CCIE Security - IPS Signatures - from 9000 up to 50000

 

Signature ID

Signature Name

Signature Engine

9000-0

Back Door Probe (TCP 12345)

atomic-ip

9001-0

Back Door Probe (TCP 31337)

atomic-ip

9002-0

Back Door Probe (TCP 1524)

atomic-ip

9003-0

Back Door Probe (TCP 2773)

atomic-ip

9004-0

Back Door Probe (TCP 2774)

atomic-ip

9005-0

Back Door Probe (TCP 20034)

atomic-ip

9006-0

Back Door Probe (TCP 27374)

atomic-ip

9007-0

Back Door Probe (TCP 1234)

atomic-ip

9008-0

Back Door Probe (TCP 1999)

atomic-ip

9009-0

Back Door Probe (TCP 6711)

atomic-ip

9010-0

Back Door Probe (TCP 6712)

atomic-ip

9011-0

Back Door Probe (TCP 6713)

atomic-ip

9012-0

Back Door Probe (TCP 6776)

atomic-ip

9013-0

Back Door Probe (TCP 16959)

atomic-ip

9014-0

Back Door Probe (TCP 27573)

atomic-ip

9015-0

Back Door Probe (TCP 23432)

atomic-ip

9016-0

Back Door Probe (TCP 5400)

atomic-ip

9017-0

Back Door Probe (TCP 5401)

atomic-ip

9018-0

Back Door Probe (TCP 2115)

atomic-ip

9019-0

Back Door Probe (UDP 2140)

atomic-ip

9020-0

Back Door Probe (UDP 47262)

atomic-ip

9021-0

Back Door Probe (UDP 2001)

atomic-ip

9022-0

Back Door Probe (UDP 2002)

atomic-ip

9023-0

Back Door Probe (TCP 36794)

atomic-ip

9024-0

Back Door Probe (TCP 10168)

atomic-ip

9025-0

Back Door Probe (TCP 20168)

atomic-ip

9026-0

Back Door Probe (TCP 1092)

atomic-ip

9027-0

Back Door Probe (TCP 2018)

atomic-ip

9028-0

Back Door Probe (TCP 2019)

atomic-ip

9029-0

Back Door Probe (TCP 2020)

atomic-ip

9030-0

Back Door Probe (TCP 2021)

atomic-ip

9031-0

Back Door Probe (TCP 6777)

atomic-ip

9032-0

Back Door Probe (TCP 5190)

atomic-ip

9033-0

Back Door Probe (TCP 3127)

atomic-ip

9036-0

Back Door Probe (TCP 3128)

atomic-ip

9037-0

Back Door Probe (TCP 8866)

atomic-ip

9038-0

Back Door Probe (TCP 2766)

atomic-ip

9039-0

Back Door Probe (TCP 2745)

atomic-ip

9040-0

Back Door Probe (TCP 2556)

atomic-ip

9041-0

Back Door Probe (TCP 4751)

atomic-ip

9042-0

Back Door Probe (TCP 2535)

atomic-ip

9043-0

Back Door Probe (TCP 10002)

atomic-ip

9044-0

Back Door Probe (TCP 9996)

atomic-ip

9045-0

Back Door Probe (TCP 5554)

atomic-ip

9200-0

Back Door Response (TCP 12345)

atomic-ip

9201-0

Back Door Response (TCP 31337)

atomic-ip

9202-0

Back Door Response (TCP 1524)

atomic-ip

9203-0

Back Door Response (TCP 2773)

atomic-ip

9204-0

Back Door Response (TCP 2774)

atomic-ip

9205-0

Back Door Response (TCP 20034)

atomic-ip

9206-0

Back Door Response (TCP 27374)

atomic-ip

9207-0

Back Door Response (TCP 1234)

atomic-ip

9208-0

Back Door Response (TCP 1999)

atomic-ip

9209-0

Back Door Response (TCP 6711)

atomic-ip

9210-0

Back Door Response (TCP 6712)

atomic-ip

9211-0

Back Door Response (TCP 6713)

atomic-ip

9212-0

Back Door Response (TCP 6776)

atomic-ip

9213-0

Back Door Response (TCP 16959)

atomic-ip

9214-0

Back Door Response (TCP 27573)

atomic-ip

9215-0

Back Door Response (TCP 23432)

atomic-ip

9216-0

Back Door Response (TCP 5400)

atomic-ip

9217-0

Back Door Response (TCP 5401)

atomic-ip

9218-0

Back Door Response (TCP 2115)

atomic-ip

9223-0

Back Door Response (TCP 36794)

atomic-ip

9224-0

Back Door Response (TCP 10168)

atomic-ip

9225-0

Back Door Response (TCP 20168)

atomic-ip

9226-0

Back Door Response (TCP 1092)

atomic-ip

9227-0

Back Door Response (TCP 2018)

atomic-ip

9228-0

Back Door Response (TCP 2019)

atomic-ip

9229-0

Back Door Response (TCP 2020)

atomic-ip

9230-0

Back Door Response (TCP 2021)

atomic-ip

9231-0

Back Door Response (TCP 6777)

atomic-ip

9232-0

Back Door Response (TCP 5190)

atomic-ip

9233-0

Back Door Response (TCP 3127)

atomic-ip

9236-0

Back Door Response (TCP 3128)

atomic-ip

9237-0

Back Door Response (TCP 8866)

atomic-ip

9238-0

Back Door Response (TCP 2766)

atomic-ip

9239-0

Back Door Response (TCP 2745)

atomic-ip

9240-0

Back Door Response (TCP 2556)

atomic-ip

9241-0

Back Door Response (TCP 4751)

atomic-ip

9242-0

Back Door Response (TCP 2535)

atomic-ip

9243-0

Back Door Response (TCP 10002)

atomic-ip

9244-0

Back Door Response (TCP 9996)

atomic-ip

9245-0

Back Door Response (TCP 5554)

atomic-ip

9400-0

Back Door YAT

string-tcp

9400-1

Back Door YAT

string-tcp

9401-0

Back Door Y3K RAT

string-udp

9401-1

Back Door Y3K RAT

string-tcp

9401-2

Back Door Y3K RAT

atomic-ip

9402-0

Back Door XLog

string-tcp

9403-0

Back Door Xanadu

string-udp

9403-1

Back Door Xanadu

string-tcp

9403-2

Back Door Xanadu

atomic-ip

9404-0

Back Door WinRat

string-tcp

9404-1

Back Door WinRat

string-tcp

9405-0

Back Door Vampire

string-tcp

9406-0

Back Door G-Spot

string-tcp

9407-0

Back Door Undetected

string-tcp

9408-0

Back Door Ultors

string-tcp

9409-0

Back Door UltimateRAT

string-tcp

9410-0

Back Door Truva

string-tcp

9411-0

Back Door Thing

string-tcp

9411-1

Back Door Thing

string-tcp

9411-2

Back Door Thing

string-tcp

9412-0

Back Door The Unexplained

string-udp

9412-1

Back Door The Unexplained

atomic-ip

9413-0

Back Door Hell Driver

string-tcp

9414-0

Back Door Schneckenkorn

string-tcp

9415-0

Back Door Satanz Back Door

string-tcp

9416-0

Back Door Ruler

string-tcp

9417-0

Back Door Ripperz Controller

string-tcp

9418-0

Back Door Revenger

string-udp

9418-1

Back Door Revenger

atomic-ip

9419-0

Back Door Remote Hack

string-tcp

9419-1

Back Door Remote Hack

string-tcp

9420-0

Back Door RatHead

string-tcp

9421-0

Back Door R3C

string-tcp

9422-0

Back Door R0xr4t

string-tcp

9423-0

Back Door Psychward

string-tcp

9423-1

Back Door Psychward

string-tcp

9424-0

Back Door Prosiak

string-tcp

9425-0

Back Door Project Next

string-tcp

9426-0

Back Door Prayer

string-tcp

9427-0

Back Door Pitfall

string-tcp

9428-0

Back Door The Phoenix

string-tcp

9429-0

Back Door Phase Zero

string-tcp

9430-0

Back Door Alvgus

string-udp

9430-1

Back Door Alvgus

atomic-ip

9431-0

Back Door Amanda

string-tcp

9432-0

Back Door Oblivion

string-tcp

9433-0

Back Door Blasitix

string-udp

9433-1

Back Door Blasitix

atomic-ip

9434-0

Back Door Basic Hell

string-tcp

9435-0

Back Door Wow32

string-tcp

9436-0

Back Door WebservCT

string-tcp

9437-0

Back Door Vagr Nocker

string-tcp

9438-0

Back Door Ullysse

string-tcp

9439-0

Back Door School Bus

string-tcp

9440-0

Back Door Rux The Tic.k

string-tcp

9441-0

Back Door Progenic

string-tcp

9442-0

Back Door Private Port

string-tcp

9443-0

Back Door Priority

string-tcp

9444-0

Back Door Pest

string-tcp

9445-0

Back Door PC Invader

string-tcp

9445-1

Back Door PC Invader

string-tcp

9445-2

Back Door PC Invader

string-tcp

9446-0

Back Door Oxon/Olive

string-tcp

9447-0

Back Door Optix Probe

string-tcp

9449-0

Back Door Osiris Probe Response

string-tcp

9450-0

Back Door Blaaaaa

string-udp

9451-0

Back Door BDDT

string-tcp

9452-0

Back Door Bigorna

string-tcp

9453-0

Back Door Black Angel

string-tcp

9454-0

Back Door Network Terrorist

string-tcp

9455-0

Back Door Blade Runner

string-tcp

9456-0

Back Door Blazer

string-tcp

9457-0

Back Door Breach

string-tcp

9458-0

Back Door NetTaxi

string-tcp

9459-0

Back Door NetSphere

string-tcp

9460-0

Back Door Cafini

string-tcp

9461-0

Back Door Celine

string-tcp

9462-0

Back Door Netspy

string-tcp

9463-0

Back Door Connection

string-tcp

9464-0

Back Door Net Raider

string-tcp

9465-0

Back Door CrazzyNet

string-tcp

9466-0

Back Door Net Devil

string-tcp

9467-0

Back Door Danton

string-tcp

9468-0

Back Door Net Administrator

string-tcp

9469-0

Back Door Dark Connection

string-tcp

9470-0

Back Door MoSucker

string-tcp

9471-0

Back Door Gift

string-tcp

9472-0

Back Door Moon Pie

string-tcp

9473-0

Back Door DFch Grisch

string-tcp

9473-1

Back Door DFch Grisch

string-tcp

9474-0

Back Door Mini Oblivion

string-tcp

9475-0

Back Door Mini Asylum

string-tcp

9476-0

Back Door Digital Rootbeer

string-tcp

9477-0

Back Door Millenium

string-tcp

9478-0

Back Door Michal

string-tcp

9479-0

Back Door Donald Dick

string-tcp

9480-0

Back Door Mavericks Matrix

string-tcp

9481-0

Back Door Massaker

string-tcp

9482-0

Back Door Drat

string-tcp

9483-0

Back Door DTr

string-tcp

9484-0

Back Door MNEAH Trojan

string-tcp

9485-0

Back Door Eclypse

string-tcp

9486-0

Back Door M2 Trojan

string-tcp

9487-0

Back Door Intruzzo

string-tcp

9488-0

Back Door FC Trojan

string-tcp

9488-1

Back Door FC Trojan

string-tcp

9489-0

Back Door Insane

string-tcp

9490-0

Back Door Infector

string-tcp

9491-0

Back Door Incommand

string-tcp

9492-0

Back Door Hydroleak

string-tcp

9493-0

Back Door Host Control

string-tcp

9494-0

Back Door Hellz Addiction

string-tcp

9495-0

Back Door Hackers World

string-tcp

9496-0

Back Door Glacier

string-tcp

9497-0

Back Door Girlfriend

string-tcp

9498-0

Back Door Ghost

string-tcp

9499-0

Back Door Kid Terror

string-tcp

9500-0

Back Door Gatecrasher

string-tcp

9501-0

Back Door Fore

string-tcp

9502-0

Back Door F Backdoor

string-tcp

9503-0

Back Door Exploiter

string-tcp

9504-0

Back Door Leszcz

string-tcp

9505-0

Back Door Lithium

string-tcp

9506-0

eSeSIX Thintune Thin Client Device Factory Login

string-tcp

9507-0

Back Door Asylum

string-tcp

9508-0

Back Door Backage

string-tcp

9509-0

Back Door NoSecure

string-tcp

9510-0

Back Door Nirvana

string-tcp

9510-1

Back Door Nirvana

string-tcp

9511-0

Back Door Windows Mite

string-tcp

9512-0

Back Door Internal Revise

string-tcp

9513-0

Back Door Infra

string-tcp

9514-0

Back Door Konik

string-tcp

9515-0

Back Door Kuang

string-tcp

9516-0

Back Door Butt-man

string-tcp

9517-0

Back Door Last2000

string-tcp

9518-0

Back Door Event Horizon

string-tcp

9519-0

Back Door Latinus

string-tcp

9519-1

Back Door Latinus

string-tcp

9519-2

Back Door Latinus

string-tcp

9520-0

Back Door Le Guardien

string-tcp

9521-0

Back Door Mantis

string-tcp

9522-0

Back Door Masters of Paradise

string-tcp

9523-0

Back Door Back Construction

string-tcp

9524-0

Back Door WinCrash

string-tcp

9525-0

Back Door Backdoor

string-tcp

9527-0

Back Door NokNok

string-tcp

9528-0

Back Door War Trojan

string-tcp

9529-0

Back Door WanRemote

string-tcp

9530-0

Back Door Voodoo Doll

string-tcp

9531-0

Back Door Uploader

string-tcp

9532-0

Back Door Tron

string-tcp

9533-0

Back Door Trojan Spirit

string-tcp

9534-0

Back Door Trojan Cow

string-tcp

9535-0

Back Door TansScout

string-tcp

9536-0

Back Door The Flu

string-tcp

9537-0

Back Door Tcc Trojan

string-tcp

9538-0

Back Door Scarab

string-tcp

9539-0

Back Door AOL Admin

string-tcp

9540-0

Back Door New Silencer

string-tcp

9541-0

Back Door Net Controller

string-tcp

9542-0

Back Door Net Trash

string-tcp

9542-1

Back Door Net Trash

string-tcp

9543-0

Back Door Bugs

string-tcp

9544-0

Back Door Buschtrommel

string-tcp

9545-0

Back Door Cero

string-tcp

9546-0

Back Door CGi BioNet

string-tcp

9546-1

Back Door CGi BioNet

string-tcp

9546-2

Back Door CGi BioNet

string-tcp

9547-0

Back Door Chupacabra

string-tcp

9548-0

Back Door Crack Down

string-tcp

9549-0

Back Door Cyn

string-tcp

9550-0

Back Door Microspy

string-tcp

9551-0

Back Door Remote Process Monitor

string-tcp

9552-0

Back Door Remote Revise

string-tcp

9553-0

Back Door Remote Explorer

string-tcp

9554-0

Back Door Qwertos RAT

string-tcp

9555-0

Back Door One

string-tcp

9556-0

Back Door Acid Battery

string-tcp

9557-0

Back Door OOTLT

string-tcp

9558-0

Back Door Forced Entry

string-tcp

9559-0

Back Door Deltasource

string-udp

9560-0

Back Door Dolly

string-tcp

9560-1

Back Door Dolly

string-tcp

9560-2

Back Door Dolly

string-tcp

9561-0

Back Door Meet The Lamer

string-tcp

9562-0

Back Door Duddie

string-tcp

9562-1

Back Door Duddie

string-tcp

9563-0

Back Door Net Metropolitan

string-tcp

9563-1

Back Door Net Metropolitan

string-tcp

9564-0

Back Door File Nail

string-tcp

9565-0

Back Door Executor

string-tcp

9566-0

Back Door B.F. Evolution

string-tcp

9567-0

Back Door Frenzy

string-tcp

9567-1

Back Door Frenzy

string-tcp

9568-0

Back Door Remote Boot Tool

string-udp

9570-0

Back Door Beast

string-tcp

9571-0

Back Door Netbus

string-tcp

9572-0

Back Door Cyn v2.1

string-tcp

9573-0

Back Door C.I.A.

string-tcp

9574-0

Back Door Guptachar

string-tcp

9575-0

Back Door Breach Pro

string-tcp

9576-0

Back Door Undetected 3.3

string-tcp

9577-0

Back Door [x]-ztoo

string-tcp

9578-0

Back Door Illusion

string-tcp

9579-0

Back Door Hack A'' tack

string-tcp

9580-0

Back Door AckCmd

atomic-ip

9581-0

Backdoor SubSeven

string-tcp

9582-0

Back Orifice Activity (TCP)

string-tcp

9583-0

Back Orifice Activity (UDP)

atomic-ip

11000-0

KaZaA v2 UDP Client Probe

string-udp

11000-1

KaZaA v2 UDP Client Probe

string-udp

11000-2

KaZaA v2 UDP Client Probe

string-udp

11001-0

Gnutella Client Request

string-tcp

11002-0

Gnutella Server Reply

string-tcp

11003-0

Qtella File Request

string-tcp

11004-0

Bearshare File Request

string-tcp

11005-0

KaZaA Client Activity

string-tcp

11005-1

KaZaA Client Activity

service-http

11006-0

Gnucleus File Request

string-tcp

11007-0

Limewire File Request

string-tcp

11008-0

Morpheus File Request

string-tcp

11009-0

Phex File Request

string-tcp

11010-0

Swapper File Request

string-tcp

11011-0

XoloX File Request

string-tcp

11012-0

GTK-Gnutella File Request

string-tcp

11013-0

Mutella File Request

string-tcp

11014-0

Hotline Client Login

string-tcp

11015-0

Hotline File Transfer

string-tcp

11016-0

Hotline Tracker Login

string-tcp

11017-0

Direct Connect Server Reply

string-tcp

11018-0

eDonkey Activity

string-tcp

11019-0

WinMx Server Response

string-tcp

11020-0

BitTorrent Client Activity

string-tcp

11021-0

MP2P Client Scan

atomic-ip

11022-0

Overnet Client Scan

string-udp

11023-0

Soulseek Client Login

string-tcp

11024-0

Imesh Client Activity

service-http

11025-0

IRC DCC File Transfer

string-tcp

11026-0

Napster Activity

service-http

11027-0

Gnutella File Search

string-udp

11028-0

WinMx Connection

service-http

11029-0

WinMx Download

string-tcp

11030-0

Bittorrent Tracker Query

service-http

11031-0

Bittorrent Tracker Scrape

service-http

11200-0

Yahoo Messenger Activity

string-tcp

11201-0

MSN Messenger Activity

string-tcp

11202-0

AIM / ICQ Messenger Activity

string-tcp

11203-0

IRC Channel Join

string-tcp

11204-0

Jabber Activity

string-tcp

11205-0

Sametime Activity

atomic-ip

11206-0

ICQ Client DNS Request

string-udp

11207-0

AIM Client DNS request

string-udp

11208-0

Yahoo Messenger Client DNS Request

string-udp

11209-0

MSN Messenger Client DNS Request

string-udp

11210-0

AIM / ICQ Through HTTP Proxy

service-http

11210-1

AIM / ICQ Through HTTP Proxy

string-tcp

11211-0

MSN Messenger Through HTTP Proxy

service-http

11211-1

MSN Messenger Through HTTP Proxy

service-http

11212-0

Yahoo Messenger Through HTTP Proxy

service-http

11213-0

AOL IM Login

string-tcp

11214-0

AOL IM Message Send

string-tcp

11215-0

AOL IM Message Receive

string-tcp

11216-0

AOL IM Chat - User Join

string-tcp

11217-0

Yahoo Messenger Logon

string-tcp

11218-0

Yahoo Messenger Send Message

string-tcp

11219-0

Yahoo Messenger Receive Message

string-tcp

11221-0

Yahoo Messenger Chat Invitation Activity

string-tcp

11222-0

MSN Login

string-tcp

11223-0

MSN Message Sent

string-tcp

11224-0

MSN Message Received

string-tcp

11225-0

MSN Chat Invitation Sent

string-tcp

11226-0

MSN Chat Invitation Received

string-tcp

11227-0

MSN Chat Invitation Accepted

string-tcp

11228-0

MSN Chat Joined

string-tcp

11229-0

AOL IM Chat - User Leave

string-tcp

11230-0

AOL IM Chat - Incoming Message

string-tcp

11231-0

AOL IM Chat - Outgoing Message

string-tcp

11232-0

AOL IM Chat - Create room

string-tcp

11233-0

SSH Over Non-standard Ports

string-tcp

11233-1

SSH Over Non-standard Ports

string-tcp

11233-2

SSH Over Non-standard Ports

string-tcp

11235-0

MSN File Transfer Proposal Sent

string-tcp

11236-0

MSN File Transfer Proposal Received

string-tcp

11237-0

Jabber Chatroom Activity

string-tcp

11238-0

MSNFTP File Transfer

string-tcp

11239-0

ICQ Chat Invitation Sent

string-tcp

11240-0

ICQ Chat Invitation Received

string-tcp

11241-0

ICQ Specific Request

string-tcp

11242-0

ICQ File Transfer

string-tcp

11244-0

MSN P2P File Transfer

string-tcp

11245-0

IRC Server Connection

string-tcp

11245-1

IRC Server Connection

string-tcp

11246-0

AIM File Transfer Request

string-tcp

11247-0

AIM File Transfer

string-tcp

11248-0

Gadu-Gadu Login

service-http

11249-0

Gadu-Gadu IM Message Sent

string-tcp

11250-0

Gadu-Gadu IM Message Received

string-tcp

11251-0

Skype Client Activity

service-http

11252-0

AIM Express Activity

service-http

11252-1

AIM Express Activity

service-http

12000-0

Gator Spyware Beacon

service-http

12001-0

Bonzi Buddy Spyware Beacon

service-http

12002-0

SaveNow Ad Request

service-http

12002-1

SaveNow Ad Request

service-http

12003-0

Ezula Spyware

service-http

12004-0

Cydoor Spyware

service-http

12005-0

Hotbar Activity

service-http

12005-1

Hotbar Activity

service-http

12006-0

Linkgrabber99 Activity

service-http

12007-0

GameSpy Activity

service-http

12008-0

180solutions Adware

service-http

12009-0

MarketScore Activity

service-http

12010-0

GAIN Adware Activity

service-http

12011-0

TOPicks Activity

service-http

12012-0

Purityscan Activity

service-http

12013-0

ISTbar Toolbar Activity

service-http

12014-0

KeenValue Spyware

service-http

12014-1

KeenValue Spyware

service-http

12015-0

ShopAtHomeSelect Agent Activity

service-http

12015-1

ShopAtHomeSelect Agent Activity

service-http

12016-0

SearchRelevancy Spyware

service-http

12017-0

TSA Activity

service-http

12018-0

Toprebate Activity

service-http

12019-0

SideFind Activity

service-http

12020-0

WindUpdates Activity

service-http

12021-0

Internet Optimizer Activity

service-http

12022-0

Perfect Keylogger Activity

string-tcp

12022-1

Perfect Keylogger Activity

string-tcp

12023-0

DAP Activity

service-http

12023-1

DAP Activity

service-http

12024-0

New.net Activity

service-http

12025-0

Kelvir Worm Activity

string-tcp

12025-1

Kelvir Worm Activity

string-tcp

12026-0

Fatso Worm

string-tcp

12027-0

Cart32 Expdate

service-http

50000-0

Outbreak Prevention Signature

atomic-ip

50000-1

Outbreak Prevention Signature

atomic-ip

Moving your apps to Amazon or Miscrosoft Clouds?

We can help you analyze your existing infrastructure, identify the cost savings we can achieve by migrating to a cloud provider. We can then execute end-to-end migration plan of your infrastructure and bringing down your TCO.

Cloud Computing

Ready for IPv6 Migration?

The Internet is running out of the equivalent of phone numbers - familiar problem, non-trivial solution.

The world has to move to IPv6, with its 128-bit addresses. But that's easier said than done.

IPv6 Migration

Are you fluent in "Linux"?

Learn Linux from a leading expert and quickly master you Linux skills.

Learn how to simplify your workflow and increase your productivity using tips and techniques of the pros.

Ideal training for Corporate IT Beginners and Advanced IT Admins alike.

Corporate Linux Training

Who's Online

We have 3 guests and no members online