类别: 入侵防护
日期和时间,风险,活动,状态,推荐的操作,IPS 警报名称,默认操作,采取的操作,攻击者网址,攻击电脑,目标地址,源地址,通信说明,类别
2013/2/3 21:35:40,高,阻止了一次入侵企图。,已阻止,不需要操作,Fake App Attack: Fake Scan Webpage 8,不需要操作,不需要操作,hxxp://tropold.org/jerk.cgi?6,,,,,
2013/2/3 21:35:23,高,阻止了 immediatelyinvoicew.ru 的入侵企图,已阻止,不需要操作,Web Attack: Malicious Java Download 14,不需要操作,不需要操作,immediatelyinvoicew.ru/Nvubu70BOWL0JEo60c0Lf04Zgq0X5gH01SZW0AaB50Hze30pOQG0kvEO0ZuZz059ZM0Xysu0enuX0hluc0sMR60zv2O0Udch/imJTuXe.jar,"immediatelyinvoicew.ru (108.61.12.43, 80)","WIN-MUD6U7NNTD1 (192.168.58.128, 57462)",108.61.12.43 (108.61.12.43),"TCP, www-http",
2013/2/3 21:35:21,高,阻止了 immediatelyinvoicew.ru 的入侵企图,已阻止,不需要操作,Web Attack: Malicious Java Download 14,不需要操作,不需要操作,immediatelyinvoicew.ru/Nvubu70BOWL0JEo60c0Lf04Zgq0X5gH01SZW0AaB50Hze30pOQG0kvEO0ZuZz059ZM0Xysu0enuX0hluc0sMR60zv2O0Udch/imJTuXe.jar,"immediatelyinvoicew.ru (108.61.12.43, 80)","WIN-MUD6U7NNTD1 (192.168.58.128, 57461)",108.61.12.43 (108.61.12.43),"TCP, www-http",
2013/2/3 21:35:19,高,阻止了 immediatelyinvoicew.ru 的入侵企图,已阻止,不需要操作,Web Attack: Malicious Java Download 14,不需要操作,不需要操作,immediatelyinvoicew.ru/Nvubu70BOWL0JEo60c0Lf04Zgq0X5gH01SZW0AaB50Hze30pOQG0kvEO0ZuZz059ZM0Xysu0enuX0hluc0sMR60zv2O0Udch/imJTuXe.jar,"immediatelyinvoicew.ru (108.61.12.43, 80)","WIN-MUD6U7NNTD1 (192.168.58.128, 57459)",108.61.12.43 (108.61.12.43),"TCP, www-http",
2013/2/3 21:35:18,高,阻止了 immediatelyinvoicew.ru 的入侵企图,已阻止,不需要操作,Web Attack: Malicious Java Download 14,不需要操作,不需要操作,immediatelyinvoicew.ru/Nvubu70BOWL0JEo60c0Lf04Zgq0X5gH01SZW0AaB50Hze30pOQG0kvEO0ZuZz059ZM0Xysu0enuX0hluc0sMR60zv2O0Udch/imJTuXe.jar,"immediatelyinvoicew.ru (108.61.12.43, 80)","WIN-MUD6U7NNTD1 (192.168.58.128, 57458)",108.61.12.43 (108.61.12.43),"TCP, www-http", |