href="http://www.snort.org/search/sid/17665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0201">2009-0201</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36200">36200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17670</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BigAnt Office Manager ActiveX clsid access (<a href="http://www.snort.org/search/sid/17670?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39721">39721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17671</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BigAnt Office Manager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17671?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39721">39721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17672</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BigAnt Office Manager ActiveX function call access (<a href="http://www.snort.org/search/sid/17672?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39721">39721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17673</td><td class="ruletablebody" valign="top">WEB-ACTIVEX BigAnt Office Manager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17673?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39721">39721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17690</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word remote code execution attempt (<a href="http://www.snort.org/search/sid/17690?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0565">2009-0565</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17691</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word remote code execution attempt (<a href="http://www.snort.org/search/sid/17691?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0565">2009-0565</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17701</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Office Viewer ActiveX arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/17701?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2588">2007-2588</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33245">33245</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17734</td><td class="ruletablebody" valign="top">WEB-MISC Excel REPT integer underflow attempt (<a href="http://www.snort.org/search/sid/17734?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4019">2008-4019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31706">31706</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17742</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word remote code execution attempt (<a href="http://www.snort.org/search/sid/17742?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0563">2009-0563</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17743</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word RTF parsing memory corruption (<a href="http://www.snort.org/search/sid/17743?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1091">2008-1091</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29104">29104</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17754</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word bookmark bound check remote code execution attempt (<a href="http://www.snort.org/search/sid/17754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3216">2010-3216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-079.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17755</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Word unchecked index value remote code execution attempt (<a href="http://www.snort.org/search/sid/17755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3219">2010-3219</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-079.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17756</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word XP PLFLSInTableStream heap overflow attempt (<a href="http://www.snort.org/search/sid/17756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3220">2010-3220</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-079.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17757</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel CrErr record integer overflow attempt (<a href="http://www.snort.org/search/sid/17757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3230">2010-3230</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17758</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel PtgExtraArray data parsing vulnerability exploit attempt (<a href="http://www.snort.org/search/sid/17758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3231">2010-3231</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17759</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel invalid SerAr object exploit attempt (<a href="http://www.snort.org/search/sid/17759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3239">2010-3239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17760</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel RealTimeData record exploit attempt (<a href="http://www.snort.org/search/sid/17760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3240">2010-3240</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17761</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel malformed MergeCells record exploit attempt (<a href="http://www.snort.org/search/sid/17761?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3237">2010-3237</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17762</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel corrupted TABLE record clean up exploit attempt (<a href="http://www.snort.org/search/sid/17762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3232">2010-3232</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17763</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel GhostRw record exploit attempt (<a href="http://www.snort.org/search/sid/17763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3242">2010-3242</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17764</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel PtgName invalid index exploit attempt (<a href="http://www.snort.org/search/sid/17764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3235">2010-3235</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-080.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18063</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office embedded Office Art drawings execution attempt (<a href="http://www.snort.org/search/sid/18063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3334">2010-3334</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-087.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18067</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office RTF parsing remote code execution attempt (<a href="http://www.snort.org/search/sid/18067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3333">2010-3333</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-087">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18068</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel malformed MsoDrawingObject record attempt (<a href="http://www.snort.org/search/sid/18068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3335">2010-3335</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-087.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18069</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Art drawing invalid shape identifier attempt (<a href="http://www.snort.org/search/sid/18069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3336">2010-3336</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-087.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18200</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Office .CGM file cell array heap overflow attempt (<a href="http://www.snort.org/search/sid/18200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3945">2010-3945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-105.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18201</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Office TIFF filter remote code execution attempt (<a href="http://www.snort.org/search/sid/18201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3947">2010-3947</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-105.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18235</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office PICT graphics converter memory corruption attempt (<a href="http://www.snort.org/search/sid/18235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3946">2010-3946</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-105.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18236</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Office TIFFIM32.FLT filter memory corruption attempt (<a href="http://www.snort.org/search/sid/18236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3949">2010-3949</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-105.mspx">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 112</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">233</td><td class="ruletablebody" valign="top">DDOS Trin00 Attacker to Master default startup password (<a href="http://www.snort.org/search/sid/233?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0138">2000-0138</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">234</td><td class="ruletablebody" valign="top">DDOS Trin00 Attacker to Master default password (<a href="http://www.snort.org/search/sid/234?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0138">2000-0138</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">235</td><td class="ruletablebody" valign="top">DDOS Trin00 Attacker to Master default mdie password (<a href="http://www.snort.org/search/sid/235?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0138">2000-0138</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">237</td><td class="ruletablebody" valign="top">DDOS Trin00 Master to Daemon default password attempt (<a href="http://www.snort.org/search/sid/237?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0138">2000-0138</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">505</td><td class="ruletablebody" valign="top">MISC Insecure TIMBUKTU Password (<a href="http://www.snort.org/search/sid/505?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1098</td><td class="ruletablebody" valign="top">WEB-MISC SmartWin CyberOffice Shopping Cart access (<a href="http://www.snort.org/search/sid/1098?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0925">2000-0925</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1734">1734</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1192</td><td class="ruletablebody" valign="top">WEB-MISC Trend Micro OfficeScan access (<a href="http://www.snort.org/search/sid/1192?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1057">1057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1381</td><td class="ruletablebody" valign="top">WEB-MISC Trend Micro OfficeScan attempt (<a href="http://www.snort.org/search/sid/1381?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/1057">1057</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1859</td><td class="ruletablebody" valign="top">WEB-MISC Sun JavaServer default password login attempt (<a href="http://www.snort.org/search/sid/1859?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">default-login-attempt</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10995">10995</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1860</td><td class="ruletablebody" valign="top">WEB-MISC Linksys router default password login attempt (<a href="http://www.snort.org/search/sid/1860?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">default-login-attempt</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10999">10999</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1861</td><td class="ruletablebody" valign="top">WEB-MISC Linksys router default username and password login attempt (<a href="http://www.snort.org/search/sid/1861?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">default-login-attempt</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10999">10999</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2027</td><td class="ruletablebody" valign="top">RPC yppasswd old password overflow attempt UDP (<a href="http://www.snort.org/search/sid/2027?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2028</td><td class="ruletablebody" valign="top">RPC yppasswd old password overflow attempt TCP (<a href="http://www.snort.org/search/sid/2028?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2029</td><td class="ruletablebody" valign="top">RPC yppasswd new password overflow attempt UDP (<a href="http://www.snort.org/search/sid/2029?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2030</td><td class="ruletablebody" valign="top">RPC yppasswd new password overflow attempt TCP (<a href="http://www.snort.org/search/sid/2030?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">rpc-portmap-decode</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0779">2001-0779</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2763">2763</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2114</td><td class="ruletablebody" valign="top">RSERVICES rexec password overflow attempt (<a href="http://www.snort.org/search/sid/2114?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2230</td><td class="ruletablebody" valign="top">WEB-MISC NetGear router default password login attempt admin/password (<a href="http://www.snort.org/search/sid/2230?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">default-login-attempt</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11737">11737</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2408</td><td class="ruletablebody" valign="top">WEB-MISC Invision Power Board search.pl access (<a href="http://www.snort.org/search/sid/2408?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9766">9766</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6471</td><td class="ruletablebody" valign="top">EXPLOIT RealVNC password authentication bypass attempt (<a href="http://www.snort.org/search/sid/6471?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2369">2006-2369</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17978">17978</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7024</td><td class="ruletablebody" valign="top">WEB-CLIENT excel style handling overflow attempt (<a href="http://www.snort.org/search/sid/7024?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3431">2006-3431</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18872">18872</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms06-059.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7088</td><td class="ruletablebody" valign="top">BACKDOOR sinique 1.0 runtime detection - initial connection with correct password server-to-client (<a href="http://www.snort.org/search/sid/7088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7090</td><td class="ruletablebody" valign="top">BACKDOOR sinique 1.0 runtime detection - initial connection with wrong password server-to-client (<a href="http://www.snort.org/search/sid/7090?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7204</td><td class="ruletablebody" valign="top">WEB-CLIENT excel object ftCmo overflow attempt (<a href="http://www.snort.org/search/sid/7204?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1306">2006-1306</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18886">18886</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7205</td><td class="ruletablebody" valign="top">WEB-CLIENT excel FngGroupCount record overflow attempt (<a href="http://www.snort.org/search/sid/7205?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1308">2006-1308</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18890">18890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7872</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Spreadsheet 10.0 ActiveX clsid access (<a href="http://www.snort.org/search/sid/7872?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7873</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Spreadsheet 10.0 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7873?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10087</td><td class="ruletablebody" valign="top">EXPLOIT VNC password request buffer overflow attempt (<a href="http://www.snort.org/search/sid/10087?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1652">2006-1652</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/2305">2305</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10407</td><td class="ruletablebody" valign="top">EXPLOIT Helix Server LoadTestPassword buffer overflow attempt (<a href="http://www.snort.org/search/sid/10407?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6026">2006-6026</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23068">23068</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://lists.helixcommunity.org/pipermail/server-cvs/2007-January/003783.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11199</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11199?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/33283">33283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11200</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11200?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/33283">33283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11201</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/11201?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/33283">33283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11202</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11202?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/33283">33283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11622</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office 2000 OUACTR ActiveX clsid access (<a href="http://www.snort.org/search/sid/11622?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2903">2007-2903</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24118">24118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-23-microsoft-office-2000.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11623</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office 2000 OUACTR ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11623?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2903">2007-2903</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24118">24118</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-23-microsoft-office-2000.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11660</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer ActiveX clsid access (<a href="http://www.snort.org/search/sid/11660?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24230">24230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-29-edraw-office-viewer-component.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11661</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11661?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24230">24230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-29-edraw-office-viewer-component.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11662</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer ActiveX function call access (<a href="http://www.snort.org/search/sid/11662?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24230">24230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-29-edraw-office-viewer-component.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11663</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11663?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24230">24230</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://moaxb.blogspot.com/2007/05/moaxb-29-edraw-office-viewer-component.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11967</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Data Source Control 11.0 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11967?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3729">2006-3729</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24462">24462</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://osvdb.org/27111">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12070</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel malformed version field (<a href="http://www.snort.org/search/sid/12070?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1756">2007-1756</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24801">24801</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12099</td><td class="ruletablebody" valign="top">MISC Microsoft Excel rtWindow1 record handling arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/12099?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3029">2007-3029</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22555">22555</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS07-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12184</td><td class="ruletablebody" valign="top">MISC Microsoft Excel workbook workspace designation handling arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/12184?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3030">2007-3030</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24803">24803</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-036.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12234</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.10 runtime detection - connect with no password (<a href="http://www.snort.org/search/sid/12234?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-071209-4425-99">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12236</td><td class="ruletablebody" valign="top">BACKDOOR theef 2.10 runtime detection - connect with password (<a href="http://www.snort.org/search/sid/12236?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-071209-4425-99">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12261</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 PDWizard.File ActiveX clsid access (<a href="http://www.snort.org/search/sid/12261?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12262</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 PDWizard.File ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12262?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12263</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 PDWizard.File ActiveX function call access (<a href="http://www.snort.org/search/sid/12263?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12264</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 PDWizard.File ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12264?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3041">2007-3041</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12265</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 SearchHelper ActiveX clsid access (<a href="http://www.snort.org/search/sid/12265?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12266</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 SearchHelper ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12266?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12267</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 SearchHelper ActiveX function call access (<a href="http://www.snort.org/search/sid/12267?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12268</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 SearchHelper ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12268?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12269</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TLIApplication ActiveX clsid access (<a href="http://www.snort.org/search/sid/12269?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12270</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TLIApplication ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12270?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12271</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TLIApplication ActiveX function call access (<a href="http://www.snort.org/search/sid/12271?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12272</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TLIApplication ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12272?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12273</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TypeLibInfo ActiveX clsid access (<a href="http://www.snort.org/search/sid/12273?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12274</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TypeLibInfo ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12274?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12275</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TypeLibInfo ActiveX function call access (<a href="http://www.snort.org/search/sid/12275?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12276</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic 6 TypeLibInfo ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12276?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2216">2007-2216</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12284</td><td class="ruletablebody" valign="top">WEB-CLIENT Excel rtWnDesk record memory corruption exploit attempt (<a href="http://www.snort.org/search/sid/12284?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3890">2007-3890</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/ms07-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12430</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer Component ActiveX clsid access (<a href="http://www.snort.org/search/sid/12430?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4821">2007-4821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25892">25892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12431</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer Component ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12431?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4821">2007-4821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25892">25892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12432</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer Component ActiveX function call access (<a href="http://www.snort.org/search/sid/12432?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4821">2007-4821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25892">25892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12433</td><td class="ruletablebody" valign="top">WEB-ACTIVEX EDraw Office Viewer Component ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12433?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4821">2007-4821</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25892">25892</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12618</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Visual Basic VBP file reference overflow attempt (<a href="http://www.snort.org/search/sid/12618?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4776">2007-4776</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/25629">25629</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13277</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware netword agent runtime detection (<a href="http://www.snort.org/search/sid/13277?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.symantec.com/fr/fr/security_response/writeup.jsp?docid=2006-042614-1031-99">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13467</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Spreadsheet ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13467?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4695">2006-4695</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4453">4453</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13468</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Office 2000 and 2002 Web Components Data Source Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13468?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1201">2007-1201</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4449">4449</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS02-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13469</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Word ole stream memory corruption attempt (<a href="http://www.snort.org/search/sid/13469?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0109">2008-0109</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13556</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker kword interkey runtime detection - search traffic 1 (<a href="http://www.snort.org/search/sid/13556?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.noadware.net/research/index2.php?item_id=2656&amp;item_name=Kword.InterKey">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13557</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker kword interkey runtime detection - search traffic 2 (<a href="http://www.snort.org/search/sid/13557?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.noadware.net/research/index2.php?item_id=2656&amp;item_name=Kword.InterKey">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13558</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker kword interkey runtime detection - log user info (<a href="http://www.snort.org/search/sid/13558?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.noadware.net/research/index2.php?item_id=2656&amp;item_name=Kword.InterKey">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13569</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel macro validation arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/13569?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0081">2008-0081</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13580</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components remote code execution attempt ActiveX clsid access (<a href="http://www.snort.org/search/sid/13580?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4695">2006-4695</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13581</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components remote code execution attempt ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13581?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4695">2006-4695</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-017.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13958</td><td class="ruletablebody" valign="top">WEB-CLIENT WordPerfect Graphics file invalid RLE buffer overflow attempt (<a href="http://www.snort.org/search/sid/13958?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3460">2008-3460</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms08-044.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15089</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Charts ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15089?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4256">2008-4256</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15091</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Charts ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15091?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4256">2008-4256</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15093</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic DataGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15093?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4252">2008-4252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15095</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic DataGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15095?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4252">2008-4252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15097</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic FlexGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15097?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4253">2008-4253</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15099</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic FlexGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15099?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4253">2008-4253</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15101</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Hierarchical FlexGrid ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15101?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4254">2008-4254</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15103</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Hierarchical FlexGrid ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15103?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4254">2008-4254</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15119</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Winsock ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15119?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4251">2008-4251</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15121</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Visual Basic Winsock ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15121?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4251">2008-4251</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-070.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15539</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Office Excel Formula record remote code execution attempt (<a href="http://www.snort.org/search/sid/15539?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0560">2009-0560</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15575</td><td class="ruletablebody" valign="top">WEB-CLIENT WordPerfect file download (<a href="http://www.snort.org/search/sid/15575?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.corelconnected.com/html/files/WPFF_%21DocumentStructure.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15686</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 10 Spreadsheet ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15686?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2496">2009-2496</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15688</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 10 Spreadsheet ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15688?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2496">2009-2496</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15690</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 11 Spreadsheet ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15690?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15692</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components 11 Spreadsheet ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15692?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15855</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Spreadsheet 10.0 ActiveX function call access (<a href="http://www.snort.org/search/sid/15855?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15856</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Spreadsheet 10.0 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/15856?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1136">2009-1136</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15858</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components Spreadsheet ActiveX clsid access (<a href="http://www.snort.org/search/sid/15858?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1534">2009-1534</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15859</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Office Web Components Spreadsheet ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15859?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1534">2009-1534</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16059</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Excel malformed file format parsing code execution attempt  (<a href="http://www.snort.org/search/sid/16059?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0028">2006-0028</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-012.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16228</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel malformed StartObject record arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/16228?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3134">2009-3134</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-067.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16650</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel ExternName record stack buffer overflow attempt - 1 (<a href="http://www.snort.org/search/sid/16650?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1249">2010-1249</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16651</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel ExternName record stack buffer overflow attempt - 2 (<a href="http://www.snort.org/search/sid/16651?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1249">2010-1249</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16652</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel ExternName record stack buffer overflow attempt - 3 (<a href="http://www.snort.org/search/sid/16652?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1249">2010-1249</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16653</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel ExternName record stack buffer overflow attempt - 4 (<a href="http://www.snort.org/search/sid/16653?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1249">2010-1249</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16654</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel undocumented Publisher record heap buffer overflow attempt (<a href="http://www.snort.org/search/sid/16654?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1250">2010-1250</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16655</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel Lbl record stack overflow attempt (<a href="http://www.snort.org/search/sid/16655?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1251">2010-1251</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16656</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel BIFF5 ExternSheet record stack overflow attempt (<a href="http://www.snort.org/search/sid/16656?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1252">2010-1252</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16657</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel DBQueryExt record memory corruption attempt (<a href="http://www.snort.org/search/sid/16657?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1253">2010-1253</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17134</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Excel out-of-bounds structure read memory corruption attempt (<a href="http://www.snort.org/search/sid/17134?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2562">2010-2562</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms10-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17388</td><td class="ruletablebody" valign="top">WEB-CLIENT OpenOffice EMF file EMR record parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/17388?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2238">2008-2238</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.openoffice.org/security/cves/CVE-2008-2238.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17532</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Excel TXO and OBJ Records Parsing Stack Memory Corruption (<a href="http://www.snort.org/search/sid/17532?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4265">2008-4265</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/32618">32618</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17708</td><td class="ruletablebody" valign="top">EXPLOIT VNC password request URL buffer overflow attempt (<a href="http://www.snort.org/search/sid/17708?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1652">2006-1652</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17378">17378</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18049</td><td class="ruletablebody" valign="top">PHISHING-SPAM word.onlinephilbert42f.ru known spam email attempt (<a href="http://www.snort.org/search/sid/18049?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">policy-violation</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="320"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client / Browser</div></p><span class="group"># of attack rules in this group: 246</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3686</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Content Advisor memory corruption attempt (<a href="http://www.snort.org/search/sid/3686?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0555">2005-0555</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3814</td><td class="ruletablebody" valign="top">WEB-CLIENT IE javaprxy.dll COM access (<a href="http://www.snort.org/search/sid/3814?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2087">2005-2087</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14087">14087</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.osvdb.org/displayvuln.php?osvdb_id=17680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4169</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Active Setup ActiveX Object Access (<a href="http://www.snort.org/search/sid/4169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/667">667</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS99-037.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4198</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Blnmgrps.dll ActiveX Object Access (<a href="http://www.snort.org/search/sid/4198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4199</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Blnmgrps.dll ActiveX Object Access (<a href="http://www.snort.org/search/sid/4199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4210</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Msb1geen.dll ActiveX Object Access (<a href="http://www.snort.org/search/sid/4210?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4222</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Outllib.dll ActiveX Object Access (<a href="http://www.snort.org/search/sid/4222?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4235</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Helper Object for Java ActiveX Object Access (<a href="http://www.snort.org/search/sid/4235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4647</td><td class="ruletablebody" valign="top">WEB-CLIENT internet explorer javascript onload overflow attempt (<a href="http://www.snort.org/search/sid/4647?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1790">2005-1790</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13799">13799</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4917</td><td class="ruletablebody" valign="top">WEB-CLIENT internet explorer javascript onload prompt obfuscation overflow attempt (<a href="http://www.snort.org/search/sid/4917?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1790">2005-1790</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13799">13799</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6509</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer mhtml uri href buffer overflow attempt (<a href="http://www.snort.org/search/sid/6509?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2766">2006-2766</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18198">18198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6510</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer mhtml uri shortcut buffer overflow attempt (<a href="http://www.snort.org/search/sid/6510?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2766">2006-2766</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18198">18198</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-043.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8019</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Address Bar ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8019?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8020</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Internet Explorer Address Bar ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8020?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8058</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla javascript navigator object access (<a href="http://www.snort.org/search/sid/8058?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3677">2006-3677</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19181">19181</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2006/mfsa2006-45.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8443</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla regular expression heap corruption attempt (<a href="http://www.snort.org/search/sid/8443?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4566">2006-4566</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20042">20042</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9628</td><td class="ruletablebody" valign="top">WEB-ACTIVEX javaprxy.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9628?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2087">2005-2087</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14087">14087</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.osvdb.org/displayvuln.php?osvdb_id=17680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9843</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Acrobat Plugin JavaScript parameter double free attempt (<a href="http://www.snort.org/search/sid/9843?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0046">2007-0046</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa07-01.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10062</td><td class="ruletablebody" valign="top">WEB-CLIENT Java Virtual Machine malformed GIF buffer overflow attempt (<a href="http://www.snort.org/search/sid/10062?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0243">2007-0243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22085">22085</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10131</td><td class="ruletablebody" valign="top">WEB-CLIENT mozilla compareTo arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/10131?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2265">2005-2265</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14242">14242</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2005/mfsa2005-50.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11257</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer colgroup tag uninitialized memory corruption vulnerability (<a href="http://www.snort.org/search/sid/11257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0944">2007-0944</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23771">23771</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11680</td><td class="ruletablebody" valign="top">MISC Sun Java web proxy sockd buffer overflow attempt (<a href="http://www.snort.org/search/sid/11680?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2881">2007-2881</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24165">24165</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sunsolve.sun.com/search/document.do?assetkey=1-26-102927-1">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11834</td><td class="ruletablebody" valign="top">WEB-MISC Internet Explorer navcancl.htm url spoofing attempt (<a href="http://www.snort.org/search/sid/11834?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1752">2007-1752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22966">22966</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12472</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sun Java Web Start ActiveX clsid access (<a href="http://www.snort.org/search/sid/12472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5019">2007-5019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25734">25734</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12473</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sun Java Web Start ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5019">2007-5019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25734">25734</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12474</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sun Java Web Start ActiveX function call access (<a href="http://www.snort.org/search/sid/12474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5019">2007-5019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25734">25734</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12475</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Sun Java Web Start ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12475?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5019">2007-5019</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25734">25734</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13834</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer request header overwrite (<a href="http://www.snort.org/search/sid/13834?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1544">2008-1544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-031.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13838</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox IFRAME style change handling code execution (<a href="http://www.snort.org/search/sid/13838?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1236">2008-1236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28448">28448</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2008/mfsa2008-15.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13960</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer static text range overflow attempt (<a href="http://www.snort.org/search/sid/13960?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2255">2008-2255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13961</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer table layout access violation vulnerability (<a href="http://www.snort.org/search/sid/13961?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2258">2008-2258</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13963</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer argument validation in print preview handling vulnerability (<a href="http://www.snort.org/search/sid/13963?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2259">2008-2259</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14615</td><td class="ruletablebody" valign="top">EXPLOIT Sun Java web console format string attempt (<a href="http://www.snort.org/search/sid/14615?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1681">2007-1681</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15081</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Java Web Start xml encoding buffer overflow attempt (<a href="http://www.snort.org/search/sid/15081?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1188">2008-1188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28083">28083</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-233323-1">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15114</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer embed src buffer overflow attempt (<a href="http://www.snort.org/search/sid/15114?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4261">2008-4261</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-073.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15126</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer nested tag memory corruption attempt (<a href="http://www.snort.org/search/sid/15126?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4844">2008-4844</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32721">32721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15164</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Products SVG Layout Engine Index Parameter memory corruption attempt (<a href="http://www.snort.org/search/sid/15164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2867">2007-2867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24242">24242</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15191</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox animated PNG processing integer overflow (<a href="http://www.snort.org/search/sid/15191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4064">2008-4064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15237</td><td class="ruletablebody" valign="top">WEB-MISC Java .class file download attempt (<a href="http://www.snort.org/search/sid/15237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15238</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple QuickTime for Java toQTPointer function memory corruption attempt (<a href="http://www.snort.org/search/sid/15238?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2175">2007-2175</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23608">23608</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15300</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer EMF polyline overflow attempt (<a href="http://www.snort.org/search/sid/15300?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0081">2009-0081</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15304</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer object clone deletion memory corruption attempt (<a href="http://www.snort.org/search/sid/15304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0075">2009-0075</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15305</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer dynamic style update memory corruption attempt (<a href="http://www.snort.org/search/sid/15305?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0076">2009-0076</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15362</td><td class="ruletablebody" valign="top">WEB-CLIENT obfuscated javascript excessive fromCharCode - potential attack (<a href="http://www.snort.org/search/sid/15362?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cs.ucsb.edu/~marco/blog/2008/10/dom-based-obfuscation-in-malicious-javascript.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15363</td><td class="ruletablebody" valign="top">WEB-CLIENT Potential obfuscated javascript eval unescape attack attempt (<a href="http://www.snort.org/search/sid/15363?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.cs.ucsb.edu/~marco/blog/2008/10/dom-based-obfuscation-in-malicious-javascript.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15383</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox XBL Event Handler Tags Removal memory corruption attempt (<a href="http://www.snort.org/search/sid/15383?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5339">2007-5339</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26132">26132</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15428</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox SVG data processing memory corruption attempt (<a href="http://www.snort.org/search/sid/15428?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0771">2009-0771</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33990">33990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2009/mfsa2009-07.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15458</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer navigating between pages race condition attempt (<a href="http://www.snort.org/search/sid/15458?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0551">2009-0551</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15459</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer deleted/unitialized object memory corruption attempt (<a href="http://www.snort.org/search/sid/15459?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0552">2009-0552</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15460</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer ActiveX load/unload race condition attempt (<a href="http://www.snort.org/search/sid/15460?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0553">2009-0553</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15461</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer marquee tag onstart memory corruption (<a href="http://www.snort.org/search/sid/15461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0554">2009-0554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15482</td><td class="ruletablebody" valign="top">EXPLOIT Sun Java System sockd authentication buffer overflow attempt (<a href="http://www.snort.org/search/sid/15482?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2881">2007-2881</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15529</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer cross-domain navigation cookie stealing attempt (<a href="http://www.snort.org/search/sid/15529?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3091">2007-3091</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15678</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft DirectShow ActiveX exploit via JavaScript (<a href="http://www.snort.org/search/sid/15678?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15679</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft DirectShow ActiveX exploit via JavaScript - unicode encoding (<a href="http://www.snort.org/search/sid/15679?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15697</td><td class="ruletablebody" valign="top">WEB-CLIENT Generic javascript obfuscation attempt (<a href="http://www.snort.org/search/sid/15697?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35660">35660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15698</td><td class="ruletablebody" valign="top">WEB-CLIENT Possible generic javascript heap spray attempt (<a href="http://www.snort.org/search/sid/15698?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35660">35660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15699</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox 3.5 unicode stack overflow attempt (<a href="http://www.snort.org/search/sid/15699?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2479">2009-2479</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35707">35707</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15731</td><td class="ruletablebody" valign="top">EXPLOIT javascript deleted reference arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/15731?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1917">2009-1917</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15732</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer CSS handling memory corruption attempt (<a href="http://www.snort.org/search/sid/15732?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1919">2009-1919</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15733</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer empty table tag memory corruption attempt (<a href="http://www.snort.org/search/sid/15733?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1918">2009-1918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15880</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer popup window object tag code execution attempt (<a href="http://www.snort.org/search/sid/15880?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0838">2003-0838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15910</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer getElementById object corruption (<a href="http://www.snort.org/search/sid/15910?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2254">2008-2254</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30614">30614</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15997</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox JIT escape function memory corruption attempt (<a href="http://www.snort.org/search/sid/15997?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2477">2009-2477</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35660">35660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/443060">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15999</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla products frame comment objects manipulation memory corruption attempt (<a href="http://www.snort.org/search/sid/15999?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6504">2006-6504</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21668">21668</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16000</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Microsystems Java gif handling memory corruption attempt (<a href="http://www.snort.org/search/sid/16000?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0243">2007-0243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22085">22085</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16005</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla browsers JavaScript argument passing code execution attempt (<a href="http://www.snort.org/search/sid/16005?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0777">2007-0777</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22694">22694</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16007</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer colgroup tag uninitialized memory exploit attempt (<a href="http://www.snort.org/search/sid/16007?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0944">2007-0944</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23771">23771</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16008</td><td class="ruletablebody" valign="top">WEB-MISC Microsoft Internet Explorer 7 html object memory corruption attempt (<a href="http://www.snort.org/search/sid/16008?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0947">2007-0947</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16009</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla products overflow event handling memory corruption attempt (<a href="http://www.snort.org/search/sid/16009?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2876">2007-2876</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24376">24376</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16024</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox Javascript Function focus overflow attempt (<a href="http://www.snort.org/search/sid/16024?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1993">2006-1993</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17671">17671</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16031</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer nested object tag memory corruption attempt (<a href="http://www.snort.org/search/sid/16031?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1992">2006-1992</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17658">17658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16032</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer HTML Decoding memory corruption attempt (<a href="http://www.snort.org/search/sid/16032?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2382">2006-2382</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18309">18309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16033</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer compressed content attempt (<a href="http://www.snort.org/search/sid/16033?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3873">2006-3873</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19987">19987</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16035</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer createTextRange code execution attempt (<a href="http://www.snort.org/search/sid/16035?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1359">2006-1359</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17196">17196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16036</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Products QueryInterface method memory corruption attempt (<a href="http://www.snort.org/search/sid/16036?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0295">2006-0295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16476">16476</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16037</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla products graphics and XML features integer overflows attempt (<a href="http://www.snort.org/search/sid/16037?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0297">2006-0297</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16476">16476</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16038</td><td class="ruletablebody" valign="top">MISC Mozilla Thunderbird WYSIWIG engine filtering IFRAME JavaScript execution attempt (<a href="http://www.snort.org/search/sid/16038?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0884">2006-0884</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16770">16770</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16042</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla browsers CSS moz-binding cross domain scripting attempt (<a href="http://www.snort.org/search/sid/16042?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0496">2006-0496</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16427">16427</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16043</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer html tag memory corruption attempt (<a href="http://www.snort.org/search/sid/16043?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1188">2006-1188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17468">17468</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16044</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox CSS Letter-Spacing overflow attempt (<a href="http://www.snort.org/search/sid/16044?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1730">2006-1730</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17516">17516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16045</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer cross domain information disclosure attempt (<a href="http://www.snort.org/search/sid/16045?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3280">2006-3280</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18682">18682</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16047</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox layout frame constructor memory corruption attempt (<a href="http://www.snort.org/search/sid/16047?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5959">2007-5959</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16050</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox tag order memory corruption attempt (<a href="http://www.snort.org/search/sid/16050?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0749">2006-0749</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17516">17516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16063</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer isindex buffer overflow attempt (<a href="http://www.snort.org/search/sid/16063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0076">2008-0076</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27668">27668</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-010.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16064</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS internet explorer onBeforeUnload address bar spoofing attempt (<a href="http://www.snort.org/search/sid/16064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3826">2007-3826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24911">24911</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16065</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS internet explorer location.replace memory corruption attempt (<a href="http://www.snort.org/search/sid/16065?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5347">2007-5347</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26427">26427</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-069.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16067</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer DOM object cache management memory corruption attempt (<a href="http://www.snort.org/search/sid/16067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5344">2007-5344</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16142</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox PKCS11 module installation code execution attempt (<a href="http://www.snort.org/search/sid/16142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3076">2009-3076</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36343">36343</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16145</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple Safari Webkit floating point buffer overflow attempt (<a href="http://www.snort.org/search/sid/16145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2195">2009-2195</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36023">36023</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16149</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer data stream header remote code execution attempt (<a href="http://www.snort.org/search/sid/16149?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1547">2009-1547</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16150</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer variant argument validation remote code execution attempt (<a href="http://www.snort.org/search/sid/16150?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2529">2009-2529</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16151</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer unitialized or deleted object access attempt (<a href="http://www.snort.org/search/sid/16151?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2530">2009-2530</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16152</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer table layout unitialized or deleted object access attempt (<a href="http://www.snort.org/search/sid/16152?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2531">2009-2531</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16169</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer dynamic style update memory corruption attempt (<a href="http://www.snort.org/search/sid/16169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0076">2009-0076</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16284</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox ClearTextRun exploit attempt (<a href="http://www.snort.org/search/sid/16284?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1313">2009-1313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34743">34743</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16288</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Runtime AWT setDiffICM stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16288?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3869">2009-3869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36881">36881</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16291</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Network Security Services regexp heap overflow attempt (<a href="http://www.snort.org/search/sid/16291?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2404">2009-2404</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35891">35891</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16317</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer mouse move during refresh memory corruption attempt (<a href="http://www.snort.org/search/sid/16317?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3673">2009-3673</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16319</td><td class="ruletablebody" valign="top">WEB-CLIENT Safari-IE SearchPath blended threat attempt (<a href="http://www.snort.org/search/sid/16319?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2540">2008-2540</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-015.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16326</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer 8 DOM memory corruption attempt (<a href="http://www.snort.org/search/sid/16326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0246">2010-0246</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16339</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer object clone deletion memory corruption attempt - obfuscated (<a href="http://www.snort.org/search/sid/16339?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0075">2009-0075</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16344</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox top-level script object offset calculation memory corruption attempt (<a href="http://www.snort.org/search/sid/16344?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3073">2009-3073</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36343">36343</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16347</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox browser engine memory corruption attempt (<a href="http://www.snort.org/search/sid/16347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3382">2009-3382</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36866">36866</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16367</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer invalid object access memory corruption attempt (<a href="http://www.snort.org/search/sid/16367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0249">2010-0249</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16369</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer deleted object access memory corruption attempt - public exploit (<a href="http://www.snort.org/search/sid/16369?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0249">2010-0249</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16376</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer onPropertyChange deleteTable memory corruption attempt (<a href="http://www.snort.org/search/sid/16376?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0244">2010-0244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16377</td><td class="ruletablebody" valign="top">EXPLOIT Internet Explorer DOM mergeAttributes memory corruption attempt (<a href="http://www.snort.org/search/sid/16377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0247">2010-0247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16392</td><td class="ruletablebody" valign="top">WEB-MISC Sun Java System Web Server 7.0u7 authorization digest heap overflow (<a href="http://www.snort.org/search/sid/16392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0387">2010-0387</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37896">37896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16426</td><td class="ruletablebody" valign="top">WEB-MISC Sun Java System Web Server 7.0 WebDAV format string exploit attempt - PROPFIND method (<a href="http://www.snort.org/search/sid/16426?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0388">2010-0388</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37910">37910</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16427</td><td class="ruletablebody" valign="top">WEB-MISC Sun Java System Web Server 7.0 WebDAV format string exploit attempt - LOCK method (<a href="http://www.snort.org/search/sid/16427?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0388">2010-0388</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37910">37910</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16442</td><td class="ruletablebody" valign="top">BOTNET-CNC Possible Zeus User-Agent - Mozilla (<a href="http://www.snort.org/search/sid/16442?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://en.wikipedia.org/wiki/Zeus_(trojan_horse)">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16482</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer userdata behavior memory corruption attempt (<a href="http://www.snort.org/search/sid/16482?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0806">2010-0806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/980182">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16492</td><td class="ruletablebody" valign="top">WEB-CLIENT Safari inline text box use after free attempt (<a href="http://www.snort.org/search/sid/16492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0049">2010-0049</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16501</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox WOFF font processing integer overflow attempt - TrueType (<a href="http://www.snort.org/search/sid/16501?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1028">2010-1028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/38298">38298</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/964549">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16502</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox WOFF font processing integer overflow attempt - CFF-based (<a href="http://www.snort.org/search/sid/16502?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1028">2010-1028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/38298">38298</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/964549">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16503</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer event handling remote code execution attempt (<a href="http://www.snort.org/search/sid/16503?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0267">2010-0267</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16504</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer 7 encoded content handling exploit attempt (<a href="http://www.snort.org/search/sid/16504?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0488">2010-0488</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16509</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer designMode-enabled information disclosure attempt (<a href="http://www.snort.org/search/sid/16509?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0494">2010-0494</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16547</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Java Web Start ActiveX launch command by CLSID (<a href="http://www.snort.org/search/sid/16547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16548</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Java Web Start ActiveX launch command by JavaScript CLSID (<a href="http://www.snort.org/search/sid/16548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16549</td><td class="ruletablebody" valign="top">WEB-CLIENT Oracle JRE Java Platform SE and Java Deployment Toolkit plugins code execution attempt - npruntime-scriptable-plugin (<a href="http://www.snort.org/search/sid/16549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16550</td><td class="ruletablebody" valign="top">WEB-CLIENT Oracle JRE Java Platform SE and Java Deployment Toolkit plugins code execution attempt - java-deployment-toolkit (<a href="http://www.snort.org/search/sid/16550?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16554</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Acrobat JavaScript getIcon method buffer overflow attempt (<a href="http://www.snort.org/search/sid/16554?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0927">2009-0927</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34169">34169</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16584</td><td class="ruletablebody" valign="top">WEB-CLIENT Java Web Start arbitrary command execution attempt - Internet Explorer (<a href="http://www.snort.org/search/sid/16584?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16585</td><td class="ruletablebody" valign="top">WEB-CLIENT Java Web Start arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/16585?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16592</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Opera asynchronous document modifications attempted memory corruption (<a href="http://www.snort.org/search/sid/16592?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.opera.com/support/kb/view/953/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16602</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft DirectShow 3 ActiveX exploit via JavaScript (<a href="http://www.snort.org/search/sid/16602?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0015">2008-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-032.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16605</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer nested SPAN tag memory corruption attempt (<a href="http://www.snort.org/search/sid/16605?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4844">2008-4844</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32721">32721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16635</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Internet Explorer 8 Developer Tool ActiveX clsid access (<a href="http://www.snort.org/search/sid/16635?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0811">2010-0811</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16637</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer security zone restriction bypass attempt (<a href="http://www.snort.org/search/sid/16637?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0255">2010-0255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-035.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16658</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer 8 cross-site scripting attempt (<a href="http://www.snort.org/search/sid/16658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1257">2010-1257</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-035.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16659</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer style sheet array memory corruption attempt (<a href="http://www.snort.org/search/sid/16659?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1262">2010-1262</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-035.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16666</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple Safari window.parent.close unspecified remote code execution vulnerability (<a href="http://www.snort.org/search/sid/16666?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1939">2010-1939</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39990">39990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/39670">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16667</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Google Chrome GURL cross origin bypass attempt - 1 (<a href="http://www.snort.org/search/sid/16667?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1663">2010-1663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39813">39813</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16668</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Google Chrome GURL cross origin bypass attempt - 2 (<a href="http://www.snort.org/search/sid/16668?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1663">2010-1663</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39813">39813</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16690</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer createTextRange code execution attempt (<a href="http://www.snort.org/search/sid/16690?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1359">2006-1359</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17196">17196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16716</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Java Web Start Splashscreen PNG processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/16716?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1097">2009-1097</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34240">34240</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17058</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Trojan-Downloader.JS.Agent.ewh Javascript download attempt (<a href="http://www.snort.org/search/sid/17058?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.virustotal.com/analisis/68b650e4f6c6e13c335a270ba5c3db3dc84012ec18c71841fcbbcb421000dec5-1262969947">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17109</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Web Console logging functionality format string exploit attempt (<a href="http://www.snort.org/search/sid/17109?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1681">2007-1681</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23539">23539</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17132</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer invalid object access attempt (<a href="http://www.snort.org/search/sid/17132?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2560">2010-2560</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17136</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer 6 race condition exploit attempt (<a href="http://www.snort.org/search/sid/17136?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2558">2010-2558</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17140</td><td class="ruletablebody" valign="top">WEB-MISC OpenView Network Node Manager OvJavaLocale buffer overflow attempt (<a href="http://www.snort.org/search/sid/17140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2709">2010-2709</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/42154">42154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17165</td><td class="ruletablebody" valign="top">WEB-CLIENT Opera browser document writing uninitialized memory access attempt (<a href="http://www.snort.org/search/sid/17165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1728">2010-1728</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39855">39855</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17166</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla multiple products JavaScript string replace buffer overflow attempt (<a href="http://www.snort.org/search/sid/17166?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3075">2009-3075</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36343">36343</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17212</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox JavaScript eval arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/17212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1532">2005-1532</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/15528/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17213</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Chrome Page Loading Restriction Bypass attempt (<a href="http://www.snort.org/search/sid/17213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2706">2005-2706</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/16911/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17236</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox nsPropertyTable PropertyList memory corruption attempt (<a href="http://www.snort.org/search/sid/17236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3070">2009-3070</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://secunia.com/advisories/36671/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17245</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox image dragging exploit attempt (<a href="http://www.snort.org/search/sid/17245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0230">2005-0230</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17258</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox XUL tree element code execution attempt (<a href="http://www.snort.org/search/sid/17258?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1044">2009-1044</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34181">34181</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17260</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox Javascript contentWindow in an iframe exploit attempt (<a href="http://www.snort.org/search/sid/17260?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1993">2006-1993</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17671">17671</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17261</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer createTextRange code execution attempt (<a href="http://www.snort.org/search/sid/17261?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1359">2006-1359</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17196">17196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17262</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer createTextRange code execution attempt (<a href="http://www.snort.org/search/sid/17262?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1359">2006-1359</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17196">17196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17263</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer createTextRange code execution attempt (<a href="http://www.snort.org/search/sid/17263?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1359">2006-1359</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17196">17196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17265</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox plugin access control bypass attempt (<a href="http://www.snort.org/search/sid/17265?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0527">2005-0527</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12655">12655</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17268</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox sidebar panel arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/17268?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0402">2005-0402</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12884">12884</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17355</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer JPEG Decoder Vulnerabilities attempt (<a href="http://www.snort.org/search/sid/17355?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2308">2005-2308</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14282">14282</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17360</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox XBM image processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/17360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2701">2005-2701</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14916">14916</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17378</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Animated PNG Processing integer overflow (<a href="http://www.snort.org/search/sid/17378?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4064">2008-4064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17379</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Animated PNG Processing integer overflow (<a href="http://www.snort.org/search/sid/17379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4064">2008-4064</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17389</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mozilla firefox DOMNodeRemoved attack attempt (<a href="http://www.snort.org/search/sid/17389?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2779">2006-2779</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18228">18228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17392</td><td class="ruletablebody" valign="top">SHELLCODE JavaScript var shellcode (<a href="http://www.snort.org/search/sid/17392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17393</td><td class="ruletablebody" valign="top">SHELLCODE JavaScript var heapspray (<a href="http://www.snort.org/search/sid/17393?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">shellcode-detect</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17395</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Web Start Splashscreen GIF decoding buffer overflow attempt (<a href="http://www.snort.org/search/sid/17395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2086">2008-2086</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17398</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Javascript array.splice memory corruption attempt (<a href="http://www.snort.org/search/sid/17398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0773">2009-0773</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33990">33990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17399</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Javascript array.splice memory corruption attempt (<a href="http://www.snort.org/search/sid/17399?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0773">2009-0773</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33990">33990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17400</td><td class="ruletablebody" valign="top">WEB-CLIENT rename of JavaScript unescape function - likely malware obfuscation (<a href="http://www.snort.org/search/sid/17400?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17401</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer nested tag memory corruption attempt - unescaped (<a href="http://www.snort.org/search/sid/17401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4844">2008-4844</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32721">32721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17402</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer nested tag memory corruption attempt (<a href="http://www.snort.org/search/sid/17402?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4844">2008-4844</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32721">32721</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms08-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17411</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer CDF cross-domain scripting attempt (<a href="http://www.snort.org/search/sid/17411?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0056">2005-0056</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12427">12427</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17414</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox Javascript Engine Information Disclosure attempt (<a href="http://www.snort.org/search/sid/17414?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0989">2005-0989</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12998">12998</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17415</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox Javascript Engine Information Disclosure attempt (<a href="http://www.snort.org/search/sid/17415?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0989">2005-0989</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12998">12998</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17424</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox IconURL Arbitrary Javascript Execution attempt (<a href="http://www.snort.org/search/sid/17424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1477">2005-1477</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13544">13544</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17434</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Unicode sequence handling stack corruption attempt (<a href="http://www.snort.org/search/sid/17434?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2702">2005-2702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14918">14918</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17462</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer marquee object handling memory corruption attempt (<a href="http://www.snort.org/search/sid/17462?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0554">2009-0554</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17463</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer File Download Dialog Box Manipulation (<a href="http://www.snort.org/search/sid/17463?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2829">2005-2829</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15823">15823</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17471</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Acrobat JavaScript getIcon method buffer overflow attempt (<a href="http://www.snort.org/search/sid/17471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0927">2009-0927</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34169">34169</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17472</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Acrobat JavaScript getIcon method buffer overflow attempt (<a href="http://www.snort.org/search/sid/17472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0927">2009-0927</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34169">34169</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17482</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla NNTP URL Handling Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17482?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1316">2004-1316</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12131">12131</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17487</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Script Engine Stack Exhaustion Denial of Service attempt (<a href="http://www.snort.org/search/sid/17487?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0753">2006-0753</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16687">16687</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17519</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox UTF-8 URL Handling Stack Buffer Overflow (<a href="http://www.snort.org/search/sid/17519?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0016">2008-0016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31346">31346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17522</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Runtime Environment Pack200 Decompression Integer Overflow (<a href="http://www.snort.org/search/sid/17522?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4726">2008-4726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31879">31879</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17549</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer Error Handling Code Execution (<a href="http://www.snort.org/search/sid/17549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3892">2007-3892</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25916">25916</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17554</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer DOM object cache management memory corruption attempt (<a href="http://www.snort.org/search/sid/17554?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5344">2007-5344</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26817">26817</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17557</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX operation parameter overflow (<a href="http://www.snort.org/search/sid/17557?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30986">30986</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5028061.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17562</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Runtime Environment Pack200 Decompression Integer Overflow attempt (<a href="http://www.snort.org/search/sid/17562?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5352">2008-5352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32608">32608</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17563</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Runtime Environment JAR File Processing Stack Buffer Overflow (<a href="http://www.snort.org/search/sid/17563?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5354">2008-5354</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32608">32608</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17566</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer 7 Event Handler Memory Corruption (<a href="http://www.snort.org/search/sid/17566?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1530">2009-1530</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35224">35224</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17570</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox IFRAME style change handling code execution (<a href="http://www.snort.org/search/sid/17570?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1236">2008-1236</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28448">28448</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2008/mfsa2008-15.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17580</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer span tag memory corruption attempt (<a href="http://www.snort.org/search/sid/17580?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1188">2006-1188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17468">17468</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17581</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox tag order memory corruption attempt (<a href="http://www.snort.org/search/sid/17581?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0749">2006-0749</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17516">17516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17585</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer possible javascript onunload event memory corruption (<a href="http://www.snort.org/search/sid/17585?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1094">2007-1094</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22678">22678</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17586</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Java Web Start malicious parameter value (<a href="http://www.snort.org/search/sid/17586?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1029">2004-1029</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11726">11726</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17588</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Internet Explorer Install Engine ActiveX clsid access (<a href="http://www.snort.org/search/sid/17588?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0216">2004-0216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11366">11366</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS04-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17589</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Internet Explorer Install Engine ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17589?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0216">2004-0216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11366">11366</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS04-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17601</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox file type memory corruption attempt (<a href="http://www.snort.org/search/sid/17601?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5016">2008-5016</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32281">32281</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2008/mfsa2008-52.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17603</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox file type memory corruption attempt (<a href="http://www.snort.org/search/sid/17603?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5021">2008-5021</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32281">32281</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2008/mfsa2008-55.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17604</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Java AWT ConvolveOp memory corruption attempt (<a href="http://www.snort.org/search/sid/17604?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21675">21675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sunsolve.sun.com/search/document.do?assetkey=1-26-102729-1">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17609</td><td class="ruletablebody" valign="top">WEB-MISC Sun Java Web Server Webdav Stack Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17609?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0361">2010-0361</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37874">37874</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17613</td><td class="ruletablebody" valign="top">WEB-MISC Mozilla Firefox browser engine  memory corruption attempt (<a href="http://www.snort.org/search/sid/17613?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1392">2009-1392</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35326">35326</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17622</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer object reference memory corruption attempt (<a href="http://www.snort.org/search/sid/17622?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3902">2007-3902</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26506">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17623</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Runtime Environment Type1 Font parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/17623?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1099">2009-1099</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34240">34240</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17624</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java Runtime Environment Type1 Font parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/17624?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1099">2009-1099</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34240">34240</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17628</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Microsystems Java gif handling memory corruption attempt (<a href="http://www.snort.org/search/sid/17628?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0243">2007-0243</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22085">22085</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17629</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox Chrome Page Loading Restriction Bypass attempt (<a href="http://www.snort.org/search/sid/17629?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2706">2005-2706</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14920">14920</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17630</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla multiple products CSSValue array memory corruption attempt (<a href="http://www.snort.org/search/sid/17630?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2785">2008-2785</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29802">29802</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17631</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Java Web Start JNLP java-vm-args buffer overflow attempt (<a href="http://www.snort.org/search/sid/17631?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3111">2008-3111</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30148">30148</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17642</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox ConstructFrame with floating first-letter memory corruption attempt (<a href="http://www.snort.org/search/sid/17642?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2462">2009-2462</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35765">35765</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17644</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer object clone deletion memory corruption attempt (<a href="http://www.snort.org/search/sid/17644?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0075">2009-0075</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-002.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17645</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer CSS strings parsing memory corruption attempt (<a href="http://www.snort.org/search/sid/17645?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0943">2007-0943</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17660</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Java Web Start arbitrary command execution attempt (<a href="http://www.snort.org/search/sid/17660?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1423">2010-1423</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/39346">39346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17685</td><td class="ruletablebody" valign="top">EXPLOITS Internet Explorer invalid pointer memory corruption attempt (<a href="http://www.snort.org/search/sid/17685?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0806">2010-0806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17686</td><td class="ruletablebody" valign="top">EXPLOITS Internet Explorer invalid pointer memory corruption attempt (<a href="http://www.snort.org/search/sid/17686?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0806">2010-0806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17687</td><td class="ruletablebody" valign="top">EXPLOITS Internet Explorer invalid pointer memory corruption attempt (<a href="http://www.snort.org/search/sid/17687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0806">2010-0806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17688</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer userdata behavior memory corruption attempt (<a href="http://www.snort.org/search/sid/17688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0806">2010-0806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/980182">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17689</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer userdata behavior memory corruption attempt (<a href="http://www.snort.org/search/sid/17689?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0806">2010-0806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.microsoft.com/kb/980182">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17692</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer ExecWB security zone bypass attempt (<a href="http://www.snort.org/search/sid/17692?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2259">2008-2259</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30612">30612</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17703</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer popup title bar spoofing attempt (<a href="http://www.snort.org/search/sid/17703?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0500">2005-0500</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12602">12602</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17709</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer EMBED element memory corruption attempt (<a href="http://www.snort.org/search/sid/17709?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0553">2009-0553</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34424">34424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17719</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox ClearTextRun exploit attempt (<a href="http://www.snort.org/search/sid/17719?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1313">2009-1313</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34743">34743</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17720</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer static text range overflow attempt (<a href="http://www.snort.org/search/sid/17720?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2255">2008-2255</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17726</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Internet Explorer address bar spoofing attempt (<a href="http://www.snort.org/search/sid/17726?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1626">2006-1626</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17404">17404</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17729</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer EMBED element memory corruption attempt (<a href="http://www.snort.org/search/sid/17729?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0553">2009-0553</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34424">34424</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-014.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17747</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer compressed HDMX font processing integer overflow attempt (<a href="http://www.snort.org/search/sid/17747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1883">2010-1883</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-076.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17771</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Internet Explorer cross-domain information disclosure attempt (<a href="http://www.snort.org/search/sid/17771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3330">2010-3330</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-071.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17781</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer createTextRange code execution attempt (<a href="http://www.snort.org/search/sid/17781?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1359">2006-1359</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17196">17196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17804</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox html tag attributes memory corruption (<a href="http://www.snort.org/search/sid/17804?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3765">2010-3765</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18062</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer CSS style memory corruption attempt (<a href="http://www.snort.org/search/sid/18062?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/2458511.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18077</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla products CSS rendering out-of-bounds array write attempt (<a href="http://www.snort.org/search/sid/18077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1739">2006-1739</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/24660">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18078</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla products CSS rendering out-of-bounds array write attempt (<a href="http://www.snort.org/search/sid/18078?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1739">2006-1739</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/24660">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18102</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader invalid PDF JavaScript extension call (<a href="http://www.snort.org/search/sid/18102?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-4091">2010-4091</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-28.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18167</td><td class="ruletablebody" valign="top">WEB-CLIENT Possible generic javascript heap spray attempt (<a href="http://www.snort.org/search/sid/18167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35660">35660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18168</td><td class="ruletablebody" valign="top">WEB-CLIENT Possible generic javascript heap spray attempt (<a href="http://www.snort.org/search/sid/18168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35660">35660</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18174</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer CSS memory corruption attempt (<a href="http://www.snort.org/search/sid/18174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0842">2004-0842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10816">10816</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18175</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer CSS memory corruption attempt (<a href="http://www.snort.org/search/sid/18175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0842">2004-0842</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10816">10816</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18186</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla products -moz-grid and -moz-grid-group display styles code execution attempt (<a href="http://www.snort.org/search/sid/18186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1738">2006-1738</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17516">17516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18187</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox InstallTrigger.install memory corruption attempt (<a href="http://www.snort.org/search/sid/18187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1790">2006-1790</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17516">17516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18196</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer CSS importer use-after-free attempt (<a href="http://www.snort.org/search/sid/18196?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3971">2010-3971</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vupen.com/english/advisories/2010/3156">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18216</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer 6 #default#anim attempt (<a href="http://www.snort.org/search/sid/18216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3343">2010-3343</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-090.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18217</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer 8 select element execution attempt (<a href="http://www.snort.org/search/sid/18217?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3345">2010-3345</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-090.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18218</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer html time manipulation attempt (<a href="http://www.snort.org/search/sid/18218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3346">2010-3346</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-090.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18239</td><td class="ruletablebody" valign="top">WEB-CLIENT known malicious JavaScript decryption routine (<a href="http://www.snort.org/search/sid/18239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18240</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer CSS importer use-after-free attempt (<a href="http://www.snort.org/search/sid/18240?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3971">2010-3971</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vupen.com/english/advisories/2010/3156">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18244</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Java browswer plugin docbase overflow attempt (<a href="http://www.snort.org/search/sid/18244?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3552">2010-3552</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/44023">44023</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/69054">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18245</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Sun Java browswer plugin docbase overflow attempt (<a href="http://www.snort.org/search/sid/18245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3552">2010-3552</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/44023">44023</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://osvdb.org/show/osvdb/69054">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18250</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla products EscapeAttributeValue integer overflow attempt (<a href="http://www.snort.org/search/sid/18250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0297">2006-0297</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16476">16476</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 67</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1667</td><td class="ruletablebody" valign="top">WEB-MISC cross site scripting HTML Image tag set to javascript attempt (<a href="http://www.snort.org/search/sid/1667?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0902">2002-0902</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4858">4858</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1840</td><td class="ruletablebody" valign="top">WEB-CLIENT Javascript document.domain attempt (<a href="http://www.snort.org/search/sid/1840?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0815">2002-0815</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5346">5346</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1841</td><td class="ruletablebody" valign="top">WEB-CLIENT Javascript URL host spoofing attempt (<a href="http://www.snort.org/search/sid/1841?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/5293">5293</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1874</td><td class="ruletablebody" valign="top">WEB-MISC Oracle Java Process Manager access (<a href="http://www.snort.org/search/sid/1874?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10851">10851</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3534</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla GIF single packet heap overflow - NETSCAPE2.0 (<a href="http://www.snort.org/search/sid/3534?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0399">2005-0399</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12881">12881</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17605">17605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3536</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla GIF multipacket heap overflow - NETSCAPE2.0 (<a href="http://www.snort.org/search/sid/3536?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0399">2005-0399</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12881">12881</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17605">17605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3679</td><td class="ruletablebody" valign="top">WEB-CLIENT Web-client IFRAME src javascript code execution (<a href="http://www.snort.org/search/sid/3679?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2939">2008-2939</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/30560">30560</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18243">18243</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3689</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer tRNS overflow attempt (<a href="http://www.snort.org/search/sid/3689?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1211">2005-1211</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13941">13941</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18490">18490</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4916</td><td class="ruletablebody" valign="top">WEB-CLIENT internet explorer javascript onload document.write obfuscation overflow attempt (<a href="http://www.snort.org/search/sid/4916?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1790">2005-1790</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13799">13799</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6502</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla GIF single packet heap overflow - ANIMEXTS1.0 (<a href="http://www.snort.org/search/sid/6502?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0399">2005-0399</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12881">12881</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17605">17605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6503</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla GIF multipacket heap overflow - ANIMEXTS1.0 (<a href="http://www.snort.org/search/sid/6503?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0399">2005-0399</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12881">12881</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=17605">17605</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7071</td><td class="ruletablebody" valign="top">WEB-MISC encoded cross site scripting HTML Image tag set to javascript attempt (<a href="http://www.snort.org/search/sid/7071?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2002-0902">2002-0902</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/4858">4858</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11000</td><td class="ruletablebody" valign="top">ORACLE dbms_snap_internal.delete_refresh_operations buffer overflow attempt (<a href="http://www.snort.org/search/sid/11000?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2126">2007-2126</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23532">23532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11001</td><td class="ruletablebody" valign="top">ORACLE dbms_snap_internal.delete_refresh_operations buffer overflow attempt (<a href="http://www.snort.org/search/sid/11001?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2126">2007-2126</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23532">23532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11002</td><td class="ruletablebody" valign="top">ORACLE dbms_snap_internal.generate_refresh_operations buffer overflow attempt (<a href="http://www.snort.org/search/sid/11002?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2126">2007-2126</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23532">23532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11003</td><td class="ruletablebody" valign="top">ORACLE dbms_snap_internal.generate_refresh_operations buffer overflow attempt (<a href="http://www.snort.org/search/sid/11003?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2126">2007-2126</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23532">23532</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuapr2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11966</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer CSS tag memory corruption attempt (<a href="http://www.snort.org/search/sid/11966?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1750">2007-1750</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24423">24423</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12014</td><td class="ruletablebody" valign="top">WEB-MISC Internet Explorer navcancl.htm url spoofing attempt (<a href="http://www.snort.org/search/sid/12014?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1499">2007-1499</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22966">22966</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS07-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12593</td><td class="ruletablebody" valign="top">EXPLOIT Firefox Quicktime chrome exploit (<a href="http://www.snort.org/search/sid/12593?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5045">2007-5045</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13840</td><td class="ruletablebody" valign="top">EXPLOIT Borland Interbase service attach operation buffer overflow (<a href="http://www.snort.org/search/sid/13840?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5243">2007-5243</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13841</td><td class="ruletablebody" valign="top">EXPLOIT Borland Interbase create operation buffer overflow (<a href="http://www.snort.org/search/sid/13841?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5243">2007-5243</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13842</td><td class="ruletablebody" valign="top">EXPLOIT Borland Interbase operation buffer overflow (<a href="http://www.snort.org/search/sid/13842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5243">2007-5243</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13974</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer XHTML element memory corruption attempt (<a href="http://www.snort.org/search/sid/13974?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2257">2008-2257</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-045.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14037</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Novell iPrint ActiveX operation or printer-url parameter overflow attempt (<a href="http://www.snort.org/search/sid/14037?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2908">2008-2908</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/29736">29736</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15531</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Unexpected method call remote code execution attempt (<a href="http://www.snort.org/search/sid/15531?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1141">2009-1141</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15538</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer onreadystatechange memory corruption attempt (<a href="http://www.snort.org/search/sid/15538?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1531">2009-1531</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-019.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15933</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer URL canonicalization address bar spoofing attempt (<a href="http://www.snort.org/search/sid/15933?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-1025">2003-1025</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms04-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16010</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer Javascript Page update race condition attempt (<a href="http://www.snort.org/search/sid/16010?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3091">2007-3091</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/24283">24283</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16011</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer CSS property method handling memory corruption attempt (<a href="http://www.snort.org/search/sid/16011?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0945">2007-0945</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/23769">23769</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16155</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer indexing service malformed parameters (<a href="http://www.snort.org/search/sid/16155?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2507">2009-2507</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-057.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16292</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla CSS value counter overflow attempt (<a href="http://www.snort.org/search/sid/16292?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2785">2008-2785</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/29802">29802</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.mozilla.org/security/announce/2008/mfsa2008-34.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16330</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer orphan DOM objects memory corruption attempt (<a href="http://www.snort.org/search/sid/16330?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3674">2009-3674</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS09-072.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16378</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer deleted object cells reference memory corruption vulnerability (<a href="http://www.snort.org/search/sid/16378?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0248">2010-0248</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16481</td><td class="ruletablebody" valign="top">WEB-CLIENT Opera Content-Length header integer overflow attempt (<a href="http://www.snort.org/search/sid/16481?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/38519">38519</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.hack0wn.com/view.php?xroot=672.0&amp;cat=exploits">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16507</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer onreadystatechange memory corruption attempt (<a href="http://www.snort.org/search/sid/16507?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0491">2010-0491</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-018.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16596</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Safari information disclosure and remote code execution attempt (<a href="http://www.snort.org/search/sid/16596?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1939">2010-1939</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://secunia.com/advisories/39670">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16631</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Safari image use after remove attempt (<a href="http://www.snort.org/search/sid/16631?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0054">2010-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/38691">38691</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href='http://"support.apple.com/kb/HT4070"'>URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16632</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Safari image use after reparent attempt (<a href="http://www.snort.org/search/sid/16632?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0054">2010-0054</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/38691">38691</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href='http://"support.apple.com/kb/HT4070"'>URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17115</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer cross domain information disclosure attempt (<a href="http://www.snort.org/search/sid/17115?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1258">2010-1258</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS10-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17129</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer use-after-free memory corruption attempt (<a href="http://www.snort.org/search/sid/17129?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2556">2010-2556</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms10-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17153</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox plugin parameter array dangling pointer exploit attempt - 1 (<a href="http://www.snort.org/search/sid/17153?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2755">2010-2755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/41933">41933</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17154</td><td class="ruletablebody" valign="top">WEB-CLIENT Mozilla Firefox plugin parameter array dangling pointer exploit attempt - 2 (<a href="http://www.snort.org/search/sid/17154?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2755">2010-2755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/41933">41933</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17216</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Safari TABLE tag with large CELLSPACING attribute exploit attempt (<a href="http://www.snort.org/search/sid/17216?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1986">2006-1986</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17634">17634</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17217</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Safari invalid FRAME tag remote code execution attempt (<a href="http://www.snort.org/search/sid/17217?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1987">2006-1987</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17634">17634</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17218</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Safari LI tag with large VALUE attribute exploit attempt (<a href="http://www.snort.org/search/sid/17218?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1988">2006-1988</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17634">17634</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17303</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer clone object memory corruption attempt (<a href="http://www.snort.org/search/sid/17303?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3903">2007-3903</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26816">26816</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17311</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer CSS import cross-domain restriction bypass attempt (<a href="http://www.snort.org/search/sid/17311?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4089">2005-4089</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15660">15660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17312</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer CSS import cross-domain restriction bypass attempt (<a href="http://www.snort.org/search/sid/17312?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4089">2005-4089</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15660">15660</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17384</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer setRequestHeader overflow attempt (<a href="http://www.snort.org/search/sid/17384?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1544">2008-1544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/28379">28379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17385</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer setRequestHeader overflow attempt (<a href="http://www.snort.org/search/sid/17385?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1544">2008-1544</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/28379">28379</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17448</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer HTTPS proxy information disclosure vulnerability (<a href="http://www.snort.org/search/sid/17448?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2830">2005-2830</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17494</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Long URL Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17494?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3869">2006-3869</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19667">19667</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17512</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Script Action Handler buffer overflow attempt (<a href="http://www.snort.org/search/sid/17512?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1245">2006-1245</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17131">17131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17513</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Script Action Handler buffer overflow attempt (<a href="http://www.snort.org/search/sid/17513?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1245">2006-1245</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17131">17131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17514</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Script Action Handler buffer overflow attempt (<a href="http://www.snort.org/search/sid/17514?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1245">2006-1245</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17131">17131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17515</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Script Action Handler buffer overflow attempt (<a href="http://www.snort.org/search/sid/17515?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1245">2006-1245</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17131">17131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17516</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Internet Explorer Script Action Handler buffer overflow attempt (<a href="http://www.snort.org/search/sid/17516?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1245">2006-1245</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/17131">17131</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17725</td><td class="ruletablebody" valign="top">WEB-CLIENT Opera file URI handling buffer overflow (<a href="http://www.snort.org/search/sid/17725?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5178">2008-5178</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/32323">32323</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17776</td><td class="ruletablebody" valign="top">WEB-CLIENT Sun Java HsbParser.getSoundBank stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/17776?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3867">2009-3867</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/36881">36881</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18132</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS malware-associated JavaScript obfuscation function (<a href="http://www.snort.org/search/sid/18132?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://labs.snort.org/docs/18132.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18170</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla Firefox and SeaMonkey onUnload event handler memory corruption attempt (<a href="http://www.snort.org/search/sid/18170?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-1092">2007-1092</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/22679">22679</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18176</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla browsers memory corruption simultaneous XPCOM events code execution attempt (<a href="http://www.snort.org/search/sid/18176?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3113">2006-3113</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19197">19197</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18177</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla browsers memory corruption simultaneous XPCOM events code execution attempt (<a href="http://www.snort.org/search/sid/18177?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3113">2006-3113</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19197">19197</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18178</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Mozilla browsers memory corruption simultaneous XPCOM events code execution attempt (<a href="http://www.snort.org/search/sid/18178?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3113">2006-3113</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/19197">19197</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18193</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer cross domain information disclosure attempt (<a href="http://www.snort.org/search/sid/18193?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3280">2006-3280</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18682">18682</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18194</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Internet Explorer cross domain information disclosure attempt (<a href="http://www.snort.org/search/sid/18194?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3280">2006-3280</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/18682">18682</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18221</td><td class="ruletablebody" valign="top">WEB-CLIENT Internet Explorer malformed table remote code execution attempt (<a href="http://www.snort.org/search/sid/18221?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3962">2010-3962</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-090.mspx">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="330"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client / Email</div></p><span class="group"># of attack rules in this group: 17</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4150</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook View OVCtl ActiveX function call access (<a href="http://www.snort.org/search/sid/4150?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0538">2001-0538</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/3026">3026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS01-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4900</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook Progress Ctl ActiveX Object Access (<a href="http://www.snort.org/search/sid/4900?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2831">2005-2831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7005</td><td class="ruletablebody" valign="top">WEB-ACTIVEX OutlookExpress.AddressBook ActiveX function call access (<a href="http://www.snort.org/search/sid/7005?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8371</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook.Application ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8371?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8372</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook.Application ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8372?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8422</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook View OVCtl ActiveX clsid access (<a href="http://www.snort.org/search/sid/8422?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0538">2001-0538</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/3026">3026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS01-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8721</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook Data Object ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8721?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8722</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook Data Object ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8722?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://metasploit.com/projects/Framework/modules/exploits/ie_createobject.pm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9668</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook Recipient Control ActiveX clsid access (<a href="http://www.snort.org/search/sid/9668?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21649">21649</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9669</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook Recipient Control ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9669?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21649">21649</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9670</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook Recipient Control ActiveX function call access (<a href="http://www.snort.org/search/sid/9670?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21649">21649</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9819</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Outlook View OVCtl ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9819?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0538">2001-0538</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/3026">3026</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS01-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9847</td><td class="ruletablebody" valign="top">WEB-CLIENT Outlook Saved Search download attempt (<a href="http://www.snort.org/search/sid/9847?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0034">2007-0034</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-003.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11236</td><td class="ruletablebody" valign="top">WEB-ACTIVEX OutlookExpress.AddressBook ActiveX clsid access (<a href="http://www.snort.org/search/sid/11236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11237</td><td class="ruletablebody" valign="top">WEB-ACTIVEX OutlookExpress.AddressBook ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/11237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11238</td><td class="ruletablebody" valign="top">WEB-ACTIVEX OutlookExpress.AddressBook ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/11238?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17296</td><td class="ruletablebody" valign="top">WEB-MISC Outlook Web Access XSRF attempt (<a href="http://www.snort.org/search/sid/17296?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3213">2010-3213</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/advisory/2401593.mspx">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 3</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13573</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Outlook arbitrary command line attempt (<a href="http://www.snort.org/search/sid/13573?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0110">2008-0110</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-015.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15947</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Outlook Web Access Cross-Site Scripting attempt (<a href="http://www.snort.org/search/sid/15947?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0563">2005-0563</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13952">13952</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16428</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Outlook Express and Windows Mail NNTP handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/16428?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3897">2007-3897</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/Bulletin/MS07-056.mspx">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="340"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client / Multimedia</div></p><span class="group"># of attack rules in this group: 292</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3471</td><td class="ruletablebody" valign="top">WEB-CLIENT iTunes playlist URL overflow attempt (<a href="http://www.snort.org/search/sid/3471?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0043">2005-0043</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12238">12238</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3473</td><td class="ruletablebody" valign="top">WEB-CLIENT RealPlayer SMIL file overflow attempt (<a href="http://www.snort.org/search/sid/3473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0455">2005-0455</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12698">12698</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4152</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Player 6.4 ActiveX Object Access (<a href="http://www.snort.org/search/sid/4152?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1110">1999-1110</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/793">793</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4158</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Player Active Movie ActiveX Object Access (<a href="http://www.snort.org/search/sid/4158?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0400">2000-0400</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1221">1221</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4678</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime movie file transfer (<a href="http://www.snort.org/search/sid/4678?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4679</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime movie file component name integer overflow multipacket attempt (<a href="http://www.snort.org/search/sid/4679?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2754">2005-2754</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15308">15308</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://docs.info.apple.com/article.html?artnum=302772">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5710</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player Plugin for Non-IE browsers buffer overflow attempt (<a href="http://www.snort.org/search/sid/5710?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0005">2006-0005</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16644">16644</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-006.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5711</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player zero length bitmap heap overflow attempt (<a href="http://www.snort.org/search/sid/5711?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0006">2006-0006</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16633">16633</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-005.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5712</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player invalid data offset bitmap heap overflow attempt (<a href="http://www.snort.org/search/sid/5712?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0006">2006-0006</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16633">16633</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-005.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6368</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware flashtrack media/spoton runtime detection - update request (<a href="http://www.snort.org/search/sid/6368?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=477">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6371</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware flashtrack media/spoton runtime detection - pop up ads (<a href="http://www.snort.org/search/sid/6371?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=477">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6505</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime fpx file SectNumMiniFAT overflow attempt (<a href="http://www.snort.org/search/sid/6505?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1249">2006-1249</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17074">17074</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6506</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime udta atom overflow attempt (<a href="http://www.snort.org/search/sid/6506?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1460">2006-1460</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17953">17953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6680</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Transform Effects ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/6680?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6681</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Transform Effects ActiveX CLSID access (<a href="http://www.snort.org/search/sid/6681?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1303">2006-1303</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-021.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7142</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ares flash downloader 2.04 runtime detection (<a href="http://www.snort.org/search/sid/7142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.download2you.com/details_page.asp?titleID=12388">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7581</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker flashbar runtime detection - user-agent (<a href="http://www.snort.org/search/sid/7581?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://data.icxo.com/htmlnews/2006/07/10/875297.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7888</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOLFlash.AOLFlash ActiveX CLSID access (<a href="http://www.snort.org/search/sid/7888?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7889</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOLFlash.AOLFlash ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/7889?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7978</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShockwaveFlash.ShockwaveFlash ActiveX clsid access (<a href="http://www.snort.org/search/sid/7978?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6244">2007-6244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb07-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7979</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShockwaveFlash.ShockwaveFlash ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/7979?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6244">2007-6244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb07-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7980</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShockwaveFlash.ShockwaveFlash.9 ActiveX function call access (<a href="http://www.snort.org/search/sid/7980?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443383/30/150/threaded">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8091</td><td class="ruletablebody" valign="top">WEB-CLIENT RealNetworks RealPlayer error message format string vulnerability attempt (<a href="http://www.snort.org/search/sid/8091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2710">2005-2710</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14945">14945</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8376</td><td class="ruletablebody" valign="top">WEB-ACTIVEX QuickTime Object ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8376?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8377</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Download Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8378</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Download Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8378?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8381</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer SMIL Download Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8381?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8382</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer SMIL Download Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8382?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8383</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RAM Download Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8383?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8384</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RAM Download Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8384?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8385</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Playback Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8385?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8386</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Playback Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8386?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8387</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RNX Download Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8388</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RNX Download Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8388?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8389</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMP Download Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8389?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8390</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMP Download Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8390?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8401</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Services DRM Storage ActiveX CLSID access (<a href="http://www.snort.org/search/sid/8401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8402</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Services DRM Storage ActiveX CLSID unicode access (<a href="http://www.snort.org/search/sid/8402?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8409</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Stream Handler ActiveX clsid access (<a href="http://www.snort.org/search/sid/8409?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8410</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Stream Handler ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/8410?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9429</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime Movie link scripting security bypass attempt (<a href="http://www.snort.org/search/sid/9429?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4965">2006-4965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20138">20138</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9430</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime Movie link file URI security bypass attempt (<a href="http://www.snort.org/search/sid/9430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4965">2006-4965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20138">20138</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9625</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player ASX file ref href buffer overflow attempt (<a href="http://www.snort.org/search/sid/9625?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6134">2006-6134</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21247">21247</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9637</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Download Manger dm.ini stack overflow attempt (<a href="http://www.snort.org/search/sid/9637?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5856">2006-5856</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21453">21453</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9641</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player ASF simple index object parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/9641?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4702">2006-4702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9642</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player ASF codec list object parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/9642?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4702">2006-4702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9643</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player ASF marker object parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/9643?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4702">2006-4702</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS06-078.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9671</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer AutoStream.AutoStream.1 ActiveX clsid access (<a href="http://www.snort.org/search/sid/9671?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6847">2006-6847</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21802">21802</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9672</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer AutoStream.AutoStream.1 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/9672?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6847">2006-6847</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21802">21802</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9673</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer AutoStream.AutoStream.1 ActiveX function call access (<a href="http://www.snort.org/search/sid/9673?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6847">2006-6847</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21802">21802</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9801</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player or Explorer Malformed RIFF File denial of service attempt (<a href="http://www.snort.org/search/sid/9801?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-6601">2006-6601</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21612">21612</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.milw0rm.com/exploits/3190">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9823</td><td class="ruletablebody" valign="top">WEB-CLIENT QuickTime RTSP URI overflow attempt (<a href="http://www.snort.org/search/sid/9823?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0015">2007-0015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21829">21829</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://applefun.blogspot.com/2007/01/moab-01-01-2007-apple-quicktime-rtsp.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9840</td><td class="ruletablebody" valign="top">WEB-CLIENT QuickTime HREF Track Detected (<a href="http://www.snort.org/search/sid/9840?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0059">2007-0059</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.apple.com/quicktime/tutorials/hreftracks.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10192</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Ierpplug.dll ActiveX clsid access (<a href="http://www.snort.org/search/sid/10192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3066">2008-3066</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26586">26586</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10193</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Ierpplug.dll ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/10193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3066">2008-3066</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26586">26586</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10194</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Ierpplug.dll ActiveX function call access (<a href="http://www.snort.org/search/sid/10194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3066">2008-3066</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26586">26586</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11180</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime movie ftyp buffer underflow (<a href="http://www.snort.org/search/sid/11180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2296">2007-2296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23652">23652</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">11267</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Photoshop PNG file handling stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/11267?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2365">2007-2365</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23698">23698</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12183</td><td class="ruletablebody" valign="top">EXPLOIT Adobe FLV long string script data buffer overflow (<a href="http://www.snort.org/search/sid/12183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3456">2007-3456</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24856">24856</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12219</td><td class="ruletablebody" valign="top">WEB-CLIENT SMIL RealPlayer wallclock parsing buffer overflow (<a href="http://www.snort.org/search/sid/12219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3410">2007-3410</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24658">24658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12742</td><td class="ruletablebody" valign="top">EXPLOIT Apple Quicktime UDP RTSP sdp type buffer overflow attempt (<a href="http://www.snort.org/search/sid/12742?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6166">2007-6166</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26549">26549</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12746</td><td class="ruletablebody" valign="top">EXPLOIT Apple QuickTime STSD atom overflow attempt (<a href="http://www.snort.org/search/sid/12746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3750">2007-3750</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26341">26341</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12757</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Quicktime uncompressed PICT stack overflow attempt (<a href="http://www.snort.org/search/sid/12757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4672">2007-4672</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26344">26344</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12766</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL ActiveX clsid access (<a href="http://www.snort.org/search/sid/12766?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12767</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/12767?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12768</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL ActiveX function call access (<a href="http://www.snort.org/search/sid/12768?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12769</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12769?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12775</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS obfuscated RealPlayer Ierpplug.dll ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/12775?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5601">2007-5601</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26586">26586</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13216</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShockwaveFlash.ShockwaveFlash ActiveX function call access (<a href="http://www.snort.org/search/sid/13216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6244">2007-6244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb07-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13217</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShockwaveFlash.ShockwaveFlash ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13217?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6244">2007-6244</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb07-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13218</td><td class="ruletablebody" valign="top">WEB-ACTIVEX ShockwaveFlash.ShockwaveFlash.9 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/archive/1/443383/30/150/threaded">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13293</td><td class="ruletablebody" valign="top">WEB-CLIENT QuickTime panorama atoms buffer overflow attempt (<a href="http://www.snort.org/search/sid/13293?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4675">2007-4675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26342">26342</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://docs.info.apple.com/article.html?artnum=306896">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13300</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash Player embedded JPG image height overflow attempt (<a href="http://www.snort.org/search/sid/13300?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6242">2007-6242</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26951">26951</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13301</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash Player embedded JPG image width overflow attempt (<a href="http://www.snort.org/search/sid/13301?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6242">2007-6242</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26951">26951</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13477</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe PDF collab.collectEmailInfo exploit attempt - compressed (<a href="http://www.snort.org/search/sid/13477?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0655">2008-0655</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27641">27641</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13478</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe PDF collab.collectEmailInfo exploit attempt (<a href="http://www.snort.org/search/sid/13478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0655">2008-0655</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27641">27641</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13515</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime user agent (<a href="http://www.snort.org/search/sid/13515?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13516</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime HTTP error response buffer overflow (<a href="http://www.snort.org/search/sid/13516?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0234">2008-0234</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/27225">27225</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13520</td><td class="ruletablebody" valign="top">EXPLOIT Winamp Ultravox streaming malicious metadata (<a href="http://www.snort.org/search/sid/13520?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0065">2008-0065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13521</td><td class="ruletablebody" valign="top">EXPLOIT Winamp Ultravox streaming malicious metadata (<a href="http://www.snort.org/search/sid/13521?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0065">2008-0065</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13603</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Download Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/13603?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13604</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Download Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13604?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13605</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RAM Download Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/13605?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13606</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RAM Download Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13606?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13607</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL Vulnerble Property ActiveX clsid access (<a href="http://www.snort.org/search/sid/13607?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13608</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL Vulnerble Property ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/13608?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13609</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL Vulnerble Property ActiveX function call access (<a href="http://www.snort.org/search/sid/13609?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13610</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMOC3260.DLL Vulnerble Property ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/13610?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13820</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash player SWF scene and label data memory corruption attempt (<a href="http://www.snort.org/search/sid/13820?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0071">2007-0071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29386">29386</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb08-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13821</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash player SWF scene and label data memory corruption attempt (<a href="http://www.snort.org/search/sid/13821?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0071">2007-0071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29386">29386</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb08-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13822</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash player SWF scene and label data memory corruption attempt (<a href="http://www.snort.org/search/sid/13822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0071">2007-0071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/29386">29386</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb08-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13897</td><td class="ruletablebody" valign="top">EXPLOIT Apple Quicktime crgn atom parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/13897?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1017">2008-1017</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28583">28583</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13917</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime MOV file string handling integer overflow attempt (<a href="http://www.snort.org/search/sid/13917?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2753">2005-2753</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15306">15306</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13918</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime MOV file string handling integer overflow attempt (<a href="http://www.snort.org/search/sid/13918?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2753">2005-2753</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15306">15306</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13920</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Quicktime Obji Atom parsing stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/13920?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1022">2008-1022</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28583">28583</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14042</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer General Property Page ActiveX clsid access (<a href="http://www.snort.org/search/sid/14042?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14043</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer General Property Page ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14043?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14044</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Playback Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/14044?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14045</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Playback Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14045?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14046</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMP Download Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/14046?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14047</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RMP Download Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14047?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14048</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RNX Download Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/14048?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14049</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer RNX Download Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14049?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14050</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer SMIL Download Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/14050?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14051</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer SMIL Download Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14051?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14052</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Stream Handler ActiveX function call access (<a href="http://www.snort.org/search/sid/14052?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14053</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Stream Handler ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14053?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14235</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Media Services ActiveX clsid access (<a href="http://www.snort.org/search/sid/14235?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30814">30814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14236</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Media Services ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30814">30814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14237</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Media Services ActiveX function call access (<a href="http://www.snort.org/search/sid/14237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30814">30814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14238</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Microsoft Windows Media Services ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14238?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30814">30814</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14255</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Encoder 9 ActiveX clsid access (<a href="http://www.snort.org/search/sid/14255?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3008">2008-3008</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14257</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Encoder 9 ActiveX function call access (<a href="http://www.snort.org/search/sid/14257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3008">2008-3008</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15007</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NOS Microsystems / Adobe getPlus Download Manager ActiveX clsid access (<a href="http://www.snort.org/search/sid/15007?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4817">2008-4817</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32105">32105</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15008</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NOS Microsystems / Adobe getPlus Download Manager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/15008?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4817">2008-4817</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32105">32105</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15013</td><td class="ruletablebody" valign="top">WEB-MISC Adobe Portable Document Format file download attempt (<a href="http://www.snort.org/search/sid/15013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15014</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader and Acrobat util.printf buffer overflow attempt (<a href="http://www.snort.org/search/sid/15014?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2992">2008-2992</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15357</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe PDF JBIG2 remote code execution attempt (<a href="http://www.snort.org/search/sid/15357?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0658">2009-0658</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33751">33751</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15384</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime pict image poly structure memory corruption attempt (<a href="http://www.snort.org/search/sid/15384?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0010">2009-0010</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34938">34938</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15433</td><td class="ruletablebody" valign="top">WEB-CLIENT Winamp MAKI parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/15433?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1831">2009-1831</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35052">35052</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15472</td><td class="ruletablebody" valign="top">WEB-CLIENT Nullsoft Winamp pls file player name handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/15472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0476">2006-0476</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16410">16410</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15478</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash Player invalid object reference code execution attempt (<a href="http://www.snort.org/search/sid/15478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0520">2009-0520</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33880">33880</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15483</td><td class="ruletablebody" valign="top">WEB-MISC Adobe Shockwave Flash file request (<a href="http://www.snort.org/search/sid/15483?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15492</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe PDF spell.customDictionaryOpen exploit attempt (<a href="http://www.snort.org/search/sid/15492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1493">2009-1493</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34740">34740</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15493</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe PDF getAnnots exploit attempt (<a href="http://www.snort.org/search/sid/15493?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1492">2009-1492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/34736">34736</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15517</td><td class="ruletablebody" valign="top">WEB-CLIENT AVI DirectShow quicktime parsing overflow attempt (<a href="http://www.snort.org/search/sid/15517?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1537">2009-1537</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35139">35139</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15559</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime Movie File Clipping Region handling heap buffer overflow attempt (<a href="http://www.snort.org/search/sid/15559?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0954">2009-0954</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35167">35167</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.apple.com/kb/HT3591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15562</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader JPX malformed code-block width attempt (<a href="http://www.snort.org/search/sid/15562?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1859">2009-1859</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15680</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft DirectShow QuickTime file atom size parsing heap corruption attempt (<a href="http://www.snort.org/search/sid/15680?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1539">2009-1539</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15682</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft DirectShow QuickTime file stsc atom parsing heap corruption attempt (<a href="http://www.snort.org/search/sid/15682?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1538">2009-1538</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS09-028.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15703</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple iTunes ITMS protocol handler stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/15703?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0950">2009-0950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35157">35157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15704</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple iTunes ITMSS protocol handler stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/15704?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0950">2009-0950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35157">35157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15705</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple iTunes PCAST protocol handler stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/15705?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0950">2009-0950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35157">35157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15706</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple iTunes DAAP protocol handler stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/15706?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0950">2009-0950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35157">35157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15707</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple iTunes ITPC protocol handler stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/15707?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0950">2009-0950</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35157">35157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15709</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Acrobat and Adobe Reader FlateDecode integer overflow attempt (<a href="http://www.snort.org/search/sid/15709?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3459">2009-3459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36600">36600</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15728</td><td class="ruletablebody" valign="top">EXPLOIT Possible Adobe PDF ActionScript byte_array heap spray attempt (<a href="http://www.snort.org/search/sid/15728?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1862">2009-1862</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35759">35759</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15729</td><td class="ruletablebody" valign="top">EXPLOIT Possible Adobe Flash ActionScript byte_array heap spray attempt (<a href="http://www.snort.org/search/sid/15729?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1862">2009-1862</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35759">35759</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15867</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Acrobat PDF font processing memory corruption attempt (<a href="http://www.snort.org/search/sid/15867?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4813">2008-4813</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32100">32100</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vallejo.cc/proyectos/adobereader812.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15869</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash Player ASnative command execution attempet (<a href="http://www.snort.org/search/sid/15869?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5499">2008-5499</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32896">32896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15909</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime VR Track Header Atom heap corruption attempt (<a href="http://www.snort.org/search/sid/15909?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0002">2009-0002</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33384">33384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.apple.com/kb/HT3403">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15940</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealNetworks RealPlayer Multiple Products RA file processing overflow attempt (<a href="http://www.snort.org/search/sid/15940?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2264">2007-2264</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26214">26214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15993</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash Player ActionScript intrf_count integer overflow attempt (<a href="http://www.snort.org/search/sid/15993?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1869">2009-1869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35907">35907</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16027</td><td class="ruletablebody" valign="top">WEB-CLIENT winamp midi file header overflow attempt (<a href="http://www.snort.org/search/sid/16027?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3228">2006-3228</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18507">18507</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16041</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple QuickTime FLIC animation file buffer overflow attempt (<a href="http://www.snort.org/search/sid/16041?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4384">2006-4384</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19976">19976</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16046</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealNetworks RealPlayer RealMedia file format processing heap corruption attempt (<a href="http://www.snort.org/search/sid/16046?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5081">2007-5081</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26214">26214</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16054</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime bitmap multiple header overflow (<a href="http://www.snort.org/search/sid/16054?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2238">2006-2238</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17953">17953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16055</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple iTunes AAC file handling integer overflow attempt (<a href="http://www.snort.org/search/sid/16055?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-1467">2006-1467</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18730">18730</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16091</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Macromedia Flash Media Server administration service denial of service attempt (<a href="http://www.snort.org/search/sid/16091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4216">2005-4216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15822">15822</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16148</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple QuickTime and iTunes heap memory corruption attempt (<a href="http://www.snort.org/search/sid/16148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4092">2005-4092</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15732">15732</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16156</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player 6.4 marker object memory corruption (<a href="http://www.snort.org/search/sid/16156?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2527">2009-2527</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS09-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16172</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Acrobat Reader U3D line set heap corruption attempt (<a href="http://www.snort.org/search/sid/16172?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2997">2009-2997</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16173</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Acrobat Reader U3D progressive mesh continuation pointer overwrite attempt (<a href="http://www.snort.org/search/sid/16173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2998">2009-2998</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16174</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Acrobat Reader U3D progressive mesh continuation off by one index attempt (<a href="http://www.snort.org/search/sid/16174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3458">2009-3458</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16175</td><td class="ruletablebody" valign="top">EXPLOIT Adobe collab.removeStateModel denial of service attempt (<a href="http://www.snort.org/search/sid/16175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2988">2009-2988</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16176</td><td class="ruletablebody" valign="top">EXPLOIT Adobe collab.addStateModel remote corruption attempt (<a href="http://www.snort.org/search/sid/16176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2996">2009-2996</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16219</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file format transfer (<a href="http://www.snort.org/search/sid/16219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16220</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Shockwave director file malformed lcsr block memory corruption attempt (<a href="http://www.snort.org/search/sid/16220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3466">2009-3466</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb09-16.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16223</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Shockwave tSAC pointer overwrite attempt (<a href="http://www.snort.org/search/sid/16223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3464">2009-3464</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb09-16.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16225</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Shockwave arbitrary memory access attempt (<a href="http://www.snort.org/search/sid/16225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3465">2009-3465</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb09-16.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16293</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Shockwave Flash memory corruption attempt (<a href="http://www.snort.org/search/sid/16293?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3463">2009-3463</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16316</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash Player malformed getPropertyLate actioncode attempt (<a href="http://www.snort.org/search/sid/16316?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3797">2009-3797</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16320</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe PNG empty sPLT exploit attempt (<a href="http://www.snort.org/search/sid/16320?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2984">2009-2984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16321</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe tiff oversized image length attempt (<a href="http://www.snort.org/search/sid/16321?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2995">2009-2995</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16322</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader oversized object width attempt (<a href="http://www.snort.org/search/sid/16322?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2980">2009-2980</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16323</td><td class="ruletablebody" valign="top">EXPLOIT Adobe JPEG2k uninitialized QCC memory corruption attempt (<a href="http://www.snort.org/search/sid/16323?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2995">2009-2995</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16324</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe doc.export arbitrary file write attempt (<a href="http://www.snort.org/search/sid/16324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2993">2009-2993</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16325</td><td class="ruletablebody" valign="top">EXPLOIT Adobe JPEG2k uninitialized QCC memory corruption attempt (<a href="http://www.snort.org/search/sid/16325?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2995">2009-2995</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16333</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader media.newPlayer memory corruption attempt (<a href="http://www.snort.org/search/sid/16333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4324">2009-4324</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37331">37331</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16334</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader compressed media.newPlayer memory corruption attempt (<a href="http://www.snort.org/search/sid/16334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4324">2009-4324</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16337</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Flash directory traversal attempt (<a href="http://www.snort.org/search/sid/16337?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3792">2009-3792</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37420">37420</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb09-18.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16359</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Illustrator DSC comment overflow attempt (<a href="http://www.snort.org/search/sid/16359?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4195">2009-4195</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37192">37192</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16360</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime Image Description Atom sign extension memory corruption attempt (<a href="http://www.snort.org/search/sid/16360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0955">2009-0955</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35166">35166</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.apple.com/kb/HT3591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16370</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader JP2C Region Atom CompNum memory corruption attempt (<a href="http://www.snort.org/search/sid/16370?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3955">2009-3955</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16371</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NOS Microsystems Adobe atl_getcom ActiveX clsid access (<a href="http://www.snort.org/search/sid/16371?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3958">2009-3958</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/37759">37759</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16373</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Acrobat Reader U3D CLODMeshContinuation code execution attempt (<a href="http://www.snort.org/search/sid/16373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2990">2009-2990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36665">36665</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb09-15.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16490</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader malformed TIFF remote code execution attempt (<a href="http://www.snort.org/search/sid/16490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0188">2010-0188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-07.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16537</td><td class="ruletablebody" valign="top">EXPLOIT Windows Media Player ActiveX unknow compression algorithm use arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/16537?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0268">2010-0268</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms10-027.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16541</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows Media Service stack overflow attempt (<a href="http://www.snort.org/search/sid/16541?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0478">2010-0478</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-025.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16543</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media Player codec code execution attempt (<a href="http://www.snort.org/search/sid/16543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0480">2010-0480</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16546</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Reader/Acrobat Pro CFF font parsing heap overflow attempt (<a href="http://www.snort.org/search/sid/16546?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1241">2010-1241</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16561</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Photoshop CS4 TIFF file exploit attempt - 1 (<a href="http://www.snort.org/search/sid/16561?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1279">2010-1279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-10.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16562</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Photoshop CS4 TIFF file exploit attempt - 2 (<a href="http://www.snort.org/search/sid/16562?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1279">2010-1279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-10.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16563</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Photoshop CS4 TIFF file exploit attempt - 3 (<a href="http://www.snort.org/search/sid/16563?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1279">2010-1279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-10.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16564</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Photoshop CS4 TIFF file exploit attempt - 4 (<a href="http://www.snort.org/search/sid/16564?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1279">2010-1279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-10.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16578</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows Media Encoder 9 ActiveX buffer overflow attempt (<a href="http://www.snort.org/search/sid/16578?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3008">2008-3008</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16603</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader U3D CLOD integer overflow (<a href="http://www.snort.org/search/sid/16603?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0196">2010-0196</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-09.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16607</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealPlayer RAM Download Handler ActiveX exploit attempt (<a href="http://www.snort.org/search/sid/16607?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1309">2008-1309</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28157">28157</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.kb.cert.org/vuls/id/831457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16609</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealPlayer ActiveX Import playlist name buffer overflow attempt (<a href="http://www.snort.org/search/sid/16609?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5601">2007-5601</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26130">26130</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16633</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe PDF File containing Flash use-after-free attack (<a href="http://www.snort.org/search/sid/16633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1297">2010-1297</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16634</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash use-after-free attack (<a href="http://www.snort.org/search/sid/16634?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1297">2010-1297</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16663</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player JPG header record mismatch memory corruption attempt (<a href="http://www.snort.org/search/sid/16663?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1880">2010-1880</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-033.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16664</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader and Acrobat authplay.dll vulnerability exploit attempt (<a href="http://www.snort.org/search/sid/16664?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1297">2010-1297</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40586">40586</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16673</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Shockwave DIR file PAMI chunk code execution attempt (<a href="http://www.snort.org/search/sid/16673?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1292">2010-1292</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-12.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16676</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader malformed FlateDecode colors declaration (<a href="http://www.snort.org/search/sid/16676?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3459">2009-3459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36600">36600</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16677</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader malformed FlateDecode colors declaration (<a href="http://www.snort.org/search/sid/16677?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3459">2009-3459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36600">36600</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16683</td><td class="ruletablebody" valign="top">WEB-MISC Nullsoft Winamp CAF file processing integer overflow attempt (<a href="http://www.snort.org/search/sid/16683?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0186">2009-0186</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16801</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Reader CoolType.dll remote memory corruption denial of service attempt (<a href="http://www.snort.org/search/sid/16801?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2204">2010-2204</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/41130">41130</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17096</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL WinAmpX ActiveX clsid access (<a href="http://www.snort.org/search/sid/17096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35028">35028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17097</td><td class="ruletablebody" valign="top">WEB-ACTIVEX AOL WinAmpX ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17097?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35028">35028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17098</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS AOL IWinAmpActiveX class ConvertFile buffer overflow attempt (<a href="http://www.snort.org/search/sid/17098?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35028">35028</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17141</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Flash invalid data precision arbitrary code execution exploit attempt (<a href="http://www.snort.org/search/sid/17141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2216">2010-2216</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-16.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17142</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Flash Player SWF ActionScript exploit attempt (<a href="http://www.snort.org/search/sid/17142?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0209">2010-0209</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-16.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17143</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Photoshop CS4 ABR file processing buffer overflow attempt - 1 (<a href="http://www.snort.org/search/sid/17143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1296">2010-1296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40389">40389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17144</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Photoshop CS4 ABR file processing buffer overflow attempt - 2 (<a href="http://www.snort.org/search/sid/17144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1296">2010-1296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40389">40389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17145</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Photoshop CS4 ASL file processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/17145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1296">2010-1296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40389">40389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17146</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Photoshop CS4 GRD file processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/17146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1296">2010-1296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40389">40389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17147</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Photoshop CS4 ABR file processing buffer overflow attempt (<a href="http://www.snort.org/search/sid/17147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1296">2010-1296</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/40389">40389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17179</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file pamm record exploit attempt (<a href="http://www.snort.org/search/sid/17179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17180</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file LsCM record exploit attempt (<a href="http://www.snort.org/search/sid/17180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2864">2010-2864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17181</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file LsCM record exploit attempt (<a href="http://www.snort.org/search/sid/17181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2864">2010-2864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17182</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file tSAC record exploit attempt (<a href="http://www.snort.org/search/sid/17182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17183</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file tSAC record exploit attempt (<a href="http://www.snort.org/search/sid/17183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17184</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file tSAC record exploit attempt (<a href="http://www.snort.org/search/sid/17184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17185</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file rcsL record exploit attempt (<a href="http://www.snort.org/search/sid/17185?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17186</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file rcsL record exploit attempt (<a href="http://www.snort.org/search/sid/17186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17187</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file rcsL record exploit attempt (<a href="http://www.snort.org/search/sid/17187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17188</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file rcsL record exploit attempt (<a href="http://www.snort.org/search/sid/17188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17189</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file rcsL record exploit attempt (<a href="http://www.snort.org/search/sid/17189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2869">2010-2869</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17190</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director remote code execution attempt (<a href="http://www.snort.org/search/sid/17190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2871">2010-2871</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17191</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director remote code execution attempt (<a href="http://www.snort.org/search/sid/17191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2872">2010-2872</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17192</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director remote code execution attempt (<a href="http://www.snort.org/search/sid/17192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2873">2010-2873</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17193</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director remote code execution attempt (<a href="http://www.snort.org/search/sid/17193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2874">2010-2874</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17194</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director file tSAC tag exploit attempt (<a href="http://www.snort.org/search/sid/17194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2875">2010-2875</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17195</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director file exploit attempt (<a href="http://www.snort.org/search/sid/17195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2876">2010-2876</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17196</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director file exploit attempt (<a href="http://www.snort.org/search/sid/17196?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2877">2010-2877</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17197</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director file exploit attempt (<a href="http://www.snort.org/search/sid/17197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2879">2010-2879</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17198</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Director file exploit attempt (<a href="http://www.snort.org/search/sid/17198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2878">2010-2878</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17199</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file file lRTX overflow attempt (<a href="http://www.snort.org/search/sid/17199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2863">2010-2863</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17200</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file LsCM overflow attempt (<a href="http://www.snort.org/search/sid/17200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2864">2010-2864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17201</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file file LsCM overflow attempt (<a href="http://www.snort.org/search/sid/17201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2865">2010-2865</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17202</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file file Shockwave 3D overflow attempt (<a href="http://www.snort.org/search/sid/17202?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2866">2010-2866</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17203</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file file rcsL overflow attempt (<a href="http://www.snort.org/search/sid/17203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2867">2010-2867</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17204</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Director file file mmap overflow attempt (<a href="http://www.snort.org/search/sid/17204?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2870">2010-2870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17211</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime marshaled punk remote code execution (<a href="http://www.snort.org/search/sid/17211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-1818">2010-1818</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17214</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader and Acrobat libtiff TIFFFetchShortPair stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/17214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0188">2010-0188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17215</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader and Acrobat libtiff TIFFFetchShortPair stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/17215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0188">2010-0188</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17228</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Microsoft Windows Media Player skin decompression code execution attempt (<a href="http://www.snort.org/search/sid/17228?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-3035">2007-3035</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25307">25307</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17233</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Reader and Acrobat TTF SING table parsing remote code execution attempt (<a href="http://www.snort.org/search/sid/17233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2883">2010-2883</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa10-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17242</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Media Player ASF file arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/17242?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0818">2010-0818</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-062.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17257</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash Player and Reader remote code execution attempt (<a href="http://www.snort.org/search/sid/17257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2884">2010-2884</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa10-03.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17272</td><td class="ruletablebody" valign="top">WEB-CLIENT RealNetworks RealPlayer AVI parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/17272?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2052">2005-2052</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13530">13530</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17288</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Acrobat font parsing integer overflow attempt (<a href="http://www.snort.org/search/sid/17288?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2862">2010-2862</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/44203">44203</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17290</td><td class="ruletablebody" valign="top">WEB-CLIENT Quicktime Plug-In Security Bypass (<a href="http://www.snort.org/search/sid/17290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4965">2006-4965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20138">20138</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17334</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealPlayer SWF Flash File buffer overflow attempt (<a href="http://www.snort.org/search/sid/17334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0323">2006-0323</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17202">17202</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17351</td><td class="ruletablebody" valign="top">WEB-CLIENT Winamp ID3v2 Tag Handling Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17351?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2310">2005-2310</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14276">14276</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17361</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Acrobat Reader PDF Catalog Handling denial of service attempt (<a href="http://www.snort.org/search/sid/17361?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0104">2007-0104</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21910">21910</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://projects.info-pull.com/moab/MOAB-06-01-2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17372</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime udta atom parsing heap overflow vulnerability (<a href="http://www.snort.org/search/sid/17372?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0714">2007-0714</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22844">22844</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17373</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS QuickTime panorama atoms buffer overflow attempt (<a href="http://www.snort.org/search/sid/17373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4675">2007-4675</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26342">26342</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://docs.info.apple.com/article.html?artnum=306896">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17381</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple QuickTime PDAT Atom parsing buffer overflow attempt (<a href="http://www.snort.org/search/sid/17381?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3625">2008-3625</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://support.apple.com/kb/HT3027">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17425</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealPlayer ActiveX Import playlist name buffer overflow attempt (<a href="http://www.snort.org/search/sid/17425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5601">2007-5601</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26130">26130</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17461</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealNetworks RealPlayer zipped skin file buffer overflow attempt (<a href="http://www.snort.org/search/sid/17461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2630">2005-2630</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15382">15382</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17470</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple QuickTime STSD JPEG atom heap corruption attempt (<a href="http://www.snort.org/search/sid/17470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0007">2009-0007</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33390">33390</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17523</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple QuickTime H.264 Movie File Buffer Overflow (<a href="http://www.snort.org/search/sid/17523?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2799">2009-2799</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36328">36328</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17526</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Acrobat and Adobe Reader U3D RHAdobeMeta Buffer Overflow (<a href="http://www.snort.org/search/sid/17526?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1855">2009-1855</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/35282">35282</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17531</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Apple Quicktime MOV File JVTCompEncodeFrame Heap Overflow (<a href="http://www.snort.org/search/sid/17531?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2295">2007-2295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/23650">23650</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17547</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Quicktime SMIL transfer (<a href="http://www.snort.org/search/sid/17547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17548</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple Quicktime SMIL File Handling Integer Overflow attempt (<a href="http://www.snort.org/search/sid/17548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-2394">2007-2394</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/24873">24873</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17552</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Pagemaker file request (<a href="http://www.snort.org/search/sid/17552?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17553</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Pagemaker Font Name Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17553?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5169">2007-5169</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25989">25989</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17561</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealNetworks RealPlayer IVR Overly Long Filename Code Execution attempt (<a href="http://www.snort.org/search/sid/17561?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0375">2009-0375</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33652">33652</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17606</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash ASnative command execution attempt (<a href="http://www.snort.org/search/sid/17606?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-5499">2008-5499</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/32896">32896</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb08-24.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17608</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime color table atom movie file handling heap corruption attempt (<a href="http://www.snort.org/search/sid/17608?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-4677">2007-4677</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26338">26338</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17610</td><td class="ruletablebody" valign="top">WEB-CLIENT GStreamer QuickTime file parsing multiple heap overflow attempt (<a href="http://www.snort.org/search/sid/17610?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0398">2009-0398</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33405">33405</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17611</td><td class="ruletablebody" valign="top">WEB-CLIENT GStreamer QuickTime file parsing multiple heap overflow attempt (<a href="http://www.snort.org/search/sid/17611?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0398">2009-0398</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33405">33405</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17612</td><td class="ruletablebody" valign="top">WEB-CLIENT GStreamer QuickTime file parsing multiple heap overflow attempt (<a href="http://www.snort.org/search/sid/17612?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0398">2009-0398</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/33405">33405</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17633</td><td class="ruletablebody" valign="top">WEB-CLIENT RealNetworks RealPlayer SWF frame handling buffer overflow attempt (<a href="http://www.snort.org/search/sid/17633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5400">2007-5400</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/30370">30370</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17647</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash Player multimedia file DefineSceneAndFrameLabelData code execution attempt (<a href="http://www.snort.org/search/sid/17647?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0071">2007-0071</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28695">28695</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb08-11.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17650</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Pagemaker Key Strings Stack Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17650?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6432">2007-6432</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/31999">31999</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17658</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash frame type identifier memory corruption attempt (<a href="http://www.snort.org/search/sid/17658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2628">2005-2628</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15332">15332</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17666</td><td class="ruletablebody" valign="top">WEB-CLIENT RealNetworks RealPlayer invalid chunk size heap overflow attempt (<a href="http://www.snort.org/search/sid/17666?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2922">2005-2922</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/17202">17202</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17678</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe BMP image handler buffer overflow attempt (<a href="http://www.snort.org/search/sid/17678?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1765">2008-1765</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/28874">28874</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17698</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS RealNetworks RealPlayer wav chunk string overflow attempt in email (<a href="http://www.snort.org/search/sid/17698?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0611">2005-0611</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12697">12697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17700</td><td class="ruletablebody" valign="top">WEB-CLIENT RealNetworks RealPlayer wav chunk string overflow attempt (<a href="http://www.snort.org/search/sid/17700?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0611">2005-0611</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/12697">12697</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17735</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Pagemaker Font Name Buffer Overflow attempt (<a href="http://www.snort.org/search/sid/17735?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5169">2007-5169</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/25989">25989</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17773</td><td class="ruletablebody" valign="top">EXPLOIT Microsoft Windows Media Player Firefox plugin memory corruption attempt (<a href="http://www.snort.org/search/sid/17773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2745">2010-2745</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-083.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17803</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Shockwave Director rcsL chunk memory corruption attempt (<a href="http://www.snort.org/search/sid/17803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-2873">2010-2873</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/42682">42682</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-20.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17806</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Shockwave Director rcsL chunk remote code execution attempt (<a href="http://www.snort.org/search/sid/17806?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3653">2010-3653</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/44291">44291</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17807</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Shockwave Director rcsL chunk remote code execution attempt (<a href="http://www.snort.org/search/sid/17807?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3653">2010-3653</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/44291">44291</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17808</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash authplay.dll memory corruption attempt (<a href="http://www.snort.org/search/sid/17808?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3654">2010-3654</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/advisories/apsa10-05.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17809</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime movie file transfer (<a href="http://www.snort.org/search/sid/17809?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18180</td><td class="ruletablebody" valign="top">EXPLOIT Adobe Flash Player ActionScript remote code execution attempt (<a href="http://www.snort.org/search/sid/18180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3648">2010-3648</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/44684">44684</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.adobe.com/support/security/bulletins/apsb10-26.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18222</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media Encoder wmerrorenu.dll dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18222?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3965">2010-3965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18223</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media Encoder winietenu.dll dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3965">2010-3965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18224</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media Encoder asferrorenu.dll dll-load attempt (<a href="http://www.snort.org/search/sid/18224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3965">2010-3965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18225</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows Media Encoder wmerrorenu.dll dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18225?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3965">2010-3965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18226</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows Media Encoder swinietenu.dll dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18226?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3965">2010-3965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18227</td><td class="ruletablebody" valign="top">NETBIOS Microsoft Windows Media Encoder asferrorenu.dll dll-load exploit attempt (<a href="http://www.snort.org/search/sid/18227?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3965">2010-3965</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-094.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18229</td><td class="ruletablebody" valign="top">SPECIFIC-THREAT Microsoft FlashPix tile length overflow attempt (<a href="http://www.snort.org/search/sid/18229?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3952">2010-3952</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-105.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18233</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Publisher Adobe Font Driver code execution attempt (<a href="http://www.snort.org/search/sid/18233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3956">2010-3956</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-091.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18237</td><td class="ruletablebody" valign="top">WEB-CLIENT Flashpix graphics filter fpx32.flt remote code execution attempt (<a href="http://www.snort.org/search/sid/18237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3951">2010-3951</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-105.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">912182</td><td class="ruletablebody" valign="top">POLICY Adobe FLV file transfer (<a href="http://www.snort.org/search/sid/912182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 34</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2438</td><td class="ruletablebody" valign="top">WEB-CLIENT RealPlayer playlist file URL overflow attempt (<a href="http://www.snort.org/search/sid/2438?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0755">2005-0755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9579">9579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2439</td><td class="ruletablebody" valign="top">WEB-CLIENT RealPlayer playlist http URL overflow attempt (<a href="http://www.snort.org/search/sid/2439?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0755">2005-0755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9579">9579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2440</td><td class="ruletablebody" valign="top">WEB-CLIENT RealPlayer playlist rtsp URL overflow attempt (<a href="http://www.snort.org/search/sid/2440?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0755">2005-0755</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9579">9579</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2442</td><td class="ruletablebody" valign="top">WEB-MISC Quicktime User-Agent buffer overflow attempt (<a href="http://www.snort.org/search/sid/2442?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0169">2004-0169</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9735">9735</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2550</td><td class="ruletablebody" valign="top">EXPLOIT winamp XM module name overflow (<a href="http://www.snort.org/search/sid/2550?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nextgenss.com/advisories/winampheap.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3088</td><td class="ruletablebody" valign="top">WEB-CLIENT winamp .cda file name overflow attempt (<a href="http://www.snort.org/search/sid/3088?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1119">2004-1119</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11730">11730</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=15817">15817</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3470</td><td class="ruletablebody" valign="top">WEB-CLIENT RealPlayer VIDORV30 header length buffer overflow (<a href="http://www.snort.org/search/sid/3470?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1481">2004-1481</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11309">11309</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.eeye.com/html/research/advisories/AD20041001.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4131</td><td class="ruletablebody" valign="top">EXPLOIT SHOUTcast URI format string attempt (<a href="http://www.snort.org/search/sid/4131?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1373">2004-1373</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/12096">12096</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4680</td><td class="ruletablebody" valign="top">WEB-CLIENT quicktime movie file component name integer overflow attempt (<a href="http://www.snort.org/search/sid/4680?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2754">2005-2754</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15308">15308</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://docs.info.apple.com/article.html?artnum=302772">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8701</td><td class="ruletablebody" valign="top">WEB-MISC IceCast header buffer overflow attempt (<a href="http://www.snort.org/search/sid/8701?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1561">2004-1561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11271">11271</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://archives.neohapsis.com/archives/bugtraq/2004-09/0366.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8702</td><td class="ruletablebody" valign="top">EXPLOIT IceCast header buffer overflow attempt (<a href="http://www.snort.org/search/sid/8702?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1561">2004-1561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11271">11271</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://archives.neohapsis.com/archives/bugtraq/2004-09/0366.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8703</td><td class="ruletablebody" valign="top">EXPLOIT IceCast header buffer overflow attempt (<a href="http://www.snort.org/search/sid/8703?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1561">2004-1561</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/11271">11271</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://archives.neohapsis.com/archives/bugtraq/2004-09/0366.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9842</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Acrobat Plugin Universal cross-site scripting attempt (<a href="http://www.snort.org/search/sid/9842?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0045">2007-0045</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://isc.sans.org/diary.php?storyid=1999">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12663</td><td class="ruletablebody" valign="top">WEB-ACTIVEX RealPlayer Ierpplug.dll ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/12663?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3066">2008-3066</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26586">26586</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12707</td><td class="ruletablebody" valign="top">WEB-CLIENT RealNetworks RealPlayer lyrics heap overflow attempt (<a href="http://www.snort.org/search/sid/12707?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5080">2007-5080</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26214">26214</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">12741</td><td class="ruletablebody" valign="top">EXPLOIT Apple Quicktime TCP RTSP sdp type buffer overflow attempt (<a href="http://www.snort.org/search/sid/12741?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6166">2007-6166</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26549">26549</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13919</td><td class="ruletablebody" valign="top">WEB-CLIENT Apple QuickTime MOV file string handling integer overflow attempt (<a href="http://www.snort.org/search/sid/13919?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2753">2005-2753</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15306">15306</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14256</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Encoder 9 ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/14256?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3008">2008-3008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">14258</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Windows Media Encoder 9 ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/14258?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3008">2008-3008</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS08-053.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15914</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media sample duration header RCE attempt (<a href="http://www.snort.org/search/sid/15914?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15915</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media Timecode header RCE attempt (<a href="http://www.snort.org/search/sid/15915?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15916</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media file name header RCE attempt (<a href="http://www.snort.org/search/sid/15916?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15917</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media content type header RCE attempt (<a href="http://www.snort.org/search/sid/15917?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15918</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media pixel aspect ratio header RCE attempt (<a href="http://www.snort.org/search/sid/15918?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15919</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media encryption sample ID header RCE attempt (<a href="http://www.snort.org/search/sid/15919?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16315</td><td class="ruletablebody" valign="top">WEB-MISC Adobe Flash PlugIn check if file exists attempt (<a href="http://www.snort.org/search/sid/16315?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3951">2009-3951</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16331</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Flash Player JPEG parsing heap overflow attempt (<a href="http://www.snort.org/search/sid/16331?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3794">2009-3794</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16338</td><td class="ruletablebody" valign="top">WEB-CLIENT Microsoft Windows Media extended stream properties object RCE attempt (<a href="http://www.snort.org/search/sid/16338?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2498">2009-2498</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/ms09-047.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16372</td><td class="ruletablebody" valign="top">WEB-ACTIVEX NOS Microsystems Adobe atl_getcom ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/16372?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-3958">2009-3958</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/37759">37759</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.adobe.com/support/security/bulletins/apsb10-02.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16544</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader Linux malformed U3D mesh deceleration block exploit attempt  (<a href="http://www.snort.org/search/sid/16544?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0196">2010-0196</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16545</td><td class="ruletablebody" valign="top">WEB-CLIENT Adobe Reader malformed Richmedia annotation exploit attempt (<a href="http://www.snort.org/search/sid/16545?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0197">2010-0197</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17223</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe Flash Player navigateToURL cross-site scripting attempt (<a href="http://www.snort.org/search/sid/17223?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6244">2007-6244</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/26960">26960</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17457</td><td class="ruletablebody" valign="top">WEB-CLIENT Macromedia Flash ActionDefineFunction memory access vulnerability exploit attempt (<a href="http://www.snort.org/search/sid/17457?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2628">2005-2628</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/15334">15334</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17529</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS Adobe RoboHelp Server Arbitrary File Upload and Execute (<a href="http://www.snort.org/search/sid/17529?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1855">2009-1855</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/35282">35282</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="350"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client / Peer to Peer</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="360"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Client / Instant Messenger</div></p><span class="group"># of attack rules in this group: 8</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9380</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS jitux msn messenger propagation detection (<a href="http://www.snort.org/search/sid/9380?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-123116-3525-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13292</td><td class="ruletablebody" valign="top">EXPLOIT Skype skype4com URI handler memory corruption attempt (<a href="http://www.snort.org/search/sid/13292?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5989">2007-5989</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/26748">26748</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">15939</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS MSN Messenger IRC bot calling home attempt (<a href="http://www.snort.org/search/sid/15939?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.threatexpert.com/report.aspx?md5=19bffa751aafa9e63420203938a0d8a9">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16718</td><td class="ruletablebody" valign="top">EXPLOIT Skype URI handler input validation exploit attempt (<a href="http://www.snort.org/search/sid/16718?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/38699">38699</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://security-assessment.com/files/advisories/Skype_URI_Handling_Vulnerability.pdf">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17674</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Skype Extras Manager ActiveX clsid access (<a href="http://www.snort.org/search/sid/17674?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4741">2009-4741</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36459">36459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17675</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Skype Extras Manager ActiveX clsid unicode access (<a href="http://www.snort.org/search/sid/17675?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4741">2009-4741</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36459">36459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17676</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Skype Extras Manager ActiveX function call access (<a href="http://www.snort.org/search/sid/17676?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4741">2009-4741</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36459">36459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">17677</td><td class="ruletablebody" valign="top">WEB-ACTIVEX Skype Extras Manager ActiveX function call unicode access (<a href="http://www.snort.org/search/sid/17677?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-4741">2009-4741</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/36459">36459</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr></table><br></br><span class="group"># of warning rules in this group: 2</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3085</td><td class="ruletablebody" valign="top">EXPLOIT AIM goaway message buffer overflow attempt (<a href="http://www.snort.org/search/sid/3085?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0636">2004-0636</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10889">10889</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3130</td><td class="ruletablebody" valign="top">EXPLOIT MSN Messenger png overflow (<a href="http://www.snort.org/search/sid/3130?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0957">2004-0957</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/10872">10872</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS05-009.mspx">URL</a></td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="400"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Protocol Anomaly</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="410"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Protocol Anomaly / Invalid Traffic</div></p><span class="group"># of attack rules in this group: 7</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6128</td><td class="ruletablebody" valign="top">BACKDOOR dkangel runtime detection - icmp echo reply client-to-server (<a href="http://www.snort.org/search/sid/6128?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076278">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10107</td><td class="ruletablebody" valign="top">BACKDOOR icmp cmd 1.0 runtime detection - pslist (<a href="http://www.snort.org/search/sid/10107?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077250">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10108</td><td class="ruletablebody" valign="top">BACKDOOR icmp cmd 1.0 runtime detection - pskill (<a href="http://www.snort.org/search/sid/10108?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077250">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10452</td><td class="ruletablebody" valign="top">BACKDOOR only 1 rat runtime detection - icmp request (<a href="http://www.snort.org/search/sid/10452?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Only%201%20RAT&amp;threatid=40632">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">13288</td><td class="ruletablebody" valign="top">BAD-TRAFFIC Windows remote kernel tcp/ip icmp vulnerability exploit attempt (<a href="http://www.snort.org/search/sid/13288?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0066">2007-0066</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/Bulletin/MS08-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">16405</td><td class="ruletablebody" valign="top">ICMP Microsoft Windows Ipv6pHandleRouterAdvertisement Prefix Information stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/16405?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0239">2010-0239</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">18249</td><td class="ruletablebody" valign="top">ICMP Microsoft Windows Ipv6pHandleRouterAdvertisement Route Information stack buffer overflow attempt (<a href="http://www.snort.org/search/sid/18249?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0241">2010-0241</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS10-009.mspx">URL</a></td></tr></table><br></br><span class="group"># of warning rules in this group: 13</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">222</td><td class="ruletablebody" valign="top">DDOS tfn2k icmp possible communication (<a href="http://www.snort.org/search/sid/222?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0138">2000-0138</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">272</td><td class="ruletablebody" valign="top">DOS IGMP dos attack (<a href="http://www.snort.org/search/sid/272?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-0918">1999-0918</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/514">514</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.microsoft.com/technet/security/bulletin/MS99-034.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">465</td><td class="ruletablebody" valign="top">ICMP ISS Pinger (<a href="http://www.snort.org/search/sid/465?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">467</td><td class="ruletablebody" valign="top">ICMP Nemesis v1.1 Echo (<a href="http://www.snort.org/search/sid/467?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">476</td><td class="ruletablebody" valign="top">ICMP webtrends scanner (<a href="http://www.snort.org/search/sid/476?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">480</td><td class="ruletablebody" valign="top">ICMP PING speedera (<a href="http://www.snort.org/search/sid/480?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">481</td><td class="ruletablebody" valign="top">ICMP TJPingPro1.1Build 2 Windows (<a href="http://www.snort.org/search/sid/481?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">482</td><td class="ruletablebody" valign="top">ICMP PING WhatsupGold Windows (<a href="http://www.snort.org/search/sid/482?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">484</td><td class="ruletablebody" valign="top">ICMP PING Sniffer Pro/NetXRay network scan (<a href="http://www.snort.org/search/sid/484?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1813</td><td class="ruletablebody" valign="top">ICMP digital island bandwidth query (<a href="http://www.snort.org/search/sid/1813?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td class="ruletablebody" valign="top" align="center" width="60"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2462</td><td class="ruletablebody" valign="top">EXPLOIT IGMP IGAP account overflow attempt (<a href="http://www.snort.org/search/sid/2462?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0367">2004-0367</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9952">9952</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2463</td><td class="ruletablebody" valign="top">EXPLOIT IGMP IGAP message overflow attempt (<a href="http://www.snort.org/search/sid/2463?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0367">2004-0367</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/9952">9952</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3626</td><td class="ruletablebody" valign="top">ICMP PATH MTU denial of service attempt (<a href="http://www.snort.org/search/sid/3626?r=1">more info ...</a>)</td><td class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td class="ruletablebody" valign="top" align="center" width="60"> <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1060">2004-1060</a></td><td class="ruletablebody" valign="top" align="center" width="40"> <a href="http://www.securityfocus.com/bid/13124">13124</a></td><td class="ruletablebody" valign="top" align="center" width="40"> </td><td class="ruletablebody" valign="top" align="center" width="40"> </td></tr></table><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="420"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Protocol Anomaly / ICMP</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="430"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Protocol Anomaly / IGMP</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="440"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Protocol Anomaly / RPC</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="450"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Protocol Anomaly / Misc</div></p><span class="group"># of attack rules in this group: 0</span><br></br><span class="group"># of warning rules in this group: 0</span><br></br><p align="right" style="font-family:Verdana, Arial, Helvetica, sans-serif; font-size:10px; font-style:oblique;"><a name="500"> </a><a href="#topbanner">goto Top</a></p><p class="group"><div align="left" class="groupheader">Group: Malware</div></p><span class="group"># of attack rules in this group: 1789</span><br></br><table class="rules" width="100%" border="0" cellpadding="0" cellspacing="0"><tr><th class="ruletableheader" style="border-left: 0px;" scope="col">ID</th><th class="ruletableheader" scope="col">Message</th><th class="ruletableheader" scope="col">Classtype</th><th class="ruletableheader" scope="col">CVE</th><th class="ruletableheader" scope="col">BugtraqID</th><th class="ruletableheader" scope="col">NessusID</th><th class="ruletableheader" scope="col">Custom</th></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">494</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES command completed (<a href="http://www.snort.org/search/sid/494?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1806">1806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">497</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES file copied ok (<a href="http://www.snort.org/search/sid/497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2000-0884">2000-0884</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/1806">1806</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">498</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES id check returned root (<a href="http://www.snort.org/search/sid/498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1001</td><td class="ruletablebody" valign="top">WEB-MISC carbo.dll access (<a href="http://www.snort.org/search/sid/1001?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=1999-1069">1999-1069</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/2126">2126</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">1464</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES oracle one hour install (<a href="http://www.snort.org/search/sid/1464?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">bad-unknown</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10737">10737</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2278</td><td class="ruletablebody" valign="top">WEB-MISC client negative Content-Length attempt (<a href="http://www.snort.org/search/sid/2278?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2162">2006-2162</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9576">9576</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2412</td><td class="ruletablebody" valign="top">ATTACK-RESPONSES successful cross site scripting forced download attempt (<a href="http://www.snort.org/search/sid/2412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2430</td><td class="ruletablebody" valign="top">NNTP newgroup overflow attempt (<a href="http://www.snort.org/search/sid/2430?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0045">2004-0045</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9382">9382</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11984">11984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2431</td><td class="ruletablebody" valign="top">NNTP rmgroup overflow attempt (<a href="http://www.snort.org/search/sid/2431?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0045">2004-0045</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/9382">9382</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=11984">11984</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2520</td><td class="ruletablebody" valign="top">WEB-MISC SSLv3 Client_Hello request (<a href="http://www.snort.org/search/sid/2520?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2521</td><td class="ruletablebody" valign="top">WEB-MISC SSLv3 Server_Hello request (<a href="http://www.snort.org/search/sid/2521?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2585</td><td class="ruletablebody" valign="top">WEB-MISC nessus 2.x 404 probe (<a href="http://www.snort.org/search/sid/2585?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-recon</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=10386">10386</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2656</td><td class="ruletablebody" valign="top">WEB-MISC SSLv2 Client_Hello Challenge Length overflow attempt (<a href="http://www.snort.org/search/sid/2656?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0826">2004-0826</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11015">11015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2658</td><td class="ruletablebody" valign="top">WEB-MISC SSLv2 Client_Hello request (<a href="http://www.snort.org/search/sid/2658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2659</td><td class="ruletablebody" valign="top">WEB-MISC SSLv2 Client_Hello with pad request (<a href="http://www.snort.org/search/sid/2659?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2660</td><td class="ruletablebody" valign="top">WEB-MISC SSLv2 Server_Hello request (<a href="http://www.snort.org/search/sid/2660?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2661</td><td class="ruletablebody" valign="top">WEB-MISC TLSv1 Client_Hello request (<a href="http://www.snort.org/search/sid/2661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2662</td><td class="ruletablebody" valign="top">WEB-MISC TLSv1 Server_Hello request (<a href="http://www.snort.org/search/sid/2662?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">2705</td><td class="ruletablebody" valign="top">WEB-CLIENT JPEG parser heap overflow attempt (<a href="http://www.snort.org/search/sid/2705?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-0200">2004-0200</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11173">11173</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/security/bulletins/200409_jpeg.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3009</td><td class="ruletablebody" valign="top">BACKDOOR NetBus Pro 2.0 connection request (<a href="http://www.snort.org/search/sid/3009?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3010</td><td class="ruletablebody" valign="top">BACKDOOR RUX the Tick get windows directory attempt (<a href="http://www.snort.org/search/sid/3010?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3011</td><td class="ruletablebody" valign="top">BACKDOOR RUX the Tick get system directory attempt (<a href="http://www.snort.org/search/sid/3011?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3012</td><td class="ruletablebody" valign="top">BACKDOOR RUX the Tick upload/execute arbitrary file attempt (<a href="http://www.snort.org/search/sid/3012?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3013</td><td class="ruletablebody" valign="top">BACKDOOR Asylum 0.1 connection request (<a href="http://www.snort.org/search/sid/3013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3014</td><td class="ruletablebody" valign="top">BACKDOOR Asylum 0.1 connection established (<a href="http://www.snort.org/search/sid/3014?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3015</td><td class="ruletablebody" valign="top">BACKDOOR Insane Network 4.0 connection established (<a href="http://www.snort.org/search/sid/3015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3016</td><td class="ruletablebody" valign="top">BACKDOOR Insane Network 4.0 connection established port 63536 (<a href="http://www.snort.org/search/sid/3016?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3059</td><td class="ruletablebody" valign="top">WEB-MISC TLSv1 Client_Hello via SSLv2 handshake request (<a href="http://www.snort.org/search/sid/3059?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3063</td><td class="ruletablebody" valign="top">BACKDOOR Vampire 1.2 connection request (<a href="http://www.snort.org/search/sid/3063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3064</td><td class="ruletablebody" valign="top">BACKDOOR Vampire 1.2 connection confirmation (<a href="http://www.snort.org/search/sid/3064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3081</td><td class="ruletablebody" valign="top">BACKDOOR Y3KRAT 1.5 Connect (<a href="http://www.snort.org/search/sid/3081?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3082</td><td class="ruletablebody" valign="top">BACKDOOR Y3KRAT 1.5 Connect Client Response (<a href="http://www.snort.org/search/sid/3082?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3083</td><td class="ruletablebody" valign="top">BACKDOOR Y3KRAT 1.5 Connection confirmation (<a href="http://www.snort.org/search/sid/3083?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3132</td><td class="ruletablebody" valign="top">WEB-CLIENT PNG large image width download attempt (<a href="http://www.snort.org/search/sid/3132?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5503">2007-5503</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11523">11523</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3133</td><td class="ruletablebody" valign="top">WEB-CLIENT PNG large image height download attempt (<a href="http://www.snort.org/search/sid/3133?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-5503">2007-5503</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11523">11523</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-009.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3148</td><td class="ruletablebody" valign="top">WEB-CLIENT winhelp clsid attempt (<a href="http://www.snort.org/search/sid/3148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2004-1043">2004-1043</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/5874">5874</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.ngssoftware.com/advisories/ms-winhlp.txt">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3155</td><td class="ruletablebody" valign="top">BACKDOOR BackOrifice 2000 Inbound Traffic (<a href="http://www.snort.org/search/sid/3155?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3535</td><td class="ruletablebody" valign="top">WEB-CLIENT GIF transfer (<a href="http://www.snort.org/search/sid/3535?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3551</td><td class="ruletablebody" valign="top">WEB-CLIENT .hta download attempt (<a href="http://www.snort.org/search/sid/3551?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">not-suspicious</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3632</td><td class="ruletablebody" valign="top">WEB-CLIENT Bitmap width integer overflow attempt (<a href="http://www.snort.org/search/sid/3632?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3015">2008-3015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11171">11171</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3633</td><td class="ruletablebody" valign="top">WEB-CLIENT bitmap transfer (<a href="http://www.snort.org/search/sid/3633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3634</td><td class="ruletablebody" valign="top">WEB-CLIENT Bitmap width integer overflow multipacket attempt (<a href="http://www.snort.org/search/sid/3634?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-3015">2008-3015</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/11171">11171</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS08-052.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3635</td><td class="ruletablebody" valign="top">BACKDOOR Amanda 2.0 connection established (<a href="http://www.snort.org/search/sid/3635?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3636</td><td class="ruletablebody" valign="top">BACKDOOR Crazzy Net 5.0 connection established (<a href="http://www.snort.org/search/sid/3636?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3683</td><td class="ruletablebody" valign="top">WEB-CLIENT spoofed MIME-Type auto-execution attempt (<a href="http://www.snort.org/search/sid/3683?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0154">2001-0154</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/2524">2524</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS01-020.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3819</td><td class="ruletablebody" valign="top">WEB-CLIENT multipacket CHM file transfer start (<a href="http://www.snort.org/search/sid/3819?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3821</td><td class="ruletablebody" valign="top">WEB-CLIENT CHM file transfer attempt (<a href="http://www.snort.org/search/sid/3821?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1208">2005-1208</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13953">13953</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18482">18482</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-026.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">3822</td><td class="ruletablebody" valign="top">WEB-MISC Real Player realtext long URI request (<a href="http://www.snort.org/search/sid/3822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4132</td><td class="ruletablebody" valign="top">WEB-CLIENT msdds clsid attempt (<a href="http://www.snort.org/search/sid/4132?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2127">2005-2127</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14594">14594</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4133</td><td class="ruletablebody" valign="top">WEB-CLIENT devenum clsid attempt (<a href="http://www.snort.org/search/sid/4133?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4134</td><td class="ruletablebody" valign="top">WEB-CLIENT blnmgr clsid attempt (<a href="http://www.snort.org/search/sid/4134?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1990">2005-1990</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14511">14511</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-038.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4140</td><td class="ruletablebody" valign="top">DOS tcpdump tcp LDP print zero length message denial of service attempt (<a href="http://www.snort.org/search/sid/4140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1279">2005-1279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13389">13389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.frsirt.com/english/advisories/2005/0410">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4141</td><td class="ruletablebody" valign="top">DOS tcpdump udp LDP print zero length message denial of service attempt (<a href="http://www.snort.org/search/sid/4141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1279">2005-1279</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13389">13389</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.frsirt.com/english/advisories/2005/0410">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4143</td><td class="ruletablebody" valign="top">EXPLOIT lpd receive printer job cascade adaptor protocol request (<a href="http://www.snort.org/search/sid/4143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4194</td><td class="ruletablebody" valign="top">WEB-CLIENT multipacket CBO CBL CBM file transfer start (<a href="http://www.snort.org/search/sid/4194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4195</td><td class="ruletablebody" valign="top">WEB-CLIENT multipacket CBO CBL CBM file transfer attempt (<a href="http://www.snort.org/search/sid/4195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3448">2006-3448</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/13944">13944</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=18492">18492</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-031.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4643</td><td class="ruletablebody" valign="top">WEB-CLIENT malformed windows shortcut file buffer overflow attempt (<a href="http://www.snort.org/search/sid/4643?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2122">2005-2122</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15070">15070</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">4644</td><td class="ruletablebody" valign="top">WEB-CLIENT malformed windows shortcut file with comment buffer overflow attempt (<a href="http://www.snort.org/search/sid/4644?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-2122">2005-2122</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/15070">15070</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS05-049.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5319</td><td class="ruletablebody" valign="top">WEB-CLIENT Metasploit Windows picture and fax viewer wmf arbitrary code execution attempt (<a href="http://www.snort.org/search/sid/5319?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">web-application-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-4560">2005-4560</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16074">16074</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-001.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5713</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Metafile invalid header size integer overflow (<a href="http://www.snort.org/search/sid/5713?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-admin</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0020">2006-0020</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16516">16516</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5742</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger activitylogger runtime detection (<a href="http://www.snort.org/search/sid/5742?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080822">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5743</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker actualnames runtime detection - plugin list (<a href="http://www.snort.org/search/sid/5743?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074941">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5745</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adultlinks runtime detection - redirect (<a href="http://www.snort.org/search/sid/5745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072505">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5746</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adultlinks runtime detection - load url (<a href="http://www.snort.org/search/sid/5746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072505">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5747</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adultlinks runtime detection - log hits (<a href="http://www.snort.org/search/sid/5747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072505">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5748</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adultlinks runtime detection - ads (<a href="http://www.snort.org/search/sid/5748?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072505">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5750</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware dogpile runtime detection (<a href="http://www.snort.org/search/sid/5750?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079953">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5751</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware exactsearch runtime detection - switch search engine 1 (<a href="http://www.snort.org/search/sid/5751?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072519">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5752</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware exactsearch runtime detection - switch search engine 2 (<a href="http://www.snort.org/search/sid/5752?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072519">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5753</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware exactsearch runtime detection - topsearches (<a href="http://www.snort.org/search/sid/5753?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072519">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5754</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ezcybersearch runtime detection - ie auto search hijack (<a href="http://www.snort.org/search/sid/5754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5755</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ezcybersearch runtime detection - check update (<a href="http://www.snort.org/search/sid/5755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5756</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ezcybersearch runtime detection - add coolsites to ie favorites (<a href="http://www.snort.org/search/sid/5756?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5757</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ezcybersearch runtime detection - check toolbar setting (<a href="http://www.snort.org/search/sid/5757?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5758</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ezcybersearch runtime detection - download fastclick pop-under code (<a href="http://www.snort.org/search/sid/5758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5759</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger fearlesskeyspy runtime detection (<a href="http://www.snort.org/search/sid/5759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076298">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5761</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler bearshare runtime detection - ads popup (<a href="http://www.snort.org/search/sid/5761?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060286">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5762</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler bearshare runtime detection - p2p information request (<a href="http://www.snort.org/search/sid/5762?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060286">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5763</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler bearshare runtime detection - chat request (<a href="http://www.snort.org/search/sid/5763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060286">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5765</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker begin2search runtime detection - ico query (<a href="http://www.snort.org/search/sid/5765?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088175">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5766</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker begin2search runtime detection - install spyware trafficsector (<a href="http://www.snort.org/search/sid/5766?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088175">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5767</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker begin2search runtime detection - download unauthorized code (<a href="http://www.snort.org/search/sid/5767?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088175">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5768</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker begin2search runtime detection - pass information (<a href="http://www.snort.org/search/sid/5768?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088175">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5769</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker begin2search runtime detection - play bingo ads (<a href="http://www.snort.org/search/sid/5769?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088175">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5770</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware casinoonnet runtime detection (<a href="http://www.snort.org/search/sid/5770?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1254">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5771</td><td class="ruletablebody" valign="top">SPYWARE-PUT Screen-Scraper farsighter runtime detection - initial connection (<a href="http://www.snort.org/search/sid/5771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=587">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5773</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware forbes runtime detection (<a href="http://www.snort.org/search/sid/5773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075448">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5774</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker freescratch runtime detection - get card (<a href="http://www.snort.org/search/sid/5774?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073903">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5775</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker freescratch runtime detection - scratch card (<a href="http://www.snort.org/search/sid/5775?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073903">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5776</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler grokster runtime detection (<a href="http://www.snort.org/search/sid/5776?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060425">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5777</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger gurl watcher runtime detection (<a href="http://www.snort.org/search/sid/5777?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080847">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5778</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwpe windows activity logs (<a href="http://www.snort.org/search/sid/5778?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5779</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwpe shell file logs (<a href="http://www.snort.org/search/sid/5779?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5781</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwae windows activity logs (<a href="http://www.snort.org/search/sid/5781?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5783</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwae keystrokes log (<a href="http://www.snort.org/search/sid/5783?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5784</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger runtime detection - hwae urls browsed log (<a href="http://www.snort.org/search/sid/5784?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080851">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5785</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hithopper runtime detection - get xml setting (<a href="http://www.snort.org/search/sid/5785?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079079">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5786</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hithopper runtime detection - redirect (<a href="http://www.snort.org/search/sid/5786?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079079">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5787</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hithopper runtime detection - search (<a href="http://www.snort.org/search/sid/5787?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079079">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5788</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hithopper runtime detection - click toolbar buttons (<a href="http://www.snort.org/search/sid/5788?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079079">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5789</td><td class="ruletablebody" valign="top">SPYWARE-PUT keylogger pc actmon pro runtime detection - http (<a href="http://www.snort.org/search/sid/5789?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1989">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5791</td><td class="ruletablebody" valign="top">SPYWARE-PUT Dialer pluginaccess runtime detection - get pin (<a href="http://www.snort.org/search/sid/5791?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074883">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5792</td><td class="ruletablebody" valign="top">SPYWARE-PUT Dialer pluginaccess runtime detection - active proxy (<a href="http://www.snort.org/search/sid/5792?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074883">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5793</td><td class="ruletablebody" valign="top">SPYWARE-PUT Dialer pluginaccess runtime detection - redirect (<a href="http://www.snort.org/search/sid/5793?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074883">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5794</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker coolwebsearch.aboutblank variant runtime detection (<a href="http://www.snort.org/search/sid/5794?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076035">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5795</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ist powerscan runtime detection (<a href="http://www.snort.org/search/sid/5795?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077266">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5796</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware keenvalue runtime detection (<a href="http://www.snort.org/search/sid/5796?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094138">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5800</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware myway speedbar runtime detection - request config (<a href="http://www.snort.org/search/sid/5800?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090405">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5801</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware myway speedbar / mywebsearch toolbar runtime detection - track activity 1 (<a href="http://www.snort.org/search/sid/5801?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090405">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5803</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware myway speedbar / mywebsearch toolbar runtime detection - collect information (<a href="http://www.snort.org/search/sid/5803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090405">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5805</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware myway speedbar runtime detection - switch engines (<a href="http://www.snort.org/search/sid/5805?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090405">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5807</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopathomeselect runtime detection (<a href="http://www.snort.org/search/sid/5807?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074921">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5808</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shop at home search merchant redirect check (<a href="http://www.snort.org/search/sid/5808?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5809</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shop at home select merchant redirect in progress (<a href="http://www.snort.org/search/sid/5809?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5810</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shop at home select installation in progress (<a href="http://www.snort.org/search/sid/5810?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5811</td><td class="ruletablebody" valign="top">SPYWARE-PUT shop at home select installation in progress - clsid detected (<a href="http://www.snort.org/search/sid/5811?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nuker.com/container/details/shop_at_home_select.php">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5812</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - email notification (<a href="http://www.snort.org/search/sid/5812?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5813</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - create redirection (<a href="http://www.snort.org/search/sid/5813?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5814</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - create redirection (<a href="http://www.snort.org/search/sid/5814?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5815</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - destory redirection (<a href="http://www.snort.org/search/sid/5815?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5816</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - destory redirection (<a href="http://www.snort.org/search/sid/5816?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5817</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - check status (<a href="http://www.snort.org/search/sid/5817?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5818</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - check status (<a href="http://www.snort.org/search/sid/5818?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5819</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - check status (<a href="http://www.snort.org/search/sid/5819?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5820</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - destory log (<a href="http://www.snort.org/search/sid/5820?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5821</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - destory log (<a href="http://www.snort.org/search/sid/5821?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5822</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - view netstat (<a href="http://www.snort.org/search/sid/5822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5823</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool stealthredirector runtime detection - view netstat (<a href="http://www.snort.org/search/sid/5823?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076952">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5824</td><td class="ruletablebody" valign="top">SPYWARE-PUT Dialer stripplayer runtime detection (<a href="http://www.snort.org/search/sid/5824?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072548">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5825</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware broadcasturban tuner runtime detection - start tuner (<a href="http://www.snort.org/search/sid/5825?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=BroadcastURBAN%20tuner&amp;threatid=6093">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5826</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware broadcasturban tuner runtime detection - pass user info to server (<a href="http://www.snort.org/search/sid/5826?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=BroadcastURBAN%20tuner&amp;threatid=6093">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5827</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware broadcasturban tuner runtime detection - get gateway (<a href="http://www.snort.org/search/sid/5827?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=BroadcastURBAN%20tuner&amp;threatid=6093">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5828</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware broadcasturban tuner runtime detection - connect to station (<a href="http://www.snort.org/search/sid/5828?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=BroadcastURBAN%20tuner&amp;threatid=6093">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5829</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler clipgenie runtime detection (<a href="http://www.snort.org/search/sid/5829?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073486">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5835</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware gamespy_arcade runtime detection (<a href="http://www.snort.org/search/sid/5835?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1241">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5836</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler nictech.bm2 runtime detection (<a href="http://www.snort.org/search/sid/5836?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href='http://"research.sunbelt-software.com/threat_display.cfm?name=NicTech.BM2&amp;threatid=15195"'>URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5837</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware ucmore runtime detection - track activity (<a href="http://www.snort.org/search/sid/5837?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=58660">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5838</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware ucmore runtime detection - get sponsor/ad links (<a href="http://www.snort.org/search/sid/5838?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=58660">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5839</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware ucmore runtime detection - click sponsor/ad link (<a href="http://www.snort.org/search/sid/5839?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=58660">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5840</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker sep runtime detection (<a href="http://www.snort.org/search/sid/5840?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://process.networktechs.com/sep.dll.php">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5841</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler minibug runtime detection - retrieve weather information (<a href="http://www.snort.org/search/sid/5841?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2178">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5842</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler minibug runtime detection - ads (<a href="http://www.snort.org/search/sid/5842?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2178">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5843</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker surfsidekick runtime detection - hijack ie auto search (<a href="http://www.snort.org/search/sid/5843?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090721">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5844</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker surfsidekick runtime detection - post request (<a href="http://www.snort.org/search/sid/5844?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090721">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5845</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker surfsidekick runtime detection - update request (<a href="http://www.snort.org/search/sid/5845?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090721">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5846</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler VX2/DLmax/BestOffers/Aurora runtime detection (<a href="http://www.snort.org/search/sid/5846?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096297">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5847</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - p2p client home (<a href="http://www.snort.org/search/sid/5847?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5849</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - update request (<a href="http://www.snort.org/search/sid/5849?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5850</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - check update (<a href="http://www.snort.org/search/sid/5850?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5851</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - .txt .dat and .lst requests (<a href="http://www.snort.org/search/sid/5851?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5852</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - cache.dat request (<a href="http://www.snort.org/search/sid/5852?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5853</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - download ads (<a href="http://www.snort.org/search/sid/5853?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5854</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware warez_p2p runtime detection - pass user information (<a href="http://www.snort.org/search/sid/5854?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/category_show.php?id=5">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5855</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker funbuddyicons runtime detection - request config (<a href="http://www.snort.org/search/sid/5855?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.pchell.com/support/funbuddyicons.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5857</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker funbuddyicons runtime detection - mysaconfg request (<a href="http://www.snort.org/search/sid/5857?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.pchell.com/support/funbuddyicons.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5858</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware praizetoolbar runtime detection (<a href="http://www.snort.org/search/sid/5858?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079048">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5859</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker daosearch runtime detection - information request (<a href="http://www.snort.org/search/sid/5859?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/data/adware.daosearch.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5860</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker daosearch runtime detection - search hijack (<a href="http://www.snort.org/search/sid/5860?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/data/adware.daosearch.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5861</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker isearch runtime detection - toolbar information request (<a href="http://www.snort.org/search/sid/5861?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082740">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5862</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker isearch runtime detection - search hijack 1 (<a href="http://www.snort.org/search/sid/5862?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082740">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5863</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker isearch runtime detection - search hijack 2 (<a href="http://www.snort.org/search/sid/5863?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082740">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5864</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker isearch runtime detection - search in toolbar (<a href="http://www.snort.org/search/sid/5864?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082740">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5865</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware zapspot runtime detection - pop up ads (<a href="http://www.snort.org/search/sid/5865?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075441">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5866</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker couponbar runtime detection - download new coupon offers and links (<a href="http://www.snort.org/search/sid/5866?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079137">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5867</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker couponbar runtime detection - get updates to toolbar buttons (<a href="http://www.snort.org/search/sid/5867?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079137">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5868</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker couponbar runtime detection - view coupon offers (<a href="http://www.snort.org/search/sid/5868?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079137">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5871</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler VX2/ABetterInternet transponder thinstaller runtime detection - post information (<a href="http://www.snort.org/search/sid/5871?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.geekstogo.com/forum/Aurora_spyware_Nailexe-t24344.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5872</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware hyperlinker runtime detection (<a href="http://www.snort.org/search/sid/5872?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090785">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5873</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware pc acme pro runtime detection (<a href="http://www.snort.org/search/sid/5873?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2271">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5874</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware pc acme pro runtime detection (<a href="http://www.snort.org/search/sid/5874?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2271">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5875</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool eraser runtime detection - detonate (<a href="http://www.snort.org/search/sid/5875?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072642">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5876</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool eraser runtime detection - disinfect (<a href="http://www.snort.org/search/sid/5876?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072642">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5882</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spyagent runtime detect - alert notification (<a href="http://www.snort.org/search/sid/5882?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=22">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5883</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies saria 1.0 runtime detection - send user information (<a href="http://www.snort.org/search/sid/5883?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080923">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5884</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker copernic meta toolbar runtime detection - check toolbar &amp; category info (<a href="http://www.snort.org/search/sid/5884?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.copernic.com/en/products/meta/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5885</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker copernic meta toolbar runtime detection - ie autosearch &amp; search assistant hijack (<a href="http://www.snort.org/search/sid/5885?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.copernic.com/en/products/meta/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5886</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker copernic meta toolbar runtime detection - pass info to server (<a href="http://www.snort.org/search/sid/5886?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.copernic.com/en/products/meta/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5887</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopnav runtime detection - ie search assistant hijack (<a href="http://www.snort.org/search/sid/5887?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=582">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5888</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopnav runtime detection - ie auto search hijack (<a href="http://www.snort.org/search/sid/5888?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=582">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5889</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopnav runtime detection - collect information (<a href="http://www.snort.org/search/sid/5889?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=582">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5890</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopnav runtime detection - self-update request 1 (<a href="http://www.snort.org/search/sid/5890?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=582">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5891</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopnav runtime detection - self-update request 2 (<a href="http://www.snort.org/search/sid/5891?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=582">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5894</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool timbuktu pro runtime detection - smb (<a href="http://www.snort.org/search/sid/5894?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5895</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool timbuktu pro runtime detection - tcp port 407 (<a href="http://www.snort.org/search/sid/5895?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5896</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool timbuktu pro runtime detection - tcp port 407 (<a href="http://www.snort.org/search/sid/5896?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5897</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool timbuktu pro runtime detection - udp port 407 (<a href="http://www.snort.org/search/sid/5897?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5898</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware adtools runtime detection - track user activity (<a href="http://www.snort.org/search/sid/5898?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5899</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware adtools-screenmate runtime detection - generate desktop alert (<a href="http://www.snort.org/search/sid/5899?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5900</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware adtools-communicator runtime detection - collect information (<a href="http://www.snort.org/search/sid/5900?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5901</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware adtools-communicator runtime detection - download self-update (<a href="http://www.snort.org/search/sid/5901?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082798">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5903</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware download accelerator plus runtime detection - get ads (<a href="http://www.snort.org/search/sid/5903?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://reviews.cnet.com/Download_Accelerator_Plus_5_3/4505-3513_7-20035409.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5904</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware download accelerator plus runtime detection - download files (<a href="http://www.snort.org/search/sid/5904?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://reviews.cnet.com/Download_Accelerator_Plus_5_3/4505-3513_7-20035409.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5905</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware download accelerator plus runtime detection - games center request (<a href="http://www.snort.org/search/sid/5905?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://reviews.cnet.com/Download_Accelerator_Plus_5_3/4505-3513_7-20035409.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5906</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware download accelerator plus runtime detection - update (<a href="http://www.snort.org/search/sid/5906?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://reviews.cnet.com/Download_Accelerator_Plus_5_3/4505-3513_7-20035409.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5907</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware e2give runtime detection - check update (<a href="http://www.snort.org/search/sid/5907?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075049">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5908</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware e2give runtime detection - redirect affiliate site request 1 (<a href="http://www.snort.org/search/sid/5908?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075049">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5909</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware e2give runtime detection - redirect affiliate site request 2 (<a href="http://www.snort.org/search/sid/5909?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075049">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5910</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware casalemedia runtime detection (<a href="http://www.snort.org/search/sid/5910?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082755">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5911</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware smartpops runtime detection (<a href="http://www.snort.org/search/sid/5911?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074758">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5913</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler smasoft webdownloader runtime detection (<a href="http://www.snort.org/search/sid/5913?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/w/webdownloader/Webdownloader1.2.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5914</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker locatorstoolbar runtime detection - configuration download (<a href="http://www.snort.org/search/sid/5914?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076978">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5915</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker locatorstoolbar runtime detection - autosearch hijack (<a href="http://www.snort.org/search/sid/5915?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076978">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5916</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker locatorstoolbar runtime detection - sidebar search (<a href="http://www.snort.org/search/sid/5916?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076978">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5917</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker locatorstoolbar runtime detection - toolbar search (<a href="http://www.snort.org/search/sid/5917?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076978">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5918</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker painter runtime detection - ping 'alive' signal (<a href="http://www.snort.org/search/sid/5918?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5919</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker painter runtime detection - redirect to klikvipsearch (<a href="http://www.snort.org/search/sid/5919?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5920</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker painter runtime detection - redirect yahoo search through online-casino-searcher (<a href="http://www.snort.org/search/sid/5920?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5921</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware fftoolbar toolbar runtime detection - send user url request (<a href="http://www.snort.org/search/sid/5921?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097640">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5922</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware fftoolbar toolbar runtime detection - display advertisement news (<a href="http://www.snort.org/search/sid/5922?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097640">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5923</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware active shopper runtime detection - side search request (<a href="http://www.snort.org/search/sid/5923?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2410">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5924</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware active shopper runtime detection - redirect (<a href="http://www.snort.org/search/sid/5924?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2410">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5925</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware active shopper runtime detection - check (<a href="http://www.snort.org/search/sid/5925?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2410">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5926</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware active shopper runtime detection - collect information (<a href="http://www.snort.org/search/sid/5926?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2410">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5927</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware cashbar runtime detection - .smx requests (<a href="http://www.snort.org/search/sid/5927?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076621">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5928</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware cashbar runtime detection - ads request (<a href="http://www.snort.org/search/sid/5928?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076621">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5929</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware cashbar runtime detection - pop-up ad 1 (<a href="http://www.snort.org/search/sid/5929?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076621">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5930</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware cashbar runtime detection - pop-up ad 2 (<a href="http://www.snort.org/search/sid/5930?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076621">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5932</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware cashbar runtime detection - stats track (<a href="http://www.snort.org/search/sid/5932?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076621">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5933</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dropspam runtime detection - search request 1 (<a href="http://www.snort.org/search/sid/5933?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5934</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dropspam runtime detection - search request 2 (<a href="http://www.snort.org/search/sid/5934?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5935</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dropspam runtime detection - search request 3 (<a href="http://www.snort.org/search/sid/5935?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5936</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dropspam runtime detection - side search (<a href="http://www.snort.org/search/sid/5936?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5937</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dropspam runtime detection - pass information to its controlling server (<a href="http://www.snort.org/search/sid/5937?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5938</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dropspam runtime detection - third party information collection (<a href="http://www.snort.org/search/sid/5938?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5939</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware supreme toolbar runtime detection - get cfg (<a href="http://www.snort.org/search/sid/5939?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097530">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5940</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware supreme toolbar runtime detection - search request (<a href="http://www.snort.org/search/sid/5940?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097530">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5941</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware supreme toolbar runtime detection - track (<a href="http://www.snort.org/search/sid/5941?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097530">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5942</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware supreme toolbar runtime detection - pass information to its controlling server (<a href="http://www.snort.org/search/sid/5942?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5943</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware supreme toolbar runtime detection - third party information collection (<a href="http://www.snort.org/search/sid/5943?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097437">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5944</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware free access bar runtime detection 1 (<a href="http://www.snort.org/search/sid/5944?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2493">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5946</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware weirdontheweb runtime detection - monitor user web activity (<a href="http://www.snort.org/search/sid/5946?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5947</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware weirdontheweb runtime detection - log url (<a href="http://www.snort.org/search/sid/5947?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5948</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware weirdontheweb runtime detection - update notifier (<a href="http://www.snort.org/search/sid/5948?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5949</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware iggsey toolbar detection - simpleticker.htm request (<a href="http://www.snort.org/search/sid/5949?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094796">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5950</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware iggsey toolbar detection - pass information to server (<a href="http://www.snort.org/search/sid/5950?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094796">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5951</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware iggsey toolbar detection - search request (<a href="http://www.snort.org/search/sid/5951?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094796">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5952</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker 123mania runtime detection - autosearch hijacking (<a href="http://www.snort.org/search/sid/5952?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=940">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5953</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker 123mania runtime detection - sidesearch hijacking (<a href="http://www.snort.org/search/sid/5953?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=940">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5954</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware browserpal runtime detection - post user info to server (<a href="http://www.snort.org/search/sid/5954?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074906">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5955</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware browserpal runtime detection - adblocker function (<a href="http://www.snort.org/search/sid/5955?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074906">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5956</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool ghostvoice 1.02 icq notification of server installation (<a href="http://www.snort.org/search/sid/5956?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073224">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5957</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool ghostvoice 1.02 runtime detection (<a href="http://www.snort.org/search/sid/5957?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5960</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker raxsearch detection - pop-up raxsearch window (<a href="http://www.snort.org/search/sid/5960?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2485">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5961</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker searchfast detection - news ticker (<a href="http://www.snort.org/search/sid/5961?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5963</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker searchfast detection - search request (<a href="http://www.snort.org/search/sid/5963?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5964</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker searchfast detection - track user activity &amp; get 'relates links' of the toolbar (<a href="http://www.snort.org/search/sid/5964?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5965</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker searchfast detection - get toolbar cfg (<a href="http://www.snort.org/search/sid/5965?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1694">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5966</td><td class="ruletablebody" valign="top">SPYWARE-PUT trackware searchinweb detection - search request (<a href="http://www.snort.org/search/sid/5966?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1787">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5967</td><td class="ruletablebody" valign="top">SPYWARE-PUT trackware searchinweb detection - click result links (<a href="http://www.snort.org/search/sid/5967?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1787">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5968</td><td class="ruletablebody" valign="top">SPYWARE-PUT trackware searchinweb detection - redirect (<a href="http://www.snort.org/search/sid/5968?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1787">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5969</td><td class="ruletablebody" valign="top">SPYWARE-PUT trackware searchinweb detection - collect information (<a href="http://www.snort.org/search/sid/5969?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1787">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5970</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker smart finder detection - keys update (<a href="http://www.snort.org/search/sid/5970?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2165">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5971</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker smart finder detection - track hits (<a href="http://www.snort.org/search/sid/5971?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2165">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5972</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker smart finder detection - ie autosearch hijack 1 (<a href="http://www.snort.org/search/sid/5972?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2165">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5973</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker smart finder detection - search engines hijack (<a href="http://www.snort.org/search/sid/5973?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2165">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5974</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker smart finder detection - pop-up ads (<a href="http://www.snort.org/search/sid/5974?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2165">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5975</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker topfive searchassistant detection - search request (<a href="http://www.snort.org/search/sid/5975?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2645">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5976</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker topfive searchassistant detection - side search (<a href="http://www.snort.org/search/sid/5976?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2645">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5977</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker topfive searchassistant detection - post user information to server (<a href="http://www.snort.org/search/sid/5977?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2645">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5978</td><td class="ruletablebody" valign="top">SPYWARE-PUT hijacker topfive searchassistant detection - update (<a href="http://www.snort.org/search/sid/5978?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2645">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5979</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware anwb toolbar runtime detection - track user ip address (<a href="http://www.snort.org/search/sid/5979?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078342">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5980</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware anwb toolbar runtime detection - display advertisement (<a href="http://www.snort.org/search/sid/5980?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078342">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5981</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker seeqtoolbar runtime detection - autosearch hijack or search in toolbar (<a href="http://www.snort.org/search/sid/5981?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1026">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5982</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker seeqtoolbar runtime detection - email login page (<a href="http://www.snort.org/search/sid/5982?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1026">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5983</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware powerstrip runtime detection (<a href="http://www.snort.org/search/sid/5983?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074932">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5984</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware push toolbar installtime detection - user information collect (<a href="http://www.snort.org/search/sid/5984?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079100">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5985</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware push toolbar runtime detection - toolbar information request (<a href="http://www.snort.org/search/sid/5985?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079100">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5986</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler teomasearchbar runtime detection (<a href="http://www.snort.org/search/sid/5986?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.castlecops.com/tk731-Teoma_Bar.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5987</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker wishbone runtime detection (<a href="http://www.snort.org/search/sid/5987?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1784">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5988</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware windupdates-mediagateway runtime detection - post data (<a href="http://www.snort.org/search/sid/5988?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5989</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware broadcastpc runtime detection - get config (<a href="http://www.snort.org/search/sid/5989?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074364">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5990</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware broadcastpc runtime detection - get up-to-date movie/tv/ad information (<a href="http://www.snort.org/search/sid/5990?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074364">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5991</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker getmirar runtime detection - search request (<a href="http://www.snort.org/search/sid/5991?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077933">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5993</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker getmirar runtime detection - track activity (<a href="http://www.snort.org/search/sid/5993?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077933">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5994</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker getmirar runtime detection - click related button (<a href="http://www.snort.org/search/sid/5994?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077933">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5995</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware offeragent runtime detection - information checking (<a href="http://www.snort.org/search/sid/5995?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096710">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">5996</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware offeragent runtime detection - ads request (<a href="http://www.snort.org/search/sid/5996?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096710">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6012</td><td class="ruletablebody" valign="top">BACKDOOR coolcat runtime connection detection - tcp 1 (<a href="http://www.snort.org/search/sid/6012?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=555">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6013</td><td class="ruletablebody" valign="top">BACKDOOR coolcat runtime connection detection - tcp 2 (<a href="http://www.snort.org/search/sid/6013?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=555">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6015</td><td class="ruletablebody" valign="top">BACKDOOR dsk lite 1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6015?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075866">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6016</td><td class="ruletablebody" valign="top">BACKDOOR dsk lite 1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6016?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075866">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6018</td><td class="ruletablebody" valign="top">BACKDOOR dsk lite 1.0 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6018?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075866">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6021</td><td class="ruletablebody" valign="top">BACKDOOR silent spy 2.10 command response port 4225 (<a href="http://www.snort.org/search/sid/6021?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073048">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6022</td><td class="ruletablebody" valign="top">BACKDOOR silent spy 2.10 command response port 4226 (<a href="http://www.snort.org/search/sid/6022?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073048">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6023</td><td class="ruletablebody" valign="top">BACKDOOR silent spy 2.10 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6023?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073048">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6024</td><td class="ruletablebody" valign="top">BACKDOOR nuclear rat v6_21 runtime detection (<a href="http://www.snort.org/search/sid/6024?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077717">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6026</td><td class="ruletablebody" valign="top">BACKDOOR dimbus 1.0 runtime detection - get pc info (<a href="http://www.snort.org/search/sid/6026?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060480">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6028</td><td class="ruletablebody" valign="top">BACKDOOR cyberpaky runtime detection (<a href="http://www.snort.org/search/sid/6028?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/c/cyberpaky/Cyberpaky1.8.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6029</td><td class="ruletablebody" valign="top">BACKDOOR fkwp 2.0 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6029?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_3088_eltc_editorfkwp.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6035</td><td class="ruletablebody" valign="top">BACKDOOR minicommand runtime detection - initial connection server-to-client (<a href="http://www.snort.org/search/sid/6035?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075932">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6037</td><td class="ruletablebody" valign="top">BACKDOOR netbus 1.7 runtime detection - email notification (<a href="http://www.snort.org/search/sid/6037?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.2-spyware.com/file-backdoor-netbus-12-exe.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6039</td><td class="ruletablebody" valign="top">BACKDOOR fade 1.0 runtime detection - notification (<a href="http://www.snort.org/search/sid/6039?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076292">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6040</td><td class="ruletablebody" valign="top">BACKDOOR fade 1.0 runtime detection - enable keylogger (<a href="http://www.snort.org/search/sid/6040?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076292">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6044</td><td class="ruletablebody" valign="top">BACKDOOR fear 0.2 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6044?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6045</td><td class="ruletablebody" valign="top">BACKDOOR fear 0.2 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6045?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6046</td><td class="ruletablebody" valign="top">BACKDOOR fear 0.2 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6046?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6047</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - connect (<a href="http://www.snort.org/search/sid/6047?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6048</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - connect (<a href="http://www.snort.org/search/sid/6048?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6049</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - upload (<a href="http://www.snort.org/search/sid/6049?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6050</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - upload (<a href="http://www.snort.org/search/sid/6050?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6051</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - set volume (<a href="http://www.snort.org/search/sid/6051?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6052</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - set volume (<a href="http://www.snort.org/search/sid/6052?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6053</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - do script remotely (<a href="http://www.snort.org/search/sid/6053?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6054</td><td class="ruletablebody" valign="top">BACKDOOR fun factory runtime detection - do script remotely (<a href="http://www.snort.org/search/sid/6054?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1649">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6055</td><td class="ruletablebody" valign="top">BACKDOOR bifrose 1.1 runtime detection (<a href="http://www.snort.org/search/sid/6055?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1464">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6056</td><td class="ruletablebody" valign="top">BACKDOOR bifrose 1.1 runtime detection (<a href="http://www.snort.org/search/sid/6056?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1464">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6058</td><td class="ruletablebody" valign="top">BACKDOOR neurotickat1.3 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6058?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=31859">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6060</td><td class="ruletablebody" valign="top">BACKDOOR neurotickat1.3 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6060?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=31859">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6061</td><td class="ruletablebody" valign="top">BACKDOOR neurotickat1.3 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6061?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=31859">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6062</td><td class="ruletablebody" valign="top">BACKDOOR neurotickat1.3 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6062?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=31859">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6063</td><td class="ruletablebody" valign="top">BACKDOOR schwindler 1.82 runtime detection (<a href="http://www.snort.org/search/sid/6063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=5287">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6064</td><td class="ruletablebody" valign="top">BACKDOOR schwindler 1.82 runtime detection (<a href="http://www.snort.org/search/sid/6064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=5287">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6066</td><td class="ruletablebody" valign="top">BACKDOOR optixlite 1.0 runtime detection - connection success server-to-client (<a href="http://www.snort.org/search/sid/6066?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6069</td><td class="ruletablebody" valign="top">BACKDOOR optixlite 1.0 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6070</td><td class="ruletablebody" valign="top">BACKDOOR freak 1.0 runtime detection - irc notification (<a href="http://www.snort.org/search/sid/6070?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073808">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6071</td><td class="ruletablebody" valign="top">BACKDOOR freak 1.0 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6071?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073808">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6073</td><td class="ruletablebody" valign="top">BACKDOOR freak 1.0 runtime detection - initial connection server-to-client (<a href="http://www.snort.org/search/sid/6073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.ca.com/us/securityadvisor/pest/pest.aspx?id=453073808">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6074</td><td class="ruletablebody" valign="top">BACKDOOR xhx 1.6 runtime detection - initial connection client-to-server (<a href="http://www.snort.org/search/sid/6074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084140">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6075</td><td class="ruletablebody" valign="top">BACKDOOR xhx 1.6 runtime detection - initial connection server-to-client (<a href="http://www.snort.org/search/sid/6075?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084140">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6076</td><td class="ruletablebody" valign="top">BACKDOOR amiboide uploader runtime detection - init connection (<a href="http://www.snort.org/search/sid/6076?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088579">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6077</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - get information (<a href="http://www.snort.org/search/sid/6077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6078</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - get information (<a href="http://www.snort.org/search/sid/6078?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59685">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6079</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - show autospy (<a href="http://www.snort.org/search/sid/6079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6080</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - show autospy (<a href="http://www.snort.org/search/sid/6080?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59685">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6081</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - show nude pic (<a href="http://www.snort.org/search/sid/6081?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6082</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - show nude pic (<a href="http://www.snort.org/search/sid/6082?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59685">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6083</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - hide taskbar (<a href="http://www.snort.org/search/sid/6083?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6084</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - hide taskbar (<a href="http://www.snort.org/search/sid/6084?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59685">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6085</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - make directory (<a href="http://www.snort.org/search/sid/6085?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6086</td><td class="ruletablebody" valign="top">BACKDOOR autospy runtime detection - make directory (<a href="http://www.snort.org/search/sid/6086?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59685">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6087</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6087?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6088</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection - init connection (<a href="http://www.snort.org/search/sid/6088?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=611">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6089</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6089?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6090</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection - get memory info (<a href="http://www.snort.org/search/sid/6090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=611">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6091</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6092</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection - get harddisk info (<a href="http://www.snort.org/search/sid/6092?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=611">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6093</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6093?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6094</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection - get drive info (<a href="http://www.snort.org/search/sid/6094?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=611">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6095</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6095?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6096</td><td class="ruletablebody" valign="top">BACKDOOR a trojan 2.0 runtime detection - get system info (<a href="http://www.snort.org/search/sid/6096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=611">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6097</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection (<a href="http://www.snort.org/search/sid/6097?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6098</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection - check server (<a href="http://www.snort.org/search/sid/6098?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6099</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection (<a href="http://www.snort.org/search/sid/6099?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6100</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection - view content of directory (<a href="http://www.snort.org/search/sid/6100?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6101</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection (<a href="http://www.snort.org/search/sid/6101?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6102</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection - execute command (<a href="http://www.snort.org/search/sid/6102?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6103</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection (<a href="http://www.snort.org/search/sid/6103?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6104</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection - upload file (<a href="http://www.snort.org/search/sid/6104?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6105</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection (<a href="http://www.snort.org/search/sid/6105?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6106</td><td class="ruletablebody" valign="top">BACKDOOR alvgus 2000 runtime detection - download file (<a href="http://www.snort.org/search/sid/6106?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6107</td><td class="ruletablebody" valign="top">BACKDOOR backage 3.1 runtime detection (<a href="http://www.snort.org/search/sid/6107?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=698">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6108</td><td class="ruletablebody" valign="top">BACKDOOR dagger v1.1.40 runtime detection (<a href="http://www.snort.org/search/sid/6108?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1477">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6109</td><td class="ruletablebody" valign="top">BACKDOOR dagger v1.1.40 runtime detection (<a href="http://www.snort.org/search/sid/6109?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1641">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6110</td><td class="ruletablebody" valign="top">BACKDOOR forced entry v1.1 beta runtime detection (<a href="http://www.snort.org/search/sid/6110?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=2160">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6111</td><td class="ruletablebody" valign="top">BACKDOOR optix 1.32 runtime detection - init conn (<a href="http://www.snort.org/search/sid/6111?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453085748">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6112</td><td class="ruletablebody" valign="top">BACKDOOR optix 1.32 runtime detection - init conn (<a href="http://www.snort.org/search/sid/6112?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453085748">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6113</td><td class="ruletablebody" valign="top">BACKDOOR optix 1.32 runtime detection - init conn (<a href="http://www.snort.org/search/sid/6113?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453085748">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6114</td><td class="ruletablebody" valign="top">BACKDOOR optix 1.32 runtime detection - email notification (<a href="http://www.snort.org/search/sid/6114?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453085748">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6115</td><td class="ruletablebody" valign="top">BACKDOOR optix 1.32 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6115?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453085748">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6116</td><td class="ruletablebody" valign="top">BACKDOOR fore v1.0 beta runtime detection - init conn (<a href="http://www.snort.org/search/sid/6116?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086922">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6117</td><td class="ruletablebody" valign="top">BACKDOOR fore v1.0 beta runtime detection - init conn (<a href="http://www.snort.org/search/sid/6117?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086922">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6118</td><td class="ruletablebody" valign="top">BACKDOOR net runner runtime detection - initial connection client-to-server (<a href="http://www.snort.org/search/sid/6118?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077503">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6119</td><td class="ruletablebody" valign="top">BACKDOOR net runner runtime detection - initial connection server-to-client (<a href="http://www.snort.org/search/sid/6119?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077503">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6120</td><td class="ruletablebody" valign="top">BACKDOOR net runner runtime detection - download file client-to-server (<a href="http://www.snort.org/search/sid/6120?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077503">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6121</td><td class="ruletablebody" valign="top">BACKDOOR net runner runtime detection - download file server-to-client (<a href="http://www.snort.org/search/sid/6121?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077503">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6122</td><td class="ruletablebody" valign="top">BACKDOOR millenium v1.0 runtime detection (<a href="http://www.snort.org/search/sid/6122?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076392">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6123</td><td class="ruletablebody" valign="top">BACKDOOR ambush 1.0 runtime detection - ping client-to-server (<a href="http://www.snort.org/search/sid/6123?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=238">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6124</td><td class="ruletablebody" valign="top">BACKDOOR ambush 1.0 runtime detection - ping server-to-client (<a href="http://www.snort.org/search/sid/6124?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=238">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6127</td><td class="ruletablebody" valign="top">BACKDOOR dkangel runtime detection - udp client-to-server (<a href="http://www.snort.org/search/sid/6127?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076278">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6129</td><td class="ruletablebody" valign="top">BACKDOOR chupacabra 1.0 runtime detection (<a href="http://www.snort.org/search/sid/6129?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6130</td><td class="ruletablebody" valign="top">BACKDOOR chupacabra 1.0 runtime detection - get computer name (<a href="http://www.snort.org/search/sid/6130?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=21339">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6131</td><td class="ruletablebody" valign="top">BACKDOOR chupacabra 1.0 runtime detection (<a href="http://www.snort.org/search/sid/6131?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6132</td><td class="ruletablebody" valign="top">BACKDOOR chupacabra 1.0 runtime detection - get user name (<a href="http://www.snort.org/search/sid/6132?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=21339">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6133</td><td class="ruletablebody" valign="top">BACKDOOR chupacabra 1.0 runtime detection - send messages (<a href="http://www.snort.org/search/sid/6133?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=21339">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6134</td><td class="ruletablebody" valign="top">BACKDOOR chupacabra 1.0 runtime detection - delete file (<a href="http://www.snort.org/search/sid/6134?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=21339">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6136</td><td class="ruletablebody" valign="top">BACKDOOR clindestine 1.0 runtime detection - capture big screen (<a href="http://www.snort.org/search/sid/6136?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6137</td><td class="ruletablebody" valign="top">BACKDOOR clindestine 1.0 runtime detection - capture small screen (<a href="http://www.snort.org/search/sid/6137?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6138</td><td class="ruletablebody" valign="top">BACKDOOR clindestine 1.0 runtime detection - get computer info (<a href="http://www.snort.org/search/sid/6138?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6139</td><td class="ruletablebody" valign="top">BACKDOOR clindestine 1.0 runtime detection - get system directory (<a href="http://www.snort.org/search/sid/6139?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6143</td><td class="ruletablebody" valign="top">BACKDOOR dark connection inside v1.2 runtime detection (<a href="http://www.snort.org/search/sid/6143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075571">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6144</td><td class="ruletablebody" valign="top">BACKDOOR mantis runtime detection - sent notify option client-to-server 1 (<a href="http://www.snort.org/search/sid/6144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3648">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6145</td><td class="ruletablebody" valign="top">BACKDOOR mantis runtime detection - sent notify option server-to-client (<a href="http://www.snort.org/search/sid/6145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3648">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6146</td><td class="ruletablebody" valign="top">BACKDOOR mantis runtime detection - sent notify option client-to-server 2 (<a href="http://www.snort.org/search/sid/6146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3648">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6147</td><td class="ruletablebody" valign="top">BACKDOOR mantis runtime detection - go to address client-to-server (<a href="http://www.snort.org/search/sid/6147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3648">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6148</td><td class="ruletablebody" valign="top">BACKDOOR mantis runtime detection - go to address server-to-client (<a href="http://www.snort.org/search/sid/6148?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3648">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6149</td><td class="ruletablebody" valign="top">BACKDOOR netcontrol v1.0.8 runtime detection (<a href="http://www.snort.org/search/sid/6149?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.system-help.com/spyware/netcontrol/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6150</td><td class="ruletablebody" valign="top">BACKDOOR netcontrol v1.0.8 runtime detection (<a href="http://www.snort.org/search/sid/6150?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.system-help.com/spyware/netcontrol/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6151</td><td class="ruletablebody" valign="top">BACKDOOR back attack v1.4 runtime detection (<a href="http://www.snort.org/search/sid/6151?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074438">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6152</td><td class="ruletablebody" valign="top">BACKDOOR dirtxt runtime detection - chdir client-to-server (<a href="http://www.snort.org/search/sid/6152?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_1396_dirtxt_trojan.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6153</td><td class="ruletablebody" valign="top">BACKDOOR dirtxt runtime detection - chdir server-to-client (<a href="http://www.snort.org/search/sid/6153?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_1396_dirtxt_trojan.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6154</td><td class="ruletablebody" valign="top">BACKDOOR dirtxt runtime detection - info client-to-server (<a href="http://www.snort.org/search/sid/6154?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_1396_dirtxt_trojan.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6155</td><td class="ruletablebody" valign="top">BACKDOOR dirtxt runtime detection - info server-to-client (<a href="http://www.snort.org/search/sid/6155?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_1396_dirtxt_trojan.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6156</td><td class="ruletablebody" valign="top">BACKDOOR dirtxt runtime detection - view client-to-server (<a href="http://www.snort.org/search/sid/6156?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_1396_dirtxt_trojan.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6157</td><td class="ruletablebody" valign="top">BACKDOOR dirtxt runtime detection - view server-to-client (<a href="http://www.snort.org/search/sid/6157?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/spydet_1396_dirtxt_trojan.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6159</td><td class="ruletablebody" valign="top">BACKDOOR delirium of disorder runtime detection - enable keylogger (<a href="http://www.snort.org/search/sid/6159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/d/deleriumofdisorder/Deleriumofdisorder.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6160</td><td class="ruletablebody" valign="top">BACKDOOR delirium of disorder runtime detection - stop keylogger (<a href="http://www.snort.org/search/sid/6160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/d/deleriumofdisorder/Deleriumofdisorder.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6161</td><td class="ruletablebody" valign="top">BACKDOOR furax 1.0 b2 runtime detection (<a href="http://www.snort.org/search/sid/6161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/f/furax/Furax1.0b2.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6164</td><td class="ruletablebody" valign="top">BACKDOOR psyrat 1.0 runtime detection (<a href="http://www.snort.org/search/sid/6164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/p/psyrat/Psyrat1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6165</td><td class="ruletablebody" valign="top">BACKDOOR psyrat 1.0 runtime detection (<a href="http://www.snort.org/search/sid/6165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/p/psyrat/Psyrat1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6166</td><td class="ruletablebody" valign="top">BACKDOOR unicorn runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6166?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1506">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6167</td><td class="ruletablebody" valign="top">BACKDOOR unicorn runtime detection - set wallpaper client-to-server (<a href="http://www.snort.org/search/sid/6167?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1506">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6168</td><td class="ruletablebody" valign="top">BACKDOOR unicorn runtime detection - set wallpaper server-to-client (<a href="http://www.snort.org/search/sid/6168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1506">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6169</td><td class="ruletablebody" valign="top">BACKDOOR digital rootbeer runtime detection (<a href="http://www.snort.org/search/sid/6169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1641">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6170</td><td class="ruletablebody" valign="top">BACKDOOR digital rootbeer runtime detection (<a href="http://www.snort.org/search/sid/6170?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1641">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6171</td><td class="ruletablebody" valign="top">BACKDOOR cookie monster 0.24 runtime detection (<a href="http://www.snort.org/search/sid/6171?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6172</td><td class="ruletablebody" valign="top">BACKDOOR cookie monster 0.24 runtime detection - get version info (<a href="http://www.snort.org/search/sid/6172?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084262">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6173</td><td class="ruletablebody" valign="top">BACKDOOR cookie monster 0.24 runtime detection (<a href="http://www.snort.org/search/sid/6173?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6174</td><td class="ruletablebody" valign="top">BACKDOOR cookie monster 0.24 runtime detection - file explorer (<a href="http://www.snort.org/search/sid/6174?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084262">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6175</td><td class="ruletablebody" valign="top">BACKDOOR cookie monster 0.24 runtime detection - kill kernel (<a href="http://www.snort.org/search/sid/6175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084262">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6176</td><td class="ruletablebody" valign="top">BACKDOOR guptachar 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6177</td><td class="ruletablebody" valign="top">BACKDOOR ultimate destruction runtime detection - kill process client-to-server (<a href="http://www.snort.org/search/sid/6177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.splintersecurity.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6178</td><td class="ruletablebody" valign="top">BACKDOOR ultimate destruction runtime detection - kill windows client-to-server (<a href="http://www.snort.org/search/sid/6178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.splintersecurity.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6179</td><td class="ruletablebody" valign="top">BACKDOOR bladerunner 0.80 runtime detection (<a href="http://www.snort.org/search/sid/6179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=862">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6180</td><td class="ruletablebody" valign="top">BACKDOOR netraider 0.0 runtime detection (<a href="http://www.snort.org/search/sid/6180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3979">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6181</td><td class="ruletablebody" valign="top">BACKDOOR netraider 0.0 runtime detection (<a href="http://www.snort.org/search/sid/6181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3979">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6183</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware 180Search assistant runtime detection - tracked event URL (<a href="http://www.snort.org/search/sid/6183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090677">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6184</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware 180Search assistant runtime detection - config upload (<a href="http://www.snort.org/search/sid/6184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090677">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6186</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies SpywareStrike Runtime Detection (<a href="http://www.snort.org/search/sid/6186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2438">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6187</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ISTBar runtime detection - scripts (<a href="http://www.snort.org/search/sid/6187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075516">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6188</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ISTBar runtime detection - bar (<a href="http://www.snort.org/search/sid/6188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075516">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6189</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware try2find detection (<a href="http://www.snort.org/search/sid/6189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096392">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6190</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger eblaster 5.0 runtime detection (<a href="http://www.snort.org/search/sid/6190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090687">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6191</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware onetoolbar runtime detection (<a href="http://www.snort.org/search/sid/6191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2746">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6193</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware seekmo runtime detection - pop up ads (<a href="http://www.snort.org/search/sid/6193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6194</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware seekmo runtime detection - config upload (<a href="http://www.snort.org/search/sid/6194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6195</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware seekmo runtime detection - download .cab (<a href="http://www.snort.org/search/sid/6195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6196</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker smart shopper runtime detection - services requests (<a href="http://www.snort.org/search/sid/6196?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_133312.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6197</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker smart shopper runtime detection - track/upgrade/report activities (<a href="http://www.snort.org/search/sid/6197?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_133312.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6198</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware squaretrade side bar runtime detection - collect user information (<a href="http://www.snort.org/search/sid/6198?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_137515.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6199</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker smart search runtime detection - hijack/ads (<a href="http://www.snort.org/search/sid/6199?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078876">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6200</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker smart search runtime detection - get settings (<a href="http://www.snort.org/search/sid/6200?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078876">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6201</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware twaintec runtime detection (<a href="http://www.snort.org/search/sid/6201?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078844">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6202</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler farmmext installtime/update request (<a href="http://www.snort.org/search/sid/6202?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090784">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6203</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler farmmext runtime detection - drk.syn request (<a href="http://www.snort.org/search/sid/6203?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090784">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6204</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler farmmext runtime detection - track activity (<a href="http://www.snort.org/search/sid/6204?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090784">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6205</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool freak 88 das runtime detection (<a href="http://www.snort.org/search/sid/6205?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=2181">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6206</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sin stealer 1.1 runtime detection (<a href="http://www.snort.org/search/sid/6206?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/sinstealer/Sinstealer1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6209</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware deskwizz/zquest runtime detection - get config information / ad banner (<a href="http://www.snort.org/search/sid/6209?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/venc/data/adware.zquest.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6211</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware deskwizz runtime detection - pop-up ad request (<a href="http://www.snort.org/search/sid/6211?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1127">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6212</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware commonname runtime detection (<a href="http://www.snort.org/search/sid/6212?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078618">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6213</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker 7fasst runtime detection - auto requests (<a href="http://www.snort.org/search/sid/6213?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072502">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6214</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker 7fasst runtime detection - search (<a href="http://www.snort.org/search/sid/6214?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072502">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6215</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker 7fasst runtime detection - track (<a href="http://www.snort.org/search/sid/6215?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072502">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6216</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware aornum/iwon copilot runtime detection - config (<a href="http://www.snort.org/search/sid/6216?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072491">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6218</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware aornum/iwon copilot runtime detection - ads (<a href="http://www.snort.org/search/sid/6218?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072491">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6219</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware bonzibuddy runtime detection (<a href="http://www.snort.org/search/sid/6219?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=59256">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6220</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger boss everyware runtime detection (<a href="http://www.snort.org/search/sid/6220?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=4">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6221</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger computerspy runtime detection (<a href="http://www.snort.org/search/sid/6221?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072991">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6222</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware delfin media viewer runtime detection - contact server (<a href="http://www.snort.org/search/sid/6222?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076775">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6223</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware delfin media viewer runtime detection - retrieve schedule (<a href="http://www.snort.org/search/sid/6223?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076775">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6224</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ieplugin runtime detection - search (<a href="http://www.snort.org/search/sid/6224?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072530">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6230</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker i-lookup runtime detection (<a href="http://www.snort.org/search/sid/6230?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074914">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6232</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware mirar runtime detection - thumbnail (<a href="http://www.snort.org/search/sid/6232?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078818">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6233</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware mirar runtime detection - delayed (<a href="http://www.snort.org/search/sid/6233?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078818">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6234</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware mirar runtime detection - ads (<a href="http://www.snort.org/search/sid/6234?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078818">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6236</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lop runtime detection - pass info to server (<a href="http://www.snort.org/search/sid/6236?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076024">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6237</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lop runtime detection - check update request (<a href="http://www.snort.org/search/sid/6237?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076024">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6238</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lop runtime detection - collect info request 1 (<a href="http://www.snort.org/search/sid/6238?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076024">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6239</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lop runtime detection - collect info request 2 (<a href="http://www.snort.org/search/sid/6239?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076024">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6240</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lop runtime detection - pop up ads (<a href="http://www.snort.org/search/sid/6240?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076024">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6241</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lop runtime detection - ie autosearch hijack (<a href="http://www.snort.org/search/sid/6241?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076024">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6242</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker coolwebsearch.cameup runtime detection (<a href="http://www.snort.org/search/sid/6242?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076035">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6243</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker coolwebsearch cameup runtime detection - home page hijack (<a href="http://www.snort.org/search/sid/6243?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079081">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6244</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker coolwebsearch cameup runtime detection - ie auto search hijack (<a href="http://www.snort.org/search/sid/6244?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079081">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6245</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker coolwebsearch startpage runtime detection (<a href="http://www.snort.org/search/sid/6245?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=599">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6246</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker exact navisearch runtime detection - search hijack (<a href="http://www.snort.org/search/sid/6246?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1169">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6247</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ezula toptext runtime detection - help redirect (<a href="http://www.snort.org/search/sid/6247?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072551">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6248</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ezula toptext runtime detection - popup (<a href="http://www.snort.org/search/sid/6248?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072551">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6249</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware ezula toptext runtime detection - redirect (<a href="http://www.snort.org/search/sid/6249?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072551">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6250</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hotbar runtime detection - hotbar user-agent (<a href="http://www.snort.org/search/sid/6250?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075474">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6251</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hotbar runtime detection - hostie user-agent (<a href="http://www.snort.org/search/sid/6251?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075474">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6252</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware quicksearch toolbar runtime detection - search request (<a href="http://www.snort.org/search/sid/6252?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6253</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware quicksearch toolbar runtime detection - log user ativity (<a href="http://www.snort.org/search/sid/6253?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6254</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware quicksearch toolbar runtime detection - redirect (<a href="http://www.snort.org/search/sid/6254?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6255</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware quicksearch toolbar runtime detection - update (<a href="http://www.snort.org/search/sid/6255?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6256</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware searchsquire installtime/auto-update (<a href="http://www.snort.org/search/sid/6256?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094363">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6257</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware searchsquire runtime detection - testgeonew query (<a href="http://www.snort.org/search/sid/6257?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094363">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6258</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware searchsquire runtime detection - get engine file (<a href="http://www.snort.org/search/sid/6258?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094363">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6259</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware searchsquire runtime detection - search forward (<a href="http://www.snort.org/search/sid/6259?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094363">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6260</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware overpro runtime detection (<a href="http://www.snort.org/search/sid/6260?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090731">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6261</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler slinkyslate toolbar runtime detection (<a href="http://www.snort.org/search/sid/6261?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082746">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6263</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - collect information (<a href="http://www.snort.org/search/sid/6263?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6264</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - self update - movie (<a href="http://www.snort.org/search/sid/6264?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6265</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - self update - engine (<a href="http://www.snort.org/search/sid/6265?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6266</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - self update - check update (<a href="http://www.snort.org/search/sid/6266?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6267</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - self update - get update (<a href="http://www.snort.org/search/sid/6267?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6268</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - self update - download exe (<a href="http://www.snort.org/search/sid/6268?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6269</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker gigatech superbar runtime detection - track event (<a href="http://www.snort.org/search/sid/6269?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075466">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6270</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker topicks runtime detection (<a href="http://www.snort.org/search/sid/6270?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094103">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6271</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler bundleware runtime detection (<a href="http://www.snort.org/search/sid/6271?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.xp-vista.com/spyware-removal/antimalwareguard-antimalware-guard-removal-instructions">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6274</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler clickalchemy runtime detection (<a href="http://www.snort.org/search/sid/6274?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1095">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6275</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker incredifind runtime detection - cookie (<a href="http://www.snort.org/search/sid/6275?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6279</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker sidefind runtime detection (<a href="http://www.snort.org/search/sid/6279?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1147">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6280</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker sidefind runtime detection - cookie (<a href="http://www.snort.org/search/sid/6280?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088285">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6281</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker yoursitebar runtime detection (<a href="http://www.snort.org/search/sid/6281?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453093992">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6282</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker customtoolbar runtime detection (<a href="http://www.snort.org/search/sid/6282?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074937">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6283</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker websearch runtime detection - sitereview (<a href="http://www.snort.org/search/sid/6283?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074933">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6284</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker websearch runtime detection - webstat (<a href="http://www.snort.org/search/sid/6284?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074933">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6285</td><td class="ruletablebody" valign="top">BACKDOOR antilamer 1.1 runtime detection - set flowbit (<a href="http://www.snort.org/search/sid/6285?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076222">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6286</td><td class="ruletablebody" valign="top">BACKDOOR antilamer 1.1 runtime detection (<a href="http://www.snort.org/search/sid/6286?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076222">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6287</td><td class="ruletablebody" valign="top">BACKDOOR fictional daemon 4.4 runtime detection - telent (<a href="http://www.snort.org/search/sid/6287?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074164">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6289</td><td class="ruletablebody" valign="top">BACKDOOR netspy runtime detection - command pattern client-to-server (<a href="http://www.snort.org/search/sid/6289?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=434">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6290</td><td class="ruletablebody" valign="top">BACKDOOR netspy runtime detection - command pattern server-to-client (<a href="http://www.snort.org/search/sid/6290?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=434">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6291</td><td class="ruletablebody" valign="top">BACKDOOR justjoke v2.6 runtime detection (<a href="http://www.snort.org/search/sid/6291?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073017">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6292</td><td class="ruletablebody" valign="top">BACKDOOR joker ddos v1.0.1 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6292?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076749">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6293</td><td class="ruletablebody" valign="top">BACKDOOR joker ddos v1.0.1 runtime detection - bomb - initial flowbit (<a href="http://www.snort.org/search/sid/6293?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076749">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6294</td><td class="ruletablebody" valign="top">BACKDOOR joker ddos v1.0.1 runtime detection - bomb - second flowbit (<a href="http://www.snort.org/search/sid/6294?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076749">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6295</td><td class="ruletablebody" valign="top">BACKDOOR joker ddos v1.0.1 runtime detection - bomb (<a href="http://www.snort.org/search/sid/6295?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076749">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6296</td><td class="ruletablebody" valign="top">BACKDOOR insurrection 1.1.0 runtime detection - icq notification 1 (<a href="http://www.snort.org/search/sid/6296?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076744">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6297</td><td class="ruletablebody" valign="top">BACKDOOR insurrection 1.1.0 runtime detection - icq notification 2 (<a href="http://www.snort.org/search/sid/6297?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076744">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6298</td><td class="ruletablebody" valign="top">BACKDOOR insurrection 1.1.0 runtime detection - reverse connection (<a href="http://www.snort.org/search/sid/6298?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076744">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6299</td><td class="ruletablebody" valign="top">BACKDOOR insurrection 1.1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6299?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076744">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6300</td><td class="ruletablebody" valign="top">BACKDOOR cia 1.3 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/6300?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6302</td><td class="ruletablebody" valign="top">BACKDOOR cia runtime detection - initial connection - set flowbit (<a href="http://www.snort.org/search/sid/6302?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6303</td><td class="ruletablebody" valign="top">BACKDOOR cia runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6303?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076260">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6304</td><td class="ruletablebody" valign="top">BACKDOOR softwar shadowthief runtime detection - initial connection - set flowbit (<a href="http://www.snort.org/search/sid/6304?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=19977">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6305</td><td class="ruletablebody" valign="top">BACKDOOR softwar shadowthief runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6305?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=19977">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6306</td><td class="ruletablebody" valign="top">BACKDOOR shit heep runtime detection (<a href="http://www.snort.org/search/sid/6306?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=5451">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6307</td><td class="ruletablebody" valign="top">BACKDOOR lamespy runtime detection - initial connection - set flowbit (<a href="http://www.snort.org/search/sid/6307?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3370">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6308</td><td class="ruletablebody" valign="top">BACKDOOR lamespy runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6308?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=3370">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6312</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - message send (<a href="http://www.snort.org/search/sid/6312?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6313</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - message response (<a href="http://www.snort.org/search/sid/6313?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6314</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - open browser request (<a href="http://www.snort.org/search/sid/6314?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6315</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - open browser response (<a href="http://www.snort.org/search/sid/6315?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6316</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - file manager request (<a href="http://www.snort.org/search/sid/6316?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6317</td><td class="ruletablebody" valign="top">BACKDOOR net demon runtime detection - file manager response (<a href="http://www.snort.org/search/sid/6317?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4029">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6318</td><td class="ruletablebody" valign="top">BACKDOOR rtb666 runtime detection (<a href="http://www.snort.org/search/sid/6318?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1501">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6320</td><td class="ruletablebody" valign="top">BACKDOOR ptakks2.1 runtime detection - keepalive (<a href="http://www.snort.org/search/sid/6320?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079909">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6321</td><td class="ruletablebody" valign="top">BACKDOOR ptakks2.1 runtime detection - keepalive acknowledgement (<a href="http://www.snort.org/search/sid/6321?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079909">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6322</td><td class="ruletablebody" valign="top">BACKDOOR ptakks2.1 runtime detection - command pattern (<a href="http://www.snort.org/search/sid/6322?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079909">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6323</td><td class="ruletablebody" valign="top">BACKDOOR 3xBackdoor runtime detection - set flowbit (<a href="http://www.snort.org/search/sid/6323?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6324</td><td class="ruletablebody" valign="top">BACKDOOR 3xBackdoor runtime detection (<a href="http://www.snort.org/search/sid/6324?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6325</td><td class="ruletablebody" valign="top">BACKDOOR fucktrojan 1.2 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6325?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://megasecurity.org/trojans/f/fucktrojan/Fucktrojan1.2.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6326</td><td class="ruletablebody" valign="top">BACKDOOR fucktrojan 1.2 runtime detection - flood (<a href="http://www.snort.org/search/sid/6326?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6327</td><td class="ruletablebody" valign="top">BACKDOOR fucktrojan 1.2 runtime detection - flood (<a href="http://www.snort.org/search/sid/6327?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://megasecurity.org/trojans/f/fucktrojan/Fucktrojan1.2.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6328</td><td class="ruletablebody" valign="top">BACKDOOR commando runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6328?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6329</td><td class="ruletablebody" valign="top">BACKDOOR commando runtime detection - chat client-to-server (<a href="http://www.snort.org/search/sid/6329?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6330</td><td class="ruletablebody" valign="top">BACKDOOR commando runtime detection - chat server-to-client (<a href="http://www.snort.org/search/sid/6330?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6331</td><td class="ruletablebody" valign="top">BACKDOOR globalkiller1.0 runtime detection - notification (<a href="http://www.snort.org/search/sid/6331?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1656">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6332</td><td class="ruletablebody" valign="top">BACKDOOR globalkiller1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/6332?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1656">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6333</td><td class="ruletablebody" valign="top">BACKDOOR wincrash 2.0 runtime detection (<a href="http://www.snort.org/search/sid/6333?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084089">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6334</td><td class="ruletablebody" valign="top">BACKDOOR backlash runtime detection (<a href="http://www.snort.org/search/sid/6334?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076823">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6335</td><td class="ruletablebody" valign="top">BACKDOOR buttman v0.9p runtime detection - remote control - set flowbit (<a href="http://www.snort.org/search/sid/6335?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453089720">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6336</td><td class="ruletablebody" valign="top">BACKDOOR buttman v0.9p runtime detection - remote control (<a href="http://www.snort.org/search/sid/6336?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453089720">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6337</td><td class="ruletablebody" valign="top">BACKDOOR hatredfriend file manage command - set flowbit (<a href="http://www.snort.org/search/sid/6337?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077215">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6338</td><td class="ruletablebody" valign="top">BACKDOOR hatredfriend file manage command (<a href="http://www.snort.org/search/sid/6338?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077215">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6339</td><td class="ruletablebody" valign="top">BACKDOOR hatredfriend email notification detection (<a href="http://www.snort.org/search/sid/6339?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077215">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6340</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger handy keylogger runtime detection (<a href="http://www.snort.org/search/sid/6340?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096599">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6341</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker spediabar user-agent string detected (<a href="http://www.snort.org/search/sid/6341?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6342</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker spediabar runtime detection - info check (<a href="http://www.snort.org/search/sid/6342?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6343</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware targetsaver runtime detection (<a href="http://www.snort.org/search/sid/6343?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090707">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6344</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware excite search bar runtime detection - config (<a href="http://www.snort.org/search/sid/6344?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078495">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6345</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware excite search bar runtime detection - search (<a href="http://www.snort.org/search/sid/6345?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078495">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6346</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware stationripper update detection (<a href="http://www.snort.org/search/sid/6346?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://stationripper.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6347</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware stationripper ad display detection (<a href="http://www.snort.org/search/sid/6347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://stationripper.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6348</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware zenosearch runtime detection (<a href="http://www.snort.org/search/sid/6348?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/grayware/ve_graywareDetails.asp?GNAME=ADW%5FZENO%2EA">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6349</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker richfind update detection (<a href="http://www.snort.org/search/sid/6349?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.f-secure.com/sw-desc/iehijacker_richfind.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6350</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker richfind auto search redirect detection (<a href="http://www.snort.org/search/sid/6350?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.f-secure.com/sw-desc/iehijacker_richfind.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6351</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adblock update detection (<a href="http://www.snort.org/search/sid/6351?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=48">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6352</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adblock auto search redirect detection (<a href="http://www.snort.org/search/sid/6352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=48">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6353</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adblock ie search assistant redirect detection (<a href="http://www.snort.org/search/sid/6353?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=48">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6354</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler wsearch runtime detection - auto update (<a href="http://www.snort.org/search/sid/6354?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zhongsou.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6355</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler wsearch runtime detection - mp3 search (<a href="http://www.snort.org/search/sid/6355?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zhongsou.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6356</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler wsearch runtime detection - desktop search (<a href="http://www.snort.org/search/sid/6356?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zhongsou.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6357</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker need2find initial configuration detection (<a href="http://www.snort.org/search/sid/6357?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096250">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6358</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker need2find search query detection (<a href="http://www.snort.org/search/sid/6358?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096250">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6359</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware altnet runtime detection - initial retrieval (<a href="http://www.snort.org/search/sid/6359?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareremove.com/removeAltnet.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6360</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware altnet runtime detection - update (<a href="http://www.snort.org/search/sid/6360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareremove.com/removeAltnet.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6361</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware altnet runtime detection - status report (<a href="http://www.snort.org/search/sid/6361?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareremove.com/removeAltnet.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6362</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker microgaming runtime detection (<a href="http://www.snort.org/search/sid/6362?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareremove.com/removeMicrogaming.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6363</td><td class="ruletablebody" valign="top">SPYWARE-PUT adware surfaccuracy runtime detection (<a href="http://www.snort.org/search/sid/6363?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094263">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6364</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker imeshbar runtime detection (<a href="http://www.snort.org/search/sid/6364?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.file.net/process/imeshbar.dll.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6365</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies sony rootkit runtime detection (<a href="http://www.snort.org/search/sid/6365?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096362">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6366</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler eacceleration downloadreceiver user-agent string detected (<a href="http://www.snort.org/search/sid/6366?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=398">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6367</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler eacceleration downloadreceiver runtime detection - stop-sign ads (<a href="http://www.snort.org/search/sid/6367?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=398">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6372</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler spyblocs eblocs detection - get wsliveup.dat (<a href="http://www.snort.org/search/sid/6372?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088571">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6373</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler spyblocs eblocs detection - stbarpat.dat (<a href="http://www.snort.org/search/sid/6373?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088571">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6374</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler spyblocs eblocs detection - get spyblpat.dat/spyblini.ini (<a href="http://www.snort.org/search/sid/6374?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088571">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6375</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler spyblocs.eblocs detection - register request (<a href="http://www.snort.org/search/sid/6375?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088571">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6376</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker girafa toolbar - toolbar update (<a href="http://www.snort.org/search/sid/6376?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1135">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6377</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker girafa toolbar - browser hijack (<a href="http://www.snort.org/search/sid/6377?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1135">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6378</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adbars runtime detection - homepage hijack (<a href="http://www.snort.org/search/sid/6378?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079049">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6379</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adbars runtime detection - search in toolbar (<a href="http://www.snort.org/search/sid/6379?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079049">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6380</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dotcomtoolbar runtime detection - toolbar information retrieve (<a href="http://www.snort.org/search/sid/6380?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076986">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6381</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dotcomtoolbar runtime detection - search in toolbar (<a href="http://www.snort.org/search/sid/6381?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076986">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6382</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dotcomtoolbar runtime detection - url hook (<a href="http://www.snort.org/search/sid/6382?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076986">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6383</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger stealthwatcher 2000 runtime detection - tcp connection setup (<a href="http://www.snort.org/search/sid/6383?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075982">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6385</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger stealthwatcher 2000 runtime detection - agent status monitoring (<a href="http://www.snort.org/search/sid/6385?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075982">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6386</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger stealthwatcher 2000 runtime detection - agent up notification (<a href="http://www.snort.org/search/sid/6386?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075982">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6387</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker internet optimizer runtime detection - autosearch hijack (<a href="http://www.snort.org/search/sid/6387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453093995">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6388</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker internet optimizer runtime detection - error page hijack (<a href="http://www.snort.org/search/sid/6388?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453093995">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6389</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware esyndicate runtime detection - postinstall request (<a href="http://www.snort.org/search/sid/6389?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094058">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6390</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware esyndicate runtime detection - ads popup (<a href="http://www.snort.org/search/sid/6390?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6391</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware esyndicate runtime detection - ads popup (<a href="http://www.snort.org/search/sid/6391?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094058">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6392</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker zeropopup runtime detection (<a href="http://www.snort.org/search/sid/6392?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075510">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6394</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adstart runtime detection (<a href="http://www.snort.org/search/sid/6394?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088444">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6395</td><td class="ruletablebody" valign="top">BACKDOOR a-311 death runtime detection - initial connection server-to-client (<a href="http://www.snort.org/search/sid/6395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076778">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6396</td><td class="ruletablebody" valign="top">BACKDOOR a-311 death user-agent string detected (<a href="http://www.snort.org/search/sid/6396?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076778">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6398</td><td class="ruletablebody" valign="top">BACKDOOR http rat runtime detection - http (<a href="http://www.snort.org/search/sid/6398?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076346">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6399</td><td class="ruletablebody" valign="top">BACKDOOR rad 1.2.3 runtime detection (<a href="http://www.snort.org/search/sid/6399?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072457">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6400</td><td class="ruletablebody" valign="top">BACKDOOR snowdoor runtime detection client-to-server (<a href="http://www.snort.org/search/sid/6400?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/snow/Snow1.3.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6401</td><td class="ruletablebody" valign="top">BACKDOOR snowdoor runtime detection server-to-client (<a href="http://www.snort.org/search/sid/6401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/snow/Snow1.3.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6402</td><td class="ruletablebody" valign="top">BACKDOOR netangel connection client-to-server (<a href="http://www.snort.org/search/sid/6402?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086360">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6469</td><td class="ruletablebody" valign="top">EXPLOIT RealVNC connection attempt (<a href="http://www.snort.org/search/sid/6469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6470</td><td class="ruletablebody" valign="top">EXPLOIT RealVNC authentication types without None type sent attempt (<a href="http://www.snort.org/search/sid/6470?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6472</td><td class="ruletablebody" valign="top">BACKDOOR bugs runtime detection - file manager client-to-server (<a href="http://www.snort.org/search/sid/6472?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.commodon.com/threat/threat-bugs.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6473</td><td class="ruletablebody" valign="top">BACKDOOR bugs runtime detection - file manager server-to-client (<a href="http://www.snort.org/search/sid/6473?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.commodon.com/threat/threat-bugs.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6474</td><td class="ruletablebody" valign="top">BACKDOOR w32.loosky.gen@mm runtime detection - notification (<a href="http://www.snort.org/search/sid/6474?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32looskyl.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6475</td><td class="ruletablebody" valign="top">BACKDOOR badrat 1.1 runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/6475?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/badrat/Badrat1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6476</td><td class="ruletablebody" valign="top">BACKDOOR badrat 1.1 runtime detection (<a href="http://www.snort.org/search/sid/6476?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/badrat/Badrat1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6478</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware searchingall toolbar runtime detection - send user url request (<a href="http://www.snort.org/search/sid/6478?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097487">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6479</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware totalvelocity zsearch runtime detection (<a href="http://www.snort.org/search/sid/6479?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083031">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6480</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker cws.cameup runtime detection - home page (<a href="http://www.snort.org/search/sid/6480?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079081">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6481</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker cws.cameup runtime detection - search (<a href="http://www.snort.org/search/sid/6481?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079081">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6482</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker makemesearch toolbar runtime detection - get info (<a href="http://www.snort.org/search/sid/6482?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywaredetails.com/index.php?a=spyware&amp;act=read&amp;id=1607">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6483</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker makemesearch toolbar runtime detection - home page hijacker (<a href="http://www.snort.org/search/sid/6483?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywaredetails.com/index.php?a=spyware&amp;act=read&amp;id=1607">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6484</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker makemesearch toolbar runtime detection - search (<a href="http://www.snort.org/search/sid/6484?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywaredetails.com/index.php?a=spyware&amp;act=read&amp;id=1607">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6487</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware searchnugget toolbar runtime detection - check updates (<a href="http://www.snort.org/search/sid/6487?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094349">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6488</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware searchnugget toolbar runtime detection - redirect mistyped urls (<a href="http://www.snort.org/search/sid/6488?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094349">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6489</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker analyze IE runtime detection - default page hijacker (<a href="http://www.snort.org/search/sid/6489?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywaredetails.com/index.php?a=spyware&amp;act=read&amp;id=1680">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6490</td><td class="ruletablebody" valign="top">SPYWARE-PUT Dialer yeaknet runtime detection - home page hijacker (<a href="http://www.snort.org/search/sid/6490?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2446">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6491</td><td class="ruletablebody" valign="top">SPYWARE-PUT Dialer yeaknet runtime detection - post-installation (<a href="http://www.snort.org/search/sid/6491?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2446">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6492</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler Backdoor-BAC.gen.e runtime detection - notification (<a href="http://www.snort.org/search/sid/6492?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_138750.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6493</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler Backdoor-BAC.gen.e runtime detection - post data (<a href="http://www.snort.org/search/sid/6493?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_138750.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6494</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware yourenhancement runtime detection (<a href="http://www.snort.org/search/sid/6494?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097585">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6495</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker troj_spywad.x runtime detection (<a href="http://www.snort.org/search/sid/6495?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/trojspywadi.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6496</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware adpowerzone runtime detection (<a href="http://www.snort.org/search/sid/6496?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1299">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6497</td><td class="ruletablebody" valign="top">BACKDOOR exploiter 1.0 runtime detection (<a href="http://www.snort.org/search/sid/6497?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1603">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6498</td><td class="ruletablebody" valign="top">BACKDOOR exploiter 1.0 runtime detection (<a href="http://www.snort.org/search/sid/6498?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1603">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6499</td><td class="ruletablebody" valign="top">BACKDOOR omerta 1.3 runtime detection (<a href="http://www.snort.org/search/sid/6499?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.antivirusprogram.se/virusinfo/Backdoor.Omerta_4852.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6688</td><td class="ruletablebody" valign="top">WEB-CLIENT PNG file transfer (<a href="http://www.snort.org/search/sid/6688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">protocol-command-decode</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6691</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed PNG detected sBIT overflow attempt (<a href="http://www.snort.org/search/sid/6691?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0025">2006-0025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18385">18385</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6693</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed PNG detected bKGD overflow attempt (<a href="http://www.snort.org/search/sid/6693?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0025">2006-0025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18385">18385</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6694</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed PNG detected hIST overflow attempt (<a href="http://www.snort.org/search/sid/6694?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0025">2006-0025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18385">18385</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6695</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed PNG detected tRNS overflow attempt (<a href="http://www.snort.org/search/sid/6695?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0025">2006-0025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18385">18385</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6696</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed PNG detected pHYs overflow attempt (<a href="http://www.snort.org/search/sid/6696?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0025">2006-0025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18385">18385</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">6698</td><td class="ruletablebody" valign="top">WEB-CLIENT Malformed PNG detected tIME overflow attempt (<a href="http://www.snort.org/search/sid/6698?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0025">2006-0025</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18385">18385</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-024.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7022</td><td class="ruletablebody" valign="top">WEB-CLIENT windows explorer invalid url file overflow attempt (<a href="http://www.snort.org/search/sid/7022?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">denial-of-service</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3351">2006-3351</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/18838">18838</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7049</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker extreme biz runtime detection - uniq1 (<a href="http://www.snort.org/search/sid/7049?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_139122.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7050</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker freecruise toolbar runtime detection (<a href="http://www.snort.org/search/sid/7050?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7051</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler generic downloader.g runtime detection - spyware injection (<a href="http://www.snort.org/search/sid/7051?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_128719.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7052</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler generic downloader.g runtime detection - adv (<a href="http://www.snort.org/search/sid/7052?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_128719.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7053</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware webredir runtime detection (<a href="http://www.snort.org/search/sid/7053?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/tk1907-pxwma_dll.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7054</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler download arq variant runtime detection (<a href="http://www.snort.org/search/sid/7054?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_137359.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7055</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker vip01 biz runtime detection - adv (<a href="http://www.snort.org/search/sid/7055?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://forums.maddoktor2.com/index.php?showtopic=3601">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7057</td><td class="ruletablebody" valign="top">BACKDOOR charon runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7057?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_138997.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7058</td><td class="ruletablebody" valign="top">BACKDOOR charon runtime detection - download file flowbit 1 (<a href="http://www.snort.org/search/sid/7058?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_138997.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7059</td><td class="ruletablebody" valign="top">BACKDOOR charon runtime detection - download file/log flowbit 2 (<a href="http://www.snort.org/search/sid/7059?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_138997.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7060</td><td class="ruletablebody" valign="top">BACKDOOR charon runtime detection - download file/log (<a href="http://www.snort.org/search/sid/7060?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_138997.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7061</td><td class="ruletablebody" valign="top">BACKDOOR charon runtime detection - download log flowbit 1 (<a href="http://www.snort.org/search/sid/7061?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_138997.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7064</td><td class="ruletablebody" valign="top">BACKDOOR cybernetic 1.62 runtime detection - email notification (<a href="http://www.snort.org/search/sid/7064?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threat_display.cfm?name=CyberNetic&amp;threatid=41745">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7065</td><td class="ruletablebody" valign="top">BACKDOOR cybernetic 1.62 runtime detection - reverse connection flowbit 1 (<a href="http://www.snort.org/search/sid/7065?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threat_display.cfm?name=CyberNetic&amp;threatid=41745">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7066</td><td class="ruletablebody" valign="top">BACKDOOR cybernetic 1.62 runtime detection - reverse connection flowbit 1 (<a href="http://www.snort.org/search/sid/7066?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threat_display.cfm?name=CyberNetic&amp;threatid=41745">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7067</td><td class="ruletablebody" valign="top">BACKDOOR cybernetic 1.62 runtime detection - reverse connection (<a href="http://www.snort.org/search/sid/7067?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threat_display.cfm?name=CyberNetic&amp;threatid=41745">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7068</td><td class="ruletablebody" valign="top">BACKDOOR delta source 0.5 beta runtime detection - ping (<a href="http://www.snort.org/search/sid/7068?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=840">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7069</td><td class="ruletablebody" valign="top">BACKDOOR delta source 0.5 beta runtime detection - pc info (<a href="http://www.snort.org/search/sid/7069?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=840">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7072</td><td class="ruletablebody" valign="top">BACKDOOR fraggle rock 2.0 lite runtime detection - pc info (<a href="http://www.snort.org/search/sid/7072?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077120">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7073</td><td class="ruletablebody" valign="top">BACKDOOR w32.dumaru.gen@mm runtime detection - notification (<a href="http://www.snort.org/search/sid/7073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vil.mcafeesecurity.com/vil/content/v_125643.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7074</td><td class="ruletablebody" valign="top">BACKDOOR w32.dumaru.gen@mm runtime detection - cmd (<a href="http://www.snort.org/search/sid/7074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.vil.mcafeesecurity.com/vil/content/v_125643.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7075</td><td class="ruletablebody" valign="top">BACKDOOR bandook 1.0 runtime detection (<a href="http://www.snort.org/search/sid/7075?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nuclearwinter.us/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7077</td><td class="ruletablebody" valign="top">BACKDOOR minimo v0.6 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/7077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7078</td><td class="ruletablebody" valign="top">BACKDOOR up and run v1.0 beta runtime detection flowbit 1 (<a href="http://www.snort.org/search/sid/7078?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088330">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7079</td><td class="ruletablebody" valign="top">BACKDOOR up and run v1.0 beta runtime detection flowbit 2 (<a href="http://www.snort.org/search/sid/7079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088330">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7080</td><td class="ruletablebody" valign="top">BACKDOOR up and run v1.0 beta runtime detection flowbit 3 (<a href="http://www.snort.org/search/sid/7080?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088330">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7081</td><td class="ruletablebody" valign="top">BACKDOOR up and run v1.0 beta runtime detection (<a href="http://www.snort.org/search/sid/7081?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453088330">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7082</td><td class="ruletablebody" valign="top">BACKDOOR mosucker3.0 runtime detection - client-to-server (<a href="http://www.snort.org/search/sid/7082?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083782">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7084</td><td class="ruletablebody" valign="top">BACKDOOR erazer v1.1 runtime detection - sin notification (<a href="http://www.snort.org/search/sid/7084?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/e/erazer/Erazer1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7085</td><td class="ruletablebody" valign="top">BACKDOOR erazer v1.1 runtime detection (<a href="http://www.snort.org/search/sid/7085?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/e/erazer/Erazer1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7086</td><td class="ruletablebody" valign="top">BACKDOOR erazer v1.1 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7086?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/e/erazer/Erazer1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7091</td><td class="ruletablebody" valign="top">BACKDOOR serveme runtime detection (<a href="http://www.snort.org/search/sid/7091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453081036">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7096</td><td class="ruletablebody" valign="top">BACKDOOR remote hack 1.5 runtime detection - logon (<a href="http://www.snort.org/search/sid/7096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1523">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7097</td><td class="ruletablebody" valign="top">BACKDOOR remote hack 1.5 runtime detection - execute file (<a href="http://www.snort.org/search/sid/7097?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1523">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7099</td><td class="ruletablebody" valign="top">BACKDOOR remote hack 1.5 runtime detection - start keylogger (<a href="http://www.snort.org/search/sid/7099?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1523">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7101</td><td class="ruletablebody" valign="top">BACKDOOR gwboy 0.92 runtime detection (<a href="http://www.snort.org/search/sid/7101?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077181">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7103</td><td class="ruletablebody" valign="top">BACKDOOR gwboy 0.92 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7103?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077181">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7104</td><td class="ruletablebody" valign="top">BACKDOOR aol admin runtime detection (<a href="http://www.snort.org/search/sid/7104?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=313">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7105</td><td class="ruletablebody" valign="top">BACKDOOR aol admin runtime detection (<a href="http://www.snort.org/search/sid/7105?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=313">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7106</td><td class="ruletablebody" valign="top">BACKDOOR girlfriend runtime detection (<a href="http://www.snort.org/search/sid/7106?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=834">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7108</td><td class="ruletablebody" valign="top">BACKDOOR undetected runtime detection (<a href="http://www.snort.org/search/sid/7108?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=17265">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7111</td><td class="ruletablebody" valign="top">BACKDOOR fearless lite 1.01 runtime detection (<a href="http://www.snort.org/search/sid/7111?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078381">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7112</td><td class="ruletablebody" valign="top">BACKDOOR fearless lite 1.01 runtime detection (<a href="http://www.snort.org/search/sid/7112?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078381">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7113</td><td class="ruletablebody" valign="top">BACKDOOR donalddick v1.5b3 runtime detection (<a href="http://www.snort.org/search/sid/7113?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1720">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7114</td><td class="ruletablebody" valign="top">BACKDOOR donalddick v1.5b3 runtime detection (<a href="http://www.snort.org/search/sid/7114?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1720">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7115</td><td class="ruletablebody" valign="top">BACKDOOR ghost 2.3 runtime detection (<a href="http://www.snort.org/search/sid/7115?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=42053">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7116</td><td class="ruletablebody" valign="top">BACKDOOR y3k 1.2 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/7116?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=33151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7118</td><td class="ruletablebody" valign="top">BACKDOOR y3k 1.2 runtime detection - user-agent string detected (<a href="http://www.snort.org/search/sid/7118?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=33151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7119</td><td class="ruletablebody" valign="top">BACKDOOR y3k 1.2 runtime detection (<a href="http://www.snort.org/search/sid/7119?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=33151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7120</td><td class="ruletablebody" valign="top">BACKDOOR y3k 1.2 runtime detection - init connection 1 (<a href="http://www.snort.org/search/sid/7120?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=33151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7121</td><td class="ruletablebody" valign="top">BACKDOOR y3k 1.2 runtime detection (<a href="http://www.snort.org/search/sid/7121?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=33151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7122</td><td class="ruletablebody" valign="top">BACKDOOR y3k 1.2 runtime detection - init connection 2 (<a href="http://www.snort.org/search/sid/7122?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=33151">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7123</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies alfacleaner runtime detection - update (<a href="http://www.snort.org/search/sid/7123?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2733">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7124</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies alfacleaner runtime detection - buy (<a href="http://www.snort.org/search/sid/7124?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2733">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7125</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker traffbest biz runtime detection - adv (<a href="http://www.snort.org/search/sid/7125?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://forums.maddoktor2.com/index.php?showtopic=3601">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7126</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker trojan proxy atiup runtime detection - notification (<a href="http://www.snort.org/search/sid/7126?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_137129.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7127</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker wowok mp3 bar runtime detection - tracking (<a href="http://www.snort.org/search/sid/7127?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zdnet.com.au/downloads/0,39024478,39111669s,00.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7128</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker wowok mp3 bar runtime detection - advertising 1 (<a href="http://www.snort.org/search/sid/7128?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zdnet.com.au/downloads/0,39024478,39111669s,00.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7129</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker wowok mp3 bar runtime detection - advertising 2 (<a href="http://www.snort.org/search/sid/7129?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zdnet.com.au/downloads/0,39024478,39111669s,00.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7130</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker wowok mp3 bar runtime detection - search assissant hijacking (<a href="http://www.snort.org/search/sid/7130?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.zdnet.com.au/downloads/0,39024478,39111669s,00.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7135</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dsrch runtime detection - config info retrieval (<a href="http://www.snort.org/search/sid/7135?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=DSrch&amp;threatid=41080">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7136</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dsrch runtime detection - search assistant redirect (<a href="http://www.snort.org/search/sid/7136?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=DSrch&amp;threatid=41080">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7137</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker dsrch runtime detection - side search redirect (<a href="http://www.snort.org/search/sid/7137?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sunbelt-software.com/research/threat_display.cfm?name=DSrch&amp;threatid=41080">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7138</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies clicktrojan runtime detection - version check (<a href="http://www.snort.org/search/sid/7138?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sunbeltblog.blogspot.com/2006/01/seen-in-wild-new-pay-per-click-fraud.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7139</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies clicktrojan runtime detection - fake search query (<a href="http://www.snort.org/search/sid/7139?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sunbeltblog.blogspot.com/2006/01/seen-in-wild-new-pay-per-click-fraud.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7140</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware pay-per-click runtime detection - configuration (<a href="http://www.snort.org/search/sid/7140?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://ppcdomain.co.uk">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7141</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware pay-per-click runtime detection - update (<a href="http://www.snort.org/search/sid/7141?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://ppcdomain.co.uk">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7143</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware digink.com runtime detection (<a href="http://www.snort.org/search/sid/7143?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.techsupportforum.com/archive/index.php/t-46308.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7144</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker cool search runtime detection (<a href="http://www.snort.org/search/sid/7144?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079768">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7145</td><td class="ruletablebody" valign="top">SPYWARE-PUT Other-Technologies spam maxy runtime detection (<a href="http://www.snort.org/search/sid/7145?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_136735.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7146</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sars notifier runtime detection - sin notification (<a href="http://www.snort.org/search/sid/7146?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078294">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7147</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sars notifier runtime detection - icq notification (<a href="http://www.snort.org/search/sid/7147?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078294">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7150</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sars notifier runtime detection - irc notification (<a href="http://www.snort.org/search/sid/7150?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078294">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7151</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool sars notifier runtime detection - net send notification (<a href="http://www.snort.org/search/sid/7151?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078294">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7152</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker cnsmin 3721 runtime detection - installation (<a href="http://www.snort.org/search/sid/7152?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072511">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7153</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker cnsmin 3721 runtime detection - hijacking (<a href="http://www.snort.org/search/sid/7153?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072511">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7154</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger active keylogger home runtime detection (<a href="http://www.snort.org/search/sid/7154?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=1720">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7155</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler jubster runtime detection (<a href="http://www.snort.org/search/sid/7155?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://freeware4pc.com/multimedia/jubster.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7156</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - email delivery (<a href="http://www.snort.org/search/sid/7156?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7157</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - remote conn client-to-server (<a href="http://www.snort.org/search/sid/7157?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7158</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - remote conn server-to-client (<a href="http://www.snort.org/search/sid/7158?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7159</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - upload file client-to-server (<a href="http://www.snort.org/search/sid/7159?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7160</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - upload file server-to-client (<a href="http://www.snort.org/search/sid/7160?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7161</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - download file client-to-server (<a href="http://www.snort.org/search/sid/7161?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7162</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - download file server-to-client (<a href="http://www.snort.org/search/sid/7162?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7163</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - execute file client-to-server (<a href="http://www.snort.org/search/sid/7163?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7164</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win-spy runtime detection - execute file server-to-client (<a href="http://www.snort.org/search/sid/7164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=715">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7175</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - log retrieve (<a href="http://www.snort.org/search/sid/7175?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=591">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7176</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - log retrieve (<a href="http://www.snort.org/search/sid/7176?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076050">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7177</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ab system spy runtime detection - info send through email (<a href="http://www.snort.org/search/sid/7177?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076050">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7178</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger desktop detective 2000 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7178?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7179</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger desktop detective 2000 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7180</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger desktop detective 2000 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060318">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7183</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware barok runtime detection (<a href="http://www.snort.org/search/sid/7183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075534">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7186</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger kgb Keylogger runtime detection (<a href="http://www.snort.org/search/sid/7186?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096494">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7187</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware shopathome user-agent detected (<a href="http://www.snort.org/search/sid/7187?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076082">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7188</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shop at home select - merchant redirect in progress (<a href="http://www.snort.org/search/sid/7188?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076082">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7189</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware shopathome runtime detection - setcookie request (<a href="http://www.snort.org/search/sid/7189?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076082">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7190</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware trustyfiles v3.1.0.1 runtime detection - host retrieval (<a href="http://www.snort.org/search/sid/7190?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softpicks.net/software/TrustyFiles-Personal-File-Sharing-13308.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7191</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware trustyfiles v3.1.0.1 runtime detection - url retrieval (<a href="http://www.snort.org/search/sid/7191?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softpicks.net/software/TrustyFiles-Personal-File-Sharing-13308.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7192</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware trustyfiles v3.1.0.1 runtime detection - sponsor selection (<a href="http://www.snort.org/search/sid/7192?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softpicks.net/software/TrustyFiles-Personal-File-Sharing-13308.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7193</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware trustyfiles v3.1.0.1 runtime detection - startup access (<a href="http://www.snort.org/search/sid/7193?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softpicks.net/software/TrustyFiles-Personal-File-Sharing-13308.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7194</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopprreports runtime detection - services requests (<a href="http://www.snort.org/search/sid/7194?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_133312.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7195</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker shopprreports runtime detection - track/upgrade/report activities (<a href="http://www.snort.org/search/sid/7195?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.mcafeesecurity.com/vil/content/v_133312.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7506</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool coma runtime detection - init connection - flowbit set (<a href="http://www.snort.org/search/sid/7506?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7507</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool coma runtime detection - init connection (<a href="http://www.snort.org/search/sid/7507?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090795">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7508</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool coma runtime detection - ping - flowbit set (<a href="http://www.snort.org/search/sid/7508?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7509</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool coma runtime detection - ping (<a href="http://www.snort.org/search/sid/7509?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090795">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7510</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler edonkey2000 runtime detection - version verification (<a href="http://www.snort.org/search/sid/7510?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.fbmsoftware.com/spyware-net/Process/edonkey2000_exe/705/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7511</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler edonkey2000 runtime detection - get ads page (<a href="http://www.snort.org/search/sid/7511?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.fbmsoftware.com/spyware-net/Process/edonkey2000_exe/705/">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7512</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger watchdog runtime detection - init connection - flowbit set (<a href="http://www.snort.org/search/sid/7512?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098060">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7513</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger watchdog runtime detection - init connection (<a href="http://www.snort.org/search/sid/7513?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098060">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7514</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger watchdog runtime detection - send out info to server periodically (<a href="http://www.snort.org/search/sid/7514?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098060">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7515</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger watchdog runtime detection - remote monitoring (<a href="http://www.snort.org/search/sid/7515?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098060">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7516</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler hmtoolbar runtime detection (<a href="http://www.snort.org/search/sid/7516?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096408">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7518</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware earthlink toolbar runtime detection - get up-to-date news info (<a href="http://www.snort.org/search/sid/7518?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/startuplist-1068.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7519</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware earthlink toolbar runtime detection - track activity (<a href="http://www.snort.org/search/sid/7519?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/startuplist-1068.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7520</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware earthlink toolbar runtime detection - ie autosearch hijack (<a href="http://www.snort.org/search/sid/7520?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/startuplist-1068.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7521</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware earthlink toolbar runtime detection - search toolbar request 1 (<a href="http://www.snort.org/search/sid/7521?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/startuplist-1068.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7522</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware earthlink toolbar runtime detection - search toolbar request 2 (<a href="http://www.snort.org/search/sid/7522?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/startuplist-1068.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7523</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware earthlink toolbar runtime detection - click news button links (<a href="http://www.snort.org/search/sid/7523?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/startuplist-1068.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7525</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware hotblox toolbar runtime detection - barad.asp request (<a href="http://www.snort.org/search/sid/7525?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sparkles.nu/spy/proceed-34.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7526</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware hotblox toolbar runtime detection - stat counter (<a href="http://www.snort.org/search/sid/7526?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sparkles.nu/spy/proceed-34.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7527</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware hotblox toolbar runtime detection - toolbar find function (<a href="http://www.snort.org/search/sid/7527?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sparkles.nu/spy/proceed-34.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7528</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware hotblox toolbar runtime detection - ie autosearch hijack (<a href="http://www.snort.org/search/sid/7528?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://sparkles.nu/spy/proceed-34.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7529</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware halflife jacker runtime detection (<a href="http://www.snort.org/search/sid/7529?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077199">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7530</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler mediaseek.pl client runtime detection - trickler (<a href="http://www.snort.org/search/sid/7530?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.remove-spyware-now.net/MediaSeek-pl-Client.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7531</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler mediaseek.pl client runtime detection - login (<a href="http://www.snort.org/search/sid/7531?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.remove-spyware-now.net/MediaSeek-pl-Client.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7532</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware piolet runtime detection - user-agent (<a href="http://www.snort.org/search/sid/7532?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://taxster.fateback.com/piolet.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7533</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware piolet runtime detection - ads request (<a href="http://www.snort.org/search/sid/7533?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://taxster.fateback.com/piolet.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7534</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker clearsearch variant runtime detection - ie hijacking (<a href="http://www.snort.org/search/sid/7534?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.doxdesk.com/parasite/ClearSearch.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7535</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker clearsearch variant runtime detection - pass information (<a href="http://www.snort.org/search/sid/7535?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.doxdesk.com/parasite/ClearSearch.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7536</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker clearsearch variant runtime detection - popup (<a href="http://www.snort.org/search/sid/7536?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.doxdesk.com/parasite/ClearSearch.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7537</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware arrow search runtime detection (<a href="http://www.snort.org/search/sid/7537?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.rt-software.co.uk/arrow_search/index.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7539</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger eye spy pro 1.0 runtime detection (<a href="http://www.snort.org/search/sid/7539?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.softslist.com/download-9-50-20783.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7541</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger starlogger runtime detection (<a href="http://www.snort.org/search/sid/7541?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=922">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7542</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool mini oblivion runtime detection - successful init connection (<a href="http://www.snort.org/search/sid/7542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=26770">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7543</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker 2020search runtime detection (<a href="http://www.snort.org/search/sid/7543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076971">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7544</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger PerfectKeylogger runtime detection - flowbit set 1 (<a href="http://www.snort.org/search/sid/7544?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073333">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7545</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger PerfectKeylogger runtime detection - flowbit set 2 (<a href="http://www.snort.org/search/sid/7545?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073333">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7546</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger PerfectKeylogger runtime detection (<a href="http://www.snort.org/search/sid/7546?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073333">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7547</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger activity monitor 3.8 runtime detection - agent status monitoring (<a href="http://www.snort.org/search/sid/7547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=35592">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7548</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger activity monitor 3.8 runtime detection - agent up notification (<a href="http://www.snort.org/search/sid/7548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=35592">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7549</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger activity monitor 3.8 runtime detection (<a href="http://www.snort.org/search/sid/7549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=35592">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7550</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware adroar runtime detection (<a href="http://www.snort.org/search/sid/7550?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077256">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7553</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hxdl runtime detection - hxlogonly user-agent (<a href="http://www.snort.org/search/sid/7553?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075079">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7554</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware hxdl runtime detection - hxdownload user-agent (<a href="http://www.snort.org/search/sid/7554?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075079">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7556</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker blazefind runtime detection - search bar (<a href="http://www.snort.org/search/sid/7556?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079063">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7557</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware purityscan runtime detection - start up (<a href="http://www.snort.org/search/sid/7557?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073488">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7558</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware purityscan runtime detection - installation notify (<a href="http://www.snort.org/search/sid/7558?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073488">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7559</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware purityscan runtime detection - track user activity and status (<a href="http://www.snort.org/search/sid/7559?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073488">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7560</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware purityscan runtime detection - self update (<a href="http://www.snort.org/search/sid/7560?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073488">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7561</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware purityscan runtime detection - opt out of interstitial advertising (<a href="http://www.snort.org/search/sid/7561?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073488">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7562</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware morpheus runtime detection - ad 1 (<a href="http://www.snort.org/search/sid/7562?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=54367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7563</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware morpheus runtime detection - ad 2 (<a href="http://www.snort.org/search/sid/7563?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=54367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7564</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker startnow runtime detection (<a href="http://www.snort.org/search/sid/7564?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083036">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7565</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adshooter.searchforit runtime detection - search engine (<a href="http://www.snort.org/search/sid/7565?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079051">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7566</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adshooter.searchforit runtime detection - redirector (<a href="http://www.snort.org/search/sid/7566?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079051">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7568</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware webhancer runtime detection (<a href="http://www.snort.org/search/sid/7568?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=43482">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7569</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware lordofsearch runtime detection (<a href="http://www.snort.org/search/sid/7569?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_list_category.php?category_id=12">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7570</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker linkspider search bar runtime detection - ads (<a href="http://www.snort.org/search/sid/7570?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://linkspider.co.uk">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7571</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker linkspider search bar runtime detection - toolbar search (<a href="http://www.snort.org/search/sid/7571?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://linkspider.co.uk">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7572</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler album galaxy runtime detection - startup data (<a href="http://www.snort.org/search/sid/7572?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://codegravity.com/index.php/spyware">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7573</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler album galaxy runtime detection - p2p gnutella (<a href="http://www.snort.org/search/sid/7573?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://codegravity.com/index.php/spyware">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7574</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger proagent 2.0 runtime detection (<a href="http://www.snort.org/search/sid/7574?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076925">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7575</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker starware toolbar runtime detection - weather request (<a href="http://www.snort.org/search/sid/7575?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2009">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7576</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker starware toolbar runtime detection - hijack ie browser (<a href="http://www.snort.org/search/sid/7576?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2009">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7577</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker starware toolbar runtime detection - collect information (<a href="http://www.snort.org/search/sid/7577?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2009">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7578</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker starware toolbar runtime detection - reference (<a href="http://www.snort.org/search/sid/7578?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2009">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7579</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker starware toolbar runtime detection - smileys (<a href="http://www.snort.org/search/sid/7579?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2009">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7580</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker starware toolbar runtime detection - update (<a href="http://www.snort.org/search/sid/7580?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2009">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7582</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler pcast runtime detection - update checking (<a href="http://www.snort.org/search/sid/7582?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098354">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7583</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool clandestine runtime detection - flowbit set big (<a href="http://www.snort.org/search/sid/7583?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7584</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool clandestine runtime detection - flowbit set open (<a href="http://www.snort.org/search/sid/7584?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7585</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool clandestine runtime detection - flowbit set image (<a href="http://www.snort.org/search/sid/7585?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7586</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool clandestine runtime detection - image transferred (<a href="http://www.snort.org/search/sid/7586?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=1295">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7587</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler urlblaze runtime detection - software information request (<a href="http://www.snort.org/search/sid/7587?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073195">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7588</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler urlblaze runtime detection - files search or download (<a href="http://www.snort.org/search/sid/7588?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073195">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7589</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler urlblaze runtime detection - irc notification (<a href="http://www.snort.org/search/sid/7589?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073195">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7590</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker swbar runtime detection (<a href="http://www.snort.org/search/sid/7590?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077852">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7591</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger keylogger pro runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/7591?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7592</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger keylogger pro runtime detection (<a href="http://www.snort.org/search/sid/7592?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spyany.com/keylogger.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7593</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware trellian toolbarbrowser runtime detection (<a href="http://www.snort.org/search/sid/7593?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.toolbarbrowser.com">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7594</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware comedy planet runtime detection - ads (<a href="http://www.snort.org/search/sid/7594?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.paretologic.com/spyware.aspx?remove=Comedy-Planet">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7595</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware comedy planet runtime detection - collect user information (<a href="http://www.snort.org/search/sid/7595?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://labs.paretologic.com/spyware.aspx?remove=Comedy-Planet">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7596</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spy lantern keylogger runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/7596?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083297">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7597</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spy lantern keylogger runtime detection (<a href="http://www.snort.org/search/sid/7597?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083297">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7598</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware 2-seek runtime detection - search in toolbar (<a href="http://www.snort.org/search/sid/7598?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.2-seek.com/toolbar.php">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7599</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware 2-seek runtime detection - user info collection (<a href="http://www.snort.org/search/sid/7599?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.2-seek.com/toolbar.php">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7600</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker adtraffic runtime detection - notfound website search hijack and redirection (<a href="http://www.snort.org/search/sid/7600?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094115">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7601</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware big brother v3.5.1 runtime detection - connect to keyserver (<a href="http://www.snort.org/search/sid/7601?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=45916">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7602</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware big brother v3.5.1 runtime detection - connect to receiver - flowbit set (<a href="http://www.snort.org/search/sid/7602?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=45916">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7603</td><td class="ruletablebody" valign="top">SPYWARE-PUT Snoopware big brother v3.5.1 runtime detection - connect to receiver (<a href="http://www.snort.org/search/sid/7603?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=45916">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7604</td><td class="ruletablebody" valign="top">BACKDOOR katux 2.0 runtime detection - screen capture - flowbit set (<a href="http://www.snort.org/search/sid/7604?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7605</td><td class="ruletablebody" valign="top">BACKDOOR katux 2.0 runtime detection - screen capture (<a href="http://www.snort.org/search/sid/7605?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077310">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7606</td><td class="ruletablebody" valign="top">BACKDOOR katux 2.0 runtime detection - get system info - flowbit set (<a href="http://www.snort.org/search/sid/7606?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7607</td><td class="ruletablebody" valign="top">BACKDOOR katux 2.0 runtime detection - get system info (<a href="http://www.snort.org/search/sid/7607?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077310">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7608</td><td class="ruletablebody" valign="top">BACKDOOR katux 2.0 runtime detection - chat - flowbit set (<a href="http://www.snort.org/search/sid/7608?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7609</td><td class="ruletablebody" valign="top">BACKDOOR katux 2.0 runtime detection - chat (<a href="http://www.snort.org/search/sid/7609?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077310">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7620</td><td class="ruletablebody" valign="top">BACKDOOR remote control 1.7 runtime detection - connection request flowbit 1 (<a href="http://www.snort.org/search/sid/7620?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7621</td><td class="ruletablebody" valign="top">BACKDOOR remote control 1.7 runtime detection - connection request - flowbit 2 (<a href="http://www.snort.org/search/sid/7621?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7622</td><td class="ruletablebody" valign="top">BACKDOOR remote control 1.7 runtime detection - connection request - flowbit 3 (<a href="http://www.snort.org/search/sid/7622?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7623</td><td class="ruletablebody" valign="top">BACKDOOR remote control 1.7 runtime detection - connection request (<a href="http://www.snort.org/search/sid/7623?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080063">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7624</td><td class="ruletablebody" valign="top">BACKDOOR remote control 1.7 runtime detection - data communication (<a href="http://www.snort.org/search/sid/7624?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080063">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7625</td><td class="ruletablebody" valign="top">BACKDOOR skyrat show runtime detection - initial connection - flowbit 1 (<a href="http://www.snort.org/search/sid/7625?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7626</td><td class="ruletablebody" valign="top">BACKDOOR skyrat show runtime detection - initial connection - flowbit 2 (<a href="http://www.snort.org/search/sid/7626?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7627</td><td class="ruletablebody" valign="top">BACKDOOR skyrat show runtime detection - initial connection - flowbit 3 (<a href="http://www.snort.org/search/sid/7627?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7628</td><td class="ruletablebody" valign="top">BACKDOOR skyrat show runtime detection - initial connection - flowbit 4 (<a href="http://www.snort.org/search/sid/7628?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7629</td><td class="ruletablebody" valign="top">BACKDOOR skyrat show runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7629?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453081105">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7630</td><td class="ruletablebody" valign="top">BACKDOOR helios 3.1 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7630?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074473">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7631</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - fetch system info - flowbit set (<a href="http://www.snort.org/search/sid/7631?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7632</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - fetch system info (<a href="http://www.snort.org/search/sid/7632?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7633</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - irc connection - flowbit set (<a href="http://www.snort.org/search/sid/7633?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7634</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - irc connection (<a href="http://www.snort.org/search/sid/7634?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7635</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - fetch process list - flowbit set (<a href="http://www.snort.org/search/sid/7635?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7636</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - fetch processes list (<a href="http://www.snort.org/search/sid/7636?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7637</td><td class="ruletablebody" valign="top">BACKDOOR hornet 1.0 runtime detection - icq notification (<a href="http://www.snort.org/search/sid/7637?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073228">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7638</td><td class="ruletablebody" valign="top">BACKDOOR ncph runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7638?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mmbest.com/Software/Catalog3/1477.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7640</td><td class="ruletablebody" valign="top">BACKDOOR air runtime detection - webmail notification (<a href="http://www.snort.org/search/sid/7640?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076794">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7641</td><td class="ruletablebody" valign="top">BACKDOOR am remote client runtime detection - client-to-server (<a href="http://www.snort.org/search/sid/7641?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/a/amrc/Amrc1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7642</td><td class="ruletablebody" valign="top">BACKDOOR am remote client runtime detection - server-to-client (<a href="http://www.snort.org/search/sid/7642?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/a/amrc/Amrc1.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7644</td><td class="ruletablebody" valign="top">BACKDOOR ullysse runtime detection - client-to-server (<a href="http://www.snort.org/search/sid/7644?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075739">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7645</td><td class="ruletablebody" valign="top">BACKDOOR snipernet 2.1 runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/7645?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/snipernet/Snipernet2.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7646</td><td class="ruletablebody" valign="top">BACKDOOR snipernet 2.1 runtime detection (<a href="http://www.snort.org/search/sid/7646?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/snipernet/Snipernet2.1.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7648</td><td class="ruletablebody" valign="top">BACKDOOR minicom lite runtime detection - client-to-server (<a href="http://www.snort.org/search/sid/7648?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=910">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7650</td><td class="ruletablebody" valign="top">BACKDOOR small uploader 1.01 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7650?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7658</td><td class="ruletablebody" valign="top">BACKDOOR jodeitor 1.1 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077303">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7659</td><td class="ruletablebody" valign="top">BACKDOOR lan filtrator 1.1 runtime detection - sin notification (<a href="http://www.snort.org/search/sid/7659?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074827">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7660</td><td class="ruletablebody" valign="top">BACKDOOR lan filtrator 1.1 runtime detection - initial connection request - flowbit set (<a href="http://www.snort.org/search/sid/7660?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7661</td><td class="ruletablebody" valign="top">BACKDOOR lan filtrator 1.1 runtime detection - initial connection request (<a href="http://www.snort.org/search/sid/7661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074827">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7662</td><td class="ruletablebody" valign="top">BACKDOOR snid x2 v1.2 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7662?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7663</td><td class="ruletablebody" valign="top">BACKDOOR snid x2 v1.2 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7663?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=5567">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7664</td><td class="ruletablebody" valign="top">BACKDOOR screen control 1.0 runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/7664?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080930">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7665</td><td class="ruletablebody" valign="top">BACKDOOR screen control 1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080930">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7667</td><td class="ruletablebody" valign="top">BACKDOOR screen control 1.0 runtime detection - capture on port 2208 (<a href="http://www.snort.org/search/sid/7667?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080930">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7668</td><td class="ruletablebody" valign="top">BACKDOOR screen control 1.0 runtime detection - capture on port 2213 - flowbit set (<a href="http://www.snort.org/search/sid/7668?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080930">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7669</td><td class="ruletablebody" valign="top">BACKDOOR screen control 1.0 runtime detection - capture on port 2213 (<a href="http://www.snort.org/search/sid/7669?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080930">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7670</td><td class="ruletablebody" valign="top">BACKDOOR digital upload runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7670?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068131">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7671</td><td class="ruletablebody" valign="top">BACKDOOR digital upload runtime detection - chat (<a href="http://www.snort.org/search/sid/7671?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068131">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7672</td><td class="ruletablebody" valign="top">BACKDOOR remoter runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7672?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=53155">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7673</td><td class="ruletablebody" valign="top">BACKDOOR remote havoc runtime detection - flowbit set 1 (<a href="http://www.snort.org/search/sid/7673?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=863">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7674</td><td class="ruletablebody" valign="top">BACKDOOR remote havoc runtime detection - flowbit set 2 (<a href="http://www.snort.org/search/sid/7674?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=863">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7675</td><td class="ruletablebody" valign="top">BACKDOOR remote havoc runtime detection (<a href="http://www.snort.org/search/sid/7675?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=863">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7676</td><td class="ruletablebody" valign="top">BACKDOOR cool remote control or crackdown runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7676?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068314">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7677</td><td class="ruletablebody" valign="top">BACKDOOR cool remote control or crackdown runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7677?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068314">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7678</td><td class="ruletablebody" valign="top">BACKDOOR cool remote control 1.12 runtime detection - upload file - flowbit set (<a href="http://www.snort.org/search/sid/7678?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068314">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7679</td><td class="ruletablebody" valign="top">BACKDOOR cool remote control 1.12 runtime detection - upload file (<a href="http://www.snort.org/search/sid/7679?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068314">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7680</td><td class="ruletablebody" valign="top">BACKDOOR cool remote control 1.12 runtime detection - download file - flowbit set (<a href="http://www.snort.org/search/sid/7680?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068314">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7681</td><td class="ruletablebody" valign="top">BACKDOOR cool remote control 1.12 runtime detection - download file (<a href="http://www.snort.org/search/sid/7681?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068314">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7682</td><td class="ruletablebody" valign="top">BACKDOOR acid head 1.00 runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/7682?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=71371">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7683</td><td class="ruletablebody" valign="top">BACKDOOR acid head 1.00 runtime detection (<a href="http://www.snort.org/search/sid/7683?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=71371">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7684</td><td class="ruletablebody" valign="top">BACKDOOR hrat 1.0 runtime detection (<a href="http://www.snort.org/search/sid/7684?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073815">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7685</td><td class="ruletablebody" valign="top">BACKDOOR illusion runtime detection - get remote info client-to-server (<a href="http://www.snort.org/search/sid/7685?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077268">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7686</td><td class="ruletablebody" valign="top">BACKDOOR illusion runtime detection - get remote info server-to-client (<a href="http://www.snort.org/search/sid/7686?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077268">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7687</td><td class="ruletablebody" valign="top">BACKDOOR illusion runtime detection - file browser client-to-server (<a href="http://www.snort.org/search/sid/7687?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077268">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7688</td><td class="ruletablebody" valign="top">BACKDOOR illusion runtime detection - file browser server-to-client (<a href="http://www.snort.org/search/sid/7688?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077268">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7689</td><td class="ruletablebody" valign="top">BACKDOOR evade runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7689?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/e/evade/Evade1.1b.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7690</td><td class="ruletablebody" valign="top">BACKDOOR evade runtime detection - file manager - flowbit set (<a href="http://www.snort.org/search/sid/7690?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/e/evade/Evade1.1b.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7691</td><td class="ruletablebody" valign="top">BACKDOOR evade runtime detection - file manager (<a href="http://www.snort.org/search/sid/7691?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/e/evade/Evade1.1b.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7692</td><td class="ruletablebody" valign="top">BACKDOOR exception 1.0 runtime detection - notification (<a href="http://www.snort.org/search/sid/7692?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077099">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7695</td><td class="ruletablebody" valign="top">BACKDOOR hanky panky 1.1 runtime detection - initial connection - flowbit set 1 (<a href="http://www.snort.org/search/sid/7695?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077209">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7696</td><td class="ruletablebody" valign="top">BACKDOOR hanky panky 1.1 runtime detection - initial connection - flowbit set 2 (<a href="http://www.snort.org/search/sid/7696?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077209">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7698</td><td class="ruletablebody" valign="top">BACKDOOR brain wiper runtime detection - launch application - flowbit set (<a href="http://www.snort.org/search/sid/7698?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7699</td><td class="ruletablebody" valign="top">BACKDOOR brain wiper runtime detection - launch application (<a href="http://www.snort.org/search/sid/7699?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7700</td><td class="ruletablebody" valign="top">BACKDOOR brain wiper runtime detection - chat - flowbit set (<a href="http://www.snort.org/search/sid/7700?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7701</td><td class="ruletablebody" valign="top">BACKDOOR brain wiper runtime detection - chat (<a href="http://www.snort.org/search/sid/7701?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7702</td><td class="ruletablebody" valign="top">BACKDOOR roach 1.0 runtime detection - remote control actions - flowbit set (<a href="http://www.snort.org/search/sid/7702?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7703</td><td class="ruletablebody" valign="top">BACKDOOR roach 1.0 runtime detection - remote control actions (<a href="http://www.snort.org/search/sid/7703?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075964">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7704</td><td class="ruletablebody" valign="top">BACKDOOR roach 1.0 server installation notification - email (<a href="http://www.snort.org/search/sid/7704?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075964">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7705</td><td class="ruletablebody" valign="top">BACKDOOR omniquad instant remote control runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7705?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7706</td><td class="ruletablebody" valign="top">BACKDOOR omniquad instant remote control runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7706?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080053">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7707</td><td class="ruletablebody" valign="top">BACKDOOR omniquad instant remote control runtime detection - file transfer setup (<a href="http://www.snort.org/search/sid/7707?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080053">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7708</td><td class="ruletablebody" valign="top">BACKDOOR fear1.5/aciddrop1.0 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7708?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7709</td><td class="ruletablebody" valign="top">BACKDOOR fear1.5/aciddrop1.0 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7709?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7710</td><td class="ruletablebody" valign="top">BACKDOOR fear1.5/aciddrop1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7710?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077106">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7711</td><td class="ruletablebody" valign="top">BACKDOOR amitis runtime command detection attacker to victim (<a href="http://www.snort.org/search/sid/7711?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072405">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7712</td><td class="ruletablebody" valign="top">BACKDOOR amitis runtime detection victim to attacker (<a href="http://www.snort.org/search/sid/7712?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072405">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7713</td><td class="ruletablebody" valign="top">BACKDOOR amitis v1.3 runtime detection - email notification (<a href="http://www.snort.org/search/sid/7713?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075097">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7714</td><td class="ruletablebody" valign="top">BACKDOOR netdevil runtime detection - flowbit set 1 (<a href="http://www.snort.org/search/sid/7714?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=27557">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7715</td><td class="ruletablebody" valign="top">BACKDOOR netdevil runtime detection - flowbit set 2 (<a href="http://www.snort.org/search/sid/7715?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=27557">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7716</td><td class="ruletablebody" valign="top">BACKDOOR netdevil runtime detection (<a href="http://www.snort.org/search/sid/7716?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=27557">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7717</td><td class="ruletablebody" valign="top">BACKDOOR snake trojan runtime detection (<a href="http://www.snort.org/search/sid/7717?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453078423">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7718</td><td class="ruletablebody" valign="top">BACKDOOR dameware mini remote control runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7718?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060041">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7719</td><td class="ruletablebody" valign="top">BACKDOOR dameware mini remote control runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7719?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453060041">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7721</td><td class="ruletablebody" valign="top">BACKDOOR prorat 1.9 initial connection detection (<a href="http://www.snort.org/search/sid/7721?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453082779">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7724</td><td class="ruletablebody" valign="top">BACKDOOR reversable ver1.0 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7724?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7726</td><td class="ruletablebody" valign="top">BACKDOOR reversable ver1.0 runtime detection - execute command - flowbit set (<a href="http://www.snort.org/search/sid/7726?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7727</td><td class="ruletablebody" valign="top">BACKDOOR reversable ver1.0 runtime detection - execute command (<a href="http://www.snort.org/search/sid/7727?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/r/reversable/Reversable1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7728</td><td class="ruletablebody" valign="top">BACKDOOR radmin runtime detection - client-to-server (<a href="http://www.snort.org/search/sid/7728?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7729</td><td class="ruletablebody" valign="top">BACKDOOR radmin runtime detection - server-to-client (<a href="http://www.snort.org/search/sid/7729?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453086368">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7730</td><td class="ruletablebody" valign="top">BACKDOOR outbreak_0.2.7 runtime detection - reverse connection (<a href="http://www.snort.org/search/sid/7730?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/o/outbreak/Outbreak0.2.7.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7731</td><td class="ruletablebody" valign="top">BACKDOOR outbreak_0.2.7 runtime detection - ring server-to-client (<a href="http://www.snort.org/search/sid/7731?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/o/outbreak/Outbreak0.2.7.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7732</td><td class="ruletablebody" valign="top">BACKDOOR outbreak_0.2.7 runtime detection - ring client-to-server (<a href="http://www.snort.org/search/sid/7732?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/o/outbreak/Outbreak0.2.7.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7733</td><td class="ruletablebody" valign="top">BACKDOOR outbreak_0.2.7 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7733?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/o/outbreak/Outbreak0.2.7.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7734</td><td class="ruletablebody" valign="top">BACKDOOR bionet 4.05 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7734?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072406">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7738</td><td class="ruletablebody" valign="top">BACKDOOR alexmessomalex runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7738?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=45547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7739</td><td class="ruletablebody" valign="top">BACKDOOR alexmessomalex runtime detection - grab (<a href="http://www.snort.org/search/sid/7739?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=45547">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7740</td><td class="ruletablebody" valign="top">BACKDOOR nova 1.0 runtime detection - initial connection with pwd set - flowbit set (<a href="http://www.snort.org/search/sid/7740?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073030">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7744</td><td class="ruletablebody" valign="top">BACKDOOR phoenix 2.1 runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/7744?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7745</td><td class="ruletablebody" valign="top">BACKDOOR phoenix 2.1 runtime detection (<a href="http://www.snort.org/search/sid/7745?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079790">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7746</td><td class="ruletablebody" valign="top">BACKDOOR bobo 1.0 runtime detection - initial connection - flowbit set (<a href="http://www.snort.org/search/sid/7746?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7747</td><td class="ruletablebody" valign="top">BACKDOOR bobo 1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7747?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076842">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7748</td><td class="ruletablebody" valign="top">BACKDOOR bobo 1.0 runtime detection - send message - flowbit set (<a href="http://www.snort.org/search/sid/7748?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7749</td><td class="ruletablebody" valign="top">BACKDOOR bobo 1.0 runtime detection - send message (<a href="http://www.snort.org/search/sid/7749?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076842">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7750</td><td class="ruletablebody" valign="top">BACKDOOR buschtrommel 1.22 runtime detection - initial connection - flowbit set 1 (<a href="http://www.snort.org/search/sid/7750?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7751</td><td class="ruletablebody" valign="top">BACKDOOR buschtrommel 1.22 runtime detection - initial connection - flowbit set 2 (<a href="http://www.snort.org/search/sid/7751?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7752</td><td class="ruletablebody" valign="top">BACKDOOR buschtrommel 1.22 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7752?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=20757">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7753</td><td class="ruletablebody" valign="top">BACKDOOR buschtrommel 1.22 runtime detection - spy function - flowbit set 1 (<a href="http://www.snort.org/search/sid/7753?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7754</td><td class="ruletablebody" valign="top">BACKDOOR buschtrommel 1.22 runtime detection - spy function - flowbit set 2 (<a href="http://www.snort.org/search/sid/7754?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7755</td><td class="ruletablebody" valign="top">BACKDOOR buschtrommel 1.22 runtime detection - spy function (<a href="http://www.snort.org/search/sid/7755?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=20757">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7758</td><td class="ruletablebody" valign="top">BACKDOOR glacier runtime detection - initial connection and directory browse (<a href="http://www.snort.org/search/sid/7758?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/attack_sigs/s20302.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7759</td><td class="ruletablebody" valign="top">BACKDOOR glacier runtime detection - screen capture (<a href="http://www.snort.org/search/sid/7759?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/avcenter/attack_sigs/s20302.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7760</td><td class="ruletablebody" valign="top">BACKDOOR netthief runtime detection (<a href="http://www.snort.org/search/sid/7760?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=16078">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7763</td><td class="ruletablebody" valign="top">BACKDOOR nt remote controller 2000 runtime detection - services client-to-server (<a href="http://www.snort.org/search/sid/7763?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075691">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7764</td><td class="ruletablebody" valign="top">BACKDOOR nt remote controller 2000 runtime detection - sysinfo client-to-server (<a href="http://www.snort.org/search/sid/7764?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075691">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7765</td><td class="ruletablebody" valign="top">BACKDOOR nt remote controller 2000 runtime detection - sysinfo server-to-client (<a href="http://www.snort.org/search/sid/7765?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075691">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7766</td><td class="ruletablebody" valign="top">BACKDOOR nt remote controller 2000 runtime detection - foldermonitor client-to-server (<a href="http://www.snort.org/search/sid/7766?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075691">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7767</td><td class="ruletablebody" valign="top">BACKDOOR nt remote controller 2000 runtime detection - foldermonitor server-to-client (<a href="http://www.snort.org/search/sid/7767?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075691">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7770</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - get server info - flowbit set (<a href="http://www.snort.org/search/sid/7770?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7771</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - get server info (<a href="http://www.snort.org/search/sid/7771?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077400">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7772</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - enable keylogger - flowbit set (<a href="http://www.snort.org/search/sid/7772?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7773</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - enable keylogger (<a href="http://www.snort.org/search/sid/7773?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077400">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7774</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - screen capture - flowbit set (<a href="http://www.snort.org/search/sid/7774?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7775</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - screen capture (<a href="http://www.snort.org/search/sid/7775?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077400">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7776</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - get drives - flowbit set (<a href="http://www.snort.org/search/sid/7776?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7777</td><td class="ruletablebody" valign="top">BACKDOOR messiah 4.0 runtime detection - get drives (<a href="http://www.snort.org/search/sid/7777?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077400">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7778</td><td class="ruletablebody" valign="top">BACKDOOR elfrat runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7778?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=55224">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7782</td><td class="ruletablebody" valign="top">BACKDOOR netdevil runtime detection - file manager - flowbit set (<a href="http://www.snort.org/search/sid/7782?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453087652">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7783</td><td class="ruletablebody" valign="top">BACKDOOR netdevil runtime detection - file manager (<a href="http://www.snort.org/search/sid/7783?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453087652">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7791</td><td class="ruletablebody" valign="top">BACKDOOR remote anything 5.11.22 runtime detection - victim response (<a href="http://www.snort.org/search/sid/7791?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076440">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7792</td><td class="ruletablebody" valign="top">BACKDOOR remote anything 5.11.22 runtime detection - chat with victim (<a href="http://www.snort.org/search/sid/7792?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076440">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7793</td><td class="ruletablebody" valign="top">BACKDOOR remote anything 5.11.22 runtime detection - chat with attacker (<a href="http://www.snort.org/search/sid/7793?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076440">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7794</td><td class="ruletablebody" valign="top">BACKDOOR fraggle rock 2.0 lite runtime detection - pc info - flowbit set (<a href="http://www.snort.org/search/sid/7794?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077120">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7795</td><td class="ruletablebody" valign="top">BACKDOOR incommand 1.7 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7795?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7796</td><td class="ruletablebody" valign="top">BACKDOOR incommand 1.7 runtime detection - init connection (<a href="http://www.snort.org/search/sid/7796?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7797</td><td class="ruletablebody" valign="top">BACKDOOR incommand 1.7 runtime detection - file manage 1 (<a href="http://www.snort.org/search/sid/7797?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7798</td><td class="ruletablebody" valign="top">BACKDOOR incommand 1.7 runtime detection - file manage 1 (<a href="http://www.snort.org/search/sid/7798?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7799</td><td class="ruletablebody" valign="top">BACKDOOR incommand 1.7 runtime detection - file manage 2 (<a href="http://www.snort.org/search/sid/7799?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7800</td><td class="ruletablebody" valign="top">BACKDOOR incommand 1.7 runtime detection - file manage 2 (<a href="http://www.snort.org/search/sid/7800?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=44730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7801</td><td class="ruletablebody" valign="top">BACKDOOR portal of doom runtime detection - udp cts (<a href="http://www.snort.org/search/sid/7801?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4684">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7802</td><td class="ruletablebody" valign="top">BACKDOOR portal of doom runtime detection - udp stc (<a href="http://www.snort.org/search/sid/7802?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=4684">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7803</td><td class="ruletablebody" valign="top">BACKDOOR war trojan ver1.0 runtime detection - send messages (<a href="http://www.snort.org/search/sid/7803?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075746">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7804</td><td class="ruletablebody" valign="top">BACKDOOR war trojan ver1.0 runtime detection - disable ctrl+alt+del (<a href="http://www.snort.org/search/sid/7804?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075746">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7805</td><td class="ruletablebody" valign="top">BACKDOOR war trojan ver1.0 runtime detection - ie hijacker (<a href="http://www.snort.org/search/sid/7805?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075746">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7806</td><td class="ruletablebody" valign="top">BACKDOOR fatal wound 1.0 runtime detection - initial connection (<a href="http://www.snort.org/search/sid/7806?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077104">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7807</td><td class="ruletablebody" valign="top">BACKDOOR fatal wound 1.0 runtime detection - execute file (<a href="http://www.snort.org/search/sid/7807?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077104">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7808</td><td class="ruletablebody" valign="top">BACKDOOR fatal wound 1.0 runtime detection - upload (<a href="http://www.snort.org/search/sid/7808?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077104">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7809</td><td class="ruletablebody" valign="top">BACKDOOR fatal wound 1.0 runtime detection - upload (<a href="http://www.snort.org/search/sid/7809?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453077104">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7811</td><td class="ruletablebody" valign="top">BACKDOOR abacab runtime detection - telnet initial (<a href="http://www.snort.org/search/sid/7811?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://megasecurity.org/trojans/a/abacab/Abacab0.9beta.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7812</td><td class="ruletablebody" valign="top">BACKDOOR abacab runtime detection - banner (<a href="http://www.snort.org/search/sid/7812?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://megasecurity.org/trojans/a/abacab/Abacab0.9beta.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7813</td><td class="ruletablebody" valign="top">BACKDOOR darkmoon initial connection detection - cts (<a href="http://www.snort.org/search/sid/7813?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/auto/index/indexD.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7814</td><td class="ruletablebody" valign="top">BACKDOOR darkmoon initial connection detection - stc (<a href="http://www.snort.org/search/sid/7814?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/auto/index/indexD.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7815</td><td class="ruletablebody" valign="top">BACKDOOR darkmoon reverse connection detection - stc (<a href="http://www.snort.org/search/sid/7815?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/auto/index/indexD.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7816</td><td class="ruletablebody" valign="top">BACKDOOR darkmoon reverse connection detection - cts (<a href="http://www.snort.org/search/sid/7816?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/auto/index/indexD.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7817</td><td class="ruletablebody" valign="top">BACKDOOR infector v1.0 runtime detection - init conn (<a href="http://www.snort.org/search/sid/7817?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075657">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7818</td><td class="ruletablebody" valign="top">BACKDOOR infector v1.0 runtime detection - init conn (<a href="http://www.snort.org/search/sid/7818?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075657">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7822</td><td class="ruletablebody" valign="top">BACKDOOR xbkdr runtime detection (<a href="http://www.snort.org/search/sid/7822?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/x/x-bkdr/X-bkdr1.4.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7823</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware whenu runtime detection - datachunksgz (<a href="http://www.snort.org/search/sid/7823?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076030">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7824</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler whenu.clocksync runtime detection (<a href="http://www.snort.org/search/sid/7824?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076030">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7825</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware whenu.savenow runtime detection (<a href="http://www.snort.org/search/sid/7825?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075520">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7826</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler whenu.weathercast runtime detection - check (<a href="http://www.snort.org/search/sid/7826?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453074634">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7827</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware whenu runtime detection - search request 1 (<a href="http://www.snort.org/search/sid/7827?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079971">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7828</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware whenu runtime detection - search request 2 (<a href="http://www.snort.org/search/sid/7828?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2485">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7829</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware gator user-agent detected (<a href="http://www.snort.org/search/sid/7829?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094092">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7830</td><td class="ruletablebody" valign="top">SPYWARE-PUT Botnet dacryptic runtime detection (<a href="http://www.snort.org/search/sid/7830?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=26162">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7831</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware downloadplus runtime detection (<a href="http://www.snort.org/search/sid/7831?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453076008">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7834</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool nettracker runtime detection - report browsing (<a href="http://www.snort.org/search/sid/7834?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7835</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool nettracker runtime detection - report browsing (<a href="http://www.snort.org/search/sid/7835?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080821">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7836</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool nettracker runtime detection - report send through email (<a href="http://www.snort.org/search/sid/7836?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453080821">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7837</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spyoutside runtime detection - email delivery (<a href="http://www.snort.org/search/sid/7837?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://securityresponse.symantec.com/avcenter/venc/data/spyware.spyoutside.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7838</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware smiley central runtime detection (<a href="http://www.snort.org/search/sid/7838?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2181">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7839</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker rx toolbar runtime detection (<a href="http://www.snort.org/search/sid/7839?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094367">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7840</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker instafinder initial configuration detection (<a href="http://www.snort.org/search/sid/7840?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090786">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7841</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker instafinder error redirect detection (<a href="http://www.snort.org/search/sid/7841?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090786">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7842</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool davps runtime detection (<a href="http://www.snort.org/search/sid/7842?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/d/davps/Davps1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7843</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker avenuemedia.dyfuca runtime detection - search engine hijack (<a href="http://www.snort.org/search/sid/7843?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.itsecurity.com/security.htm?s=9473&amp;sid=875854b6006d07f08dae34f1b78a4600">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7844</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker avenuemedia.dyfuca runtime detection - post data (<a href="http://www.snort.org/search/sid/7844?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.itsecurity.com/security.htm?s=9473&amp;sid=875854b6006d07f08dae34f1b78a4600">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7845</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger clogger 1.0 runtime detection (<a href="http://www.snort.org/search/sid/7845?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7846</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger clogger 1.0 runtime detection (<a href="http://www.snort.org/search/sid/7846?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7847</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger clogger 1.0 runtime detection - send log through email (<a href="http://www.snort.org/search/sid/7847?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453068235">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7848</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker netguide runtime detection (<a href="http://www.snort.org/search/sid/7848?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://castlecops.com/tk17754-CursorZone_Grip_Toolbar.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7849</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler maxsearch runtime detection - toolbar download (<a href="http://www.snort.org/search/sid/7849?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2248">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7850</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler maxsearch runtime detection - retrieve command (<a href="http://www.snort.org/search/sid/7850?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2248">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7851</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler maxsearch runtime detection - ack (<a href="http://www.snort.org/search/sid/7851?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2248">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7852</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler maxsearch runtime detection - advertisement (<a href="http://www.snort.org/search/sid/7852?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2248">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7853</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware web-nexus runtime detection - ad url 1 (<a href="http://www.snort.org/search/sid/7853?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=381">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7854</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware web-nexus runtime detection - config retrieval (<a href="http://www.snort.org/search/sid/7854?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=381">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7855</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware web-nexus runtime detection - ad url 2 (<a href="http://www.snort.org/search/sid/7855?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=381">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">7857</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger EliteKeylogger runtime detection (<a href="http://www.snort.org/search/sid/7857?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=814">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8056</td><td class="ruletablebody" valign="top">DOS ISC DHCP server 2 client_id length denial of service attempt (<a href="http://www.snort.org/search/sid/8056?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-3122">2006-3122</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.debian.org/security/2006/dsa-1143">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8071</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker findthewebsiteyouneed runtime detection - search hijack (<a href="http://www.snort.org/search/sid/8071?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098705">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8072</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker findthewebsiteyouneed runtime detection - surf monitor (<a href="http://www.snort.org/search/sid/8072?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098705">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8073</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware zango toolbar runtime detection (<a href="http://www.snort.org/search/sid/8073?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2298">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8074</td><td class="ruletablebody" valign="top">BACKDOOR mithril runtime detection - init connection (<a href="http://www.snort.org/search/sid/8074?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/m/mithril/Mithril1.45.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8075</td><td class="ruletablebody" valign="top">BACKDOOR mithril runtime detection - get system information (<a href="http://www.snort.org/search/sid/8075?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/m/mithril/Mithril1.45.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8076</td><td class="ruletablebody" valign="top">BACKDOOR mithril runtime detection - get system information (<a href="http://www.snort.org/search/sid/8076?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/m/mithril/Mithril1.45.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8077</td><td class="ruletablebody" valign="top">BACKDOOR mithril runtime detection - get process list (<a href="http://www.snort.org/search/sid/8077?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/m/mithril/Mithril1.45.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8078</td><td class="ruletablebody" valign="top">BACKDOOR mithril runtime detection - get process list (<a href="http://www.snort.org/search/sid/8078?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/m/mithril/Mithril1.45.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8079</td><td class="ruletablebody" valign="top">BACKDOOR x2a runtime detection - init connection (<a href="http://www.snort.org/search/sid/8079?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084136">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8080</td><td class="ruletablebody" valign="top">BACKDOOR x2a runtime detection - client update (<a href="http://www.snort.org/search/sid/8080?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453084136">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8350</td><td class="ruletablebody" valign="top">WEB-CLIENT pub file download (<a href="http://www.snort.org/search/sid/8350?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0001">2006-0001</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/19951">19951</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-054.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8352</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware desktopmedia runtime detection - ads popup (<a href="http://www.snort.org/search/sid/8352?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098156">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8353</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware desktopmedia runtime detection - auto update (<a href="http://www.snort.org/search/sid/8353?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098156">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8354</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware desktopmedia runtime detection - surf monitoring (<a href="http://www.snort.org/search/sid/8354?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098156">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8355</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spybuddy 3.72 runtime detection (<a href="http://www.snort.org/search/sid/8355?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8356</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spybuddy 3.72 runtime detection - send log out through email (<a href="http://www.snort.org/search/sid/8356?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097719">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8357</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger spybuddy 3.72 runtime detection - send alert out through email (<a href="http://www.snort.org/search/sid/8357?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097719">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8359</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker yok supersearch runtime detection - target website display (<a href="http://www.snort.org/search/sid/8359?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Yok.SuperSearch&amp;threatid=44407">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8360</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker yok supersearch runtime detection - search info collect (<a href="http://www.snort.org/search/sid/8360?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Yok.SuperSearch&amp;threatid=44407">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8361</td><td class="ruletablebody" valign="top">BACKDOOR black curse 4.0 runtime detection - inverse init connection (<a href="http://www.snort.org/search/sid/8361?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/blackcurse/Blackcurse4.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8362</td><td class="ruletablebody" valign="top">BACKDOOR black curse 4.0 runtime detection - normal init connection (<a href="http://www.snort.org/search/sid/8362?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/blackcurse/Blackcurse4.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8416</td><td class="ruletablebody" valign="top">WEB-CLIENT VML fill method overflow attempt (<a href="http://www.snort.org/search/sid/8416?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4868">2006-4868</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20096">20096</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-055.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8445</td><td class="ruletablebody" valign="top">WEB-CLIENT RTF file with embedded object package download attempt (<a href="http://www.snort.org/search/sid/8445?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-4692">2006-4692</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-065.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8461</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware duduaccelerator runtime detection - send userinfo (<a href="http://www.snort.org/search/sid/8461?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097969">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8462</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware duduaccelerator runtime detection - trace info downloaded (<a href="http://www.snort.org/search/sid/8462?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097969">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8463</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware duduaccelerator runtime detection - trace login info (<a href="http://www.snort.org/search/sid/8463?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097969">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8464</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware henbang runtime detection (<a href="http://www.snort.org/search/sid/8464?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094312">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8465</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger netobserve runtime detection - email notification (<a href="http://www.snort.org/search/sid/8465?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073490">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8466</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger netobserve runtime detection - email notification (<a href="http://www.snort.org/search/sid/8466?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073490">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8467</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger netobserve runtime detection - remote login response (<a href="http://www.snort.org/search/sid/8467?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453073490">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8468</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker accoona runtime detection - collect info (<a href="http://www.snort.org/search/sid/8468?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096478">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8469</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker accoona runtime detection - open sidebar search url (<a href="http://www.snort.org/search/sid/8469?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453096478">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8542</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware deluxecommunications runtime detection - collect info (<a href="http://www.snort.org/search/sid/8542?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453099974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8543</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware deluxecommunications runtime detection - display popup ads (<a href="http://www.snort.org/search/sid/8543?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453099974">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8545</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware roogoo runtime detection - surfing monitor (<a href="http://www.snort.org/search/sid/8545?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097966">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8546</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware roogoo runtime detection - show ads (<a href="http://www.snort.org/search/sid/8546?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097966">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8547</td><td class="ruletablebody" valign="top">BACKDOOR zzmm 2.0 runtime detection - init connection (<a href="http://www.snort.org/search/sid/8547?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8548</td><td class="ruletablebody" valign="top">BACKDOOR zzmm 2.0 runtime detection - init connection (<a href="http://www.snort.org/search/sid/8548?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453054345">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8549</td><td class="ruletablebody" valign="top">BACKDOOR zxshell runtime detection - setting information retrieve (<a href="http://www.snort.org/search/sid/8549?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453081617">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">8730</td><td class="ruletablebody" valign="top">DOS record route rr denial of service attempt (<a href="http://www.snort.org/search/sid/8730?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-dos</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2001-0752">2001-0752</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/870">870</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9339</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.g web propagation detection (<a href="http://www.snort.org/search/sid/9339?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/virusinfo/analyses/w32klezg.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9340</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.i web propagation detection (<a href="http://www.snort.org/search/sid/9340?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=11837">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9346</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.b web propagation detection (<a href="http://www.snort.org/search/sid/9346?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-011716-2500-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9347</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.b netshare propagation detection (<a href="http://www.snort.org/search/sid/9347?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-011716-2500-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9351</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovgate.a netshare propagation detection (<a href="http://www.snort.org/search/sid/9351?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=31576">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9353</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.x netshare propagation detection (<a href="http://www.snort.org/search/sid/9353?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_DEBORM.X">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9354</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.y netshare propagation detection (<a href="http://www.snort.org/search/sid/9354?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_DEBORM.Y">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9355</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.u netshare propagation detection (<a href="http://www.snort.org/search/sid/9355?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_DEBORM.U">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9356</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.q netshare propagation detection (<a href="http://www.snort.org/search/sid/9356?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32debormq.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9357</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.r netshare propagation detection (<a href="http://www.snort.org/search/sid/9357?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32debormr.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9363</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.d web propagation detection (<a href="http://www.snort.org/search/sid/9363?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.sophos.com/security/analyses/w32klezd.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9364</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.e web propagation detection (<a href="http://www.snort.org/search/sid/9364?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2002-011716-2500-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9387</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS klez.j web propagation detection (<a href="http://www.snort.org/search/sid/9387?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=376">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9390</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.d netshare propagation detection (<a href="http://www.snort.org/search/sid/9390?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=30322">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9395</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.j netshare propagation detection (<a href="http://www.snort.org/search/sid/9395?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.cai.com/securityadvisor/virusinfo/virus.aspx?ID=30328">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9396</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS deborm.t netshare propagation detection (<a href="http://www.snort.org/search/sid/9396?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.viruslist.com/en/viruses/encyclopedia?virusid=24669">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9401</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS gokar http propagation detectiot (<a href="http://www.snort.org/search/sid/9401?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?ID=10606">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9407</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovgate.b netshare propagation detection (<a href="http://www.snort.org/search/sid/9407?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2003-021922-4852-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9412</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS sinmsn.b msn propagation detection (<a href="http://www.snort.org/search/sid/9412?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.viruslist.com/en/viruses/encyclopedia?virusid=23776">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9418</td><td class="ruletablebody" valign="top">BOTNET-CNC bagle.a http notification detection (<a href="http://www.snort.org/search/sid/9418?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.symantec.com/security_response/writeup.jsp?docid=2004-011815-3332-99&amp;tabid=2">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9419</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS sasser attempt (<a href="http://www.snort.org/search/sid/9419?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0533">2003-0533</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10108">10108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9420</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS korgo attempt (<a href="http://www.snort.org/search/sid/9420?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0533">2003-0533</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/10108">10108</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.nessus.org/plugins/index.php?view=single&amp;id=12205">12205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS04-011.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9421</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS zotob attempt (<a href="http://www.snort.org/search/sid/9421?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-1983">2005-1983</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/14513">14513</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms05-039.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9422</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS msblast attempt (<a href="http://www.snort.org/search/sid/9422?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0352">2003-0352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8205">8205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-026.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9423</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS lovegate attempt (<a href="http://www.snort.org/search/sid/9423?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0352">2003-0352</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/8205">8205</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/MS03-026.asp">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9424</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS /winnt/explorer.exe unicode klez infection attempt attempt (<a href="http://www.snort.org/search/sid/9424?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9425</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS netsky attachment (<a href="http://www.snort.org/search/sid/9425?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9426</td><td class="ruletablebody" valign="top">SPECIFIC-THREATS mydoom.ap attachment (<a href="http://www.snort.org/search/sid/9426?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9434</td><td class="ruletablebody" valign="top">WEB-CLIENT Ultravox-Max-Msg header integer overflow attempt (<a href="http://www.snort.org/search/sid/9434?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5567">2006-5567</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20744">20744</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.winamp.com/player/version_history.php">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9619</td><td class="ruletablebody" valign="top">WEB-CLIENT Gnu gv buffer overflow attempt (<a href="http://www.snort.org/search/sid/9619?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-5864">2006-5864</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/20978">20978</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9639</td><td class="ruletablebody" valign="top">WEB-CLIENT Windows Address Book download attempt (<a href="http://www.snort.org/search/sid/9639?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-2386">2006-2386</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms06-076.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9644</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware imnames runtime detection (<a href="http://www.snort.org/search/sid/9644?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453100875">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9646</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker sogou runtime detection - search through sogou toolbar (<a href="http://www.snort.org/search/sid/9646?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098380">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9647</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger system surveillance pro runtime detection (<a href="http://www.snort.org/search/sid/9647?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098658">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9648</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger emailspypro runtime detection (<a href="http://www.snort.org/search/sid/9648?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453083347">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9649</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ghost Keylogger runtime detection - flowbit set (<a href="http://www.snort.org/search/sid/9649?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=70892">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9650</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger ghost Keylogger runtime detection (<a href="http://www.snort.org/search/sid/9650?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=70892">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9651</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker ricercadoppia runtime detection (<a href="http://www.snort.org/search/sid/9651?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098730">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9652</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker oemji bar runtime detection (<a href="http://www.snort.org/search/sid/9652?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094187">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9654</td><td class="ruletablebody" valign="top">BACKDOOR apofis 1.0 runtime detection - remote controlling (<a href="http://www.snort.org/search/sid/9654?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9655</td><td class="ruletablebody" valign="top">BACKDOOR apofis 1.0 runtime detection - remote controlling (<a href="http://www.snort.org/search/sid/9655?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/a/apofis/Apofis1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9656</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection (<a href="http://www.snort.org/search/sid/9656?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9657</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection - init connection (<a href="http://www.snort.org/search/sid/9657?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/bersek/Bersek1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9658</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection (<a href="http://www.snort.org/search/sid/9658?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9659</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection - file manage (<a href="http://www.snort.org/search/sid/9659?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/bersek/Bersek1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9660</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection (<a href="http://www.snort.org/search/sid/9660?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9661</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection - show processes (<a href="http://www.snort.org/search/sid/9661?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/bersek/Bersek1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9662</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection (<a href="http://www.snort.org/search/sid/9662?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9663</td><td class="ruletablebody" valign="top">BACKDOOR bersek 1.0 runtime detection - start remote shell (<a href="http://www.snort.org/search/sid/9663?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/b/bersek/Bersek1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9664</td><td class="ruletablebody" valign="top">BACKDOOR crossbow 1.12 runtime detection (<a href="http://www.snort.org/search/sid/9664?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9665</td><td class="ruletablebody" valign="top">BACKDOOR crossbow 1.12 runtime detection - init connection (<a href="http://www.snort.org/search/sid/9665?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/c/crossbow/Crossbow1.12.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9666</td><td class="ruletablebody" valign="top">BACKDOOR superra runtime detection - success init connection (<a href="http://www.snort.org/search/sid/9666?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9667</td><td class="ruletablebody" valign="top">BACKDOOR superra runtime detection - issue remote control command (<a href="http://www.snort.org/search/sid/9667?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9830</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger supreme spy runtime detection (<a href="http://www.snort.org/search/sid/9830?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097729">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9831</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware u88 runtime detection (<a href="http://www.snort.org/search/sid/9831?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Adware.U88&amp;threatid=46383">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9832</td><td class="ruletablebody" valign="top">BACKDOOR ieva 1.0 runtime detection - send message (<a href="http://www.snort.org/search/sid/9832?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.www.megasecurity.org/trojans/i/ieva/Ieva1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9833</td><td class="ruletablebody" valign="top">BACKDOOR ieva 1.0 runtime detection - fake delete harddisk message (<a href="http://www.snort.org/search/sid/9833?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.www.megasecurity.org/trojans/i/ieva/Ieva1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9834</td><td class="ruletablebody" valign="top">BACKDOOR ieva 1.0 runtime detection - black screen (<a href="http://www.snort.org/search/sid/9834?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.www.megasecurity.org/trojans/i/ieva/Ieva1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9835</td><td class="ruletablebody" valign="top">BACKDOOR ieva 1.0 runtime detection - swap mouse (<a href="http://www.snort.org/search/sid/9835?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.www.megasecurity.org/trojans/i/ieva/Ieva1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9836</td><td class="ruletablebody" valign="top">BACKDOOR ieva 1.0 runtime detection - crazy mouse (<a href="http://www.snort.org/search/sid/9836?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.www.megasecurity.org/trojans/i/ieva/Ieva1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9837</td><td class="ruletablebody" valign="top">BACKDOOR sun shadow 1.70 runtime detection - init connection (<a href="http://www.snort.org/search/sid/9837?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9838</td><td class="ruletablebody" valign="top">BACKDOOR sun shadow 1.70 runtime detection - init connection (<a href="http://www.snort.org/search/sid/9838?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/sunshadow/Sunshadow1.7.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9839</td><td class="ruletablebody" valign="top">BACKDOOR sun shadow 1.70 runtime detection - keep alive (<a href="http://www.snort.org/search/sid/9839?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/s/sunshadow/Sunshadow1.7.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9844</td><td class="ruletablebody" valign="top">WEB-CLIENT VLC Media Player udp URI format string attempt - single packet (<a href="http://www.snort.org/search/sid/9844?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0017">2007-0017</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21852">21852</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://projects.info-pull.com/moab/MOAB-02-01-2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9845</td><td class="ruletablebody" valign="top">WEB-CLIENT M3U File Download Detected (<a href="http://www.snort.org/search/sid/9845?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9846</td><td class="ruletablebody" valign="top">WEB-CLIENT VLC Media Player udp URI format string attempt - multipacket (<a href="http://www.snort.org/search/sid/9846?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0017">2007-0017</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/21852">21852</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://projects.info-pull.com/moab/MOAB-02-01-2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9848</td><td class="ruletablebody" valign="top">WEB-CLIENT Vector Markup Language recolorinfo tag numfills parameter buffer overflow attempt (<a href="http://www.snort.org/search/sid/9848?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0024">2007-0024</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">9849</td><td class="ruletablebody" valign="top">WEB-CLIENT Vector Markup Language recolorinfo tag numcolors parameter buffer overflow attempt (<a href="http://www.snort.org/search/sid/9849?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0024">2007-0024</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.microsoft.com/technet/security/bulletin/ms07-004.mspx">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10063</td><td class="ruletablebody" valign="top">WEB-CLIENT Firefox query interface suspicious function call access attempt (<a href="http://www.snort.org/search/sid/10063?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">attempted-user</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2006-0295">2006-0295</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/16476">16476</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.mozilla.org/security/announce/2006/mfsa2006-04.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10090</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trickler zango easymessenger runtime detection (<a href="http://www.snort.org/search/sid/10090?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.spywareguide.com/product_show.php?id=2182">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10091</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hacker-Tool spylply.a runtime detection (<a href="http://www.snort.org/search/sid/10091?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://db.kingsoft.com/virus/forecast/2005/06/08/43198.shtml">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10092</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware russian searchbar runtime detection (<a href="http://www.snort.org/search/sid/10092?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453079056">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10093</td><td class="ruletablebody" valign="top">SPYWARE-PUT Hijacker kuaiso toolbar runtime detection (<a href="http://www.snort.org/search/sid/10093?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098930">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10094</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware borlan runtime detection (<a href="http://www.snort.org/search/sid/10094?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097501">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10095</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware bydou runtime detection (<a href="http://www.snort.org/search/sid/10095?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://bbs.360safe.com/viewthread.php?tid=58707">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10096</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win32.remotekeylog.b runtime detection - keylog (<a href="http://www.snort.org/search/sid/10096?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075959">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10097</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win32.remotekeylog.b runtime detection (<a href="http://www.snort.org/search/sid/10097?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10098</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win32.remotekeylog.b runtime detection - get system info (<a href="http://www.snort.org/search/sid/10098?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075959">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10099</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win32.remotekeylog.b runtime detection (<a href="http://www.snort.org/search/sid/10099?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10100</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger win32.remotekeylog.b runtime detection - open website (<a href="http://www.snort.org/search/sid/10100?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453075959">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10101</td><td class="ruletablebody" valign="top">BACKDOOR crossfires trojan 3.0 runtime detection - delete file (<a href="http://www.snort.org/search/sid/10101?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/c/crossfires/Crossfires.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10102</td><td class="ruletablebody" valign="top">BACKDOOR crossfires trojan 3.0 runtime detection - chat with victim (<a href="http://www.snort.org/search/sid/10102?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/c/crossfires/Crossfires.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10103</td><td class="ruletablebody" valign="top">BACKDOOR hav-rat 1.1 runtime detection (<a href="http://www.snort.org/search/sid/10103?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10104</td><td class="ruletablebody" valign="top">BACKDOOR hav-rat 1.1 runtime detection (<a href="http://www.snort.org/search/sid/10104?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10105</td><td class="ruletablebody" valign="top">BACKDOOR hav-rat 1.1 runtime detection - retrieve pc info (<a href="http://www.snort.org/search/sid/10105?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/h/hav/Havrat1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10109</td><td class="ruletablebody" valign="top">BACKDOOR k-msnrat 1.0.0 runtime detection - init connection (<a href="http://www.snort.org/search/sid/10109?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/k/kmsnrat/Kmsnrat1.0.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10110</td><td class="ruletablebody" valign="top">BACKDOOR poison ivy 2.1.2 runtime detection (<a href="http://www.snort.org/search/sid/10110?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10111</td><td class="ruletablebody" valign="top">BACKDOOR poison ivy 2.1.2 runtime detection - init connection (<a href="http://www.snort.org/search/sid/10111?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/p/poisonivy/Poisonivy2.1.2.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10112</td><td class="ruletablebody" valign="top">BACKDOOR rix3 1.0 runtime detection - init connection (<a href="http://www.snort.org/search/sid/10112?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/r/rix3/Rix3_1.0.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10113</td><td class="ruletablebody" valign="top">BOTNET-CNC Trojan Peacomm command and control propagation detected (<a href="http://www.snort.org/search/sid/10113?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10114</td><td class="ruletablebody" valign="top">BOTNET-CNC Trojan Peacomm command and control propagation detected (<a href="http://www.snort.org/search/sid/10114?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10116</td><td class="ruletablebody" valign="top">WEB-CLIENT AIM GoChat URL access attempt (<a href="http://www.snort.org/search/sid/10116?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-attack</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=2007-0021">2007-0021</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.securityfocus.com/bid/22146">22146</a></td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://projects.info-pull.com/moab/MOAB-20-01-2007.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10164</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware adclicker-ej runtime detection (<a href="http://www.snort.org/search/sid/10164?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://vil.nai.com/vil/content/v_139523.htm">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10165</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger mybr Keylogger runtime detection (<a href="http://www.snort.org/search/sid/10165?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.hack77.com/Soft/hkgj/jpjl/200701/2844.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10166</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware baigoo runtime detection (<a href="http://www.snort.org/search/sid/10166?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453098801">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10168</td><td class="ruletablebody" valign="top">BACKDOOR one runtime detection (<a href="http://www.snort.org/search/sid/10168?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/o/one/One0.12b.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10169</td><td class="ruletablebody" valign="top">BACKDOOR matrix 1.03 by mtronic runtime detection - init connection (<a href="http://www.snort.org/search/sid/10169?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/m/matrix/Matrix1.03.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10179</td><td class="ruletablebody" valign="top">SPYWARE-PUT Trackware bysoo runtime detection (<a href="http://www.snort.org/search/sid/10179?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.360safe.com/elist.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10180</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware eqiso runtime detection (<a href="http://www.snort.org/search/sid/10180?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://research.sunbelt-software.com/threatdisplay.aspx?name=Eqiso&amp;threatid=88999">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10181</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger systemsleuth runtime detection (<a href="http://www.snort.org/search/sid/10181?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097306">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10182</td><td class="ruletablebody" valign="top">SPYWARE-PUT Adware newweb runtime detection (<a href="http://www.snort.org/search/sid/10182?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">misc-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097957">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10183</td><td class="ruletablebody" valign="top">SPYWARE-PUT Keylogger activity Keylogger runtime detection (<a href="http://www.snort.org/search/sid/10183?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">successful-recon-limited</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453097325">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10184</td><td class="ruletablebody" valign="top">BACKDOOR wow 23 runtime detection (<a href="http://www.snort.org/search/sid/10184?r=1">more info ...</a>)</td><td nowrap class="ruletablebody" valign="top" align="left" width="90">trojan-activity</td><td nowrap class="ruletablebody" valign="top" align="center" width="60">
	               </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   </td><td nowrap class="ruletablebody" valign="top" align="center" width="40">
				   <a href="http://www.megasecurity.org/trojans/0_9/23/23_0.3.html">URL</a></td></tr><tr><td class="ruletablebody" style="border-left: 0px;" valign="top" align="center" width="50">10187</td><td class="ruletablebody" valign="top">EXPLOIT HP Mercury Loadrunner command line buffer overflow (<a href="http://www.snort.org/
