darpa99攻击列表

更新时间:2023-06-13 03:48:09 阅读: 评论:0

DARPA INTRUSION DETECTION EVALUATION
Detections List File
The following list documents the attacks occuring in the cond week of 1999 training data.
The date, starting time, and destination(s) of each attack are provided. In addition, the name of the attack is provided as a source of identification.
Brief descriptions of each type of attack are provided following the list of detections. The attack names in the detection list provide hyperlinks to the brief descriptions that follow.
The names provided are tho that were ud during the evaluation and may not be the only names by which an attack is known.
Detections List
有理数混合运算习题blinded
ID
Date
Start_Time
Destination
Score
Name
1
03/08/1999
08:01:01
ie.af.mil
1
NTinfoscan
2
03/08/1999
08:50:15
ie.af.mil
1
pod
3
03/08/1999
09:39:16
ie.af.mil
1
back
4
03/08/1999
12:09:18
ie.af.mil
1
httptunnel
5
03/08/1999
专业英语翻译15:57:15
ie.af.mil
1
land
6
03/08/1999
17:27:13
ie.af.mil
1
cret中英文对照文章
7
03/08/1999
19:09:17
ie.af.mil
1
ps attack
 
 
 
8
03/09/1999
08:44:17
ie.af.mil     
1
portsweep
9
03/09/1999
09:43:51
ie.af.mil
1
eject
10
03/09/1999
10:06:43
ie.af.mil
1
back
11
03/09/1999
10:54:19
ie.af.mil
1
loadmodule
12
03/09/1999
11:49:13
ie.af.mil
1
cret
13
03/09/1999
14:25:16
ie.af.mil
1
mailbomb
14
03/09/1999
13:05:10 
172.016.112.
001-114.254
1
ipsweep
15
03/09/1999
16:11:15 
ie.af.mil
1
phf
16
03/09/1999
18:06:17
ie.af.mil
饥饿游戏3片尾曲
1
httptunnel
 
 
 
17
03/10/1999 
12:02:13
ie.af.mil
1
satan
18
03/10/1999 
13:44:18
ie.af.mil
1
mailbomb
19
03/10/1999 
15:25:18
ie.af.mil
1
perl (Failed)
20
03/10/1999 
20:17:10
172.016.112.
001-114.254
1
ipsweep
21
03/10/1999 
23:23:00
ie.af.mil
1
eject (console)
22
03/10/1999
23:56:14
ie.af.mil
1
crashiis
 
 
 
23
03/11/1999
08:04:17
ie.af.mil
1
crashiis
24
03/11/1999
09:33:17
ie.af.mil
1
venus什么意思
satan
25
03/11/1999
10:50:11
ie.af.mil
1
portsweep
26
03/11/1999
11:04:16
ie.af.mil
1
neptune
27
03/11/1999
12:57:13
ie.af.mil
1
cret
28
03/11/1999
14:25:17
ie.af.mil
1
perl
29
03/11/1999
15:47:15
ie.af.mil
1
land
30
03/11/1999
16:36:10
172.016.112.
001-254
1
ipsweep
31
03/11/1999
19:16:18
ie.af.mil
1
ftp-write
 
 
 
32
03/12/1999
08:07:17
ie.af.mil
1
phf
33
03/12/1999
08:10:40
ie.af.mil
1
perl (console)
34
03/12/1999rankin
08:16:46
ie.af.mil
1
ps (console)
35仁爱版七年级上册英语
03/12/1999
09:18:15
ie.af.mil
1
pod
36
03/12/1999
11:20:15
ie.af.mil
1
neptune
37
03/12/1999
12:40:12
ie.af.mil
1
crashiis
38
03/12/1999
13:12:17
ie.af.mil
1
loadmodule
39
03/12/1999
14:06:17
ie.af.mil
1
perl (Failed)
40
03/12/1999
14:24:18
ie.af.mil
1
ps
41
03/12/1999
15:24:16
ie.af.mil
1
eject
42
03/12/1999
17:13:10
ie.af.mil
1
portsweep
43
03/12/1999
17:43:18
ie.af.mil
1
ftp-write
 
Attack Descriptions
back
Denial of rvice attack against apache webrver where a client requests a URL containing many backslashes. 
crashiis
A single, malformed http request caus the webrver to crash.
英语名言警句 励志dict
Guess passwords for a valid ur using simple variants of the account name over a telnet connection. 
eject
Buffer overflow using eject program on Solaris. Leads to a ur->root transition if successful. 
ffb
Buffer overflow using the ffbconfig UNIX system command leads to root shell
format
Buffer overflow using the fdformat UNIX system command leads to root shell 
ftp-write
Remote FTP ur creates .rhost file in world writable anonymous FTP directory and obtains local login. 
guest
Try to guess password via telnet for guest account. 
httptunnel
There are two phas to this attack: 
Setup — a  web "client" is tup on the machine being attacked, which is configured, perhaps via crontab, to periodically make requests of a "rver" running on a non-privilaeged port on the attacking machine. 
Action — When the periodic requests are recieved, the rver encapsulates commands to be run by the "client" in a cookie.. things like "cat /etc/passwd".. etc..
imap
Remote buffer overflow using imap port leads to root shell 
ipsweep
Surveillance sweep performing either a port sweep or ping on multiple host address. 
land
Denial of rvice where a remote host is nt a UDP packet with the same source and destination 
loadmodule
Non-stealthy loadmodule attack which rets IFS for a normal ur and creates a root shell 
mailbomb
A Denial of Service attack where we nd the mailrver many large messages for delivery in order to slow it down, perhaps effectively halting normal operation.
multihop
Multi-day scenario in which a ur first breaks into one machine 
neptune
Syn flood denial of rvice on one or more ports. 
nmap
Network mapping using the nmap tool. Mode of exploring network will vary—options include SYN 
ntinfoscan
A process by which the attacker scans an NT machine for information concerning its configuration, including ftp rvices, telnet rvices, web rvices,  system account information, file systems and permissions.
perlmagic
Perl attack which ts the ur id to root in a perl script and creates a root shell 
phf
Exploitable CGI script which allows a client to execute arbitrary commands on a machine with a misconfigured web rver. 
pod
Denial of rvice ping of death 
portsweep
Surveillance sweep through many ports to determine which rvices are supported on a single host. 
ps
Ps takes advantage of a racecondition in the ps command in Sol. 2.5, allowing a ur to gain root access.
rootkit
Multi-day scenario where a ur installs one or more components of a rootkit 
satan
Network probing tool which looks for well-known weakness. Operates at three different levels. Level 0 is light 
cret
 
smurf
Denial of rvice icmp echo reply flood. 
spy
Multi-day scenario in which a ur breaks into a machine with the purpo of finding important information where the ur tries to avoid detection. Us veral different exploit methods to gain access. 
syslog
Denial of rvice for the syslog rvice connects to port 514 with unresolvable source ip.
teardrop
Denial of rvice where mis-fragmented UDP packets cau some systems to reboot. 
warez
Ur logs into anonymous FTP site and creates a hidden directory. 
warezclient
Urs downloading illegal software which was previously posted via anonymous FTP by the warezmaster. 
the interviewwarezmaster
Anonymous FTP upload of Warez (usually illegal copies of copywrited software) onto FTP rver.

本文发布于:2023-06-13 03:48:09,感谢您对本站的认可!

本文链接:https://www.wtabcd.cn/fanwen/fan/90/143162.html

版权声明:本站内容均来自互联网,仅供演示用,请勿用于商业和其他非法用途。如果侵犯了您的权益请与我们联系,我们将在24小时内删除。

上一篇:【DND】共效
标签:运算   饥饿   警句   混合   片尾曲
相关文章
留言与评论(共有 0 条评论)
   
验证码:
Copyright ©2019-2022 Comsenz Inc.Powered by © 专利检索| 网站地图