| Exploit name |
Count |
Unique Src |
| ICMP PING NMAP |
8908 |
1093 |
| ET POLICY RDP connection request |
2869 |
1095 |
| MISC MS Terminal server request |
2446 |
961 |
| ET SCAN Sipvicious User-Agent Detected (friendly-scanner) |
2431 |
71 |
| ET POLICY Suspicious inbound to MSSQL port 1433 |
2135 |
118 |
| MS-SQL version overflow attempt |
1469 |
25 |
| MS-SQL Worm propagation attempt |
1469 |
25 |
| ET SCAN Potential SSH Scan |
991 |
114 |
| ET POLICY Radmin Remote Control Session Setup Initiate |
696 |
462 |
| ET POLICY MS Remote Desktop Administrator Login Request |
656 |
10 |
| ET SCAN Sipvicious Scan |
493 |
73 |
| ET SCAN ProxyReconBot CONNECT method to Mail |
463 |
268 |
| ET POLICY Suspicious inbound to mySQL port 3306 |
400 |
36 |
| ET SCAN DCERPC rpcmgmt ifids Unauthenticated BIND |
349 |
46 |
| NETBIOS SMB-DS IPC$ unicode share access |
268 |
36 |
| WEB-IIS view source via translate header |
255 |
22 |
| ET EXPLOIT MS04011 Lsasrv.dll RPC exploit (WinXP) |
253 |
34 |
| ET EXPLOIT LSA exploit |
252 |
34 |
| NETBIOS SMB-DS DCERPC LSASS DsRolerUpgradeDownlevelServer exploit attempt |
252 |
34 |
| ET SCAN Modified Sipvicious Sundayddr Scanner |
215 |
10 |