<?xml version="1.0" encoding="UTF-8"?><root>
	<information>
		<iceyefiletype>rulesystem</iceyefiletype>
		<version>5.6.0.264</version>
		<date>2012-08-14</date>
		<name>系统规则</name>
		<copyright>(c)1999-2009 NSFocus</copyright>
	</information>
	<sysruledesc>
		<rules>
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN用户下线" name_en_US="Instant Messaging Software MSN User Offline" name_zh_CN="即时通信软件MSN用户下线" name_zh_TW="即時通信軟件MSN用戶下線" ruleid="50088" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="SQL注入远程转移数据攻击" name_en_US="Remote Data Transfer SQL Injection" name_zh_CN="SQL注入远程转移数据攻击" name_zh_TW="SQL注入遠程轉移數據攻擊" ruleid="21349" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Guestbook rguest.exe程序漏洞读取文件" name_en_US="File Reading via Guestbook rguest.exe Vulnerability" name_zh_CN="利用Guestbook rguest.exe程序漏洞读取文件" name_zh_TW="利用Guestbook rguest.exe程序漏洞讀取文件" ruleid="30119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0160 Microsoft .NET Framework输入序列化远程代码执行漏洞(MS12-035)" name_en_US="CVE-2012-0160 Microsoft .NET Framework Serialization Remote Code Execution Vulnerability(MS12-035)" name_zh_CN="CVE-2012-0160 Microsoft .NET Framework输入序列化远程代码执行漏洞(MS12-035)" name_zh_TW="CVE-2012-0160 Microsoft .NET Framework輸入序列化遠程代碼執行漏洞(MS12-035)" ruleid="22261" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0167 Microsoft GDI+堆溢出漏洞(MS12-034)" name_en_US="CVE-2012-0167 Microsoft GDI+ Heap Overflow Vulnerability(MS12-034)" name_zh_CN="CVE-2012-0167 Microsoft GDI+堆溢出漏洞(MS12-034)" name_zh_TW="CVE-2012-0167 Microsoft GDI+堆溢出漏洞(MS12-034)" ruleid="22260" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0162 Microsoft .NET Framework缓冲区分配漏洞(MS12-035)" name_en_US="CVE-2012-0162 Microsoft .NET Framework Buffer Allocation Vulnerability(MS12-035)" name_zh_CN="CVE-2012-0162 Microsoft .NET Framework缓冲区分配漏洞(MS12-035)" name_zh_TW="CVE-2012-0162 Microsoft .NET Framework緩沖區分配漏洞(MS12-035)" ruleid="22263" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0161 Microsoft .NET Framework序列化远程代码执行漏洞(MS12-035)" name_en_US="CVE-2012-0161 Microsoft .NET Framework Serialization Remote Code Execution Vulnerability(MS12-035)" name_zh_CN="CVE-2012-0161 Microsoft .NET Framework序列化远程代码执行漏洞(MS12-035)" name_zh_TW="CVE-2012-0161 Microsoft .NET Framework序列化遠程代碼執行漏洞(MS12-035)" ruleid="22262" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Symantec Web Gateway远程shell命令执行攻击" name_en_US="Symantec Web Gateway Remote Shell Command Execution Attack" name_zh_CN="Symantec Web Gateway远程shell命令执行攻击" name_zh_TW="Symantec Web Gateway遠程shell命令執行攻擊" ruleid="22265" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375343" module="0" name="Apache Struts2 XWork绕过安全限制执行任意命令攻击" name_en_US="Apache Struts2 XWork Bypass Security Restrictions To Execute Arbitrary Commands Attack" name_zh_CN="Apache Struts2 XWork绕过安全限制执行任意命令攻击" name_zh_TW="Apache Struts2 XWork繞過安全限制執行任意命令攻擊" ruleid="22264" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1523 Microsoft IE中心元素远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1523 Microsoft Internet Explorer Center Element Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1523 Microsoft IE中心元素远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1523 Microsoft IE中心元素遠程代碼執行漏洞(MS12-037)" ruleid="22269" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1889 Microsoft XML Core Services远程代码执行漏洞" name_en_US="CVE-2012-1889 Microsoft XML Core Services Remote Code Execution Vulnerability" name_zh_CN="CVE-2012-1889 Microsoft XML Core Services远程代码执行漏洞" name_zh_TW="CVE-2012-1889 Microsoft XML Core Services遠程代碼執行漏洞" ruleid="22268" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Cashpoint.com B类木马网络数据通信" name_en_US="TROJAN Cashpoint.com Related checkin User-Agent okcpmgr" name_zh_CN="Cashpoint.com B类木马网络数据通信" name_zh_TW="Cashpoint.com B類木馬網絡數據通信" ruleid="40869" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下TeleCommando木马建立连接" name_en_US="Trojan TeleCommando Connection on Windows" name_zh_CN="Windows系统下TeleCommando木马建立连接" name_zh_TW="Windows系統下TeleCommando木馬建立連接" ruleid="40029" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare 文件操作" name_en_US="Remote Control Program PCShare Files Operation" name_zh_CN="远程控制程序 PCShare 文件操作" name_zh_TW="遠程控制程序 PCShare 文件操作" ruleid="40997" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下TheThing木马连接通信" name_en_US="Trojan TheThing Connection on Windows" name_zh_CN="Windows系统下TheThing木马连接通信" name_zh_TW="Windows系統下TheThing木馬連接通信" ruleid="40027" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832783" module="0" name="协议命令参数超长" name_en_US="Over-long Protocol Command Argument" name_zh_CN="协议命令参数超长" name_zh_TW="協議命令參數超長" ruleid="70001" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Unexplained木马建立连接" name_en_US="Trojan Unexplained Trojan Connectionon Windows" name_zh_CN="Windows系统下Unexplained木马建立连接" name_zh_TW="Windows系統下Unexplained木馬建立連接" ruleid="40026" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Cashpoint.com A类木马网络数据通信" name_en_US="TROJAN Cashpoint.com Related checkin User-Agent inetinst" name_zh_CN="Cashpoint.com A类木马网络数据通信" name_zh_TW="Cashpoint.com A類木馬網絡數據通信" ruleid="40868" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Tabdim木马通信" name_en_US="Trojan Tabdim Communication on Windows" name_zh_CN="Windows系统下Tabdim木马通信" name_zh_TW="Windows系統下Tabdim木馬通信" ruleid="40723" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Delta Source木马通信" name_en_US="Trojan Delta Source Communication on Windows" name_zh_CN="Windows系统下Delta Source木马通信" name_zh_TW="Windows系統下Delta Source木馬通信" ruleid="40024" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="PHP-Nuke opendir.php脚本漏洞扫描探测" name_en_US="PHP-Nuke opendir.php Script Vulnerability Detection" name_zh_CN="PHP-Nuke opendir.php脚本漏洞扫描探测" name_zh_TW="PHP-Nuke opendir.php腳本漏洞掃描探測" ruleid="30442" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="PHP/FI php.cgi脚本漏洞扫描探测" name_en_US="PHP/FI php.cgi Script Vulnerability Detection" name_zh_CN="PHP/FI php.cgi脚本漏洞扫描探测" name_zh_TW="PHP/FI php.cgi腳本漏洞掃描探測" ruleid="30115" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323130" module="0" name="VPOPMail vpopmail.php脚本漏洞扫描探测" name_en_US="VPOPMail vpopmail.php Script Vulnerability Detection" name_zh_CN="VPOPMail vpopmail.php脚本漏洞扫描探测" name_zh_TW="VPOPMail vpopmail.php腳本漏洞掃描探測" ruleid="30440" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Microsoft IIS 5.0 .printer ISAPI扩展映射远程缓冲区溢出攻击" name_en_US="Microsoft IIS 5.0 .printer ISAPI Extension Mapping Remote Buffer Overflow" name_zh_CN="Microsoft IIS 5.0 .printer ISAPI扩展映射远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 5.0 .printer ISAPI擴展映射遠程緩沖區溢出攻擊" ruleid="30441" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="FTP:Microsoft Windows RIS TFTP Service Writable Path 漏洞" name_en_US="FTP:Microsoft Windows RIS TFTP Service Writable Path Vulnerability" name_zh_CN="FTP:Microsoft Windows RIS TFTP Service Writable Path 漏洞" name_zh_TW="FTP:Microsoft Windows RIS TFTP Service Writable Path 漏洞" ruleid="60822" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Excel远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel远程代码执行漏洞" name_zh_TW="Microsoft Excel遠程代碼執行漏洞" ruleid="21101" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Excel文件格式解析漏洞" name_en_US="Microsoft Excel File Format Parsing Vulnerability" name_zh_CN="Microsoft Excel文件格式解析漏洞" name_zh_TW="Microsoft Excel文件格式解析漏洞" ruleid="21100" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Internet Explorer CSS特殊字符信息泄露漏洞" name_en_US="Microsoft Internet Explorer CSS Special Character Information Disclosure Vulnerability" name_zh_CN="Microsoft Internet Explorer CSS特殊字符信息泄露漏洞" name_zh_TW="Microsoft Internet Explorer CSS特殊字符信息泄露漏洞" ruleid="21103" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Excel数组越界远程代码执行漏洞" name_en_US="Microsoft Excel Out of Bounds Array Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel数组越界远程代码执行漏洞" name_zh_TW="Microsoft Excel數組越界遠程代碼執行漏洞" ruleid="21102" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft IE toStaticHTML远程跨站脚本漏洞" name_en_US="Microsoft Internet Explorer &apos;toStaticHTML&apos; HTML Sanitizing Information Disclosure Vulnerability" name_zh_CN="Microsoft IE toStaticHTML远程跨站脚本漏洞" name_zh_TW="Microsoft IE toStaticHTML遠程跨站腳本漏洞" ruleid="21105" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft IE 未初始化内存破坏漏洞" name_en_US="Microsoft IE Uninitialized Memory Corruption Vulnerability" name_zh_CN="Microsoft IE 未初始化内存破坏漏洞" name_zh_TW="Microsoft IE 未初始化內存破壞漏洞" ruleid="21104" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Internet Explorer跨域信息泄露漏洞" name_en_US="Microsoft Internet Explorer Cross-Domain Information Disclosure Vulnerability" name_zh_CN="Microsoft Internet Explorer跨域信息泄露漏洞" name_zh_TW="Microsoft Internet Explorer跨域信息泄露漏洞" ruleid="21106" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Windows Media Player 内存破坏漏洞" name_en_US="Windows Media Player Memory Corruption Vulnerability " name_zh_CN="Windows Media Player 内存破坏漏洞" name_zh_TW="Windows Media Player 內存破壞漏洞" ruleid="21109" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下War Trojan木马通信" name_en_US="Trojan War Trojan Communication on Windows" name_zh_CN="Windows系统下War Trojan木马通信" name_zh_TW="Windows系統下War Trojan木馬通信" ruleid="40604" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN传送文件企图" name_en_US="Instant Messaging Software MSN Sending File Attempt" name_zh_CN="即时通信软件MSN传送文件企图" name_zh_TW="即時通信軟件MSN傳送文件企圖" ruleid="50089" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下WanRemote木马通信" name_en_US="Trojan WanRemote Communication on Windows" name_zh_CN="Windows系统下WanRemote木马通信" name_zh_TW="Windows系統下WanRemote木馬通信" ruleid="40603" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Vampire木马通信" name_en_US="Trojan Vampire Communication on Windows" name_zh_CN="Windows系统下Vampire木马通信" name_zh_TW="Windows系統下Vampire木馬通信" ruleid="40601" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Vagrnocker木马通信" name_en_US="Trojan Vagrnocker Communication on Windows" name_zh_CN="Windows系统下Vagrnocker木马通信" name_zh_TW="Windows系統下Vagrnocker木馬通信" ruleid="40600" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="HiveMail远程PHP代码注入攻击" name_en_US="HiveMail Remote PHP Code Injection" name_zh_CN="HiveMail远程PHP代码注入攻击" name_zh_TW="HiveMail遠程PHP代碼注入攻擊" ruleid="20744" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Clever Copy ID参数远程SQL注入攻击" name_en_US="Clever Copy ID Parameter Remote SQL Injection" name_zh_CN="Clever Copy ID参数远程SQL注入攻击" name_zh_TW="Clever Copy ID參數遠程SQL注入攻擊" ruleid="20745" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="WebspotBlogging login.php远程SQL注入攻击" name_en_US="WebspotBlogging login.php Remote SQL Injection" name_zh_CN="WebspotBlogging login.php远程SQL注入攻击" name_zh_TW="WebspotBlogging login.php遠程SQL注入攻擊" ruleid="20746" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="eFiction远程SQL注入攻击" name_en_US="eFiction Remote SQL Injection" name_zh_CN="eFiction远程SQL注入攻击" name_zh_TW="eFiction遠程SQL注入攻擊" ruleid="20747" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="TotalCalendar多个远程文件包含攻击" name_en_US="TotalCalendar multiple Remote File Inclusions" name_zh_CN="TotalCalendar多个远程文件包含攻击" name_zh_TW="TotalCalendar多個遠程文件包含攻擊" ruleid="20740" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Blursoft Blur6ex多个远程SQL注入攻击" name_en_US="Blursoft Blur6ex multiple Remote SQL Injections" name_zh_CN="Blursoft Blur6ex多个远程SQL注入攻击" name_zh_TW="Blursoft Blur6ex多個遠程SQL注入攻擊" ruleid="20741" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Owl Intranet Engine远程文件包含攻击" name_en_US="Owl Intranet Engine Remote File Inclusion" name_zh_CN="Owl Intranet Engine远程文件包含攻击" name_zh_TW="Owl Intranet Engine遠程文件包含攻擊" ruleid="20742" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHPKit UNC路径远程文件包含攻击" name_en_US="PHPKit UNC Path Remote File Inclusion" name_zh_CN="PHPKit UNC路径远程文件包含攻击" name_zh_TW="PHPKit UNC路徑遠程文件包含攻擊" ruleid="20743" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Website Baker远程SQL注入攻击" name_en_US="Website Baker Remote SQL Injection" name_zh_CN="Website Baker远程SQL注入攻击" name_zh_TW="Website Baker遠程SQL注入攻擊" ruleid="20748" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Edgewall Software Trac Search模块远程SQL注入攻击" name_en_US="Edgewall Software Trac Search Module Remote SQL Injection" name_zh_CN="Edgewall Software Trac Search模块远程SQL注入攻击" name_zh_TW="Edgewall Software Trac Search模塊遠程SQL注入攻擊" ruleid="20749" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Xanadu 1.0木马通信" name_en_US="Trojan Xanadu 1.0 Communication on Windows" name_zh_CN="Windows系统下Xanadu 1.0木马通信" name_zh_TW="Windows系統下Xanadu 1.0木馬通信" ruleid="40608" visible="true" />
			<rule action="" enabled="true" group="209715789" module="0" name="SMTP服务返回码535" name_en_US="SMTP Service Returning 535" name_zh_CN="SMTP服务返回码535" name_zh_TW="SMTP服務返回碼535" ruleid="70061" visible="false" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE OLEAuto32.dll 远程代码执行漏洞" name_en_US="Microsoft IE cve-2011-1995 OLEAuto32.dll Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE OLEAuto32.dll 远程代码执行漏洞" name_zh_TW="Microsoft IE OLEAuto32.dll 遠程代碼執行漏洞" ruleid="21295" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Scroll Event 远程代码执行漏洞" name_en_US="cve-2011-1993 Scroll Event Remote Code Execution vulnerability" name_zh_CN="Scroll Event 远程代码执行漏洞" name_zh_TW="Scroll Event 遠程代碼執行漏洞" ruleid="21294" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="OnLoad Event 远程代码执行漏洞" name_en_US="cve-2011-1997 OnLoad Event Remote Code Execution Vulnerability" name_zh_CN="OnLoad Event 远程代码执行漏洞" name_zh_TW="OnLoad Event 遠程代碼執行漏洞" ruleid="21297" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE Option Element 远程代码执行漏洞" name_en_US="Microsoft IE cve-2011-1996 Option Element Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE Option Element 远程代码执行漏洞" name_zh_TW="Microsoft IE Option Element 遠程代碼執行漏洞" ruleid="21296" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="SelectElement 远程代码执行漏洞" name_en_US="cve-2011-1999 SelectElement Remote Code Execution Vulnerability" name_zh_CN="SelectElement 远程代码执行漏洞" name_zh_TW="SelectElement 遠程代碼執行漏洞" ruleid="21299" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Jscript9.dll 远程代码执行漏洞" name_en_US="cve-2011-1998 Jscript9.dll Remote Code Execution Vulnerability" name_zh_CN="Jscript9.dll 远程代码执行漏洞" name_zh_TW="Jscript9.dll 遠程代碼執行漏洞" ruleid="21298" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834522" module="0" name="IBM DB2 Discovery服务UDP远程拒绝服务攻击" name_en_US="IBM DB2 Discovery Service UDP Remote Denial of Service" name_zh_CN="IBM DB2 Discovery服务UDP远程拒绝服务攻击" name_zh_TW="IBM DB2 Discovery服務UDP遠程拒絕服務攻擊" ruleid="10141" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425818" module="0" name="Oracle9iAS Web Cache远程拒绝服务攻击" name_en_US="Oracle9iAS Web Cache Remote Denial of Service" name_zh_CN="Oracle9iAS Web Cache远程拒绝服务攻击" name_zh_TW="Oracle9iAS Web Cache遠程拒絕服務攻擊" ruleid="10140" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows即插即用功能远程缓冲区溢出攻击" name_en_US="Microsoft Windows Plug and Play Function Remote Buffer Overflow" name_zh_CN="Microsoft Windows即插即用功能远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows即插即用功能遠程緩沖區溢出攻擊" ruleid="20522" visible="true" />
			<rule action=" db  screen " enabled="true" group="272631834" module="0" name="Cisco IOS TELNET环境变量处理拒绝服务攻击" name_en_US="Cisco IOS TELNET Environment Variable Handling Denial of Service" name_zh_CN="Cisco IOS TELNET环境变量处理拒绝服务攻击" name_zh_TW="Cisco IOS TELNET環境變量處理拒絕服務攻擊" ruleid="10145" visible="true" />
			<rule action=" db  screen " enabled="true" group="275777562" module="0" name="Cisco VPN 3000系列畸形SSH初始化包拒绝服务攻击" name_en_US="Cisco VPN 3000 Series Malformed SSH Initialization Packet Denial of Service" name_zh_CN="Cisco VPN 3000系列畸形SSH初始化包拒绝服务攻击" name_zh_TW="Cisco VPN 3000系列畸形SSH初始化包拒絕服務攻擊" ruleid="10144" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Zorum prod.php远程执行命令攻击" name_en_US="Zorum prod.php Remote Command Execution" name_zh_CN="Zorum prod.php远程执行命令攻击" name_zh_TW="Zorum prod.php遠程執行命令攻擊" ruleid="20526" visible="true" />
			<rule action=" db  screen " enabled="true" group="83887151" module="0" name="Windows系统下ZoTob蠕虫利用MS05-039漏洞传播" name_en_US="Windows ZoTob Propagation via MS05-039 Vulnerability" name_zh_CN="Windows系统下ZoTob蠕虫利用MS05-039漏洞传播" name_zh_TW="Windows系統下ZoTob蠕蟲利用MS05-039漏洞傳播" ruleid="20527" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="WebCalendar send_reminders.php远程执行命令攻击" name_en_US="WebCalendar send_reminders.php Remote Command Execution" name_zh_CN="WebCalendar send_reminders.php远程执行命令攻击" name_zh_TW="WebCalendar send_reminders.php遠程執行命令攻擊" ruleid="20528" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.323协议Called Party Number数据畸形" name_en_US="H.323 Protocol Called Party Number Malformed Data" name_zh_CN="H.323协议Called Party Number数据畸形" name_zh_TW="H.323協議Called Party Number數據畸形" ruleid="10148" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="海阳顶端网ASP木马2006官方正式版Webshell插入后门" name_en_US="Haiyang Dingduan Net ASP Trojan 2006 Official Version Insert Backdoor" name_zh_CN="海阳顶端网ASP木马2006官方正式版Webshell插入后门" name_zh_TW="海陽頂端網ASP木馬2006官方正式版Webshell插入後門" ruleid="40988" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Darksk asp木马登录" name_en_US="Darksk asp Trojan Login" name_zh_CN="Darksk asp木马登录" name_zh_TW="Darksk asp木馬登錄" ruleid="40989" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPAdmin Webshell检测" name_en_US="ASPAdmin Webshell Detection" name_zh_CN="ASPAdmin Webshell检测" name_zh_TW="ASPAdmin Webshell檢測" ruleid="40954" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit系统操作" name_en_US="Rootkit System Operation" name_zh_CN="Rootkit系统操作" name_zh_TW="Rootkit系統操作" ruleid="40980" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="黑基ASP大马v2009 Webshell 打开目录" name_en_US="Heiji ASP Dama v2009 Webshell Open Directory" name_zh_CN="黑基ASP大马v2009 Webshell 打开目录" name_zh_TW="黑基ASP大馬v2009 Webshell 打開目錄" ruleid="40981" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="黑基ASP大马v2009 Webshell编辑操作" name_en_US="Heiji ASP Dama v2009 Webshell Editing Operation" name_zh_CN="黑基ASP大马v2009 Webshell编辑操作" name_zh_TW="黑基ASP大馬v2009 Webshell編輯操作" ruleid="40982" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="黑基ASP大马v2009 Webshell下载文件" name_en_US="Heiji ASP Dama v2009 Webshell Download Files" name_zh_CN="黑基ASP大马v2009 Webshell下载文件" name_zh_TW="黑基ASP大馬v2009 Webshell下載文件" ruleid="40983" visible="true" />
			<rule action=" db  screen " enabled="true" group="143655215" module="0" name="GNU Mailutils 0.6 imap4d SEARCH命令远程格式串溢出攻击" name_en_US="GNU Mailutils 0.6 imap4d SEARCH Command Remote Format String Buffer Overflow" name_zh_CN="GNU Mailutils 0.6 imap4d SEARCH命令远程格式串溢出攻击" name_zh_TW="GNU Mailutils 0.6 imap4d SEARCH命令遠程格式串溢出攻擊" ruleid="20529" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="海阳顶端网ASP木马2006官方正式版Webshell登录" name_en_US="Haiyang Dingduan Net ASP Trojan 2006 Official Version Webshell Login" name_zh_CN="海阳顶端网ASP木马2006官方正式版Webshell登录" name_zh_TW="海陽頂端網ASP木馬2006官方正式版Webshell登錄" ruleid="40985" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="海阳顶端网ASP木马2006官方正式版Webshell下载文件" name_en_US="Haiyang Dingduan Net ASP Trojan 2006 Official Version Download Files" name_zh_CN="海阳顶端网ASP木马2006官方正式版Webshell下载文件" name_zh_TW="海陽頂端網ASP木馬2006官方正式版Webshell下載文件" ruleid="40986" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="海阳顶端网ASP木马2006官方正式版Webshell上传文件" name_en_US="Haiyang Dingduan Net ASP Trojan 2006 Official Version Upload Files" name_zh_CN="海阳顶端网ASP木马2006官方正式版Webshell上传文件" name_zh_TW="海陽頂端網ASP木馬2006官方正式版Webshell上傳文件" ruleid="40987" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="飞秋聊天软件文件传输" name_en_US="Feiqiu IM File Transfer" name_zh_CN="飞秋聊天软件文件传输" name_zh_TW="飛秋聊天軟件文件傳輸" ruleid="50353" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用Zeroboard _head.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Zeroboard _head.php Script Vulnerability" name_zh_CN="利用Zeroboard _head.php脚本漏洞远程执行命令" name_zh_TW="利用Zeroboard _head.php腳本漏洞遠程執行命令" ruleid="20090" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="VIRUS Worm.Pyks B类木马网络数据通信" name_en_US="VIRUS Worm.Pyks HTTP C&amp;C Post Traffic User-Agent h9tslbw0" name_zh_CN="VIRUS Worm.Pyks B类木马网络数据通信" name_zh_TW="VIRUS Worm.Pyks B類木馬網絡數據通信" ruleid="40943" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703782" module="0" name="BIND iquery远程缓冲区溢出攻击" name_en_US="BIND iquery Remote Buffer Overflow" name_zh_CN="BIND iquery远程缓冲区溢出攻击" name_zh_TW="BIND iquery遠程緩沖區溢出攻擊" ruleid="20091" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723878" module="0" name="Solaris CDE dtspcd远程缓冲区溢出攻击" name_en_US="Solaris CDE dtspcd Remote Buffer Overflow" name_zh_CN="Solaris CDE dtspcd远程缓冲区溢出攻击" name_zh_TW="Solaris CDE dtspcd遠程緩沖區溢出攻擊" ruleid="20093" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下CDK木马建立连接" name_en_US="Trojan CDK Connection on Windows" name_zh_CN="Windows系统下CDK木马建立连接" name_zh_TW="Windows系統下CDK木馬建立連接" ruleid="40184" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用WebGlimpse aglimpse脚本漏洞" name_en_US="WebGlimpse aglimpse Script Vulnerability" name_zh_CN="利用WebGlimpse aglimpse脚本漏洞" name_zh_TW="利用WebGlimpse aglimpse腳本漏洞" ruleid="20094" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用B2 b2edit.showposts.php脚本漏洞" name_en_US="B2 b2edit.showposts.php Script Vulnerability" name_zh_CN="利用B2 b2edit.showposts.php脚本漏洞" name_zh_TW="利用B2 b2edit.showposts.php腳本漏洞" ruleid="20095" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft PCT协议远程缓冲区溢出攻击" name_en_US="Microsoft PCT Protocol Remote Buffer Overflow" name_zh_CN="Microsoft PCT协议远程缓冲区溢出攻击" name_zh_TW="Microsoft PCT協議遠程緩沖區溢出攻擊" ruleid="20418" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用psinclude.cgi脚本漏洞远程执行命令" name_en_US="Remote Command Execution via psinclude.cgi Script Vulnerability" name_zh_CN="利用psinclude.cgi脚本漏洞远程执行命令" name_zh_TW="利用psinclude.cgi腳本漏洞遠程執行命令" ruleid="20419" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315174" module="0" name="PHP Post文件上传缓冲区溢出攻击" name_en_US="PHP Post File Upload Buffer Overflow" name_zh_CN="PHP Post文件上传缓冲区溢出攻击" name_zh_TW="PHP Post文件上傳緩沖區溢出攻擊" ruleid="20416" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254879" module="0" name="Serv-U FTP服务器LIST命令超长-l参数远程拒绝服务攻击" name_en_US="Serv-U FTP Server LIST Command Over-long Parameter &quot;-1&quot; Remote Denial of Service" name_zh_CN="Serv-U FTP服务器LIST命令超长-l参数远程拒绝服务攻击" name_zh_TW="Serv-U FTP服務器LIST命令超長-l參數遠程拒絕服務攻擊" ruleid="20417" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472614" module="0" name="FTP服务NLST命令超长参数溢出攻击" name_en_US="FTP Service NLST Command Over-long Parameter Buffer Overflow" name_zh_CN="FTP服务NLST命令超长参数溢出攻击" name_zh_TW="FTP服務NLST命令超長參數溢出攻擊" ruleid="20410" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615014" module="0" name="Windows 95/98 UNC远程溢出攻击" name_en_US="Windows 95/98 UNC Remote Buffer Overflow" name_zh_CN="Windows 95/98 UNC远程溢出攻击" name_zh_TW="Windows 95/98 UNC遠程溢出攻擊" ruleid="20411" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266598" module="0" name="Apache Web Server分块畸形编码传输" name_en_US="Apache Web Server Malicious Chunked-Encoding Transmission" name_zh_CN="Apache Web Server分块畸形编码传输" name_zh_TW="Apache Web Server分塊畸形編碼傳輸" ruleid="20412" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows LSA服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows LSA Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows LSA服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows LSA服務遠程緩沖區溢出攻擊" ruleid="20413" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="chetcpasswd.cgi脚本漏洞扫描探测" name_en_US="chetcpasswd.cgi Script Vulnerability Detection" name_zh_CN="chetcpasswd.cgi脚本漏洞扫描探测" name_zh_TW="chetcpasswd.cgi腳本漏洞掃描探測" ruleid="30411" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497766" module="0" name="CSM Mailserver HELO命令远程缓冲区溢出攻击" name_en_US="CSM Mailserver HELO Command Remote Buffer Overflow" name_zh_CN="CSM Mailserver HELO命令远程缓冲区溢出攻击" name_zh_TW="CSM Mailserver HELO命令遠程緩沖區溢出攻擊" ruleid="10092" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323129" module="0" name="Oracle 9i应用服务程序示例脚本扫描探测" name_en_US="Oracle 9i Application Server Sample Script Detection" name_zh_CN="Oracle 9i应用服务程序示例脚本扫描探测" name_zh_TW="Oracle 9i應用服務程序示例腳本掃描探測" ruleid="30413" visible="true" />
			<rule action=" db  screen " enabled="true" group="99614998" module="0" name="Artisoft XtraMail远程拒绝服务攻击" name_en_US="Artisoft XtraMail Remote Denial of Service" name_zh_CN="Artisoft XtraMail远程拒绝服务攻击" name_zh_TW="Artisoft XtraMail遠程拒絕服務攻擊" ruleid="10090" visible="true" />
			<rule action=" db  screen " enabled="true" group="88081455" module="0" name="Windows系统下MSSQL Slammer蠕虫攻击" name_en_US="Windows MSSQL Slammer" name_zh_CN="Windows系统下MSSQL Slammer蠕虫攻击" name_zh_TW="Windows系統下MSSQL Slammer蠕蟲攻擊" ruleid="10097" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256663" module="0" name="Platinum FTP Server远程拒绝服务攻击" name_en_US="Platinum FTP Server Remote Denial of Service" name_zh_CN="Platinum FTP Server远程拒绝服务攻击" name_zh_TW="Platinum FTP Server遠程拒絕服務攻擊" ruleid="10096" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315035" module="0" name="利用PHP-Nuke modules.php脚本漏洞拒绝服务攻击" name_en_US="Denial of Service via PHP-Nuke modules.php Script Vulnerability" name_zh_CN="利用PHP-Nuke modules.php脚本漏洞拒绝服务攻击" name_zh_TW="利用PHP-Nuke modules.php腳本漏洞拒絕服務攻擊" ruleid="10095" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="myPHPNuke system_footer.php脚本漏洞扫描探测" name_en_US="myPHPNuke system_footer.php Script Vulnerability Detection" name_zh_CN="myPHPNuke system_footer.php脚本漏洞扫描探测" name_zh_TW="myPHPNuke system_footer.php腳本漏洞掃描探測" ruleid="30416" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="利用EditTag edittag.cgi脚本漏洞远程读取任意文件" name_en_US="Remote Arbitrary File Reading via EditTag edittag.cgi Script Vulnerability" name_zh_CN="利用EditTag edittag.cgi脚本漏洞远程读取任意文件" name_zh_TW="利用EditTag edittag.cgi腳本漏洞遠程讀取任意文件" ruleid="30419" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="psunami.cgi脚本漏洞扫描探测" name_en_US="psunami.cgi Script Vulnerability Detection" name_zh_CN="psunami.cgi脚本漏洞扫描探测" name_zh_TW="psunami.cgi腳本漏洞掃描探測" ruleid="30418" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256667" module="0" name="Windows NT IIS/4.0 FTP NLST命令远程拒绝服务攻击" name_en_US="Windows NT IIS/4.0 FTP NLST Command Remote Denial of Service" name_zh_CN="Windows NT IIS/4.0 FTP NLST命令远程拒绝服务攻击" name_zh_TW="Windows NT IIS/4.0 FTP NLST命令遠程拒絕服務攻擊" ruleid="10098" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国建设银行网上银行用户登录" name_en_US="China Construction Bank Internet Banking User Login" name_zh_CN="中国建设银行网上银行用户登录" name_zh_TW="中國建設銀行網上銀行用戶登錄" ruleid="50310" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="CMDASP Webshell检测" name_en_US="CMDASP Webshell Detection" name_zh_CN="CMDASP Webshell检测" name_zh_TW="CMDASP Webshell檢測" ruleid="40959" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Nabopoll survey.inc.php远程文件包含攻击" name_en_US="Nabopoll survey.inc.php Remote File Inclusion" name_zh_CN="Nabopoll survey.inc.php远程文件包含攻击" name_zh_TW="Nabopoll survey.inc.php遠程文件包含攻擊" ruleid="20793" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2453 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2453 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2453 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2453 Adobe Flash Player 內存破壞漏洞" ruleid="21319" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="YaBB YaBB.pl脚本漏洞攻击" name_en_US="YaBB YaBB.pl Script Vulnerability" name_zh_CN="YaBB YaBB.pl脚本漏洞攻击" name_zh_TW="YaBB YaBB.pl腳本漏洞攻擊" ruleid="30329" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用SIX-webboard generate.cgi脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via SIX-webboard generate.cgi Script Vulnerability" name_zh_CN="利用SIX-webboard generate.cgi脚本漏洞远程遍历目录" name_zh_TW="利用SIX-webboard generate.cgi腳本漏洞遠程遍曆目錄" ruleid="30328" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Certification Service 跨站脚本攻击" name_en_US="Microsoft Certification Service XSS Vulnerability" name_zh_CN="Microsoft Certification Service 跨站脚本攻击" name_zh_TW="Microsoft Certification Service 跨站腳本攻擊" ruleid="21253" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="ans.pl脚本漏洞扫描探测" name_en_US="ans.pl Script Vulnerability Detection" name_zh_CN="ans.pl脚本漏洞扫描探测" name_zh_TW="ans.pl腳本漏洞掃描探測" ruleid="30323" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="store.cgi脚本漏洞扫描利用" name_en_US="store.cgi Script Vulnerability Detection" name_zh_CN="store.cgi脚本漏洞扫描利用" name_zh_TW="store.cgi腳本漏洞掃描利用" ruleid="30322" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Lotus Domino Server远程目录遍历攻击" name_en_US="Lotus Domino Server Remote Directory Traversal" name_zh_CN="Lotus Domino Server远程目录遍历攻击" name_zh_TW="Lotus Domino Server遠程目錄遍曆攻擊" ruleid="30321" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="Business Objects Crystal Reports Web表单查看器目录遍历攻击" name_en_US="Business Objects Crystal Reports Web Form Viewer Directory Traversal" name_zh_CN="Business Objects Crystal Reports Web表单查看器目录遍历攻击" name_zh_TW="Business Objects Crystal Reports Web表單查看器目錄遍曆攻擊" ruleid="20659" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="SIX-webboard generate.cgi脚本漏洞扫描探测" name_en_US="SIX-webboard generate.cgi Script Vulnerability Detection" name_zh_CN="SIX-webboard generate.cgi脚本漏洞扫描探测" name_zh_TW="SIX-webboard generate.cgi腳本漏洞掃描探測" ruleid="30327" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="agora.cgi脚本漏洞扫描利用" name_en_US="agora.cgi Script Vulnerability Detection" name_zh_CN="agora.cgi脚本漏洞扫描利用" name_zh_TW="agora.cgi腳本漏洞掃描利用" ruleid="30326" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="AHG search.cgi脚本漏洞扫描探测" name_en_US="AHG search.cgi Script Vulnerability Detection" name_zh_CN="AHG search.cgi脚本漏洞扫描探测" name_zh_TW="AHG search.cgi腳本漏洞掃描探測" ruleid="30325" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用ans.pl脚本远程漏洞遍历目录" name_en_US="Remote Directory Traversal via ans.pl Script" name_zh_CN="利用ans.pl脚本远程漏洞遍历目录" name_zh_TW="利用ans.pl腳本遠程漏洞遍曆目錄" ruleid="30324" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Allaire ColdFusion未公开CFML标记漏洞扫描探测" name_en_US="Allaire ColdFusion Undocumented CFML Tags Vulnerability Detection" name_zh_CN="Allaire ColdFusion未公开CFML标记漏洞扫描探测" name_zh_TW="Allaire ColdFusion未公開CFML標記漏洞掃描探測" ruleid="20250" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS .htr文件名截断漏洞获取脚本源码攻击" name_en_US="Script Source Code Disclosure via Microsoft IIS .htr Filename Truncation Vulnerability" name_zh_CN="利用Microsoft IIS .htr文件名截断漏洞获取脚本源码攻击" name_zh_TW="利用Microsoft IIS .htr文件名截斷漏洞獲取腳本源碼攻擊" ruleid="40289" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpCoin远程文件包含攻击" name_en_US="phpCoin Remote File Inclusion" name_zh_CN="phpCoin远程文件包含攻击" name_zh_TW="phpCoin遠程文件包含攻擊" ruleid="20653" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下近墨者木马通信" name_en_US="Trojan Jinmozhe Communication on Windows" name_zh_CN="Windows系统下近墨者木马通信" name_zh_TW="Windows系統下近墨者木馬通信" ruleid="40742" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware Gator下载安装程序" name_en_US="Adware Gator Downloading Installer on Windows" name_zh_CN="Windows系统下Adware Gator下载安装程序" name_zh_TW="Windows系統下Adware Gator下載安裝程序" ruleid="40743" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware AproposMedia下载安装程序" name_en_US="Adware AproposMedia Downloading Installer on Windows" name_zh_CN="Windows系统下Adware AproposMedia下载安装程序" name_zh_TW="Windows系統下Adware AproposMedia下載安裝程序" ruleid="40740" visible="true" />
			<rule action=" db  screen " enabled="true" group="69210191" module="0" name="Windows系统下黑客帝国ASP后门访问" name_en_US="Hacker&apos;s Empire ASP Backdoor on Windows" name_zh_CN="Windows系统下黑客帝国ASP后门访问" name_zh_TW="Windows系統下黑客帝國ASP後門訪問" ruleid="40741" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="Caucho Resin viewfile获取脚本源码攻击" name_en_US="Caucho Resin viewfile Script Source Code Disclosure" name_zh_CN="Caucho Resin viewfile获取脚本源码攻击" name_zh_TW="Caucho Resin viewfile獲取腳本源碼攻擊" ruleid="30529" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834538" module="0" name="Helix Server DESCRIBE请求远程堆溢出攻击" name_en_US="Helix Server DESCRIBE Request Remote Stack Overflow" name_zh_CN="Helix Server DESCRIBE请求远程堆溢出攻击" name_zh_TW="Helix Server DESCRIBE請求遠程堆溢出攻擊" ruleid="20799" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware TopMoxie下载安装程序" name_en_US="Adware TopMoxie Downloading Installer on Windows" name_zh_CN="Windows系统下Adware TopMoxie下载安装程序" name_zh_TW="Windows系統下Adware TopMoxie下載安裝程序" ruleid="40744" visible="true" />
			<rule action=" db  screen " enabled="true" group="88088630" module="0" name="Microsoft SQL Server预验证过程远程缓冲区漏洞探测" name_en_US="Microsoft SQL Server Pre-authentication Process Buffer Vulnerability Detection" name_zh_CN="Microsoft SQL Server预验证过程远程缓冲区漏洞探测" name_zh_TW="Microsoft SQL Server預驗證過程遠程緩沖區漏洞探測" ruleid="30524" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="vBulletin Calendar.php脚本漏洞扫描探测" name_en_US="vBulletin Calendar.php Script Vulnerability Detection" name_zh_CN="vBulletin Calendar.php脚本漏洞扫描探测" name_zh_TW="vBulletin Calendar.php腳本漏洞掃描探測" ruleid="30255" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206191" module="0" name="CVE-2011-2013 Microsoft Windows TCP/IP引用计数溢出漏洞(MS11-083)" name_en_US="CVE-2011-2013 Microsoft Windows TCP/IP Stack Reference Counter Integer Overflow Vulnerability(MS11-083)" name_zh_CN="CVE-2011-2013 Microsoft Windows TCP/IP引用计数溢出漏洞(MS11-083)" name_zh_TW="CVE-2011-2013 Microsoft Windows TCP/IP引用計數溢出漏洞(MS11-083)" ruleid="21313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Tomcat 4.x远程获取JSP源代码攻击" name_en_US="Tomcat 4.x Remote JSP Source Code Disclosure" name_zh_CN="Tomcat 4.x远程获取JSP源代码攻击" name_zh_TW="Tomcat 4.x遠程獲取JSP源代碼攻擊" ruleid="30253" visible="true" />
			<rule action=" db  screen " enabled="true" group="347111478" module="0" name="TFTP服务获取Cisco IP Phone 7960配置文件攻击" name_en_US="Cisco IP Phone 7960 Configuration File Disclosure via TFTP Service" name_zh_CN="TFTP服务获取Cisco IP Phone 7960配置文件攻击" name_zh_TW="TFTP服務獲取Cisco IP Phone 7960配置文件攻擊" ruleid="30252" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问&quot;/globals.jsa&quot;获取Oracle 9iAS配置信息攻击" name_en_US="Oracle 9iAS Config Information Disclosure via &quot;/globals.jsa&quot;" name_zh_CN="访问&quot;/globals.jsa&quot;获取Oracle 9iAS配置信息攻击" name_zh_TW="訪問&quot;/globals.jsa&quot;獲取Oracle 9iAS配置信息攻擊" ruleid="30251" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问&quot;/_pages&quot;获取Oracle 9iAS JSP源码攻击" name_en_US="Oracle 9iAS JSP Source Code Disclosure via &quot;/_pages&quot;" name_zh_CN="访问&quot;/_pages&quot;获取Oracle 9iAS JSP源码攻击" name_zh_TW="訪問&quot;/_pages&quot;獲取Oracle 9iAS JSP源碼攻擊" ruleid="30250" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="BLEEDING-EDGE B型木马网络数据通信" name_en_US="BLEEDING-EDGE WORM MySQL bot DNS lookup B" name_zh_CN="BLEEDING-EDGE B型木马网络数据通信" name_zh_TW="BLEEDING-EDGE B型木馬網絡數據通信" ruleid="40850" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Bluefire木马连接建立" name_en_US="Trojan Bluefire Connection on Windows" name_zh_CN="Windows系统下Bluefire木马连接建立" name_zh_TW="Windows系統下Bluefire木馬連接建立" ruleid="40327" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下冰河木马通信" name_en_US="Trojan Glacier Trojan Communication on Windows" name_zh_CN="Windows系统下冰河木马通信" name_zh_TW="Windows系統下冰河木馬通信" ruleid="40328" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下The Prayer木马通信" name_en_US="Trojan The Prayer Communication on Windows" name_zh_CN="Windows系统下The Prayer木马通信" name_zh_TW="Windows系統下The Prayer木馬通信" ruleid="40568" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下PrivatePort木马通信" name_en_US="Trojan PrivatePort Communication on Windows" name_zh_CN="Windows系统下PrivatePort木马通信" name_zh_TW="Windows系統下PrivatePort木馬通信" ruleid="40569" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏平台中国游戏中心登录" name_en_US="Online Game Platform &quot;chinagames.net&quot; Login" name_zh_CN="网络游戏平台中国游戏中心登录" name_zh_TW="網絡遊戲平台中國遊戲中心登錄" ruleid="50099" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下NCX木马连接建立" name_en_US="Trojan NCX Connection on Windows" name_zh_CN="Windows系统下NCX木马连接建立" name_zh_TW="Windows系統下NCX木馬連接建立" ruleid="40329" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下OOTLT木马通信" name_en_US="Trojan OOTLT Communication on Windows" name_zh_CN="Windows系统下OOTLT木马通信" name_zh_TW="Windows系統下OOTLT木馬通信" ruleid="40562" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Optix木马通信" name_en_US="Trojan Optix Communication on Windows" name_zh_CN="Windows系统下Optix木马通信" name_zh_TW="Windows系統下Optix木馬通信" ruleid="40563" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Olive木马通信" name_en_US="Trojan Olive Communication on Windows" name_zh_CN="Windows系统下Olive木马通信" name_zh_TW="Windows系統下Olive木馬通信" ruleid="40560" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下One木马通信" name_en_US="Trojan One Communication on Windows" name_zh_CN="Windows系统下One木马通信" name_zh_TW="Windows系統下One木馬通信" ruleid="40561" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Phoenix木马通信" name_en_US="Trojan Phoenix Communication on Windows" name_zh_CN="Windows系统下Phoenix木马通信" name_zh_TW="Windows系統下Phoenix木馬通信" ruleid="40566" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下PitFall木马通信" name_en_US="Trojan PitFall Communication on Windows" name_zh_CN="Windows系统下PitFall木马通信" name_zh_TW="Windows系統下PitFall木馬通信" ruleid="40567" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Oxon木马通信" name_en_US="Trojan Oxon Communication on Windows" name_zh_CN="Windows系统下Oxon木马通信" name_zh_TW="Windows系統下Oxon木馬通信" ruleid="40564" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下PC Invader木马通信" name_en_US="Trojan PC Invader Communication on Windows" name_zh_CN="Windows系统下PC Invader木马通信" name_zh_TW="Windows系統下PC Invader木馬通信" ruleid="40565" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440793" module="0" name="通过HTTP协议下载ISO文件" name_en_US="Downloading ISO Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载ISO文件" name_zh_TW="通過HTTP協議下載ISO文件" ruleid="50259" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440793" module="0" name="通过HTTP协议下载压缩文件" name_en_US="Downloading Compressed Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载压缩文件" name_zh_TW="通過HTTP協議下載壓縮文件" ruleid="50258" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="H-Sphere WebShell脚本漏洞扫描探测" name_en_US="H-Sphere WebShell Script Vulnerability Detection" name_zh_CN="H-Sphere WebShell脚本漏洞扫描探测" name_zh_TW="H-Sphere WebShell腳本漏洞掃描探測" ruleid="30414" visible="true" />
			<rule action=" db  screen " enabled="false" group="269549657" module="0" name="网络未知加密数据传输" name_en_US="Unknown Encrypted Data Transfering" name_zh_CN="网络未知加密数据传输" name_zh_TW="網絡未知加密數據傳輸" ruleid="50255" visible="true" />
			<rule action=" db  screen " enabled="true" group="269549657" module="0" name="HTTP协议多线程文件下载" name_en_US="HTTP Protocol Multithreading Downloading Files" name_zh_CN="HTTP协议多线程文件下载" name_zh_TW="HTTP協議多線程文件下載" ruleid="50254" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440793" module="0" name="通过HTTP协议下载可执行文件" name_en_US="Downloading Executable Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载可执行文件" name_zh_TW="通過HTTP協議下載可執行文件" ruleid="50257" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="飞鸽传输数据通信" name_en_US="P2P Software Pigeon  Downloading Files" name_zh_CN="飞鸽传输数据通信" name_zh_TW="飛鴿傳輸數據通信" ruleid="50256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P软件TeamViewer文件下载" name_en_US="P2P Software TeamViewer Downloading Files" name_zh_CN="P2P软件TeamViewer文件下载" name_zh_TW="P2P軟件TeamViewer文件下載" ruleid="50251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P软件FS2YOU文件下载" name_en_US="P2P Software FS2YOU Downloading Files" name_zh_CN="P2P软件FS2YOU文件下载" name_zh_TW="P2P軟件FS2YOU文件下載" ruleid="50250" visible="true" />
			<rule action=" db  screen " enabled="true" group="269549657" module="0" name="通过HTTP协议下载视频文件" name_en_US="Downloading Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载视频文件" name_zh_TW="通過HTTP協議下載視頻文件" ruleid="50253" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P软件FlashGet文件下载" name_en_US="P2P Software FlashGet Downloading Files" name_zh_CN="P2P软件FlashGet文件下载" name_zh_TW="P2P軟件FlashGet文件下載" ruleid="50252" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="HTTP协议PUT命令上传操作" name_en_US="HTTP Protocol Request with PUT Command" name_zh_CN="HTTP协议PUT命令上传操作" name_zh_TW="HTTP協議PUT命令上傳操作" ruleid="40813" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 新一代大智慧" name_en_US="Stock Trading Operating Software New Generation Dazhihui" name_zh_CN="股票交易操作软件 新一代大智慧" name_zh_TW="股票交易操作軟件 新一代大智慧" ruleid="50419" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 新一代大智慧" name_en_US="Stock Market Analtsis Software New Generation Dazhihui" name_zh_CN="股票行情分析软件 新一代大智慧" name_zh_TW="股票行情分析軟件 新一代大智慧" ruleid="50418" visible="true" />
			<rule action=" db  screen " enabled="true" group="88146006" module="0" name="Microsoft SQL 客户端SA用户默认空口令连接" name_en_US="Microsoft SQL Client SA User Default Null Password Connection" name_zh_CN="Microsoft SQL 客户端SA用户默认空口令连接" name_zh_TW="Microsoft SQL 客戶端SA用戶默認空口令連接" ruleid="40299" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 东莞证券网通用户版" name_en_US="Stock Trading Operating Software
 Dongguan Securities Netcom" name_zh_CN="股票交易操作软件 东莞证券网通用户版" name_zh_TW="股票交易操作軟件 東莞證券網通用戶版" ruleid="50413" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 东莞证券网通用户版" name_en_US="Stock Market Analtsis Software Dongguan Securities Netcom" name_zh_CN="股票行情分析软件 东莞证券网通用户版" name_zh_TW="股票行情分析軟件 東莞證券網通用戶版" ruleid="50412" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="CCTV视频在线流媒体播放" name_en_US="CCTV Video Online Streaming Media Playing" name_zh_CN="CCTV视频在线流媒体播放" name_zh_TW="CCTV視頻在線流媒體播放" ruleid="50411" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="奇艺视频在线流媒体播放" name_en_US="QiYi Video Online Streaming Media Playing" name_zh_CN="奇艺视频在线流媒体播放" name_zh_TW="奇藝視頻在線流媒體播放" ruleid="50410" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 天一证券卓越版" name_en_US="Stock Trading Operating Software Tianyi Securities Zhuoyue" name_zh_CN="股票交易操作软件 天一证券卓越版" name_zh_TW="股票交易操作軟件 天一證券卓越版" ruleid="50417" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 天一证券卓越版" name_en_US="Stock Market Analtsis Software Tianyi Securities Zhuoyue" name_zh_CN="股票行情分析软件 天一证券卓越版" name_zh_TW="股票行情分析軟件 天一證券卓越版" ruleid="50416" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 东莞证券大智慧" name_en_US="Stock Trading Operating Software Dongguan Securities Dazhihui" name_zh_CN="股票交易操作软件 东莞证券大智慧" name_zh_TW="股票交易操作軟件 東莞證券大智慧" ruleid="50415" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 东莞证券大智慧" name_en_US="Stock Market Analtsis Software Dongguan Securities Dazhihui" name_zh_CN="股票行情分析软件 东莞证券大智慧" name_zh_TW="股票行情分析軟件 東莞證券大智慧" ruleid="50414" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="BLEEDING-EDGE木马网络数据通信" name_en_US="BLEEDING-EDGE VIRUS Win32.Mytob.CU Worm Infection / DNS lookup" name_zh_CN="BLEEDING-EDGE木马网络数据通信" name_zh_TW="BLEEDING-EDGE木馬網絡數據通信" ruleid="40851" visible="true" />
			<rule action=" db  screen " enabled="true" group="99876911" module="0" name="Windows系统下利用Novarg/Mydoom后门上传执行程序" name_en_US="Executable Upload via Novarg/Mydoom Backdoor on Windows" name_zh_CN="Windows系统下利用Novarg/Mydoom后门上传执行程序" name_zh_TW="Windows系統下利用Novarg/Mydoom後門上傳執行程序" ruleid="40458" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1874 Microsoft IE开发者工具栏远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1874 Microsoft Internet Explorer Developer Toolbar Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1874 Microsoft IE开发者工具栏远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1874 Microsoft IE開發者工具欄遠程代碼執行漏洞(MS12-037)" ruleid="22272" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1875 Microsoft IE同一ID属性远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1875 Microsoft Internet Explorer Same ID Property Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1875 Microsoft IE同一ID属性远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1875 Microsoft IE同一ID屬性遠程代碼執行漏洞(MS12-037)" ruleid="22273" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1858 Microsoft IE HTML过滤漏洞(MS12-037)" name_en_US="CVE-2012-1858 Microsoft Internet Explorer HTML Sanitization Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1858 Microsoft IE HTML过滤漏洞(MS12-037)" name_zh_TW="CVE-2012-1858 Microsoft IE HTML過濾漏洞(MS12-037)" ruleid="22270" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1873 Microsoft IE空字节信息泄露漏洞(MS12-037)" name_en_US="CVE-2012-1873 Microsoft Internet Explorer Null Byte Information Disclosure Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1873 Microsoft IE空字节信息泄露漏洞(MS12-037)" name_zh_TW="CVE-2012-1873 Microsoft IE空字節信息泄露漏洞(MS12-037)" ruleid="22271" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1878 Microsoft IE OnBeforeDeactivate事件远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1878 Microsoft Internet Explorer OnBeforeDeactivate Event Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1878 Microsoft IE OnBeforeDeactivate事件远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1878 Microsoft IE OnBeforeDeactivate事件遠程代碼執行漏洞(MS12-037)" ruleid="22276" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1879 Microsoft IE insertAdjacentText远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1879 Microsoft Internet Explorer insertAdjacentText Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1879 Microsoft IE insertAdjacentText远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1879 Microsoft IE insertAdjacentText遠程代碼執行漏洞(MS12-037)" ruleid="22277" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1876 Microsoft IE Col元素远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1876 Microsoft Internet Explorer Col Element Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1876 Microsoft IE Col元素远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1876 Microsoft IE Col元素遠程代碼執行漏洞(MS12-037)" ruleid="22274" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1877 Microsoft IE Title元素更改远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1877 Microsoft Internet Explorer Title Element Change Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1877 Microsoft IE Title元素更改远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1877 Microsoft IE Title元素更改遠程代碼執行漏洞(MS12-037)" ruleid="22275" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1880 Microsoft IE insertRow远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1880 Microsoft Internet Explorer insertRow Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1880 Microsoft IE insertRow远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1880 Microsoft IE insertRow遠程代碼執行漏洞(MS12-037)" ruleid="22278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1881 Microsoft IE OnRowsInserted远程代码执行漏洞(MS12-037)" name_en_US="CVE-2012-1881 Microsoft Internet Explorer OnRowsInserted Event Remote Code Execution Vulnerability(MS12-037)" name_zh_CN="CVE-2012-1881 Microsoft IE OnRowsInserted远程代码执行漏洞(MS12-037)" name_zh_TW="CVE-2012-1881 Microsoft IE OnRowsInserted遠程代碼執行漏洞(MS12-037)" ruleid="22279" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏星际争霸（Starcraft）客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Starcraft&quot;" name_zh_CN="网络游戏星际争霸（Starcraft）客户端连接服务器" name_zh_TW="網絡遊戲星際爭霸（Starcraft）客戶端連接服務器" ruleid="50079" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏反恐精英（CS）客户端连接服务器" name_en_US="Connection from Client to Server of Online Game CS" name_zh_CN="网络游戏反恐精英（CS）客户端连接服务器" name_zh_TW="網絡遊戲反恐精英（CS）客戶端連接服務器" ruleid="50078" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit进程管理" name_en_US="Rootkit Process Management" name_zh_CN="Rootkit进程管理" name_zh_TW="Rootkit進程管理" ruleid="40977" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Novarg/Mydoom蠕虫及其变种Mydoom.U病毒邮件" name_en_US="SMTP Service Sending Mails with Novarg/Mydoom and Variant Mydoom.U" name_zh_CN="SMTP服务发送Novarg/Mydoom蠕虫及其变种Mydoom.U病毒邮件" name_zh_TW="SMTP服務發送Novarg/Mydoom蠕蟲及其變種Mydoom.U病毒郵件" ruleid="40457" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.AP@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AP@mm" name_zh_CN="SMTP服务发送W32.Beagle.AP@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AP@mm蠕蟲病毒郵件" ruleid="40633" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Apache APR_PSPrintf 内存破坏漏洞" name_en_US="Apache APR_PSPrintf Memory Corruption Vulnerability (WebDAV)" name_zh_CN="Apache APR_PSPrintf 内存破坏漏洞" name_zh_TW="Apache APR_PSPrintf 內存破壞漏洞" ruleid="21112" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Apache SSI 错误页面跨站脚本攻击" name_en_US="Apache SSI Error Page XSS" name_zh_CN="Apache SSI 错误页面跨站脚本攻击" name_zh_TW="Apache SSI 錯誤頁面跨站腳本攻擊" ruleid="21113" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Lotus Notes/Domino群件口令HASH泄露漏洞" name_en_US="Lotus Notes/Domino Groupware Password HASH Leak Vulnerability" name_zh_CN="Lotus Notes/Domino群件口令HASH泄露漏洞" name_zh_TW="Lotus Notes/Domino群件口令HASH泄露漏洞" ruleid="21110" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="IE 远程代码执行漏洞" name_en_US="Remote Code Execution Vulnerability in Internet Explorer " name_zh_CN="IE 远程代码执行漏洞" name_zh_TW="IE 遠程代碼執行漏洞" ruleid="21111" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="访客身份远程登录Unix漏洞" name_en_US="UNIX rlogind Service guest Access" name_zh_CN="访客身份远程登录Unix漏洞" name_zh_TW="訪客身份遠程登錄Unix漏洞" ruleid="21116" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Best Software SalesLogix数据库证书泄露漏洞" name_en_US="Best Software SalesLogix Database Credentials Disclosure" name_zh_CN="Best Software SalesLogix数据库证书泄露漏洞" name_zh_TW="Best Software SalesLogix數據庫證書泄露漏洞" ruleid="21117" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Firefox密码管理器证书信息泄露漏洞" name_en_US="Firefox Password Manager Saved Authentication Theft by Javascript" name_zh_CN="Firefox密码管理器证书信息泄露漏洞" name_zh_TW="Firefox密碼管理器證書信息泄露漏洞" ruleid="21114" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Internet Explorer FTP Web浏览界面跨站脚本攻击" name_en_US="Microsoft Internet Explorer FTP Web View XSS" name_zh_CN="Microsoft Internet Explorer FTP Web浏览界面跨站脚本攻击" name_zh_TW="Microsoft Internet Explorer FTP Web浏覽界面跨站腳本攻擊" ruleid="21115" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Seattle Lab Mail 5.5 POP3 溢出漏洞" name_en_US="Seattle Lab Mail 5.5 POP3 Overflow" name_zh_CN="Seattle Lab Mail 5.5 POP3 溢出漏洞" name_zh_TW="Seattle Lab Mail 5.5 POP3 溢出漏洞" ruleid="21118" visible="true" />
			<rule action=" db  screen " enabled="true" group="150997039" module="0" name="Lupper.A XML-RPC 传播请求变种1" name_en_US="Lupper.A XML-RPC Propogation Request Variant 1" name_zh_CN="Lupper.A XML-RPC 传播请求变种1" name_zh_TW="Lupper.A XML-RPC 傳播請求變種1" ruleid="21119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Win32/PcClient.ZL木马网络数据通信" name_en_US="TROJAN Backdoor.Win32/PcClient.ZL Checkin" name_zh_CN="Backdoor.Win32/PcClient.ZL木马网络数据通信" name_zh_TW="Backdoor.Win32/PcClient.ZL木馬網絡數據通信" ruleid="40891" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络游戏平台VS竞技游戏登录" name_en_US="Online Game Platform &quot;VS Games&quot; Login" name_zh_CN="网络游戏平台VS竞技游戏登录" name_zh_TW="網絡遊戲平台VS競技遊戲登錄" ruleid="50324" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941610" module="0" name="Cisco CallManager SIP 超长To字段缓冲区溢出攻击" name_en_US="Cisco CallManager SIP Over-long To Field Buffer Overflow" name_zh_CN="Cisco CallManager SIP 超长To字段缓冲区溢出攻击" name_zh_TW="Cisco CallManager SIP 超長To字段緩沖區溢出攻擊" ruleid="20731" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941610" module="0" name="Cisco CallManager SIP超长主机名UDP远程缓冲区溢出攻击" name_en_US="Cisco CallManager SIP Over-long Host Name UDP Remote Buffer Overflow" name_zh_CN="Cisco CallManager SIP超长主机名UDP远程缓冲区溢出攻击" name_zh_TW="Cisco CallManager SIP超長主機名UDP遠程緩沖區溢出攻擊" ruleid="20730" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Symantec Antivirus Rtvscan.exe远程栈溢出攻击" name_en_US="Symantec Antivirus Rtvscan.exe Remote Stack Buffer Overflow" name_zh_CN="Symantec Antivirus Rtvscan.exe远程栈溢出攻击" name_zh_TW="Symantec Antivirus Rtvscan.exe遠程棧溢出攻擊" ruleid="20733" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941610" module="0" name="Cisco CallManager SIP超长主机名TCP远程缓冲区溢出攻击" name_en_US="Cisco CallManager SIP Over-long Host Name TCP Remote Buffer Overflow" name_zh_CN="Cisco CallManager SIP超长主机名TCP远程缓冲区溢出攻击" name_zh_TW="Cisco CallManager SIP超長主機名TCP遠程緩沖區溢出攻擊" ruleid="20732" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE DHTML引擎竞争条件攻击" name_en_US="Microsoft IE DHTML Engine Race Condition" name_zh_CN="Microsoft IE DHTML引擎竞争条件攻击" name_zh_TW="Microsoft IE DHTML引擎競爭條件攻擊" ruleid="20735" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="Foxmail Serve MAIL FROM远程缓冲区溢出攻击" name_en_US="Foxmail Serve MAIL FROM Remote Buffer Overflow" name_zh_CN="Foxmail Serve MAIL FROM远程缓冲区溢出攻击" name_zh_TW="Foxmail Serve MAIL FROM遠程緩沖區溢出攻擊" ruleid="20734" visible="true" />
			<rule action=" db  screen " enabled="false" group="99615019" module="0" name="Netscape NSS库SSLV2畸形Hello消息远程缓冲区溢出攻击" name_en_US="Netscape NSS Lib SSLV2 Malformed Hello Message Remote Buffer Overflow" name_zh_CN="Netscape NSS库SSLV2畸形Hello消息远程缓冲区溢出攻击" name_zh_TW="Netscape NSS庫SSLV2畸形Hello消息遠程緩沖區溢出攻擊" ruleid="20737" visible="false" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="SIP畸形URI远程缓冲区溢出攻击" name_en_US="SIP Malformed URI Remote Buffer Overflow" name_zh_CN="SIP畸形URI远程缓冲区溢出攻击" name_zh_TW="SIP畸形URI遠程緩沖區溢出攻擊" ruleid="20736" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="EQdkp dbal.php远程文件包含攻击" name_en_US="EQdkp dbal.php Remote File Inclusion" name_zh_CN="EQdkp dbal.php远程文件包含攻击" name_zh_TW="EQdkp dbal.php遠程文件包含攻擊" ruleid="20739" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Apache Mod_SSL/Apache-SSL远程缓冲区溢出攻击" name_en_US="Apache Mod_SSL/Apache-SSL Remote Buffer Overflow" name_zh_CN="Apache Mod_SSL/Apache-SSL远程缓冲区溢出攻击" name_zh_TW="Apache Mod_SSL/Apache-SSL遠程緩沖區溢出攻擊" ruleid="20738" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745882" module="1" name="百度影音流媒体连接" name_en_US="Baidu Audio Video Streaming Media Connect" name_zh_CN="百度影音流媒体连接" name_zh_TW="百度影音流媒體連接" ruleid="50452" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="网易视频在线流媒体播放" name_en_US="NetEase Video Online Streaming Media Playing" name_zh_CN="网易视频在线流媒体播放" name_zh_TW="網易視頻在線流媒體播放" ruleid="50451" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit执行Shell" name_en_US="Rootkit Execute Shell" name_zh_CN="Rootkit执行Shell" name_zh_TW="Rootkit執行Shell" ruleid="40976" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="北京银行网上银行用户登录" name_en_US="Internet Banking Bank of Beijing User Login" name_zh_CN="北京银行网上银行用户登录" name_zh_TW="北京銀行網上銀行用戶登錄" ruleid="50322" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Pakes/Cutwail/Kobcka木马网络数据通信" name_en_US="TROJAN Pakes/Cutwail/Kobcka Checkin Detected High Ports" name_zh_CN="Pakes/Cutwail/Kobcka木马网络数据通信" name_zh_TW="Pakes/Cutwail/Kobcka木馬網絡數據通信" ruleid="40899" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="LP Webshell检测" name_en_US="LP Webshell Detection" name_zh_CN="LP Webshell检测" name_zh_TW="LP Webshell檢測" ruleid="40962" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963609" module="1" name="即时通信软件Yahoo Messenger用户登录（HTTP代理）" name_en_US="Instant Messaging Software Yahoo Messenger User Login（HTTP Proxy）" name_zh_CN="即时通信软件Yahoo Messenger用户登录（HTTP代理）" name_zh_TW="即時通信軟件Yahoo Messenger用戶登錄（HTTP代理）" ruleid="50288" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft Excel畸形对象远程代码执行漏洞（MS11-072）" name_en_US="Microsoft Excel Malformed Object CVE-2011-1986 Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel畸形对象远程代码执行漏洞（MS11-072）" name_zh_TW="Microsoft Excel畸形對象遠程代碼執行漏洞（MS11-072）" ruleid="21282" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel数组索引远程代码执行漏洞（MS11-072）" name_en_US="Microsoft Excel Array Indexing &apos;iax&apos; Field Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel数组索引远程代码执行漏洞（MS11-072）" name_zh_TW="Microsoft Excel數組索引遠程代碼執行漏洞（MS11-072）" ruleid="21283" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft SharePoint XML处理远程文件泄露漏洞（MS11-074）" name_en_US="Microsoft SharePoint XML Handling Remote File Disclosure Vulnerability" name_zh_CN="Microsoft SharePoint XML处理远程文件泄露漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint XML處理遠程文件泄露漏洞（MS11-074）" ruleid="21280" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft SharePoint跨站脚本执行漏洞（MS11-074）" name_en_US="Microsoft SharePoint CVE-2011-1893 Cross Site Scripting Vulnerability" name_zh_CN="Microsoft SharePoint跨站脚本执行漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint跨站腳本執行漏洞（MS11-074）" ruleid="21281" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel数组索引远程代码执行漏洞（MS11-072）" name_en_US="Microsoft Excel Array Index CVE-2011-1990 Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel数组索引远程代码执行漏洞（MS11-072）" name_zh_TW="Microsoft Excel數組索引遠程代碼執行漏洞（MS11-072）" ruleid="21286" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft SharePoint日历跨站脚本执行漏洞（MS11-074）" name_en_US="Microsoft SharePoint Calendar CVE-2011-0653 Cross Site Scripting Vulnerability" name_zh_CN="Microsoft SharePoint日历跨站脚本执行漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint日曆跨站腳本執行漏洞（MS11-074）" ruleid="21287" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft Excel畸形记录远程代码执行漏洞（MS11-072）" name_en_US="Microsoft Excel Malformed Record CVE-2011-1988 Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel畸形记录远程代码执行漏洞（MS11-072）" name_zh_TW="Microsoft Excel畸形記錄遠程代碼執行漏洞（MS11-072）" ruleid="21284" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel条件表达式远程代码执行漏洞（MS11-072）" name_en_US="Microsoft Excel Conditional Expression CVE-2011-1989 Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel条件表达式远程代码执行漏洞（MS11-072）" name_zh_TW="Microsoft Excel條件表達式遠程代碼執行漏洞（MS11-072）" ruleid="21285" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft SharePoint联系人详细信息跨站脚本执行漏洞（MS11-074）" name_en_US="Microsoft SharePoint Contact Details CVE-2011-1891 Cross Site Scripting Vulnerability" name_zh_CN="Microsoft SharePoint联系人详细信息跨站脚本执行漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint聯系人詳細信息跨站腳本執行漏洞（MS11-074）" ruleid="21288" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Office &quot;MSO.dll&quot;未初始化指针远程代码执行漏洞（MS11-073）" name_en_US="Microsoft Office &apos;MSO.dll&apos; Uninitialized Pointer (CVE-2011-1982) Remote Code Execution Vulnerability" name_zh_CN="Microsoft Office &quot;MSO.dll&quot;未初始化指针远程代码执行漏洞（MS11-073）" name_zh_TW="Microsoft Office &quot;MSO.dll&quot;未初始化指針遠程代碼執行漏洞（MS11-073）" ruleid="21289" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议destinationAddress email-ID数据畸形" name_en_US="H.225 Protocol destinationAddress email-ID Malformed Data" name_zh_CN="H.225协议destinationAddress email-ID数据畸形" name_zh_TW="H.225協議destinationAddress email-ID數據畸形" ruleid="10152" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议sourceAddress序列数据畸形" name_en_US="H.225 Protocol sourceAddress Sequence Malformed Data" name_zh_CN="H.225协议sourceAddress序列数据畸形" name_zh_TW="H.225協議sourceAddress序列數據畸形" ruleid="10153" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Q.931协议Calling Party Number Length数据畸形" name_en_US="Q.931 Protocol Calling Party Number Length Malformed Data" name_zh_CN="Q.931协议Calling Party Number Length数据畸形" name_zh_TW="Q.931協議Calling Party Number Length數據畸形" ruleid="10150" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议DestinationAddress序列数据畸形" name_en_US="H.225 Protocol DestinationAddress Sequence Malformed Data" name_zh_CN="H.225协议DestinationAddress序列数据畸形" name_zh_TW="H.225協議DestinationAddress序列數據畸形" ruleid="10151" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议Destination AliasAddress e164Number数据畸形" name_en_US="H.225 Protocol Destination AliasAddress e164Number Malformed Data" name_zh_CN="H.225协议Destination AliasAddress e164Number数据畸形" name_zh_TW="H.225協議Destination AliasAddress e164Number數據畸形" ruleid="10156" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议DestinationAddress H323-ID数据畸形" name_en_US="H.225 Protocol DestinationAddress H323-ID Malformed Data" name_zh_CN="H.225协议DestinationAddress H323-ID数据畸形" name_zh_TW="H.225協議DestinationAddress H323-ID數據畸形" ruleid="10157" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议sourceAddress url-ID数据畸形" name_en_US="H.225 Protocol sourceAddress url-ID Malformed Data" name_zh_CN="H.225协议sourceAddress url-ID数据畸形" name_zh_TW="H.225協議sourceAddress url-ID數據畸形" ruleid="10154" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用WEBgais webgais脚本漏洞远程执行命令" name_en_US="Remote Code Execution via WEBgais webgais Script Vulnerability" name_zh_CN="利用WEBgais webgais脚本漏洞远程执行命令" name_zh_TW="利用WEBgais webgais腳本漏洞遠程執行命令" ruleid="20088" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Matt Wright textcounter.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Matt Wright textcounter.pl Script Vulnerability" name_zh_CN="利用Matt Wright textcounter.pl脚本漏洞远程执行命令" name_zh_TW="利用Matt Wright textcounter.pl腳本漏洞遠程執行命令" ruleid="20087" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用NCSA phf脚本漏洞远程执行命令" name_en_US="Remote Code Execution via  NCSA phf Script Vulnerability" name_zh_CN="利用NCSA phf脚本漏洞远程执行命令" name_zh_TW="利用NCSA phf腳本漏洞遠程執行命令" ruleid="20086" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Roar Smith info2www脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Roar Smith info2www Script Vulnerability" name_zh_CN="利用Roar Smith info2www脚本漏洞远程执行命令" name_zh_TW="利用Roar Smith info2www腳本漏洞遠程執行命令" ruleid="20085" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用IRIX handler脚本漏洞远程执行命令" name_en_US="Remote Code Execution via IRIX handler Script Vulnerability" name_zh_CN="利用IRIX handler脚本漏洞远程执行命令" name_zh_TW="利用IRIX handler腳本漏洞遠程執行命令" ruleid="20084" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用FormMail formmail.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via FormMail formmail.pl Script Vulnerability" name_zh_CN="利用FormMail formmail.pl脚本漏洞远程执行命令" name_zh_TW="利用FormMail formmail.pl腳本漏洞遠程執行命令" ruleid="20083" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Hylafax faxsurvey脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Hylafax faxsurvey Script Vulnerability" name_zh_CN="利用Hylafax faxsurvey脚本漏洞远程执行命令" name_zh_TW="利用Hylafax faxsurvey腳本漏洞遠程執行命令" ruleid="20082" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用CGISCRIPT.NET csNews.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CGISCRIPT.NET csNews.cgi Script Vulnerability" name_zh_CN="利用CGISCRIPT.NET csNews.cgi脚本漏洞远程执行命令" name_zh_TW="利用CGISCRIPT.NET csNews.cgi腳本漏洞遠程執行命令" ruleid="20081" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用CGISCRIPT.NET csLiveSupport.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CGISCRIPT.NET csLiveSupport.cgi Script Vulnerability" name_zh_CN="利用CGISCRIPT.NET csLiveSupport.cgi脚本漏洞远程执行命令" name_zh_TW="利用CGISCRIPT.NET csLiveSupport.cgi腳本漏洞遠程執行命令" ruleid="20080" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="WowBB view_user.php远程SQL注入攻击" name_en_US="WowBB view_user.php Remote SQL Injection" name_zh_CN="WowBB view_user.php远程SQL注入攻击" name_zh_TW="WowBB view_user.php遠程SQL注入攻擊" ruleid="20649" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="eStara Softphone SIP SDP请求远程缓冲区溢出攻击" name_en_US="eStara Softphone SIP SDP Request Remote Buffer Overflow" name_zh_CN="eStara Softphone SIP SDP请求远程缓冲区溢出攻击" name_zh_TW="eStara Softphone SIP SDP請求遠程緩沖區溢出攻擊" ruleid="20648" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="RaXnet Cacti远程文件包含执行命令攻击" name_en_US="RaXnet Cacti Remote File Inclusion Code Execution" name_zh_CN="RaXnet Cacti远程文件包含执行命令攻击" name_zh_TW="RaXnet Cacti遠程文件包含執行命令攻擊" ruleid="20645" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="miniBB news.php远程文件包含攻击" name_en_US="miniBB news.php Remote File Inclusion" name_zh_CN="miniBB news.php远程文件包含攻击" name_zh_TW="miniBB news.php遠程文件包含攻擊" ruleid="20644" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="osTicket include_dir变量远程文件包含攻击" name_en_US="osTicket include_dir Variable Remote File Inclusion" name_zh_CN="osTicket include_dir变量远程文件包含攻击" name_zh_TW="osTicket include_dir變量遠程文件包含攻擊" ruleid="20647" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PmWiki pmwiki.php远程文件包含攻击" name_en_US="PmWiki pmwiki.php Remote File Inclusion" name_zh_CN="PmWiki pmwiki.php远程文件包含攻击" name_zh_TW="PmWiki pmwiki.php遠程文件包含攻擊" ruleid="20646" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows Server驱动Mailslot远程堆溢出攻击" name_en_US="Microsoft Windows Server Driver Mailslot Remote Heap Overflow" name_zh_CN="Microsoft Windows Server驱动Mailslot远程堆溢出攻击" name_zh_TW="Microsoft Windows Server驅動Mailslot遠程堆溢出攻擊" ruleid="20641" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Mambo/Joomla mosConfig_absolute_path远程文件包含攻击" name_en_US="Mambo/Joomla mosConfig_absolute_path Remote File Inclusion" name_zh_CN="Mambo/Joomla mosConfig_absolute_path远程文件包含攻击" name_zh_TW="Mambo/Joomla mosConfig_absolute_path遠程文件包含攻擊" ruleid="20640" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941611" module="0" name="D-Link路由器UPNP远程缓冲区溢出攻击" name_en_US="D-Link Rounter UPNP Remote Buffer Overflow" name_zh_CN="D-Link路由器UPNP远程缓冲区溢出攻击" name_zh_TW="D-Link路由器UPNP遠程緩沖區溢出攻擊" ruleid="20643" visible="true" />
			<rule action=" db  screen " enabled="true" group="97517871" module="0" name="Microsoft Windows DHCP Client服务ACK应答处理缓冲区溢出攻击" name_en_US="Microsoft Windows DHCP Client Service ACK Response Handling Buffer Overflow" name_zh_CN="Microsoft Windows DHCP Client服务ACK应答处理缓冲区溢出攻击" name_zh_TW="Microsoft Windows DHCP Client服務ACK應答處理緩沖區溢出攻擊" ruleid="20642" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Darksk ASP Webshell检测" name_en_US="Darksk ASP Webshell Detection" name_zh_CN="Darksk ASP Webshell检测" name_zh_TW="Darksk ASP Webshell檢測" ruleid="40960" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络游戏平台中国互动游戏中心登录" name_en_US="Online Game Platform &quot;cngame&quot; Login" name_zh_CN="网络游戏平台中国互动游戏中心登录" name_zh_TW="網絡遊戲平台中國互動遊戲中心登錄" ruleid="50286" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下NetSphere木马建立连接" name_en_US="Trojan NetSphere Connection on Windows" name_zh_CN="Windows系统下NetSphere木马建立连接" name_zh_TW="Windows系統下NetSphere木馬建立連接" ruleid="40178" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Hack a tack木马建立连接" name_en_US="Trojan Hack a tack Connection on Windows" name_zh_CN="Windows系统下Hack a tack木马建立连接" name_zh_TW="Windows系統下Hack a tack木馬建立連接" ruleid="40174" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下WinCrash 1.0木马建立连接" name_en_US="Trojan WinCrash 1.0 Connection on Windows" name_zh_CN="Windows系统下WinCrash 1.0木马建立连接" name_zh_TW="Windows系統下WinCrash 1.0木馬建立連接" ruleid="40176" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Stacheldraht服务器回应堵塞" name_en_US="DDOS Tool Stacheldraht Server Response Block" name_zh_CN="DDOS工具Stacheldraht服务器回应堵塞" name_zh_TW="DDOS工具Stacheldraht服務器回應堵塞" ruleid="40171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下DonaldDick木马建立连接" name_en_US="Trojan DonaldDick Connection on Windows" name_zh_CN="Windows系统下DonaldDick木马建立连接" name_zh_TW="Windows系統下DonaldDick木馬建立連接" ruleid="40173" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下的PhaseZero木马连接建立" name_en_US="Trojan PhaseZero Connection on Windows" name_zh_CN="Windows系统下的PhaseZero木马连接建立" name_zh_TW="Windows系統下的PhaseZero木馬連接建立" ruleid="40172" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHPNews sendtofriend.php远程SQL注入攻击" name_en_US="PHPNews sendtofriend.php Remote SQL Injection" name_zh_CN="PHPNews sendtofriend.php远程SQL注入攻击" name_zh_TW="PHPNews sendtofriend.php遠程SQL注入攻擊" ruleid="20469" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PowerPortal index.php远程SQL注入攻击" name_en_US="PowerPortal index.php Remote SQL Injection" name_zh_CN="PowerPortal index.php远程SQL注入攻击" name_zh_TW="PowerPortal index.php遠程SQL注入攻擊" ruleid="20468" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615791" module="0" name="Windows系统下Witty蠕虫传播" name_en_US="Windows Witty Worm Propagation" name_zh_CN="Windows系统下Witty蠕虫传播" name_zh_TW="Windows系統下Witty蠕蟲傳播" ruleid="20399" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="利用MDaemon form2raw.cgi CGI脚本漏洞溢出攻击" name_en_US="Buffer Overflow via MDaemon form2raw.cgi CGI Script Vulnerability" name_zh_CN="利用MDaemon form2raw.cgi CGI脚本漏洞溢出攻击" name_zh_TW="利用MDaemon form2raw.cgi CGI腳本漏洞溢出攻擊" ruleid="20398" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Win32.VB.brg Checkin木马网络数据通信" name_en_US="TROJAN Backdoor.Win32.VB.brg C&amp;C Checkin" name_zh_CN="Backdoor.Win32.VB.brg Checkin木马网络数据通信" name_zh_TW="Backdoor.Win32.VB.brg Checkin木馬網絡數據通信" ruleid="40885" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Hupigon.dkxh木马网络数据通信" name_en_US="TROJAN Hupigon.dkxh Checkin to CnC" name_zh_CN="Hupigon.dkxh木马网络数据通信" name_zh_TW="Hupigon.dkxh木馬網絡數據通信" ruleid="40884" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Win32.VB.brg Kill Command Acknowledge木马网络数据通信" name_en_US="TROJAN Backdoor.Win32.VB.brg C&amp;C Kill Command Acknowledge" name_zh_CN="Backdoor.Win32.VB.brg Kill Command Acknowledge木马网络数据通信" name_zh_TW="Backdoor.Win32.VB.brg Kill Command Acknowledge木馬網絡數據通信" ruleid="40887" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Win32.VB.brg DDoS Outbound木马网络数据通信" name_en_US="TROJAN Backdoor.Win32.VB.brg C&amp;C DDoS Outbound" name_zh_CN="Backdoor.Win32.VB.brg DDoS Outbound木马网络数据通信" name_zh_TW="Backdoor.Win32.VB.brg DDoS Outbound木馬網絡數據通信" ruleid="40886" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Phorum follow.php远程SQL注入攻击" name_en_US="Phorum follow.php Remote SQL Injection" name_zh_CN="Phorum follow.php远程SQL注入攻击" name_zh_TW="Phorum follow.php遠程SQL注入攻擊" ruleid="20461" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Oracle 8i TNS Listener缓冲区溢出攻击" name_en_US="Oracle 8i TNS Listener Buffer Overflow" name_zh_CN="Oracle 8i TNS Listener缓冲区溢出攻击" name_zh_TW="Oracle 8i TNS Listener緩沖區溢出攻擊" ruleid="20460" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows ASN.1库BER解码堆破坏攻击" name_en_US="Microsoft Windows ASN.1 Base BER Decoding Heap Corruption" name_zh_CN="Microsoft Windows ASN.1库BER解码堆破坏攻击" name_zh_TW="Microsoft Windows ASN.1庫BER解碼堆破壞攻擊" ruleid="20391" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="vBulletin Forum last.php远程SQL注入攻击" name_en_US="vBulletin Forum last.php Remote SQL Injection" name_zh_CN="vBulletin Forum last.php远程SQL注入攻击" name_zh_TW="vBulletin Forum last.php遠程SQL注入攻擊" ruleid="20462" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="利用phpBB admin_cash.php CGI脚本漏洞远程执行命令" name_en_US="Remote Command Execution via phpBB admin_cash.php CGI Script Vulnerability" name_zh_CN="利用phpBB admin_cash.php CGI脚本漏洞远程执行命令" name_zh_TW="利用phpBB admin_cash.php CGI腳本漏洞遠程執行命令" ruleid="20465" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254895" module="0" name="Serv-U FTP服务器MDTM命令远程缓冲区溢出攻击" name_en_US="Serv-U FTP Server MDTM Command Remote Buffer Overflow" name_zh_CN="Serv-U FTP服务器MDTM命令远程缓冲区溢出攻击" name_zh_TW="Serv-U FTP服務器MDTM命令遠程緩沖區溢出攻擊" ruleid="20396" visible="true" />
			<rule action=" db  screen " enabled="true" group="82837807" module="0" name="Ipswitch IMail Server LDAP守护进程远程缓冲区溢出攻击" name_en_US="Ipswitch IMail Server LDAP Daemon Remote Buffer Overflow" name_zh_CN="Ipswitch IMail Server LDAP守护进程远程缓冲区溢出攻击" name_zh_TW="Ipswitch IMail Server LDAP守護進程遠程緩沖區溢出攻擊" ruleid="20395" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpBB URL编码远程任意命令执行攻击" name_en_US="phpBB URL Encoding Remote Arbitrary Command Execution" name_zh_CN="phpBB URL编码远程任意命令执行攻击" name_zh_TW="phpBB URL編碼遠程任意命令執行攻擊" ruleid="20466" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Home Free search.cgi脚本漏洞目录遍历攻击" name_en_US="Directory Traversal via Home Free search.cgi Script Vulnerability" name_zh_CN="利用Home Free search.cgi脚本漏洞目录遍历攻击" name_zh_TW="利用Home Free search.cgi腳本漏洞目錄遍曆攻擊" ruleid="30402" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Moreover.com cached_feed.cgi脚本远程遍历目录" name_en_US="Remote Directory Traversal via Moreover.com cached_feed.cgi Script" name_zh_CN="利用Moreover.com cached_feed.cgi脚本远程遍历目录" name_zh_TW="利用Moreover.com cached_feed.cgi腳本遠程遍曆目錄" ruleid="30403" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用PHP-Nuke CGI脚本漏洞获取目录信息" name_en_US="Directory Information Disclosure via PHP-Nuke CGI Script Vulnerability" name_zh_CN="利用PHP-Nuke CGI脚本漏洞获取目录信息" name_zh_TW="利用PHP-Nuke CGI腳本漏洞獲取目錄信息" ruleid="30400" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="利用Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞" name_en_US="Trend Micro OfficeScan jdkRqNotify.exe Script Vulnerability" name_zh_CN="利用Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞" name_zh_TW="利用Trend Micro OfficeScan jdkRqNotify.exe腳本漏洞" ruleid="30401" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="利用Microsoft Outlook Web Access漏洞进行拒绝服务攻击" name_en_US="Denial of Service via Microsoft Outlook Web Access Vulnerability" name_zh_CN="利用Microsoft Outlook Web Access漏洞进行拒绝服务攻击" name_zh_TW="利用Microsoft Outlook Web Access漏洞進行拒絕服務攻擊" ruleid="10088" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365526" module="0" name="ProFTPD STAT命令远程拒绝服务攻击" name_en_US="ProFTPD STAT Command Remote Denial of Service" name_zh_CN="ProFTPD STAT命令远程拒绝服务攻击" name_zh_TW="ProFTPD STAT命令遠程拒絕服務攻擊" ruleid="10089" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Moreover.com cached_feed.cgi脚本漏洞扫描探测" name_en_US="Moreover.com cached_feed.cgi Script Vulnerability Detection" name_zh_CN="Moreover.com cached_feed.cgi脚本漏洞扫描探测" name_zh_TW="Moreover.com cached_feed.cgi腳本漏洞掃描探測" ruleid="30404" visible="true" />
			<rule action=" db  screen " enabled="true" group="202407990" module="0" name="通过Web服务访问Netscape SuiteSpot管理员口令文件" name_en_US="Access to Netscape SuiteSpot Admin Password File via Web Service" name_zh_CN="通过Web服务访问Netscape SuiteSpot管理员口令文件" name_zh_TW="通過Web服務訪問Netscape SuiteSpot管理員口令文件" ruleid="30405" visible="true" />
			<rule action=" db  screen " enabled="true" group="368052246" module="0" name="Ascend系列路由器UDP/9端口拒绝服务攻击" name_en_US="Ascend Routers Port UDP/9 Denial of Service" name_zh_CN="Ascend系列路由器UDP/9端口拒绝服务攻击" name_zh_TW="Ascend系列路由器UDP/9端口拒絕服務攻擊" ruleid="10084" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315030" module="0" name="利用HP Openview Manager OpenView5.exe程序漏洞拒绝服务攻击" name_en_US="Denial of Service via HP Openview Manager OpenView5.exe Vulnerability" name_zh_CN="利用HP Openview Manager OpenView5.exe程序漏洞拒绝服务攻击" name_zh_TW="利用HP Openview Manager OpenView5.exe程序漏洞拒絕服務攻擊" ruleid="10086" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Open WebMail openwebmail-shared.pl脚本漏洞扫描探测" name_en_US="Open WebMail openwebmail-shared.pl Script Vulnerability Detection" name_zh_CN="Open WebMail openwebmail-shared.pl脚本漏洞扫描探测" name_zh_TW="Open WebMail openwebmail-shared.pl腳本漏洞掃描探測" ruleid="30409" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641622" module="0" name="Cisco VoIP Phone流量统计请求拒绝服务攻击" name_en_US="Cisco VoIP Phone Traffic Statistic Request Denial of Service" name_zh_CN="Cisco VoIP Phone流量统计请求拒绝服务攻击" name_zh_TW="Cisco VoIP Phone流量統計請求拒絕服務攻擊" ruleid="10080" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256662" module="0" name="TransSoft FTP-Broker远程拒绝服务攻击" name_en_US="TransSoft FTP-Broker Remote Denial of Service" name_zh_CN="TransSoft FTP-Broker远程拒绝服务攻击" name_zh_TW="TransSoft FTP-Broker遠程拒絕服務攻擊" ruleid="10081" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423894" module="0" name="Real Networks RealServer远程拒绝服务攻击" name_en_US="Real Networks RealServer Remote Denial of Service" name_zh_CN="Real Networks RealServer远程拒绝服务攻击" name_zh_TW="Real Networks RealServer遠程拒絕服務攻擊" ruleid="10082" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Microsoft IIS 4.0/5.0 .asp ISAPI扩展远程缓冲区溢出攻击" name_en_US="Microsoft IIS 4.0/5.0 .asp ISAPI Extension Remote Buffer Overflow" name_zh_CN="Microsoft IIS 4.0/5.0 .asp ISAPI扩展远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 4.0/5.0 .asp ISAPI擴展遠程緩沖區溢出攻擊" ruleid="40313" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Oracle 9i应用服务器无需授权访问管理目录漏洞攻击" name_en_US="Unauthorized Access to Oracle 9i Application Server Admin Directory" name_zh_CN="Oracle 9i应用服务器无需授权访问管理目录漏洞攻击" name_zh_TW="Oracle 9i應用服務器無需授權訪問管理目錄漏洞攻擊" ruleid="20266" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723878" module="0" name="AIX pdnsd远程缓冲区溢出攻击" name_en_US="AIX pdnsd Remote Buffer Overflow" name_zh_CN="AIX pdnsd远程缓冲区溢出攻击" name_zh_TW="AIX pdnsd遠程緩沖區溢出攻擊" ruleid="20263" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用NETCODE book.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via NETCODE book.cgi Script Vulnerability" name_zh_CN="利用NETCODE book.cgi脚本漏洞远程执行命令" name_zh_TW="利用NETCODE book.cgi腳本漏洞遠程執行命令" ruleid="20262" visible="true" />
			<rule action=" db  screen " enabled="true" group="141558054" module="0" name="SSH1守护程序crc32补偿攻击检测安全漏洞攻击" name_en_US="SSH1 Daemon crc32 Compensation Attack Detection" name_zh_CN="SSH1守护程序crc32补偿攻击检测安全漏洞攻击" name_zh_TW="SSH1守護程序crc32補償攻擊檢測安全漏洞攻擊" ruleid="20067" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886374" module="0" name="Solaris ypbind TCP远程缓冲区溢出攻击" name_en_US="Solaris ypbind TCP Remote Buffer Overflow" name_zh_CN="Solaris ypbind TCP远程缓冲区溢出攻击" name_zh_TW="Solaris ypbind TCP遠程緩沖區溢出攻擊" ruleid="20060" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365542" module="0" name="Wu-ftpd畸形文件名扩展请求远程堆溢出攻击" name_en_US="Wu-ftpd Malformed Filename Extension Request Remote Heap Overflow" name_zh_CN="Wu-ftpd畸形文件名扩展请求远程堆溢出攻击" name_zh_TW="Wu-ftpd畸形文件名擴展請求遠程堆溢出攻擊" ruleid="20068" visible="true" />
			<rule action=" db  screen " enabled="true" group="136347702" module="0" name="通过Web服务访问Oracle 9i默认配置文件XSQLConfig.xml" name_en_US="Access to Oracle 9i Default Config File XSQLConfig.xml via Web Service" name_zh_CN="通过Web服务访问Oracle 9i默认配置文件XSQLConfig.xml" name_zh_TW="通過Web服務訪問Oracle 9i默認配置文件XSQLConfig.xml" ruleid="30248" visible="true" />
			<rule action=" db  screen " enabled="true" group="136347702" module="0" name="通过Web服务访问Oracle 9i默认配置文件soapConfig.xml" name_en_US="Access to Oracle 9i Default Config File soapConfig.xml via Web Service" name_zh_CN="通过Web服务访问Oracle 9i默认配置文件soapConfig.xml" name_zh_TW="通過Web服務訪問Oracle 9i默認配置文件soapConfig.xml" ruleid="30249" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Win32.VB.fdi木马网络数据通信" name_en_US="TROJAN Backdoor.Win32.VB.fdi Bot Reporting to Controller" name_zh_CN="Backdoor.Win32.VB.fdi木马网络数据通信" name_zh_TW="Backdoor.Win32.VB.fdi木馬網絡數據通信" ruleid="40889" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161615" module="0" name="后门：Big Gluck客户连接" name_en_US="Backdoor: Big Gluck Client Connection" name_zh_CN="后门：Big Gluck客户连接" name_zh_TW="後門：Big Gluck客戶連接" ruleid="40950" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPWrsky Webshell检测" name_en_US="ASPWrsky Webshell Detection" name_zh_CN="ASPWrsky Webshell检测" name_zh_TW="ASPWrsky Webshell檢測" ruleid="40957" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPShell Webshell检测" name_en_US="ASPShell Webshell Detection" name_zh_CN="ASPShell Webshell检测" name_zh_TW="ASPShell Webshell檢測" ruleid="40956" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Xoops editor_registry.php脚本目录遍历攻击" name_en_US="Xoops editor_registry.php Script Directory Traversal" name_zh_CN="Xoops editor_registry.php脚本目录遍历攻击" name_zh_TW="Xoops editor_registry.php腳本目錄遍曆攻擊" ruleid="30538" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Asterisk Web非授权访问Voicemail攻击" name_en_US="Asterisk Web Voicemail Unauthorized Access" name_zh_CN="Asterisk Web非授权访问Voicemail攻击" name_zh_TW="Asterisk Web非授權訪問Voicemail攻擊" ruleid="30539" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="漏洞扫描器Cybercop Scanner EHLO命令探测SMTP服务" name_en_US="Cybercop Scanner EHLO Command Detecting SMTP Service" name_zh_CN="漏洞扫描器Cybercop Scanner EHLO命令探测SMTP服务" name_zh_TW="漏洞掃描器Cybercop Scanner EHLO命令探測SMTP服務" ruleid="30240" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422521" module="0" name="Microsoft Windows Server驱动内存信息泄露攻击" name_en_US="Microsoft Windows Server Driver Memory Information Disclosure" name_zh_CN="Microsoft Windows Server驱动内存信息泄露攻击" name_zh_TW="Microsoft Windows Server驅動內存信息泄露攻擊" ruleid="30537" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－TCP端口扫描" name_en_US="Server Port Scan - Normal Scan" name_zh_CN="服务器端口扫描－TCP端口扫描" name_zh_TW="服務器端口掃描－TCP端口掃描" ruleid="30242" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－FULLXMAS扫描" name_en_US="Server Port Scan - FULLXMAS Scan" name_zh_CN="服务器端口扫描－FULLXMAS扫描" name_zh_TW="服務器端口掃描－FULLXMAS掃描" ruleid="30243" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－FIN扫描" name_en_US="Server Port Scan - FIN Scan" name_zh_CN="服务器端口扫描－FIN扫描" name_zh_TW="服務器端口掃描－FIN掃描" ruleid="30244" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－SYNFIN扫描" name_en_US="Server Port Scan - SYNFIN Scan" name_zh_CN="服务器端口扫描－SYNFIN扫描" name_zh_TW="服務器端口掃描－SYNFIN掃描" ruleid="30245" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－NULL扫描" name_en_US="Server Port Scan - NULL Scan" name_zh_CN="服务器端口扫描－NULL扫描" name_zh_TW="服務器端口掃描－NULL掃描" ruleid="30246" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－XMAS扫描" name_en_US="Server Port Scan - XMAS Scan" name_zh_CN="服务器端口扫描－XMAS扫描" name_zh_TW="服務器端口掃描－XMAS掃描" ruleid="30247" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下NOSecure木马通信" name_en_US="Trojan NOSecure Communication on Windows" name_zh_CN="Windows系统下NOSecure木马通信" name_zh_TW="Windows系統下NOSecure木馬通信" ruleid="40557" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214246" module="0" name="perl.exe程序漏洞扫描探测" name_en_US="perl.exe Vulnerability Detection" name_zh_CN="perl.exe程序漏洞扫描探测" name_zh_TW="perl.exe程序漏洞掃描探測" ruleid="40224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下New Silencer木马通信" name_en_US="Trojan New Silencer Communication on Windows" name_zh_CN="Windows系统下New Silencer木马通信" name_zh_TW="Windows系統下New Silencer木馬通信" ruleid="40555" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Network Terrorist木马通信" name_en_US="Trojan Network Terrorist Communication on Windows" name_zh_CN="Windows系统下Network Terrorist木马通信" name_zh_TW="Windows系統下Network Terrorist木馬通信" ruleid="40554" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下NetTrash木马通信" name_en_US="Trojan NetTrash Communication on Windows" name_zh_CN="Windows系统下NetTrash木马通信" name_zh_TW="Windows系統下NetTrash木馬通信" ruleid="40553" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Net Taxi木马通信" name_en_US="Trojan Net Taxi Communication on Windows" name_zh_CN="Windows系统下Net Taxi木马通信" name_zh_TW="Windows系統下Net Taxi木馬通信" ruleid="40552" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Net Controller木马通信" name_en_US="Trojan Net Controller Communication on Windows" name_zh_CN="Windows系统下Net Controller木马通信" name_zh_TW="Windows系統下Net Controller木馬通信" ruleid="40551" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用EZShopper loadpage.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via EZShopper loadpage.cgi Script Vulnerability" name_zh_CN="利用EZShopper loadpage.cgi脚本漏洞远程执行命令" name_zh_TW="利用EZShopper loadpage.cgi腳本漏洞遠程執行命令" ruleid="30186" visible="true" />
			<rule action=" db  screen " enabled="true" group="154206293" module="0" name="RLOGIN服务root用户认证" name_en_US="RLOGIN Service root User Authentication" name_zh_CN="RLOGIN服务root用户认证" name_zh_TW="RLOGIN服務root用戶認證" ruleid="40308" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Osiris木马通信" name_en_US="Trojan Osiris Communication on Windows" name_zh_CN="Windows系统下Osiris木马通信" name_zh_TW="Windows系統下Osiris木馬通信" ruleid="40559" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Oblivion木马通信" name_en_US="Trojan Oblivion Communication on Windows" name_zh_CN="Windows系统下Oblivion木马通信" name_zh_TW="Windows系統下Oblivion木馬通信" ruleid="40558" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647562" module="0" name="Windows系统下熊猫烧香蠕虫病毒刷计数器操作" name_en_US="Nimaya Refreshing the Counter on Windows" name_zh_CN="Windows系统下熊猫烧香蠕虫病毒刷计数器操作" name_zh_TW="Windows系統下熊貓燒香蠕蟲病毒刷計數器操作" ruleid="40795" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647562" module="0" name="Windows系统下熊猫烧香蠕虫病毒解析恶意网站域名" name_en_US="Nimaya Parsing Malicious Website Domain Name on Windows System" name_zh_CN="Windows系统下熊猫烧香蠕虫病毒解析恶意网站域名" name_zh_TW="Windows系統下熊貓燒香蠕蟲病毒解析惡意網站域名" ruleid="40794" visible="true" />
			<rule action=" db  screen " enabled="true" group="270534729" module="0" name="Netgear FVS318绕过URL访问过滤攻击" name_en_US="Netgear FVS318 URL Sanitization Bypass" name_zh_CN="Netgear FVS318绕过URL访问过滤攻击" name_zh_TW="Netgear FVS318繞過URL訪問過濾攻擊" ruleid="40797" visible="true" />
			<rule action=" db  screen " enabled="true" group="83894326" module="0" name="Solaris rpc.rwalld服务存在性UDP扫描探测" name_en_US="Solaris rpc.rwalld Service UDP Detection" name_zh_CN="Solaris rpc.rwalld服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rwalld服務存在性UDP掃描探測" ruleid="40309" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Windows图形渲染引擎恶意WMF格式文档邮件附件传播" name_en_US="Microsoft Windows Graphics Rendering Engine WMF Format Attachment Propagation" name_zh_CN="Microsoft Windows图形渲染引擎恶意WMF格式文档邮件附件传播" name_zh_TW="Microsoft Windows圖形渲染引擎惡意WMF格式文檔郵件附件傳播" ruleid="40791" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft IE FTP URI处理漏洞恶意命令代码邮件引用" name_en_US="Microsoft IE FTP URI Processing Vulnerability Mail" name_zh_CN="Microsoft IE FTP URI处理漏洞恶意命令代码邮件引用" name_zh_TW="Microsoft IE FTP URI處理漏洞惡意命令代碼郵件引用" ruleid="40790" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680326" module="0" name="Microsoft Windows 2000 RPC服务畸形回应" name_en_US="Microsoft Windows 2000 RPC Service Malformed Response" name_zh_CN="Microsoft Windows 2000 RPC服务畸形回应" name_zh_TW="Microsoft Windows 2000 RPC服務畸形回應" ruleid="40793" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680326" module="0" name="Microsoft Windows 2000 RPC服务畸形请求" name_en_US="Microsoft Windows 2000 RPC Service Malformed Requests" name_zh_CN="Microsoft Windows 2000 RPC服务畸形请求" name_zh_TW="Microsoft Windows 2000 RPC服務畸形請求" ruleid="40792" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件网易泡泡用户登录" name_en_US="Instant Messaging Software POPO User Login" name_zh_CN="即时通信软件网易泡泡用户登录" name_zh_TW="即時通信軟件網易泡泡用戶登錄" ruleid="50080" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件新浪UC用户登录" name_en_US="Instant Messaging Software Sina UC User Login" name_zh_CN="即时通信软件新浪UC用户登录" name_zh_TW="即時通信軟件新浪UC用戶登錄" ruleid="50081" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780829" module="0" name="SMTP服务暴力猜测用户名口令" name_en_US="SMTP Service User Password Brute Forcce" name_zh_CN="SMTP服务暴力猜测用户名口令" name_zh_TW="SMTP服務暴力猜測用戶名口令" ruleid="50082" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="0" name="Windows系统远程管理工具终端服务用户登录" name_en_US="Windows Remote Management Tool Terminal Service User Login" name_zh_CN="Windows系统远程管理工具终端服务用户登录" name_zh_TW="Windows系統遠程管理工具終端服務用戶登錄" ruleid="50083" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="Macromedia Shockwave 10 SWDIR.DLL多个ActiveX控件远程拒绝服务攻击" name_en_US="Macromedia Shockwave 10 SWDIR.DLL ActiveX Control Remote Denial of Service" name_zh_CN="Macromedia Shockwave 10 SWDIR.DLL多个ActiveX控件远程拒绝服务攻击" name_zh_TW="Macromedia Shockwave 10 SWDIR.DLL多個ActiveX控件遠程拒絕服務攻擊" ruleid="40799" visible="true" />
			<rule action=" db  screen " enabled="true" group="136380473" module="0" name="Nokia Electronic Documentation连接重定向功能利用" name_en_US="Nokia Electronic Documentation Connection Redirection Exploitation" name_zh_CN="Nokia Electronic Documentation连接重定向功能利用" name_zh_TW="Nokia Electronic Documentation連接重定向功能利用" ruleid="40798" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN发现非法信息" name_en_US="Instant Messaging Software MSN Illegal Information" name_zh_CN="即时通信软件MSN发现非法信息" name_zh_TW="即時通信軟件MSN發現非法信息" ruleid="50086" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN发现传送可疑文件" name_en_US="Instant Messaging Software MSN Sending Suspicious Files" name_zh_CN="即时通信软件MSN发现传送可疑文件" name_zh_TW="即時通信軟件MSN發現傳送可疑文件" ruleid="50087" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="Vids.Myspace在线流媒体播放" name_en_US="Vids.Myspace Online Streaming Media Playing" name_zh_CN="Vids.Myspace在线流媒体播放" name_zh_TW="Vids.Myspace在線流媒體播放" ruleid="50248" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="0" name="用户访问开心网" name_en_US="User Login Kaixin Website" name_zh_CN="用户访问开心网" name_zh_TW="用戶訪問開心網" ruleid="50249" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="YouTube在线流媒体播放" name_en_US="YouTube Online Streaming Media Playing" name_zh_CN="YouTube在线流媒体播放" name_zh_TW="YouTube在線流媒體播放" ruleid="50246" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="ViralVideoChart在线流媒体播放" name_en_US="ViralVideoChart Online Streaming Media Playing" name_zh_CN="ViralVideoChart在线流媒体播放" name_zh_TW="ViralVideoChart在線流媒體播放" ruleid="50247" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件齐鲁证券用户登录" name_en_US="Stock Market Analtsis Software Qilu User Login" name_zh_CN="股票行情分析操作软件齐鲁证券用户登录" name_zh_TW="股票行情分析操作軟件齊魯證券用戶登錄" ruleid="50244" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp3.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp3.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp3.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp3.htr文件訪問" ruleid="30180" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏剑侠情缘用户登陆" name_en_US="Online Game Jianxia User Login" name_zh_CN="网络游戏剑侠情缘用户登陆" name_zh_TW="網絡遊戲劍俠情緣用戶登陸" ruleid="50242" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="2" name="用户访问受控URL" name_en_US="User Browsing Restricted URL" name_zh_CN="用户访问受控URL" name_zh_TW="用戶訪問受控URL" ruleid="50243" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="跑跑卡丁车用户登陆" name_en_US="Online Game PaoPao User Login" name_zh_CN="跑跑卡丁车用户登陆" name_zh_TW="跑跑卡丁車用戶登陸" ruleid="50240" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="Web网游英雄之门用户登陆" name_en_US="Online Game HeroGate User Login" name_zh_CN="Web网游英雄之门用户登陆" name_zh_TW="Web網遊英雄之門用戶登陸" ruleid="50241" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="HyperSeek hsx.cgi脚本漏洞扫描利用" name_en_US="HyperSeek hsx.cgi Script Vulnerability Detection" name_zh_CN="HyperSeek hsx.cgi脚本漏洞扫描利用" name_zh_TW="HyperSeek hsx.cgi腳本漏洞掃描利用" ruleid="30335" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="CGIScript.net cspassword.cgi脚本漏洞扫描探测" name_en_US="CGIScript.net cspassword.cgi Script Vulnerability Detection" name_zh_CN="CGIScript.net cspassword.cgi脚本漏洞扫描探测" name_zh_TW="CGIScript.net cspassword.cgi腳本漏洞掃描探測" ruleid="30336" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="password.cgi.tmp文件扫描探测" name_en_US="password.cgi.tmp File Detection" name_zh_CN="password.cgi.tmp文件扫描探测" name_zh_TW="password.cgi.tmp文件掃描探測" ruleid="30337" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423925" module="0" name="IBM Net.Data document.d2w脚本漏洞扫描利用" name_en_US="IBM Net.Data document.d2w Script Vulnerability Detection" name_zh_CN="IBM Net.Data document.d2w脚本漏洞扫描利用" name_zh_TW="IBM Net.Data document.d2w腳本漏洞掃描利用" ruleid="30330" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Alibaba tst.bat脚本漏洞扫描利用" name_en_US="Alibaba tst.bat Script Vulnerability Detection" name_zh_CN="Alibaba tst.bat脚本漏洞扫描利用" name_zh_TW="Alibaba tst.bat腳本漏洞掃描利用" ruleid="30331" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="cal_make.pl脚本漏洞扫描利用" name_en_US="cal_make.pl Script Vulnerability Detection" name_zh_CN="cal_make.pl脚本漏洞扫描利用" name_zh_TW="cal_make.pl腳本漏洞掃描利用" ruleid="30332" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用pagelog.cgi脚本遍历目录" name_en_US="Directory Traversal via pagelog.cgi Script" name_zh_CN="利用pagelog.cgi脚本遍历目录" name_zh_TW="利用pagelog.cgi腳本遍曆目錄" ruleid="30333" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: MySQL MaxDB WebDBM Database Name Handling Remote 缓冲区溢出漏洞" name_en_US="HTTP: MySQL MaxDB WebDBM Database Name Handling Remote Buffer Overflow Vulnerability" name_zh_CN="HTTP: MySQL MaxDB WebDBM Database Name Handling Remote 缓冲区溢出漏洞" name_zh_TW="HTTP: MySQL MaxDB WebDBM Database Name Handling Remote 緩沖區溢出漏洞" ruleid="29113" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Novell Netmail WebAdmin.exe 漏洞" name_en_US="HTTP: Novell Netmail WebAdmin.exe Vulnerability" name_zh_CN="HTTP: Novell Netmail WebAdmin.exe 漏洞" name_zh_TW="HTTP: Novell Netmail WebAdmin.exe 漏洞" ruleid="29111" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: BEA WebLogic Admin Console 跨站脚本攻击漏洞" name_en_US="HTTP: BEA WebLogic Admin Console Cross Site Scripting Vulnerability" name_zh_CN="HTTP: BEA WebLogic Admin Console 跨站脚本攻击漏洞" name_zh_TW="HTTP: BEA WebLogic Admin Console 跨站腳本攻擊漏洞" ruleid="29116" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="classifieds.cgi脚本漏洞扫描利用" name_en_US="classifieds.cgi Script Vulnerability Detection" name_zh_CN="classifieds.cgi脚本漏洞扫描利用" name_zh_TW="classifieds.cgi腳本漏洞掃描利用" ruleid="30339" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Ipswitch WhatsUp Gold Web Server 缓冲区溢出漏洞" name_en_US="HTTP: Ipswitch WhatsUp Gold Web Server Buffer Overflow" name_zh_CN="HTTP: Ipswitch WhatsUp Gold Web Server 缓冲区溢出漏洞" name_zh_TW="HTTP: Ipswitch WhatsUp Gold Web Server 緩沖區溢出漏洞" ruleid="29114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下黑洞木马通信" name_en_US="Trojan Collapsar Communication on Windows" name_zh_CN="Windows系统下黑洞木马通信" name_zh_TW="Windows系統下黑洞木馬通信" ruleid="40711" visible="true" />
			<rule action=" db  screen " enabled="true" group="153157717" module="0" name="RSH服务root用户操作" name_en_US="RSH Service root User Operation" name_zh_CN="RSH服务root用户操作" name_zh_TW="RSH服務root用戶操作" ruleid="40307" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问匿名管道" name_en_US="Windows SMB Accessing Anonymous Pipe" name_zh_CN="Windows SMB访问匿名管道" name_zh_TW="Windows SMB訪問匿名管道" ruleid="40420" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Dagger 1.4.0木马服务端返回系统信息" name_en_US="Trojan Dagger 1.4.0 Server Returning System Information on Windows" name_zh_CN="Windows系统下Dagger 1.4.0木马服务端返回系统信息" name_zh_TW="Windows系統下Dagger 1.4.0木馬服務端返回系統信息" ruleid="40427" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Dagger 1.4.0木马客户端发送控制信号" name_en_US="Trojan Dagger 1.4.0 Client Sending Control Signals on Windows" name_zh_CN="Windows系统下Dagger 1.4.0木马客户端发送控制信号" name_zh_TW="Windows系統下Dagger 1.4.0木馬客戶端發送控制信號" ruleid="40426" visible="true" />
			<rule action=" db  screen " enabled="true" group="154141254" module="0" name="RLOGIN服务用户认证 失败" name_en_US="RLOGIN Service User Authentication Failed" name_zh_CN="RLOGIN服务用户认证 失败" name_zh_TW="RLOGIN服務用戶認證 失敗" ruleid="40425" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPAdmin数据库操作" name_en_US="ASPAdmin Database Operation" name_zh_CN="ASPAdmin数据库操作" name_zh_TW="ASPAdmin數據庫操作" ruleid="40968" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315078" module="0" name="利用MyPHPLinks index.php脚本漏洞绕过验证访问" name_en_US="Authentication Bypass via MyPHPLinks index.php Script Vulnerability" name_zh_CN="利用MyPHPLinks index.php脚本漏洞绕过验证访问" name_zh_TW="利用MyPHPLinks index.php腳本漏洞繞過驗證訪問" ruleid="40429" visible="true" />
			<rule action=" db  screen " enabled="true" group="73401414" module="0" name="Windows系统下iraq_oil蠕虫活动" name_en_US="Worm iraq_oil on Windows" name_zh_CN="Windows系统下iraq_oil蠕虫活动" name_zh_TW="Windows系統下iraq_oil蠕蟲活動" ruleid="40428" visible="true" />
			<rule action=" db  screen " enabled="true" group="202506333" module="1" name="MP4视频文件在线流媒体播放" name_en_US="MP4 Video File Online Streaming Media Playing" name_zh_CN="MP4视频文件在线流媒体播放" name_zh_TW="MP4視頻文件在線流媒體播放" ruleid="50405" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="易盛期货软件交易用户登陆" name_en_US="Yi Sheng Futures Trading Software User Login" name_zh_CN="易盛期货软件交易用户登陆" name_zh_TW="易盛期貨軟件交易用戶登陸" ruleid="50406" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="文华财经期货交易软件用户登陆" name_en_US="Wen Hua Futures Trading Software User Login" name_zh_CN="文华财经期货交易软件用户登陆" name_zh_TW="文華財經期貨交易軟件用戶登陸" ruleid="50407" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件Jabber用户登录" name_en_US="Instant Messaging Software Jabber User Login" name_zh_CN="即时通信软件Jabber用户登录" name_zh_TW="即時通信軟件Jabber用戶登錄" ruleid="50136" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223066" module="0" name="HTTP: 可执行目录上传文件事件" name_en_US="HTTP: Post File to Executable Directory" name_zh_CN="HTTP: 可执行目录上传文件事件" name_zh_TW="HTTP: 可執行目錄上傳文件事件" ruleid="50402" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440793" module="0" name="图像过滤事件监控" name_en_US="Photo Filter Events Monitor" name_zh_CN="图像过滤事件监控" name_zh_TW="圖像過濾事件監控" ruleid="50403" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365558" module="0" name="Solaris FTP畸形CWD命令引发CoreDump攻击" name_en_US="Solaris FTP Malformed CWD Command CoreDump Attack" name_zh_CN="Solaris FTP畸形CWD命令引发CoreDump攻击" name_zh_TW="Solaris FTP畸形CWD命令引發CoreDump攻擊" ruleid="20273" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPAdmin文件浏览" name_en_US="ASPAdmin Files Browser" name_zh_CN="ASPAdmin文件浏览" name_zh_TW="ASPAdmin文件浏覽" ruleid="40969" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266474" module="0" name="JBoss企业应用平台多个安全漏洞" name_en_US="JBoss Enterprise Application Platform Multiple Vulnerabilities" name_zh_CN="JBoss企业应用平台多个安全漏洞" name_zh_TW="JBoss企業應用平台多個安全漏洞" ruleid="62147" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Prosiak木马建立连接" name_en_US="Trojan Prosiak Connection on Windows" name_zh_CN="Windows系统下Prosiak木马建立连接" name_zh_TW="Windows系統下Prosiak木馬建立連接" ruleid="40092" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161615" module="0" name="后门：DeepThroat v2客户连接" name_en_US="Backdoor: DeepThroat v2 Client Connection" name_zh_CN="后门：DeepThroat v2客户连接" name_zh_TW="後門：DeepThroat v2客戶連接" ruleid="40951" visible="true" />
			<rule action=" db  screen " enabled="true" group="154206293" module="0" name="RLOGIN服务信任用户认证" name_en_US="RLOGIN Service Trusting User Authentication" name_zh_CN="RLOGIN服务信任用户认证" name_zh_TW="RLOGIN服務信任用戶認證" ruleid="50066" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问默认共享C$" name_en_US="Windows SMB Accessing the Default Share C$" name_zh_CN="Windows SMB访问默认共享C$" name_zh_TW="Windows SMB訪問默認共享C$" ruleid="50067" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="Oracle数据库远程执行命令操作" name_en_US="Oracle Database Remote Command Execution" name_zh_CN="Oracle数据库远程执行命令操作" name_zh_TW="Oracle數據庫遠程執行命令操作" ruleid="50064" visible="true" />
			<rule action=" db  screen " enabled="false" group="95486037" module="0" name="Windows NBTSTAT信息探测" name_en_US="Windows NBTSTAT Information Detection" name_zh_CN="Windows NBTSTAT信息探测" name_zh_TW="Windows NBTSTAT信息探測" ruleid="50065" visible="true" />
			<rule action=" db  screen " enabled="true" group="95682639" module="0" name="Windows系统Worm.SoBig蠕虫病毒利用共享传播" name_en_US="Windows Worm.SoBig Propagation Through Sharing" name_zh_CN="Windows系统Worm.SoBig蠕虫病毒利用共享传播" name_zh_TW="Windows系統Worm.SoBig蠕蟲病毒利用共享傳播" ruleid="50062" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486030" module="0" name="Windows系统下可疑蠕虫病毒通过共享传播" name_en_US="Windows Suspicious Worms Propagation Through Sharing" name_zh_CN="Windows系统下可疑蠕虫病毒通过共享传播" name_zh_TW="Windows系統下可疑蠕蟲病毒通過共享傳播" ruleid="50063" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375343" module="0" name="PHP-CGI远程源码泄露和任意代码执行漏洞" name_en_US="PHP-CGI Remote Source Disclosure And Arbitrary Code Execution Vulnerability" name_zh_CN="PHP-CGI远程源码泄露和任意代码执行漏洞" name_zh_TW="PHP-CGI遠程源碼泄露和任意代碼執行漏洞" ruleid="22249" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Discuz! X2.5远程代码执行漏洞" name_en_US="Discuz! X2.5 Remote Code Execution Vulnerability" name_zh_CN="Discuz! X2.5远程代码执行漏洞" name_zh_TW="Discuz! X2.5遠程代碼執行漏洞" ruleid="22248" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="DEDECMS 5.7之前版本远程SQL注入漏洞" name_en_US="DEDECMS Before Version 5.7 Remote SQL Injection Vulnerability" name_zh_CN="DEDECMS 5.7之前版本远程SQL注入漏洞" name_zh_TW="DEDECMS 5.7之前版本遠程SQL注入漏洞" ruleid="22247" visible="true" />
			<rule action=" db  screen " enabled="true" group="138444885" module="0" name="TELNET服务客户端解析服务器配置" name_en_US="TELNET Service Client Parsing Server Configuration" name_zh_CN="TELNET服务客户端解析服务器配置" name_zh_TW="TELNET服務客戶端解析服務器配置" ruleid="40095" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问默认共享D$" name_en_US="Windows SMB Accessing the Default Share D$" name_zh_CN="Windows SMB访问默认共享D$" name_zh_TW="Windows SMB訪問默認共享D$" ruleid="50068" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问默认共享ADMIN$" name_en_US="Windows SMB Accessing the Default Share ADMIN$" name_zh_CN="Windows SMB访问默认共享ADMIN$" name_zh_TW="Windows SMB訪問默認共享ADMIN$" ruleid="50069" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Trinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40391" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680334" module="0" name="360软件更新" name_en_US="Software 360 Upgrade" name_zh_CN="360软件更新" name_zh_TW="360軟件更新" ruleid="40826" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618894" module="0" name="NetOp远程控制软件建立连接(UDP)" name_en_US="Remote Control Software NetOp Connection(UDP)" name_zh_CN="NetOp远程控制软件建立连接(UDP)" name_zh_TW="NetOp遠程控制軟件建立連接(UDP)" ruleid="40824" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit探测服务" name_en_US="Rootkit Investigate  Serveices" name_zh_CN="Rootkit探测服务" name_zh_TW="Rootkit探測服務" ruleid="40973" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888154" module="0" name="Microsoft Windows打印后台程序GetPrinterData过程远程拒绝服务攻击" name_en_US="Microsoft Windows Spooler GetPrinterData Procedure Remote Denial of Service" name_zh_CN="Microsoft Windows打印后台程序GetPrinterData过程远程拒绝服务攻击" name_zh_TW="Microsoft Windows打印後台程序GetPrinterData過程遠程拒絕服務攻擊" ruleid="10180" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="4" name="垃圾邮件网络传播" name_en_US="Spam Network Spreading" name_zh_CN="垃圾邮件网络传播" name_zh_TW="垃圾郵件網絡傳播" ruleid="40821" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="已知危险IP地址数据通信" name_en_US="Communicating with Suspicious Known IP" name_zh_CN="已知危险IP地址数据通信" name_zh_TW="已知危險IP地址數據通信" ruleid="40820" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Windows Media Player畸形PNG块文档邮件附件传播" name_en_US="Microsoft Windows Media Player Malformed PNG Chunk Document Attachment Propagation" name_zh_CN="Microsoft Windows Media Player畸形PNG块文档邮件附件传播" name_zh_TW="Microsoft Windows Media Player畸形PNG塊文檔郵件附件傳播" ruleid="40779" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft PowerPoint远程代码执行漏洞" name_en_US="Microsoft PowerPoint Remote Code Execution Vulnerability " name_zh_CN="Microsoft PowerPoint远程代码执行漏洞" name_zh_TW="Microsoft PowerPoint遠程代碼執行漏洞" ruleid="21129" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Excel 2000,Excel 2002内存破坏漏洞" name_en_US="Microsoft Excel 2000,Excel 2002 Memory Corrupt Vulnerability" name_zh_CN="Microsoft Excel 2000,Excel 2002内存破坏漏洞" name_zh_TW="Microsoft Excel 2000,Excel 2002內存破壞漏洞" ruleid="21128" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010远程代码执行漏洞" name_en_US="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010 Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010远程代码执行漏洞" name_zh_TW="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010遠程代碼執行漏洞" ruleid="21127" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="MS Office applications多种代码执行漏洞" name_en_US="MS Office applications Multiple Code Execution Vulnerabilities" name_zh_CN="MS Office applications多种代码执行漏洞" name_zh_TW="MS Office applications多種代碼執行漏洞" ruleid="21126" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Word RTF文件解析栈溢出漏洞" name_en_US="Microsoft Word RTF File Parsing Stack Buffer Overflow Vulnerability" name_zh_CN="Microsoft Word RTF文件解析栈溢出漏洞" name_zh_TW="Microsoft Word RTF文件解析棧溢出漏洞" ruleid="21125" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft PowerPoint &apos;mso.dll&apos; 堆破坏漏洞" name_en_US="Microsoft PowerPoint &apos;mso.dll&apos; Heap Corruption Vulnerability  " name_zh_CN="Microsoft PowerPoint &apos;mso.dll&apos; 堆破坏漏洞" name_zh_TW="Microsoft PowerPoint &apos;mso.dll&apos; 堆破壞漏洞" ruleid="21124" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft PowerPoint &apos;PP7X32.DLL&apos; 远程堆溢出漏洞" name_en_US="Microsoft PowerPoint &apos;PP7X32.DLL&apos;Remote Heap-Based Buffer Overflow Vulnerability " name_zh_CN="Microsoft PowerPoint &apos;PP7X32.DLL&apos; 远程堆溢出漏洞" name_zh_TW="Microsoft PowerPoint &apos;PP7X32.DLL&apos; 遠程堆溢出漏洞" ruleid="21123" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="ProFTPD IAC Remote Root Exploit" name_en_US="ProFTPD IAC Remote Root Exploit" name_zh_CN="ProFTPD IAC Remote Root Exploit" name_zh_TW="ProFTPD IAC Remote Root Exploit" ruleid="21122" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254895" module="0" name="FileCOPA FTP Server 6.01目录遍历攻击" name_en_US="FileCOPA FTP Server 6.01 directory traversal" name_zh_CN="FileCOPA FTP Server 6.01目录遍历攻击" name_zh_TW="FileCOPA FTP Server 6.01目錄遍曆攻擊" ruleid="21121" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Landesk OS命令注入漏洞" name_en_US="Landesk OS command injection" name_zh_CN="Landesk OS命令注入漏洞" name_zh_TW="Landesk OS命令注入漏洞" ruleid="21120" visible="true" />
			<rule action=" db  screen " enabled="false" group="99618886" module="0" name="Windows系统下Ackcmd木马程序通信" name_en_US="Trojan Ackcmd Communication on Windows" name_zh_CN="Windows系统下Ackcmd木马程序通信" name_zh_TW="Windows系統下Ackcmd木馬程序通信" ruleid="40000" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 宏源证券" name_en_US="Stock Trading Operating Software Hongyuan Securities" name_zh_CN="股票交易操作软件 宏源证券" name_zh_TW="股票交易操作軟件 宏源證券" ruleid="50427" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpMyDirectory ROOT_PATH参数远程文件包含攻击" name_en_US="phpMyDirectory ROOT_PATH Parameter Remote File Inclusion" name_zh_CN="phpMyDirectory ROOT_PATH参数远程文件包含攻击" name_zh_TW="phpMyDirectory ROOT_PATH參數遠程文件包含攻擊" ruleid="20722" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="ScozNet ScozNews CONFIG[main_path]参数远程文件包含攻击" name_en_US="ScozNet ScozNews CONFIG[main_path] Parameter Remote File Inclusion" name_zh_CN="ScozNet ScozNews CONFIG[main_path]参数远程文件包含攻击" name_zh_TW="ScozNet ScozNews CONFIG[main_path]參數遠程文件包含攻擊" ruleid="20723" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="TR Newsportal poll.php远程文件包含攻击" name_en_US="TR Newsportal poll.php Remote File Inclusion" name_zh_CN="TR Newsportal poll.php远程文件包含攻击" name_zh_TW="TR Newsportal poll.php遠程文件包含攻擊" ruleid="20720" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpBazar classified_right.php远程文件包含攻击" name_en_US="phpBazar classified_right.php Remote File Inclusion" name_zh_CN="phpBazar classified_right.php远程文件包含攻击" name_zh_TW="phpBazar classified_right.php遠程文件包含攻擊" ruleid="20721" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft SQL Server sqldmo.dll ActiveX控件缓冲区溢出攻击" name_en_US="Microsoft SQL Server sqldmo.dll ActiveX Control Buffer Overflow" name_zh_CN="Microsoft SQL Server sqldmo.dll ActiveX控件缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server sqldmo.dll ActiveX控件緩沖區溢出攻擊" ruleid="20894" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpRaid远程文件包含攻击" name_en_US="phpRaid Remote File Inclusion" name_zh_CN="phpRaid远程文件包含攻击" name_zh_TW="phpRaid遠程文件包含攻擊" ruleid="20727" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Quezza BB class_template.php远程文件包含攻击" name_en_US="Quezza BB class_template.php Remote File Inclusion" name_zh_CN="Quezza BB class_template.php远程文件包含攻击" name_zh_TW="Quezza BB class_template.php遠程文件包含攻擊" ruleid="20724" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Squirrelcart cart_content.php远程文件包含攻击" name_en_US="Squirrelcart cart_content.php Remote File Inclusion" name_zh_CN="Squirrelcart cart_content.php远程文件包含攻击" name_zh_TW="Squirrelcart cart_content.php遠程文件包含攻擊" ruleid="20725" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="雅虎通YVerInfo.dll ActiveX控件远程栈缓冲区溢出攻击" name_en_US="Yahoo! Messenger YVerInfo.dll ActiveX Control Remote Stack Buffer Overflow" name_zh_CN="雅虎通YVerInfo.dll ActiveX控件远程栈缓冲区溢出攻击" name_zh_TW="雅虎通YVerInfo.dll ActiveX控件遠程棧緩沖區溢出攻擊" ruleid="20898" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Macrovision InstallShield Update Service ActiveX非授权下载执行任意程序攻击" name_en_US="Macrovision InstallShield Update Service ActiveX Unauthorized Arbitrary Program Execution" name_zh_CN="Macrovision InstallShield Update Service ActiveX非授权下载执行任意程序攻击" name_zh_TW="Macrovision InstallShield Update Service ActiveX非授權下載執行任意程序攻擊" ruleid="20899" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Windows RPC DCOM接口UDP长路径名远程堆缓冲区溢出攻击" name_en_US="Windows RPC DCOM Interface UDP Long Path Name Remote Stack Buffer Overflow" name_zh_CN="Windows RPC DCOM接口UDP长路径名远程堆缓冲区溢出攻击" name_zh_TW="Windows RPC DCOM接口UDP長路徑名遠程堆緩沖區溢出攻擊" ruleid="20728" visible="true" />
			<rule action=" db  screen " enabled="true" group="71303467" module="0" name="InterAccess TelnetD Server远程缓冲区溢出攻击" name_en_US="InterAccess TelnetD Server Remote Buffer Overflow" name_zh_CN="InterAccess TelnetD Server远程缓冲区溢出攻击" name_zh_TW="InterAccess TelnetD Server遠程緩沖區溢出攻擊" ruleid="20729" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="VIRUS Worm.Pyks A类木马网络数据通信" name_en_US="VIRUS Worm.Pyks HTTP C&amp;C Traffic User-Agent skw00001" name_zh_CN="VIRUS Worm.Pyks A类木马网络数据通信" name_zh_TW="VIRUS Worm.Pyks A類木馬網絡數據通信" ruleid="40944" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下黑星木马通信" name_en_US="Trojan BlackStar Trojan Communnication" name_zh_CN="Windows系统下黑星木马通信" name_zh_TW="Windows系統下黑星木馬通信" ruleid="40761" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Institution2004木马通信" name_en_US="Trojan Institution2004 Communication on Windows" name_zh_CN="Windows系统下Institution2004木马通信" name_zh_TW="Windows系統下Institution2004木馬通信" ruleid="40762" visible="true" />
			<rule action=" db  screen " enabled="false" group="233832751" module="0" name="协议数据溢出SHELLCODE攻击" name_en_US="Protocol Data Buffer Overflow SHELLCODE Attacks" name_zh_CN="协议数据溢出SHELLCODE攻击" name_zh_TW="協議數據溢出SHELLCODE攻擊" ruleid="70002" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="非默认端口上发现已知协议" name_en_US="Known Protocol on Non-default Port" name_zh_CN="非默认端口上发现已知协议" name_zh_TW="非默認端口上發現已知協議" ruleid="70003" visible="true" />
			<rule action=" db  screen " enabled="true" group="99876939" module="0" name="Windows系统下威金蠕虫病毒解析恶意网站域名" name_en_US="Worm.Viking Parsing Malicious Website Domain Name on Windows System" name_zh_CN="Windows系统下威金蠕虫病毒解析恶意网站域名" name_zh_TW="Windows系統下威金蠕蟲病毒解析惡意網站域名" ruleid="40763" visible="true" />
			<rule action=" db  screen " enabled="false" group="233898073" module="0" name="发现异常的HTTP协议" name_en_US="Abnormal HTTP Protocol" name_zh_CN="发现异常的HTTP协议" name_zh_TW="發現異常的HTTP協議" ruleid="70004" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下流萤 2.5木马通信" name_en_US="FireFly 2.5 Communication on Windows" name_zh_CN="Windows系统下流萤 2.5木马通信" name_zh_TW="Windows系統下流螢 2.5木馬通信" ruleid="40764" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下自由远程管理系统木马侧通信" name_en_US="Free Remote Management System Communication on Windows" name_zh_CN="Windows系统下自由远程管理系统木马侧通信" name_zh_TW="Windows系統下自由遠程管理系統木馬側通信" ruleid="40765" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Stacheldraht客户端确认通信" name_en_US="DDOS Stacheldraht Client Communication Confirmation" name_zh_CN="DDOS工具Stacheldraht客户端确认通信" name_zh_TW="DDOS工具Stacheldraht客戶端確認通信" ruleid="40766" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Stacheldraht主控端向分布端发送指令" name_en_US="DDOS Tool Stacheldraht Console Sending Command to Distributed End" name_zh_CN="DDOS工具Stacheldraht主控端向分布端发送指令" name_zh_TW="DDOS工具Stacheldraht主控端向分布端發送指令" ruleid="40767" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="TFTP: Nimda 蠕虫攻击" name_en_US="TFTP: Nimda Worm Attack" name_zh_CN="TFTP: Nimda 蠕虫攻击" name_zh_TW="TFTP: Nimda 蠕蟲攻擊" ruleid="62114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Nuclear RAT木马通信" name_en_US="Trojan Nuclear RAT Communication on Windows" name_zh_CN="Windows系统下Nuclear RAT木马通信" name_zh_TW="Windows系統下Nuclear RAT木馬通信" ruleid="40717" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651930" module="0" name="SNMPv3畸形报文处理拒绝服务攻击" name_en_US="SNMPv3 Malformed Message Handling Denial of Service" name_zh_CN="SNMPv3畸形报文处理拒绝服务攻击" name_zh_TW="SNMPv3畸形報文處理拒絕服務攻擊" ruleid="10169" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Cisco IP Phone畸形SIP协议请求拒绝服务攻击" name_en_US="Cisco IP Phone Malformed SIP Protocol Request Denial of Service" name_zh_CN="Cisco IP Phone畸形SIP协议请求拒绝服务攻击" name_zh_TW="Cisco IP Phone畸形SIP協議請求拒絕服務攻擊" ruleid="10168" visible="true" />
			<rule action=" db  screen " enabled="true" group="161482778" module="0" name="GNU Radius SNMP字符串长度整数溢出拒绝服务攻击" name_en_US="GNU Radius SNMP String Length Integer Overflow Denial of Service" name_zh_CN="GNU Radius SNMP字符串长度整数溢出拒绝服务攻击" name_zh_TW="GNU Radius SNMP字符串長度整數溢出拒絕服務攻擊" ruleid="10167" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208090" module="0" name="Apache Tomcat MS-DOS设备名远程拒绝服务攻击" name_en_US="Apache Tomcat MS-DOS Device Name Remote Denial of Service" name_zh_CN="Apache Tomcat MS-DOS设备名远程拒绝服务攻击" name_zh_TW="Apache Tomcat MS-DOS設備名遠程拒絕服務攻擊" ruleid="10166" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651930" module="0" name="Cisco IOS畸形SNMP消息处理远程拒绝服务攻击" name_en_US="Cisco IOS Malformed SNMP Message Handling Remote Denial of Service" name_zh_CN="Cisco IOS畸形SNMP消息处理远程拒绝服务攻击" name_zh_TW="Cisco IOS畸形SNMP消息處理遠程拒絕服務攻擊" ruleid="10165" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377242" module="0" name="HTTP请求负值Content-Length字段远程拒绝服务攻击" name_en_US="HTTP Request Negative Content-Length Field Remote Denial of Service" name_zh_CN="HTTP请求负值Content-Length字段远程拒绝服务攻击" name_zh_TW="HTTP請求負值Content-Length字段遠程拒絕服務攻擊" ruleid="10164" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159515" module="0" name="HTTP协议头超长HOST字段缓冲区溢出攻击" name_en_US="HTTP Protocol Header Over-long HOST Field Buffer Overflow" name_zh_CN="HTTP协议头超长HOST字段缓冲区溢出攻击" name_zh_TW="HTTP協議頭超長HOST字段緩沖區溢出攻擊" ruleid="10163" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Mbedthis Software AppWeb HTTP Server设备名访问拒绝服务攻击" name_en_US="Mbedthis Software AppWeb HTTP Server Device Name Denial of Service" name_zh_CN="Mbedthis Software AppWeb HTTP Server设备名访问拒绝服务攻击" name_zh_TW="Mbedthis Software AppWeb HTTP Server設備名訪問拒絕服務攻擊" ruleid="10162" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Jeuce Personal Web Server远程拒绝服务攻击" name_en_US="Jeuce Personal Web Server Remote Denial of Service" name_zh_CN="Jeuce Personal Web Server远程拒绝服务攻击" name_zh_TW="Jeuce Personal Web Server遠程拒絕服務攻擊" ruleid="10161" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206170" module="0" name="Apple QuickTime/Darwin流服务器MS-DOS设备文件名拒绝服务攻击" name_en_US="Apple QuickTime/Darwin Streaming Server MS-DOS Device Filename Denial of Service" name_zh_CN="Apple QuickTime/Darwin流服务器MS-DOS设备文件名拒绝服务攻击" name_zh_TW="Apple QuickTime/Darwin流服務器MS-DOS設備文件名拒絕服務攻擊" ruleid="10160" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel XP/2003 超出边界访问漏洞" name_en_US="Microsoft Excel XP/2003 Out of Boundary Access Vulnerability" name_zh_CN="Microsoft Excel XP/2003 超出边界访问漏洞" name_zh_TW="Microsoft Excel XP/2003 超出邊界訪問漏洞" ruleid="21255" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Mricrosoft Server Message Block(SMB) client 远程代码执行漏洞" name_en_US="Mricrosoft Server Message Block(SMB) client Remote Code Execution Vulnerability" name_zh_CN="Mricrosoft Server Message Block(SMB) client 远程代码执行漏洞" name_zh_TW="Mricrosoft Server Message Block(SMB) client 遠程代碼執行漏洞" ruleid="21254" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 2007 超出边界访问漏洞" name_en_US="Microsoft Excel 2007 Out of Boundary Access Vulnerability" name_zh_CN="Microsoft Excel 2007 超出边界访问漏洞" name_zh_TW="Microsoft Excel 2007 超出邊界訪問漏洞" ruleid="21257" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 超出边界访问漏洞" name_en_US="Microsoft Excel Access Vulnerability" name_zh_CN="Microsoft Excel 超出边界访问漏洞" name_zh_TW="Microsoft Excel 超出邊界訪問漏洞" ruleid="21256" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling Selection 内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling Selection Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling Selection 内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling Selection 內存破壞漏洞" ruleid="21251" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling Layout 内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling Layout Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling Layout 内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling Layout 內存破壞漏洞" ruleid="21250" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="YACS远程文件包含攻击" name_en_US="YACS Remote File Inclusion" name_zh_CN="YACS远程文件包含攻击" name_zh_TW="YACS遠程文件包含攻擊" ruleid="20658" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling CDL Protocol Selection 内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling CDL Protocol Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling CDL Protocol Selection 内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling CDL Protocol Selection 內存破壞漏洞" ruleid="21252" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpECard远程文件包含攻击" name_en_US="phpECard Remote File Inclusion" name_zh_CN="phpECard远程文件包含攻击" name_zh_TW="phpECard遠程文件包含攻擊" ruleid="20656" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="FlashChat远程文件包含攻击" name_en_US="FlashChat Remote File Inclusion" name_zh_CN="FlashChat远程文件包含攻击" name_zh_TW="FlashChat遠程文件包含攻擊" ruleid="20657" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="eIQnetworks ESA  LICMGR_ADDLICENSE命令远程缓冲区溢出攻击" name_en_US="eIQnetworks ESA  LICMGR_ADDLICENSE Command Remote Buffer Overflow" name_zh_CN="eIQnetworks ESA  LICMGR_ADDLICENSE命令远程缓冲区溢出攻击" name_zh_TW="eIQnetworks ESA  LICMGR_ADDLICENSE命令遠程緩沖區溢出攻擊" ruleid="20654" visible="true" />
			<rule action=" db  screen " enabled="true" group="89129259" module="0" name="NIPrint LPD打印服务程序远程缓冲区溢出攻击" name_en_US="NIPrint LPD Spooler Remote Buffer Overflow" name_zh_CN="NIPrint LPD打印服务程序远程缓冲区溢出攻击" name_zh_TW="NIPrint LPD打印服務程序遠程緩沖區溢出攻擊" ruleid="20655" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel Parsing SLK Files 内存破坏漏洞" name_en_US="Microsoft Excel Parsing SLK Files Memory Corruption Vulnerability" name_zh_CN="Microsoft Excel Parsing SLK Files 内存破坏漏洞" name_zh_TW="Microsoft Excel Parsing SLK Files 內存破壞漏洞" ruleid="21259" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel Scenario(0xAF) Records 代码执行漏洞" name_en_US="Microsoft Excel Scenario(0xAF) Records Code Execution Vulnerability" name_zh_CN="Microsoft Excel Scenario(0xAF) Records 代码执行漏洞" name_zh_TW="Microsoft Excel Scenario(0xAF) Records 代碼執行漏洞" ruleid="21258" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Apache mod_rewrite模块单字节缓冲区溢出攻击" name_en_US="Apache mod_rewrite Module Off-by-one Buffer Overflow" name_zh_CN="Apache mod_rewrite模块单字节缓冲区溢出攻击" name_zh_TW="Apache mod_rewrite模塊單字節緩沖區溢出攻擊" ruleid="20650" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows Server服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Server Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows Server服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows Server服務遠程緩沖區溢出攻擊" ruleid="20651" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPAdmin服务器探测" name_en_US="ASPAdmin Server Investigation" name_zh_CN="ASPAdmin服务器探测" name_zh_TW="ASPAdmin服務器探測" ruleid="40970" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420966" module="0" name="Windows SMB暴力猜测用户口令" name_en_US="Windows SMB User Password Brute Force" name_zh_CN="Windows SMB暴力猜测用户口令" name_zh_TW="Windows SMB暴力猜測用戶口令" ruleid="20384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99876907" module="0" name="Windows系统下W32.HLLW.Lovgate蠕虫病毒后门访问" name_en_US="Windows W32.HLLW.Lovgate Backdoor" name_zh_CN="Windows系统下W32.HLLW.Lovgate蠕虫病毒后门访问" name_zh_TW="Windows系統下W32.HLLW.Lovgate蠕蟲病毒後門訪問" ruleid="20385" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用VisualShapers EZContents module.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via VisualShapers EZContents module.php Script Vulnerability" name_zh_CN="利用VisualShapers EZContents module.php脚本漏洞远程执行命令" name_zh_TW="利用VisualShapers EZContents module.php腳本漏洞遠程執行命令" ruleid="20387" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832742" module="0" name="Real Networks Helix Universal Server RTSP URI处理远程缓冲区溢出攻击" name_en_US="Real Networks Helix Universal Server RTSP URI Processing Remote Buffer Overflow" name_zh_CN="Real Networks Helix Universal Server RTSP URI处理远程缓冲区溢出攻击" name_zh_TW="Real Networks Helix Universal Server RTSP URI處理遠程緩沖區溢出攻擊" ruleid="20380" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375726" module="0" name="HTTP服务暴力猜测口令攻击" name_en_US="HTTP Service Brute-force" name_zh_CN="HTTP服务暴力猜测口令攻击" name_zh_TW="HTTP服務暴力猜測口令攻擊" ruleid="20381" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows工作站服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Workstation Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows工作站服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows工作站服務遠程緩沖區溢出攻擊" ruleid="20382" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Microsoft FrontPage POST请求远程缓冲区溢出攻击" name_en_US="Microsoft FrontPage POST Request Remote Buffer Overflow" name_zh_CN="Microsoft FrontPage POST请求远程缓冲区溢出攻击" name_zh_TW="Microsoft FrontPage POST請求遠程緩沖區溢出攻擊" ruleid="20383" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="利用PHPDig config.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via PHPDig config.php Script Vulnerability" name_zh_CN="利用PHPDig config.php脚本漏洞远程执行命令" name_zh_TW="利用PHPDig config.php腳本漏洞遠程執行命令" ruleid="20388" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254895" module="0" name="Serv-U FTP服务器SITE CHMOD命令超长文件名远程溢出攻击" name_en_US="Serv-U FTP Server SITE CHMOD Command Over-long Filename Remote Buffer Overflow" name_zh_CN="Serv-U FTP服务器SITE CHMOD命令超长文件名远程溢出攻击" name_zh_TW="Serv-U FTP服務器SITE CHMOD命令超長文件名遠程溢出攻擊" ruleid="20389" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Beizhu/Womble/Vipdataend木马网络数据通信" name_en_US="TROJAN Beizhu/Womble/Vipdataend Checking in with Controller" name_zh_CN="Beizhu/Womble/Vipdataend木马网络数据通信" name_zh_TW="Beizhu/Womble/Vipdataend木馬網絡數據通信" ruleid="40892" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHPKIT CGI脚本SQL注入攻击" name_en_US="PHPKIT CGI Script SQL Injection" name_zh_CN="PHPKIT CGI脚本SQL注入攻击" name_zh_TW="PHPKIT CGI腳本SQL注入攻擊" ruleid="20478" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve/Enterprise发现服务SERVICEPC远程溢出攻击" name_en_US="CA BrightStor ARCserve/Enterprise Discovery Service SERVICEPC Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCserve/Enterprise发现服务SERVICEPC远程溢出攻击" name_zh_TW="CA BrightStor ARCserve/Enterprise發現服務SERVICEPC遠程溢出攻擊" ruleid="20479" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Dorf/Win32.Inject.adt 木马网络数据通信" name_en_US="TROJAN Dorf/Win32.Inject.adt C&amp;C Communication Outbound" name_zh_CN="Dorf/Win32.Inject.adt 木马网络数据通信" name_zh_TW="Dorf/Win32.Inject.adt 木馬網絡數據通信" ruleid="40897" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Delf木马网络数据通信" name_en_US="TROJAN Delf CnC Channel Keepalive Pong" name_zh_CN="Delf木马网络数据通信" name_zh_TW="Delf木馬網絡數據通信" ruleid="40895" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft WINS内存覆盖任意指令执行攻击" name_en_US="Microsoft WINS Memory Overwriting Arbitrary Code Execution" name_zh_CN="Microsoft WINS内存覆盖任意指令执行攻击" name_zh_TW="Microsoft WINS內存覆蓋任意指令執行攻擊" ruleid="20472" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft WINS服务畸形包远程缓冲区溢出攻击" name_en_US="Microsoft WINS Service Malformed Packet Remote Buffer Overflow" name_zh_CN="Microsoft WINS服务畸形包远程缓冲区溢出攻击" name_zh_TW="Microsoft WINS服務畸形包遠程緩沖區溢出攻擊" ruleid="20473" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424047" module="0" name="Microsoft Windows GDI+ JPG解析组件缓冲区溢出攻击" name_en_US="Microsoft Windows GDI+ JPG Resolution Buffer Overflow" name_zh_CN="Microsoft Windows GDI+ JPG解析组件缓冲区溢出攻击" name_zh_TW="Microsoft Windows GDI+ JPG解析組件緩沖區溢出攻擊" ruleid="20470" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472623" module="0" name="WS_FTP Server命令参数处理缓冲区溢出攻击" name_en_US="WS_FTP Server Command Parameter Handling Buffer Overflow" name_zh_CN="WS_FTP Server命令参数处理缓冲区溢出攻击" name_zh_TW="WS_FTP Server命令參數處理緩沖區溢出攻擊" ruleid="20471" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Windows NT IIS MSDAC RDS远程执行命令攻击" name_en_US="Windows NT IIS MSDAC RDS Remote Code Execution" name_zh_CN="Windows NT IIS MSDAC RDS远程执行命令攻击" name_zh_TW="Windows NT IIS MSDAC RDS遠程執行命令攻擊" ruleid="20476" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="利用AwStats CGI脚本远程执行命令攻击" name_en_US="Remomte Code Execution via AwStats CGI Script" name_zh_CN="利用AwStats CGI脚本远程执行命令攻击" name_zh_TW="利用AwStats CGI腳本遠程執行命令攻擊" ruleid="20477" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Ikonboard ikonboard.cgi远程SQL注入攻击" name_en_US="Ikonboard ikonboard.cgi Remote SQL Injection" name_zh_CN="Ikonboard ikonboard.cgi远程SQL注入攻击" name_zh_TW="Ikonboard ikonboard.cgi遠程SQL注入攻擊" ruleid="20474" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用Zeroboard多个CGI脚本远程执行命令攻击" name_en_US="Zeroboard multiple CGI Scripts Remomte Code Execution" name_zh_CN="利用Zeroboard多个CGI脚本远程执行命令攻击" name_zh_TW="利用Zeroboard多個CGI腳本遠程執行命令攻擊" ruleid="20475" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft IE文件下载对话框控制恶意代码邮件引用" name_en_US="Microsoft IE File Download Dialog Box Control Mail" name_zh_CN="Microsoft IE文件下载对话框控制恶意代码邮件引用" name_zh_TW="Microsoft IE文件下載對話框控制惡意代碼郵件引用" ruleid="40786" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323130" module="0" name="upload.cgi脚本漏洞扫描探测" name_en_US="upload.cgi Script Vulnerability Detection" name_zh_CN="upload.cgi脚本漏洞扫描探测" name_zh_TW="upload.cgi腳本漏洞掃描探測" ruleid="30439" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="Webchat defines.php脚本漏洞扫描探测" name_en_US="Webchat defines.php Script Vulnerability Detection" name_zh_CN="Webchat defines.php脚本漏洞扫描探测" name_zh_TW="Webchat defines.php腳本漏洞掃描探測" ruleid="30438" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="phping脚本漏洞扫描探测" name_en_US="phping Script Vulnerability Detection" name_zh_CN="phping脚本漏洞扫描探测" name_zh_TW="phping腳本漏洞掃描探測" ruleid="30437" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="通过Web服务访问password.txt文件获取数据信息" name_en_US="Data Disclosure from password.txt via Web Service" name_zh_CN="通过Web服务访问password.txt文件获取数据信息" name_zh_TW="通過Web服務訪問password.txt文件獲取數據信息" ruleid="30435" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431998" module="0" name="Invision Board ipchat.php脚本漏洞扫描探测" name_en_US="Invision Board ipchat.php Script Vulnerability Detection" name_zh_CN="Invision Board ipchat.php脚本漏洞扫描探测" name_zh_TW="Invision Board ipchat.php腳本漏洞掃描探測" ruleid="30433" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="IRIX parse_xml.cgi脚本漏洞扫描探测" name_en_US="IRIX parse_xml.cgi Script Vulnerability Detection" name_zh_CN="IRIX parse_xml.cgi脚本漏洞扫描探测" name_zh_TW="IRIX parse_xml.cgi腳本漏洞掃描探測" ruleid="30432" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="DotBr system.php3脚本漏洞扫描探测" name_en_US="DotBr system.php3 Script Vulnerability Detection" name_zh_CN="DotBr system.php3脚本漏洞扫描探测" name_zh_TW="DotBr system.php3腳本漏洞掃描探測" ruleid="30431" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="DotBr exec.php3脚本漏洞扫描探测" name_en_US="DotBr exec.php3 Script Vulnerability Detection" name_zh_CN="DotBr exec.php3脚本漏洞扫描探测" name_zh_TW="DotBr exec.php3腳本漏洞掃描探測" ruleid="30430" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft IE JavaScript OnLoad处理器畸形代码邮件引用" name_en_US="Microsoft IE JavaScript OnLoad Processor Vulnerability Mail" name_zh_CN="Microsoft IE JavaScript OnLoad处理器畸形代码邮件引用" name_zh_TW="Microsoft IE JavaScript OnLoad處理器畸形代碼郵件引用" ruleid="40785" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Word畸形字体文档邮件附件传播" name_en_US="Microsoft Word Malformed Font Document Attachment Propagation" name_zh_CN="Microsoft Word畸形字体文档邮件附件传播" name_zh_TW="Microsoft Word畸形字體文檔郵件附件傳播" ruleid="40782" visible="true" />
			<rule action=" db  screen " enabled="true" group="78645302" module="0" name="SolarWinds TFTP服务程序目录遍历攻击" name_en_US="SolarWinds TFTP Server Directory Traversal" name_zh_CN="SolarWinds TFTP服务程序目录遍历攻击" name_zh_TW="SolarWinds TFTP服務程序目錄遍曆攻擊" ruleid="30296" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Amaya sendtemp.pl脚本漏洞扫描探测" name_en_US="Amaya sendtemp.pl Script Vulnerability Detection" name_zh_CN="Amaya sendtemp.pl脚本漏洞扫描探测" name_zh_TW="Amaya sendtemp.pl腳本漏洞掃描探測" ruleid="30187" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082475" module="0" name="MySQL/Windows CREATE FUNCTION功能引用特殊函数库攻击" name_en_US="MySQL/Windows CREATE FUNCTION Special Library Reference" name_zh_CN="MySQL/Windows CREATE FUNCTION功能引用特殊函数库攻击" name_zh_TW="MySQL/Windows CREATE FUNCTION功能引用特殊函數庫攻擊" ruleid="20520" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="EZShopper loadpage.cgi脚本漏洞扫描探测" name_en_US="EZShopper loadpage.cgi Script Vulnerability Detection" name_zh_CN="EZShopper loadpage.cgi脚本漏洞扫描探测" name_zh_TW="EZShopper loadpage.cgi腳本漏洞掃描探測" ruleid="30185" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/anot3.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/anot3.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/anot3.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/anot3.htr文件訪問" ruleid="30184" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/anot.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/anot.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/anot.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/anot.htr文件訪問" ruleid="30183" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr文件訪問" ruleid="30182" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp4.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp4.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp4.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp4.htr文件訪問" ruleid="30181" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082475" module="0" name="MySQL/Windows CREATE FUNCTION功能目录遍历加载任意库攻击" name_en_US="MySQL/Windows CREATE FUNCTION Directory Traversal Arbitrary Library Loading" name_zh_CN="MySQL/Windows CREATE FUNCTION功能目录遍历加载任意库攻击" name_zh_TW="MySQL/Windows CREATE FUNCTION功能目錄遍曆加載任意庫攻擊" ruleid="20521" visible="true" />
			<rule action=" db  screen " enabled="true" group="361824341" module="0" name="SNMP服务试图使用默认public口令访问" name_en_US="SNMP Service Access Attempt with Default public Password" name_zh_CN="SNMP服务试图使用默认public口令访问" name_zh_TW="SNMP服務試圖使用默認public口令訪問" ruleid="40301" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641638" module="0" name="Cisco IOS Web配置接口绕过安全认证攻击" name_en_US="Cisco IOS Web Config Interface Authentication Bypass" name_zh_CN="Cisco IOS Web配置接口绕过安全认证攻击" name_zh_TW="Cisco IOS Web配置接口繞過安全認證攻擊" ruleid="40306" visible="true" />
			<rule action=" db  screen " enabled="true" group="368052246" module="0" name="Apple Mac OS X AppleFileServer FPLoginExt远程拒绝服务攻击" name_en_US="Apple Mac OS X AppleFileServer FPLoginExt Remote Denial of Service" name_zh_CN="Apple Mac OS X AppleFileServer FPLoginExt远程拒绝服务攻击" name_zh_TW="Apple Mac OS X AppleFileServer FPLoginExt遠程拒絕服務攻擊" ruleid="10143" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="CdomainFree whois_raw.cgi脚本漏洞扫描探测" name_en_US="CdomainFree whois_raw.cgi Script Vulnerability Detection" name_zh_CN="CdomainFree whois_raw.cgi脚本漏洞扫描探测" name_zh_TW="CdomainFree whois_raw.cgi腳本漏洞掃描探測" ruleid="30189" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用WebSPIRS webspirs.cgi脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via WebSPIRS webspirs.cgi Script Vulnerability" name_zh_CN="利用WebSPIRS webspirs.cgi脚本漏洞远程遍历目录" name_zh_TW="利用WebSPIRS webspirs.cgi腳本漏洞遠程遍曆目錄" ruleid="30188" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254886" module="0" name="WS_FTP Server CPWD远程缓冲区溢出攻击" name_en_US="WS_FTP Server CPWD Remote Buffer Overflow" name_zh_CN="WS_FTP Server CPWD远程缓冲区溢出攻击" name_zh_TW="WS_FTP Server CPWD遠程緩沖區溢出攻擊" ruleid="20271" visible="true" />
			<rule action=" db  screen " enabled="true" group="78645274" module="0" name="3Com 3CDaemon TFTP保留设备名拒绝服务攻击" name_en_US="3Com 3CDaemon TFTP Reserved Device Name Denial of Service" name_zh_CN="3Com 3CDaemon TFTP保留设备名拒绝服务攻击" name_zh_TW="3Com 3CDaemon TFTP保留設備名拒絕服務攻擊" ruleid="10142" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080678" module="0" name="Microsoft SQL Server/MSDE扩展存储过程xp_displayparamstmt远程缓冲区溢出攻击" name_en_US="Microsoft SQL Server/MSDE Exteneded Stored Procedure xp_displayparamstmt Remote Buffer Overflow" name_zh_CN="Microsoft SQL Server/MSDE扩展存储过程xp_displayparamstmt远程缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server/MSDE擴展存儲過程xp_displayparamstmt遠程緩沖區溢出攻擊" ruleid="20274" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080678" module="0" name="Microsoft SQL Server/MSDE扩展存储过程xp_setsqlsecurity远程缓冲区溢出攻击" name_en_US="Microsoft SQL Server/MSDE Extended Stored Procedure xp_setsqlsecurity Remote Buffer Overflow" name_zh_CN="Microsoft SQL Server/MSDE扩展存储过程xp_setsqlsecurity远程缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server/MSDE擴展存儲過程xp_setsqlsecurity遠程緩沖區溢出攻擊" ruleid="20275" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080678" module="0" name="Microsoft SQL Server RAISERROR语句缓冲区溢出攻击" name_en_US="Microsoft SQL Server RAISERROR Statement Buffer Overflow" name_zh_CN="Microsoft SQL Server RAISERROR语句缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server RAISERROR語句緩沖區溢出攻擊" ruleid="20276" visible="true" />
			<rule action=" db  screen " enabled="true" group="139460902" module="0" name="Qualcomm qpopper AUTH命令远程缓冲区溢出攻击" name_en_US="Qualcomm qpopper AUTH Command Remote Buffer Overflow" name_zh_CN="Qualcomm qpopper AUTH命令远程缓冲区溢出攻击" name_zh_TW="Qualcomm qpopper AUTH命令遠程緩沖區溢出攻擊" ruleid="20278" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MyBulletinBoard search.php远程SQL注入攻击" name_en_US="MyBulletinBoard search.php Remote SQL Injection" name_zh_CN="MyBulletinBoard search.php远程SQL注入攻击" name_zh_TW="MyBulletinBoard search.php遠程SQL注入攻擊" ruleid="20524" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Woltlab Burning Board modcp.php远程SQL注入攻击" name_en_US="Woltlab Burning Board modcp.php Remote Code Injection" name_zh_CN="Woltlab Burning Board modcp.php远程SQL注入攻击" name_zh_TW="Woltlab Burning Board modcp.php遠程SQL注入攻擊" ruleid="20525" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用NCSA nph-test-cgi脚本漏洞远程浏览目录" name_en_US="Remote Directory Browsing via NCSA nph-test-cgi Script Vulnerability" name_zh_CN="利用NCSA nph-test-cgi脚本漏洞远程浏览目录" name_zh_TW="利用NCSA nph-test-cgi腳本漏洞遠程浏覽目錄" ruleid="20076" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.cachefsd远程堆溢出攻击" name_en_US="Solaris rpc.cachefsd Remote Heap Overflow" name_zh_CN="Solaris rpc.cachefsd远程堆溢出攻击" name_zh_TW="Solaris rpc.cachefsd遠程堆溢出攻擊" ruleid="20075" visible="true" />
			<rule action=" db  screen " enabled="true" group="71305242" module="0" name="Microsoft Windows 2000 telnet服务器远程拒绝服务攻击" name_en_US="Microsoft Windows 2000 telnet Server Remote Denial of Service" name_zh_CN="Microsoft Windows 2000 telnet服务器远程拒绝服务攻击" name_zh_TW="Microsoft Windows 2000 telnet服務器遠程拒絕服務攻擊" ruleid="10147" visible="true" />
			<rule action=" db  screen " enabled="true" group="138414106" module="0" name="Solaris Telnet服务远程Ctrl-D字符拒绝服务攻击" name_en_US="Solaris Telnet Service Remote Ctrl-D Character Denial of Service" name_zh_CN="Solaris Telnet服务远程Ctrl-D字符拒绝服务攻击" name_zh_TW="Solaris Telnet服務遠程Ctrl-D字符拒絕服務攻擊" ruleid="10146" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616794" module="0" name="传奇假人拒绝服务攻击" name_en_US="Legend Dummy Denial of Service" name_zh_CN="传奇假人拒绝服务攻击" name_zh_TW="傳奇假人拒絕服務攻擊" ruleid="10189" visible="false" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用CGISCRIPT.NET csChatRBox.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CGISCRIPT.NET csChatRBox.cgi Script Vulnerability" name_zh_CN="利用CGISCRIPT.NET csChatRBox.cgi脚本漏洞远程执行命令" name_zh_TW="利用CGISCRIPT.NET csChatRBox.cgi腳本漏洞遠程執行命令" ruleid="20079" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Infector 1.7木马通信" name_en_US="Trojan Infector 1.7 Communication on Windows" name_zh_CN="Windows系统下Infector 1.7木马通信" name_zh_TW="Windows系統下Infector 1.7木馬通信" ruleid="40768" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.323协议Calling Party Number数据畸形" name_en_US="H.323 Protocol Calling Party Number Malformed Data" name_zh_CN="H.323协议Calling Party Number数据畸形" name_zh_TW="H.323協議Calling Party Number數據畸形" ruleid="10149" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480574" module="0" name="漏洞扫描器Nessus扫描探测FTP漏洞" name_en_US="Nessus Scanner Detecting FTP Vulnerability" name_zh_CN="漏洞扫描器Nessus扫描探测FTP漏洞" name_zh_TW="漏洞掃描器Nessus掃描探測FTP漏洞" ruleid="30508" visible="true" />
			<rule action=" db  screen " enabled="true" group="68158543" module="0" name="Windows系统下W32.Stuxnet 蠕虫活动" name_en_US="Worm W32.Stuxnet on Windows" name_zh_CN="Windows系统下W32.Stuxnet 蠕虫活动" name_zh_TW="Windows系統下W32.Stuxnet 蠕蟲活動" ruleid="40948" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161615" module="0" name="后门：AgentInfo木马客户命令" name_en_US="Backdoor: AgentInfo Trojan Client Command" name_zh_CN="后门：AgentInfo木马客户命令" name_zh_TW="後門：AgentInfo木馬客戶命令" ruleid="40949" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA License Client/Server GBR请求缓冲区溢出攻击" name_en_US="CA License Client/Server GBR Request Buffer Overflow" name_zh_CN="CA License Client/Server GBR请求缓冲区溢出攻击" name_zh_TW="CA License Client/Server GBR請求緩沖區溢出攻擊" ruleid="20482" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Furax木马通信" name_en_US="Trojan Furax Communication on Windows" name_zh_CN="Windows系统下Furax木马通信" name_zh_TW="Windows系統下Furax木馬通信" ruleid="40760" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="利用HP Web Jetadmin CGI脚本漏洞及配置文件获取信息" name_en_US="Information Disclosure via HP Web Jetadmin CGI Script Vulnerability and Configuration Files" name_zh_CN="利用HP Web Jetadmin CGI脚本漏洞及配置文件获取信息" name_zh_TW="利用HP Web Jetadmin CGI腳本漏洞及配置文件獲取信息" ruleid="30502" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323130" module="0" name="psinclude.cgi脚本漏洞扫描探测" name_en_US="psinclude.cgi Script Vulnerability Detection" name_zh_CN="psinclude.cgi脚本漏洞扫描探测" name_zh_TW="psinclude.cgi腳本漏洞掃描探測" ruleid="30501" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Lotus Domino文件名加点获取脚本源代码攻击" name_en_US="Lotus Domino Filename (appended with dot) Script Source Code Disclosure" name_zh_CN="Lotus Domino文件名加点获取脚本源代码攻击" name_zh_TW="Lotus Domino文件名加點獲取腳本源代碼攻擊" ruleid="30500" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431998" module="0" name="漏洞扫描器Nessus扫描探测CGI漏洞" name_en_US="Nessus Scanner CGI Vulnerability Detection" name_zh_CN="漏洞扫描器Nessus扫描探测CGI漏洞" name_zh_TW="漏洞掃描器Nessus掃描探測CGI漏洞" ruleid="30507" visible="true" />
			<rule action=" db  screen " enabled="true" group="162531390" module="0" name="Samba远程畸形路径名导致目录遍历攻击" name_en_US="Samba Remote Malformed Path Name Directory Traversal" name_zh_CN="Samba远程畸形路径名导致目录遍历攻击" name_zh_TW="Samba遠程畸形路徑名導致目錄遍曆攻擊" ruleid="30506" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315070" module="0" name="利用Turbo Seek tseekdir.cgi脚本漏洞读取文件" name_en_US="File Reading via Turbo Seek tseekdir.cgi Script Vulnerability" name_zh_CN="利用Turbo Seek tseekdir.cgi脚本漏洞读取文件" name_zh_TW="利用Turbo Seek tseekdir.cgi腳本漏洞讀取文件" ruleid="30505" visible="true" />
			<rule action=" db  screen " enabled="true" group="163610685" module="0" name="CVS未文档化命令获取信息攻击" name_en_US="CVS Undocument Command Information Disclosure" name_zh_CN="CVS未文档化命令获取信息攻击" name_zh_TW="CVS未文檔化命令獲取信息攻擊" ruleid="30504" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Meet The Lamer木马通信" name_en_US="Trojan Meet The Lamer Communication on Windows" name_zh_CN="Windows系统下Meet The Lamer木马通信" name_zh_TW="Windows系統下Meet The Lamer木馬通信" ruleid="40540" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Michal木马通信" name_en_US="Trojan Michal Communication on Windows" name_zh_CN="Windows系统下Michal木马通信" name_zh_TW="Windows系統下Michal木馬通信" ruleid="40541" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Microspy木马通信" name_en_US="Trojan Microspy Communication on Windows" name_zh_CN="Windows系统下Microspy木马通信" name_zh_TW="Windows系統下Microspy木馬通信" ruleid="40542" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Yahoo! Music Jukebox datagrid.dll ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Music Jukebox datagrid.dll ActiveX Control Remote Stack Overflow" name_zh_CN="Yahoo! Music Jukebox datagrid.dll ActiveX控件远程栈溢出攻击" name_zh_TW="Yahoo! Music Jukebox datagrid.dll ActiveX控件遠程棧溢出攻擊" ruleid="20952" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Mini Oblivion木马通信" name_en_US="Trojan Mini Oblivion Communication on Windows" name_zh_CN="Windows系统下Mini Oblivion木马通信" name_zh_TW="Windows系統下Mini Oblivion木馬通信" ruleid="40544" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Mneah Trojan木马通信" name_en_US="Trojan Mneah Trojan Communication on Windows" name_zh_CN="Windows系统下Mneah Trojan木马通信" name_zh_TW="Windows系統下Mneah Trojan木馬通信" ruleid="40545" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下MoonPie木马通信" name_en_US="Trojan MoonPie Communication on Windows" name_zh_CN="Windows系统下MoonPie木马通信" name_zh_TW="Windows系統下MoonPie木馬通信" ruleid="40546" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Mosucker木马通信" name_en_US="Trojan Mosucker Communication on Windows" name_zh_CN="Windows系统下Mosucker木马通信" name_zh_TW="Windows系統下Mosucker木馬通信" ruleid="40547" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Net Administrator木马通信" name_en_US="Trojan Net Administrator Communication on Windows" name_zh_CN="Windows系统下Net Administrator木马通信" name_zh_TW="Windows系統下Net Administrator木馬通信" ruleid="40548" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Net Metropolitan木马通信" name_en_US="Trojan Net Metropolitan Communication on Windows" name_zh_CN="Windows系统下Net Metropolitan木马通信" name_zh_TW="Windows系統下Net Metropolitan木馬通信" ruleid="40549" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="Phorum系列脚本漏洞扫描探测" name_en_US="PhorumSeries Script Vulnerability Detection" name_zh_CN="Phorum系列脚本漏洞扫描探测" name_zh_TW="Phorum系列腳本漏洞掃描探測" ruleid="30293" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Hosting Controller dsnmanager.asp脚本漏洞扫描探测" name_en_US="Hosting Controller dsnmanager.asp Script Vulnerability Detection" name_zh_CN="Hosting Controller dsnmanager.asp脚本漏洞扫描探测" name_zh_TW="Hosting Controller dsnmanager.asp腳本漏洞掃描探測" ruleid="30292" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Hosting Controller browse.asp脚本漏洞扫描利用" name_en_US="Hosting Controller browse.asp Script Vulnerability Detection" name_zh_CN="Hosting Controller browse.asp脚本漏洞扫描利用" name_zh_TW="Hosting Controller browse.asp腳本漏洞掃描利用" ruleid="30291" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="mcNews header.php脚本漏洞扫描探测" name_en_US="mcNews header.php Script Vulnerability Detection" name_zh_CN="mcNews header.php脚本漏洞扫描探测" name_zh_TW="mcNews header.php腳本漏洞掃描探測" ruleid="30290" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="vpopmail-CGIApps vadddomain脚本漏洞扫描探测" name_en_US="vpopmail-CGIApps vadddomain Script Vulnerability Detection" name_zh_CN="vpopmail-CGIApps vadddomain脚本漏洞扫描探测" name_zh_TW="vpopmail-CGIApps vadddomain腳本漏洞掃描探測" ruleid="30297" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Symantec Backup Exec调度程序ActiveX栈溢出攻击" name_en_US="Symantec Backup Exec Scheduler ActiveX stack overflow" name_zh_CN="Symantec Backup Exec调度程序ActiveX栈溢出攻击" name_zh_TW="Symantec Backup Exec調度程序ActiveX棧溢出攻擊" ruleid="20957" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="AdMentor系列脚本漏洞扫描探测" name_en_US="AdMentor Series Script Vulnerability Detection" name_zh_CN="AdMentor系列脚本漏洞扫描探测" name_zh_TW="AdMentor系列腳本漏洞掃描探測" ruleid="30295" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="myPHPNuke phptonuke.php脚本漏洞扫描探测" name_en_US="myPHPNuke phptonuke.php Script Vulnerability Detection" name_zh_CN="myPHPNuke phptonuke.php脚本漏洞扫描探测" name_zh_TW="myPHPNuke phptonuke.php腳本漏洞掃描探測" ruleid="30294" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用avatar.php脚本漏洞遍历目录" name_en_US="Directory Traversal via avatar.php Script Vulnerability" name_zh_CN="利用avatar.php脚本漏洞遍历目录" name_zh_TW="利用avatar.php腳本漏洞遍曆目錄" ruleid="30299" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="金山毒霸在线升级模块ActiveX控件远程堆溢出攻击" name_en_US="Kingsoft Online Upgrade Module ActiveX Control Remote Heap Overflow" name_zh_CN="金山毒霸在线升级模块ActiveX控件远程堆溢出攻击" name_zh_TW="金山毒霸在線升級模塊ActiveX控件遠程堆溢出攻擊" ruleid="20956" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Windows ASN.1库BER解码漏洞SMTP协议攻击" name_en_US="Microsoft Windows ASN.1 Base BER Decoding Vulnerability SMTP Protocol Attack" name_zh_CN="Microsoft Windows ASN.1库BER解码漏洞SMTP协议攻击" name_zh_TW="Microsoft Windows ASN.1庫BER解碼漏洞SMTP協議攻擊" ruleid="40788" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Visual Studio .NET msdds.dll远程代码执行攻击" name_en_US="Microsoft Visual Studio .NET msdds.dll Remote Code Execution Attack" name_zh_CN="Microsoft Visual Studio .NET msdds.dll远程代码执行攻击" name_zh_TW="Microsoft Visual Studio .NET msdds.dll遠程代碼執行攻擊" ruleid="40789" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="MALWARE Speed-runner.com A类木马网络数据通信" name_en_US="MALWARE Speed-runner.com Fake Speed Test User-Agent SRInstaller" name_zh_CN="MALWARE Speed-runner.com A类木马网络数据通信" name_zh_TW="MALWARE Speed-runner.com A類木馬網絡數據通信" ruleid="40836" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Microsoft Visual Studio .NET Crystal Reports 漏洞" name_en_US="HTTP: Microsoft Visual Studio .NET Crystal Reports Vulnerability" name_zh_CN="HTTP: Microsoft Visual Studio .NET Crystal Reports 漏洞" name_zh_TW="HTTP: Microsoft Visual Studio .NET Crystal Reports 漏洞" ruleid="29124" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: SHOUTcast Filename 格式字符串漏洞" name_en_US="HTTP: SHOUTcast Filename Format String Vulnerability" name_zh_CN="HTTP: SHOUTcast Filename 格式字符串漏洞" name_zh_TW="HTTP: SHOUTcast Filename 格式字符串漏洞" ruleid="29123" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP:  HP OpenView Network Node Manager HTTP Handling 缓冲区溢出漏洞" name_en_US="HTTP:  HP OpenView Network Node Manager HTTP Handling Buffer Overflow" name_zh_CN="HTTP:  HP OpenView Network Node Manager HTTP Handling 缓冲区溢出漏洞" name_zh_TW="HTTP:  HP OpenView Network Node Manager HTTP Handling 緩沖區溢出漏洞" ruleid="29120" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="股票行情分析操作软件东菀证券网通用户版行情系统用户登录" name_en_US="Stock Market Analysis Software dongwan 	Securities Netcom 
Quote System User Login" name_zh_CN="股票行情分析操作软件东菀证券网通用户版行情系统用户登录" name_zh_TW="股票行情分析操作軟件東菀證券網通用戶版行情系統用戶登錄" ruleid="50273" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPAdmin ASP自定义" name_en_US="ASPAdmin ASP Custom Definition" name_zh_CN="ASPAdmin ASP自定义" name_zh_TW="ASPAdmin ASP自定義" ruleid="40972" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537945" module="0" name="FTP执行命令" name_en_US="FTP Exec CMD" name_zh_CN="FTP执行命令" name_zh_TW="FTP執行命令" ruleid="50271" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780825" module="0" name="SMTP发邮件" name_en_US="SMTP Send Mail" name_zh_CN="SMTP发邮件" name_zh_TW="SMTP發郵件" ruleid="50270" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440793" module="0" name="RTSP流媒体协议实时数据传输" name_en_US="RTSP streaming media in real-time data transmission" name_zh_CN="RTSP流媒体协议实时数据传输" name_zh_TW="RTSP流媒體協議實時數據傳輸" ruleid="50277" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-2019 IE不安全库加载漏洞" name_en_US="CVE-2011-2019 Internet Explorer Insecure Library Loading Vulnerability(MS11-099)" name_zh_CN="CVE-2011-2019 IE不安全库加载漏洞" name_zh_TW="CVE-2011-2019 IE不安全庫加載漏洞" ruleid="21334" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="HTTP:  远程IIS服务器名字欺骗" name_en_US="HTTP:  Remote IIS Server Name Spoof" name_zh_CN="HTTP:  远程IIS服务器名字欺骗" name_zh_TW="HTTP:  遠程IIS服務器名字欺騙" ruleid="29128" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641654" module="0" name="Novell GroupWise GWWEB.EXE程序漏洞扫描利用" name_en_US="Novell GroupWise GWWEB.EXE Detection" name_zh_CN="Novell GroupWise GWWEB.EXE程序漏洞扫描利用" name_zh_TW="Novell GroupWise GWWEB.EXE程序漏洞掃描利用" ruleid="30341" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256678" module="0" name="Serv-U FTP远程目录遍历攻击" name_en_US="Serv-U FTP Remote Directory Traversal" name_zh_CN="Serv-U FTP远程目录遍历攻击" name_zh_TW="Serv-U FTP遠程目錄遍曆攻擊" ruleid="30340" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="apexec.pl脚本漏洞扫描利用" name_en_US="apexec.pl Script Vulnerability Detection" name_zh_CN="apexec.pl脚本漏洞扫描利用" name_zh_TW="apexec.pl腳本漏洞掃描利用" ruleid="30343" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3396 Microsoft PowerPoint不安全库加载远程代码执行漏洞" name_en_US="CVE-2011-3396 Microsoft PowerPoint Insecure Library Loading Remote Code Execution Vulnerability(MS11-094)" name_zh_CN="CVE-2011-3396 Microsoft PowerPoint不安全库加载远程代码执行漏洞" name_zh_TW="CVE-2011-3396 Microsoft PowerPoint不安全庫加載遠程代碼執行漏洞" ruleid="21335" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Allaire ColdFusion application.cfm脚本漏洞扫描探测" name_en_US="Allaire ColdFusion application.cfm Script Vulnerability Detection" name_zh_CN="Allaire ColdFusion application.cfm脚本漏洞扫描探测" name_zh_TW="Allaire ColdFusion application.cfm腳本漏洞掃描探測" ruleid="30345" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423925" module="0" name="Allaire ColdFusion 4.0x cfcache.map脚本漏洞扫描探测" name_en_US="Allaire ColdFusion 4.0x cfcache.map Script Vulnerability Detection" name_zh_CN="Allaire ColdFusion 4.0x cfcache.map脚本漏洞扫描探测" name_zh_TW="Allaire ColdFusion 4.0x cfcache.map腳本漏洞掃描探測" ruleid="30344" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Apache::ASP source.asp脚本漏洞扫描探测" name_en_US="Apache::ASP source.asp Script Vulnerability Detection" name_zh_CN="Apache::ASP source.asp脚本漏洞扫描探测" name_zh_TW="Apache::ASP source.asp腳本漏洞掃描探測" ruleid="30347" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="股票行情分析操作软件东莞证券大智慧用户登录" name_en_US="Stock Market Analysis Software dongwan Dazhihui User Login" name_zh_CN="股票行情分析操作软件东莞证券大智慧用户登录" name_zh_TW="股票行情分析操作軟件東莞證券大智慧用戶登錄" ruleid="50272" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641654" module="0" name="NetWare Web Server 2.x convert.bas脚本漏洞扫描利用" name_en_US="NetWare Web Server 2.x convert.bas Script Vulnerability Detection" name_zh_CN="NetWare Web Server 2.x convert.bas脚本漏洞扫描利用" name_zh_TW="NetWare Web Server 2.x convert.bas腳本漏洞掃描利用" ruleid="30349" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="端口扫描器Superscan PING操作" name_en_US="Port Scanner Superscan PING Operation" name_zh_CN="端口扫描器Superscan PING操作" name_zh_TW="端口掃描器Superscan PING操作" ruleid="30348" visible="true" />
			<rule action=" db  screen " enabled="true" group="233865305" module="0" name="台湾地区IP网络数据通信" name_en_US="NetWork Communication with IP From TaiWan Province" name_zh_CN="台湾地区IP网络数据通信" name_zh_TW="台灣地區IP網絡數據通信" ruleid="50276" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223061" module="0" name="HTTP协议CONNECT遂道功能连接访问" name_en_US="HTTP Protocol CONNECT Tunnel Feature Connection Access" name_zh_CN="HTTP协议CONNECT遂道功能连接访问" name_zh_TW="HTTP協議CONNECT遂道功能連接訪問" ruleid="50181" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="网络代理软件http-tunnel数据通信" name_en_US="Network Agent Software http-tunnel Data Communication" name_zh_CN="网络代理软件http-tunnel数据通信" name_zh_TW="網絡代理軟件http-tunnel數據通信" ruleid="50180" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="无界软件获取代理服务器ip" name_en_US="WuJie SoftWare Get Proxy Server IP" name_zh_CN="无界软件获取代理服务器ip" name_zh_TW="無界軟件獲取代理服務器ip" ruleid="50183" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="自由门软件获取代理服务器ip" name_en_US="FreeGate SoftWare Get Proxy Server IP" name_zh_CN="自由门软件获取代理服务器ip" name_zh_TW="自由門軟件獲取代理服務器ip" ruleid="50182" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="Windows系统Nimda蠕虫利用Unicode漏洞传播" name_en_US="Worm Nimda Propagation on Windows via Unicode Vulnerability" name_zh_CN="Windows系统Nimda蠕虫利用Unicode漏洞传播" name_zh_TW="Windows系統Nimda蠕蟲利用Unicode漏洞傳播" ruleid="40438" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745877" module="1" name="股票行情分析操作软件天一证券用户登录" name_en_US="Stock Market Analtsis Software Tianyi Securities User Login" name_zh_CN="股票行情分析操作软件天一证券用户登录" name_zh_TW="股票行情分析操作軟件天一證券用戶登錄" ruleid="50187" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="P2P文件共享工具迅雷通过HTTP协议多线程文件下载" name_en_US="P2P File Sharing Tool Xunlei Multi-thread File Downloading Through HTTP Protocol" name_zh_CN="P2P文件共享工具迅雷通过HTTP协议多线程文件下载" name_zh_TW="P2P文件共享工具迅雷通過HTTP協議多線程文件下載" ruleid="50186" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="P2P文件共享工具迅雷通过HTTP协议单线程文件下载" name_en_US="P2P File Sharing Tool Xunlei Single Thread File Downloading Through HTTP Protocol" name_zh_CN="P2P文件共享工具迅雷通过HTTP协议单线程文件下载" name_zh_TW="P2P文件共享工具迅雷通過HTTP協議單線程文件下載" ruleid="50189" visible="true" />
			<rule action=" db  screen " enabled="false" group="99618895" module="0" name="Remote Administrator远程控制软件建立连接" name_en_US="Remote Control Software Remote Administrator Connection" name_zh_CN="Remote Administrator远程控制软件建立连接" name_zh_TW="Remote Administrator遠程控制軟件建立連接" ruleid="40435" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BackOrifice 2000木马客户端连接服务端" name_en_US="Trojan BackOrifice 2000 Client Connection to Server on Windows" name_zh_CN="Windows系统下BackOrifice 2000木马客户端连接服务端" name_zh_TW="Windows系統下BackOrifice 2000木馬客戶端連接服務端" ruleid="40436" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352843" module="0" name="Windows系统下Happy99邮件蠕虫活动" name_en_US="Happy99 Mail Virus on Windows" name_zh_CN="Windows系统下Happy99邮件蠕虫活动" name_zh_TW="Windows系統下Happy99郵件蠕蟲活動" ruleid="40437" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BackOrifice 1.2木马PING操作" name_en_US="Trojan BackOrifice 1.2 PING Operation on Windows" name_zh_CN="Windows系统下BackOrifice 1.2木马PING操作" name_zh_TW="Windows系統下BackOrifice 1.2木馬PING操作" ruleid="40430" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440797" module="0" name="HTTP服务基本登录认证" name_en_US="HTTP Service Basic Login Authentication" name_zh_CN="HTTP服务基本登录认证" name_zh_TW="HTTP服務基本登錄認證" ruleid="40432" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="黑基ASP大马v2009 Webshell上传文件" name_en_US="Heiji ASP Dama v2009 Webshell Upload Files" name_zh_CN="黑基ASP大马v2009 Webshell上传文件" name_zh_TW="黑基ASP大馬v2009 Webshell上傳文件" ruleid="40984" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0162 Microsoft .NET Framework缓冲区分配漏洞(MS12-034)" name_en_US="CVE-2012-0162 Microsoft .NET Framework Buffer Allocation Vulnerability(MS12-034)" name_zh_CN="CVE-2012-0162 Microsoft .NET Framework缓冲区分配漏洞(MS12-034)" name_zh_TW="CVE-2012-0162 Microsoft .NET Framework緩沖區分配漏洞(MS12-034)" ruleid="22258" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0165 Microsoft GDI+记录类型漏洞(MS12-034)" name_en_US="CVE-2012-0165 Microsoft GDI+ Record Type Vulnerability (MS12-034)" name_zh_CN="CVE-2012-0165 Microsoft GDI+记录类型漏洞(MS12-034)" name_zh_TW="CVE-2012-0165 Microsoft GDI+記錄類型漏洞(MS12-034)" ruleid="22259" visible="true" />
			<rule action=" db  screen " enabled="true" group="205586517" module="0" name="TELNET服务root用户认证" name_en_US="TELNET Service root User Authentication" name_zh_CN="TELNET服务root用户认证" name_zh_TW="TELNET服務root用戶認證" ruleid="50051" visible="true" />
			<rule action=" db  screen " enabled="true" group="205586517" module="0" name="TELNET服务用户认证" name_en_US="TELNET Service User Authentication" name_zh_CN="TELNET服务用户认证" name_zh_TW="TELNET服務用戶認證" ruleid="50050" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows XP SMB建立连接" name_en_US="Windows XP SMB Connection Establishment" name_zh_CN="Windows XP SMB建立连接" name_zh_TW="Windows XP SMB建立連接" ruleid="50057" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问系统注册表" name_en_US="Windows SMB Accessing System Registry" name_zh_CN="Windows SMB访问系统注册表" name_zh_TW="Windows SMB訪問系統注冊表" ruleid="50055" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="TELNET服务用户执行su命令" name_en_US="su Command Execution in TELNET Service" name_zh_CN="TELNET服务用户执行su命令" name_zh_TW="TELNET服務用戶執行su命令" ruleid="50054" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0018 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-031)" name_en_US="CVE-2012-0018 Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-031)" name_zh_CN="CVE-2012-0018 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-031)" name_zh_TW="CVE-2012-0018 Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-031)" ruleid="22250" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0141 Microsoft Office Excel文件格式内存破坏漏洞(MS12-030)" name_en_US="CVE-2012-0141 Microsoft Office Excel File Format Memory Corruption Vulnerability(MS12-030)" name_zh_CN="CVE-2012-0141 Microsoft Office Excel文件格式内存破坏漏洞(MS12-030)" name_zh_TW="CVE-2012-0141 Microsoft Office Excel文件格式內存破壞漏洞(MS12-030)" ruleid="22251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0142 Microsoft Office Excel OBJECTLINK Record中存在文件格式内存破坏漏洞(MS12-030)" name_en_US="CVE-2012-0142 Microsoft Office Excel File Format Memory Corruption in OBJECTLINK Record Vulnerability(MS12-030)" name_zh_CN="CVE-2012-0142 Microsoft Office Excel OBJECTLINK Record中存在文件格式内存破坏漏洞(MS12-030)" name_zh_TW="CVE-2012-0142 Microsoft Office Excel OBJECTLINK Record中存在文件格式內存破壞漏洞(MS12-030)" ruleid="22252" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0143 Microsoft Office Excel通过修改多个字节导致内存破坏漏洞(MS12-030)" name_en_US="CVE-2012-0143 Microsoft Office Excel Memory Corruption Using Various Modified Bytes Vulnerability(MS12-030)" name_zh_CN="CVE-2012-0143 Microsoft Office Excel通过修改多个字节导致内存破坏漏洞(MS12-030)" name_zh_TW="CVE-2012-0143 Microsoft Office Excel通過修改多個字節導致內存破壞漏洞(MS12-030)" ruleid="22253" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0159 Microsoft TrueType字体解析漏洞(MS12-034)" name_en_US="CVE-2012-0159 Microsoft TrueType Font Parsing Vulnerability(MS12-034)" name_zh_CN="CVE-2012-0159 Microsoft TrueType字体解析漏洞(MS12-034)" name_zh_TW="CVE-2012-0159 Microsoft TrueType字體解析漏洞(MS12-034)" ruleid="22254" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0184 Microsoft Office Excel SXLI Record内存破坏漏洞(MS12-030)" name_en_US="CVE-2012-0184 Microsoft Office Excel SXLI Record Memory Corruption Vulnerability(MS12-030)" name_zh_CN="CVE-2012-0184 Microsoft Office Excel SXLI Record内存破坏漏洞(MS12-030)" name_zh_TW="CVE-2012-0184 Microsoft Office Excel SXLI Record內存破壞漏洞(MS12-030)" ruleid="22255" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0185 Microsoft Office Excel MergeCells Record堆溢出漏洞(MS12-030)" name_en_US="CVE-2012-0185 Microsoft Office Excel MergeCells Record Heap Overflow Vulnerability(MS12-030)" name_zh_CN="CVE-2012-0185 Microsoft Office Excel MergeCells Record堆溢出漏洞(MS12-030)" name_zh_TW="CVE-2012-0185 Microsoft Office Excel MergeCells Record堆溢出漏洞(MS12-030)" ruleid="22256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0183 Microsoft Word RTF不匹配漏洞(MS12-029)" name_en_US="CVE-2012-0183 Microsoft Word RTF Mismatch Vulnerability(MS12-029)" name_zh_CN="CVE-2012-0183 Microsoft Word RTF不匹配漏洞(MS12-029)" name_zh_TW="CVE-2012-0183 Microsoft Word RTF不匹配漏洞(MS12-029)" ruleid="22257" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Windows Task Scheduler权限提升漏洞" name_en_US="Vulnerability in Microsoft Windows Task Scheduler could allow for Elevation of Privilege" name_zh_CN="Microsoft Windows Task Scheduler权限提升漏洞" name_zh_TW="Microsoft Windows Task Scheduler權限提升漏洞" ruleid="21138" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Windows远程代码执行漏洞" name_en_US="Vulnerability in Microsoft Windows Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows远程代码执行漏洞" name_zh_TW="Microsoft Windows遠程代碼執行漏洞" ruleid="21139" visible="true" />
			<rule action=" db  screen " enabled="true" group="68419631" module="0" name="Microsoft Forefront UAG redirection Issue网络钓鱼" name_en_US="Microsoft Forefront UAG redirection Issue Allow Phishing" name_zh_CN="Microsoft Forefront UAG redirection Issue网络钓鱼" name_zh_TW="Microsoft Forefront UAG redirection Issue網絡釣魚" ruleid="21130" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Forefront UAG跨站脚本攻击绕过证书认证" name_en_US="Microsoft Forefront UAG XSS Allows Authentication Bypass" name_zh_CN="Microsoft Forefront UAG跨站脚本攻击绕过证书认证" name_zh_TW="Microsoft Forefront UAG跨站腳本攻擊繞過證書認證" ruleid="21131" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Forefront Unified Access Gateway 跨站脚本攻击" name_en_US="Forefront Unified Access Gateway XSS" name_zh_CN="Microsoft Forefront Unified Access Gateway 跨站脚本攻击" name_zh_TW="Microsoft Forefront Unified Access Gateway 跨站腳本攻擊" ruleid="21132" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Forefront UAG Signurl.asp 跨站脚本攻击" name_en_US="Microsoft Forefront UAG Signurl.asp XSS" name_zh_CN="Microsoft Forefront UAG Signurl.asp 跨站脚本攻击" name_zh_TW="Microsoft Forefront UAG Signurl.asp 跨站腳本攻擊" ruleid="21133" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Microsoft SMB Server Trans2 Pool 溢出攻击" name_en_US="Microsoft SMB Server Trans2 Pool Overflow" name_zh_CN="Microsoft SMB Server Trans2 Pool 溢出攻击" name_zh_TW="Microsoft SMB Server Trans2 Pool 溢出攻擊" ruleid="21134" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266858" module="0" name="IBM Lotus Domino WebMail信息泄露漏洞" name_en_US="IBM Lotus Domino WebMail Information Disclosure Vulnerability" name_zh_CN="IBM Lotus Domino WebMail信息泄露漏洞" name_zh_TW="IBM Lotus Domino WebMail信息泄露漏洞" ruleid="21135" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21136" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Publisher远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞" ruleid="21137" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="MySQL可疑数据库文件下载" name_en_US="MySQL DataBase Suspicious File Download" name_zh_CN="MySQL可疑数据库文件下载" name_zh_TW="MySQL可疑數據庫文件下載" ruleid="50447" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HTTP协议Cookie字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long Cookie Field Buffer Overflow" name_zh_CN="HTTP协议Cookie字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議Cookie字段超長緩沖區溢出攻擊" ruleid="20869" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546346" module="0" name="Novell Netmail IMAP服务AUTHENTICATE GSSAPI远程缓冲区溢出攻击" name_en_US="Novell Netmail IMAP Service AUTHENTICATE GSSAPI Remote Buffer Overflow" name_zh_CN="Novell Netmail IMAP服务AUTHENTICATE GSSAPI远程缓冲区溢出攻击" name_zh_TW="Novell Netmail IMAP服務AUTHENTICATE GSSAPI遠程緩沖區溢出攻擊" ruleid="20868" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Docebo全局变量远程文件包含攻击" name_en_US="Docebo global Variable Remote File Inclusion" name_zh_CN="Docebo全局变量远程文件包含攻击" name_zh_TW="Docebo全局變量遠程文件包含攻擊" ruleid="20719" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="phpCommunityCalendar多个脚本远程SQL注入攻击" name_en_US="phpCommunityCalendar multiple Scripts Remote SQL Injection" name_zh_CN="phpCommunityCalendar多个脚本远程SQL注入攻击" name_zh_TW="phpCommunityCalendar多個腳本遠程SQL注入攻擊" ruleid="20718" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="mIRC IRC URL缓冲区溢出攻击" name_en_US="mIRC IRC URL Buffer Overflow" name_zh_CN="mIRC IRC URL缓冲区溢出攻击" name_zh_TW="mIRC IRC URL緩沖區溢出攻擊" ruleid="20865" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="eIQnetworks Enterprise Security Analyzer拓扑服务器栈溢出攻击" name_en_US="eIQnetworks Enterprise Security Analyzer Topology Server Stack Overflow" name_zh_CN="eIQnetworks Enterprise Security Analyzer拓扑服务器栈溢出攻击" name_zh_TW="eIQnetworks Enterprise Security Analyzer拓撲服務器棧溢出攻擊" ruleid="20864" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HTTP协议Accept-Language字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long Accept-Language Field Buffer Overflow" name_zh_CN="HTTP协议Accept-Language字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議Accept-Language字段超長緩沖區溢出攻擊" ruleid="20867" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="vBulletin misc.php template名远程代码注入攻击" name_en_US="vBulletin misc.php template Remote Code Injection" name_zh_CN="vBulletin misc.php template名远程代码注入攻击" name_zh_TW="vBulletin misc.php template名遠程代碼注入攻擊" ruleid="20866" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="UltraVNC客户端缓冲区溢出攻击" name_en_US="UltraVNC Client Buffer Overflow" name_zh_CN="UltraVNC客户端缓冲区溢出攻击" name_zh_TW="UltraVNC客戶端緩沖區溢出攻擊" ruleid="20861" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器SIZE命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server SIZE Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器SIZE命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器SIZE命令超長參數遠程緩沖區溢出攻擊" ruleid="20860" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="XMPlay播放列表文件远程栈溢出攻击" name_en_US="XMPlay Playlist File Remote Stack Overflow" name_zh_CN="XMPlay播放列表文件远程栈溢出攻击" name_zh_TW="XMPlay播放列表文件遠程棧溢出攻擊" ruleid="20863" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="WordPress cache_lastpostdate远程命令执行攻击" name_en_US="WordPress cache_lastpostdate Remote Command Execution" name_zh_CN="WordPress cache_lastpostdate远程命令执行攻击" name_zh_TW="WordPress cache_lastpostdate遠程命令執行攻擊" ruleid="20862" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下WinRat木马通信" name_en_US="Trojan WinRat Communication on Windows" name_zh_CN="Windows系统下WinRat木马通信" name_zh_TW="Windows系統下WinRat木馬通信" ruleid="40607" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="PHP/FI mylog.phtml脚本漏洞扫描探测" name_en_US="PHP/FI mylog.phtml Script Vulnerability Detection" name_zh_CN="PHP/FI mylog.phtml脚本漏洞扫描探测" name_zh_TW="PHP/FI mylog.phtml腳本漏洞掃描探測" ruleid="40189" visible="true" />
			<rule action=" db  screen " enabled="true" group="166756421" module="0" name="由内网向外网发起X Window应用连接" name_en_US="X Windows Application Connection Initiated from Intranet to External Network" name_zh_CN="由内网向外网发起X Window应用连接" name_zh_TW="由內網向外網發起X Window應用連接" ruleid="40061" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Asterisk SIP响应远程拒绝服务攻击" name_en_US="Asterisk SIP Response Remote Denial of Service" name_zh_CN="Asterisk SIP响应远程拒绝服务攻击" name_zh_TW="Asterisk SIP響應遠程拒絕服務攻擊" ruleid="10178" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Linksys SPA941 \377字符拒绝服务攻击" name_en_US="Linksys SPA941 \377 Character Denial of Service" name_zh_CN="Linksys SPA941 \377字符拒绝服务攻击" name_zh_TW="Linksys SPA941 \377字符拒絕服務攻擊" ruleid="10179" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208090" module="0" name="Sambar Web服务器例子程序远程拒绝服务攻击" name_en_US="Sambar Web Server Sample Program Remote Denial of Service" name_zh_CN="Sambar Web服务器例子程序远程拒绝服务攻击" name_zh_TW="Sambar Web服務器例子程序遠程拒絕服務攻擊" ruleid="10170" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888154" module="0" name="CA BrightStor ARCserve Backup catirpc.exe远程拒绝服务攻击" name_en_US="CA BrightStor ARCserve Backup catirpc.exe Remote Denial of Service" name_zh_CN="CA BrightStor ARCserve Backup catirpc.exe远程拒绝服务攻击" name_zh_TW="CA BrightStor ARCserve Backup catirpc.exe遠程拒絕服務攻擊" ruleid="10171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="CA BrightStor ARCServe BackUp LGServer畸形数据长度拒绝服务攻击" name_en_US="CA BrightStor ARCServe BackUp LGServer Malformed Data Length Denial of Service" name_zh_CN="CA BrightStor ARCServe BackUp LGServer畸形数据长度拒绝服务攻击" name_zh_TW="CA BrightStor ARCServe BackUp LGServer畸形數據長度拒絕服務攻擊" ruleid="10172" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Systems Management Server远程拒绝服务攻击" name_en_US="Microsoft Systems Management Server Remote Denial of Service" name_zh_CN="Microsoft Systems Management Server远程拒绝服务攻击" name_zh_TW="Microsoft Systems Management Server遠程拒絕服務攻擊" ruleid="10173" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Cisco 7940/7960 Phone SIP INVITE消息远程拒绝服务攻击" name_en_US="Cisco 7940/7960 Phone SIP INVITE Message Remote Denial of Service" name_zh_CN="Cisco 7940/7960 Phone SIP INVITE消息远程拒绝服务攻击" name_zh_TW="Cisco 7940/7960 Phone SIP INVITE消息遠程拒絕服務攻擊" ruleid="10174" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Asterisk畸形SIP消息远程拒绝服务攻击" name_en_US="Asterisk Malformed SIP Message Remote Denial of Service" name_zh_CN="Asterisk畸形SIP消息远程拒绝服务攻击" name_zh_TW="Asterisk畸形SIP消息遠程拒絕服務攻擊" ruleid="10175" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Asterisk SIP畸形INVITE消息远程拒绝服务攻击" name_en_US="Asterisk SIP Malformed INVITE Message Remote Denial of Service" name_zh_CN="Asterisk SIP畸形INVITE消息远程拒绝服务攻击" name_zh_TW="Asterisk SIP畸形INVITE消息遠程拒絕服務攻擊" ruleid="10176" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Grandstream BudgeTone-200畸形INVITE消息远程拒绝服务攻击" name_en_US="Grandstream BudgeTone-200 Malformed INVITE Message Remote Denial of Service" name_zh_CN="Grandstream BudgeTone-200畸形INVITE消息远程拒绝服务攻击" name_zh_TW="Grandstream BudgeTone-200畸形INVITE消息遠程拒絕服務攻擊" ruleid="10177" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling Layout  内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling Layout Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling Layout  内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling Layout  內存破壞漏洞" ruleid="21246" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft Internet Explorer toStaticHTML 信息暴露漏洞" name_en_US="Microsoft Internet Explorer toStaticHTML information disclosure Vulnerability" name_zh_CN="Microsoft Internet Explorer toStaticHTML 信息暴露漏洞" name_zh_TW="Microsoft Internet Explorer toStaticHTML 信息暴露漏洞" ruleid="21247" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer oleaut32.dll 远程代码执行漏洞" name_en_US="Microsoft Internet Explorer oleaut32.dll Remote Code Execution Vulnerability" name_zh_CN="Microsoft Internet Explorer oleaut32.dll 远程代码执行漏洞" name_zh_TW="Microsoft Internet Explorer oleaut32.dll 遠程代碼執行漏洞" ruleid="21244" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling Link  内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling Link Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling Link  内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling Link  內存破壞漏洞" ruleid="21245" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Oracle GlassFish Server Administration Console远程身份验证绕过漏洞" name_en_US="Oracle GlassFish Server Administration Console Remote Authentication Bypass Vulnerability" name_zh_CN="Oracle GlassFish Server Administration Console远程身份验证绕过漏洞" name_zh_TW="Oracle GlassFish Server Administration Console遠程身份驗證繞過漏洞" ruleid="21243" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpBB db.php phpbb_root_path远程文件包含攻击" name_en_US="phpBB db.php phpbb_root_path Remote File Inclusion" name_zh_CN="phpBB db.php phpbb_root_path远程文件包含攻击" name_zh_TW="phpBB db.php phpbb_root_path遠程文件包含攻擊" ruleid="20663" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="AWStats awstats.pl多个参数远程执行命令攻击" name_en_US="AWStats awstats.pl multiple Parameters Remote Code Execution" name_zh_CN="AWStats awstats.pl多个参数远程执行命令攻击" name_zh_TW="AWStats awstats.pl多個參數遠程執行命令攻擊" ruleid="20662" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Vivvo Article Manager远程文件包含攻击" name_en_US="Vivvo Article Manager Remote File Inclusion" name_zh_CN="Vivvo Article Manager远程文件包含攻击" name_zh_TW="Vivvo Article Manager遠程文件包含攻擊" ruleid="20661" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Open Bulletin Board远程文件包含攻击" name_en_US="Open Bulletin Board Remote File Inclusion" name_zh_CN="Open Bulletin Board远程文件包含攻击" name_zh_TW="Open Bulletin Board遠程文件包含攻擊" ruleid="20660" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="AllMyGuests远程文件包含攻击" name_en_US="AllMyGuests Remote File Inclusion" name_zh_CN="AllMyGuests远程文件包含攻击" name_zh_TW="AllMyGuests遠程文件包含攻擊" ruleid="20667" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Claroline claro_init_local.inc.php远程文件包含攻击" name_en_US="Claroline claro_init_local.inc.php Remote File Inclusion" name_zh_CN="Claroline claro_init_local.inc.php远程文件包含攻击" name_zh_TW="Claroline claro_init_local.inc.php遠程文件包含攻擊" ruleid="20666" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling Layouts 内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling Layouts Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling Layouts 内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling Layouts 內存破壞漏洞" ruleid="21248" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Handling HTML+Time 内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling HTML+Time Memory Corruption Vulnerability" name_zh_CN="Microsoft Internet Explorer Handling HTML+Time 内存破坏漏洞" name_zh_TW="Microsoft Internet Explorer Handling HTML+Time 內存破壞漏洞" ruleid="21249" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="WEBInsta Limbo SERVER变量远程执行命令攻击" name_en_US="WEBInsta Limbo SERVER Variable Remote Command Execution" name_zh_CN="WEBInsta Limbo SERVER变量远程执行命令攻击" name_zh_TW="WEBInsta Limbo SERVER變量遠程執行命令攻擊" ruleid="20557" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="HP OpenView网络节点管理器远程命令执行攻击" name_en_US="HP OpenView Network Node Manager Remote Command Execution" name_zh_CN="HP OpenView网络节点管理器远程命令执行攻击" name_zh_TW="HP OpenView網絡節點管理器遠程命令執行攻擊" ruleid="20556" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="B2 b2edit.showposts.php脚本漏洞扫描探测" name_en_US="B2 b2edit.showposts.php Script Vulnerability Detection" name_zh_CN="B2 b2edit.showposts.php脚本漏洞扫描探测" name_zh_TW="B2 b2edit.showposts.php腳本漏洞掃描探測" ruleid="20003" visible="true" />
			<rule action="" enabled="true" group="95420975" module="0" name="Windows SMB Openuser操作" name_en_US="Windows SMB Openuser Operation " name_zh_CN="Windows SMB Openuser操作" name_zh_TW="Windows SMB Openuser操作" ruleid="70100" visible="false" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="WebGlimpse aglimpse脚本漏洞扫描探测" name_en_US="WebGlimpse aglimpse Script Vulnerability Detection" name_zh_CN="WebGlimpse aglimpse脚本漏洞扫描探测" name_zh_TW="WebGlimpse aglimpse腳本漏洞掃描探測" ruleid="20002" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用Mambo Server Function.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Mambo Server Function.php Script Vulnerability" name_zh_CN="利用Mambo Server Function.php脚本漏洞远程执行命令" name_zh_TW="利用Mambo Server Function.php腳本漏洞遠程執行命令" ruleid="20447" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMAP服务LIST命令畸形参数远程缓冲区溢出攻击" name_en_US="IMAP Service LIST Command Malformed Parameter Remote Buffer Overflow" name_zh_CN="IMAP服务LIST命令畸形参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務LIST命令畸形參數遠程緩沖區溢出攻擊" ruleid="20446" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497775" module="0" name="MDaemon SMTP服务程序多个命令远程缓冲区攻击" name_en_US="MDaemon SMTP Server multiple Commands Remote Buffer Attack" name_zh_CN="MDaemon SMTP服务程序多个命令远程缓冲区攻击" name_zh_TW="MDaemon SMTP服務程序多個命令遠程緩沖區攻擊" ruleid="20445" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="利用YaPiG add_comment.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via YaPiG add_comment.php Script Vulnerability" name_zh_CN="利用YaPiG add_comment.php脚本漏洞远程执行命令" name_zh_TW="利用YaPiG add_comment.php腳本漏洞遠程執行命令" ruleid="20444" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用Gallery save_photos.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Gallery save_photos.php Script Vulnerability" name_zh_CN="利用Gallery save_photos.php脚本漏洞远程执行命令" name_zh_TW="利用Gallery save_photos.php腳本漏洞遠程執行命令" ruleid="20443" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Slashcode admin.pl脚本漏洞扫描探测" name_en_US="Slashcode admin.pl Script Vulnerability Detection" name_zh_CN="Slashcode admin.pl脚本漏洞扫描探测" name_zh_TW="Slashcode admin.pl腳本漏洞掃描探測" ruleid="20001" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用CVSTrac filediff CGI程序漏洞远程执行命令" name_en_US="Remote Command Execution via CVSTrac filediff CGI Program Vulnerability" name_zh_CN="利用CVSTrac filediff CGI程序漏洞远程执行命令" name_zh_TW="利用CVSTrac filediff CGI程序漏洞遠程執行命令" ruleid="20441" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="X.Org X字体服务器内存破坏攻击" name_en_US="X.Org X Font Server Memory Corruption" name_zh_CN="X.Org X字体服务器内存破坏攻击" name_zh_TW="X.Org X字體服務器內存破壞攻擊" ruleid="20912" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="HP信息中心HPInfoDLL.dll ActiveX控件远程代码执行攻击" name_en_US="HP Information Center HPInfoDLL.dll ActiveX Control Remote Code Execution Attack" name_zh_CN="HP信息中心HPInfoDLL.dll ActiveX控件远程代码执行攻击" name_zh_TW="HP信息中心HPInfoDLL.dll ActiveX控件遠程代碼執行攻擊" ruleid="20919" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="Microsoft消息队列服务栈溢出攻击（MS07-065)" name_en_US="Microsoft Message Queuing Service Stack Overflow Attack（MS07-065)" name_zh_CN="Microsoft消息队列服务栈溢出攻击（MS07-065)" name_zh_TW="Microsoft消息隊列服務棧溢出攻擊（MS07-065)" ruleid="20918" visible="true" />
			<rule action=" db  screen " enabled="true" group="142639142" module="0" name="Sendmail WIZ命令远程执行命令攻击" name_en_US="Sendmail WIZ Remote Command Execution" name_zh_CN="Sendmail WIZ命令远程执行命令攻击" name_zh_TW="Sendmail WIZ命令遠程執行命令攻擊" ruleid="20449" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Icecast多个头结构字段远程溢出攻击" name_en_US="Icecast Multiple Head Structure Fields Remote Buffer Overflow" name_zh_CN="Icecast多个头结构字段远程溢出攻击" name_zh_TW="Icecast多個頭結構字段遠程溢出攻擊" ruleid="20448" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323129" module="0" name="D-Forum CGI脚本漏洞扫描探测" name_en_US="D-Forum CGI Script Vulnerability Detection" name_zh_CN="D-Forum CGI脚本漏洞扫描探测" name_zh_TW="D-Forum CGI腳本漏洞掃描探測" ruleid="30428" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256694" module="0" name="BisonFTP远程获取信息攻击" name_en_US="BisonFTP Remote Information Disclosure" name_zh_CN="BisonFTP远程获取信息攻击" name_zh_TW="BisonFTP遠程獲取信息攻擊" ruleid="30429" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323130" module="0" name="EditTag edittag.cgi脚本漏洞扫描探测" name_en_US="EditTag edittag.cgi Script Vulnerability Detection" name_zh_CN="EditTag edittag.cgi脚本漏洞扫描探测" name_zh_TW="EditTag edittag.cgi腳本漏洞掃描探測" ruleid="30420" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="MyRoom save_item.php脚本漏洞扫描探测" name_en_US="MyRoom save_item.php Script Vulnerability Detection" name_zh_CN="MyRoom save_item.php脚本漏洞扫描探测" name_zh_TW="MyRoom save_item.php腳本漏洞掃描探測" ruleid="30422" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="Mambo Site Server脚本漏洞扫描探测" name_en_US="Mambo Site Server Script Vulnerability Detection" name_zh_CN="Mambo Site Server脚本漏洞扫描探测" name_zh_TW="Mambo Site Server腳本漏洞掃描探測" ruleid="30423" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="myphpPageTool CGI脚本漏洞扫描探测" name_en_US="myphpPageTool CGI Script Vulnerability Detection" name_zh_CN="myphpPageTool CGI脚本漏洞扫描探测" name_zh_TW="myphpPageTool CGI腳本漏洞掃描探測" ruleid="30424" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="FileSeek FileSeek.cgi脚本漏洞扫描探测" name_en_US="FileSeek FileSeek.cgi Script Vulnerability Detection" name_zh_CN="FileSeek FileSeek.cgi脚本漏洞扫描探测" name_zh_TW="FileSeek FileSeek.cgi腳本漏洞掃描探測" ruleid="30426" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="emailreader_execute_on_each_page.inc.php脚本漏洞扫描探测" name_en_US="emailreader_execute_on_each_page.inc.php Script Vulnerability Detection" name_zh_CN="emailreader_execute_on_each_page.inc.php脚本漏洞扫描探测" name_zh_TW="emailreader_execute_on_each_page.inc.php腳本漏洞掃描探測" ruleid="30427" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Windows Mite木马通信" name_en_US="Trojan Windows Mite Communication on Windows" name_zh_CN="Windows系统下Windows Mite木马通信" name_zh_TW="Windows系統下Windows Mite木馬通信" ruleid="40606" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="股票行情分析操作软件新一代大智慧用户登录" name_en_US="Stock Market Analysis new generation Software Dazhihui User Login" name_zh_CN="股票行情分析操作软件新一代大智慧用户登录" name_zh_TW="股票行情分析操作軟件新一代大智慧用戶登錄" ruleid="50274" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Carey Internet Services commerce.cgi脚本漏洞扫描探测" name_en_US="Carey Internet Services commerce.cgi Script Vulnerability Detection" name_zh_CN="Carey Internet Services commerce.cgi脚本漏洞扫描探测" name_zh_TW="Carey Internet Services commerce.cgi腳本漏洞掃描探測" ruleid="30190" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Carey Internet Services commerce.cgi脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via Carey Internet Services commerce.cgi Script Vulnerability" name_zh_CN="利用Carey Internet Services commerce.cgi脚本漏洞远程遍历目录" name_zh_TW="利用Carey Internet Services commerce.cgi腳本漏洞遠程遍曆目錄" ruleid="30191" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Verity&apos;s Search`97 search97.vts脚本漏洞扫描探测" name_en_US="Verity&apos;s Search`97 search97.vts Script Vulnerability Detection" name_zh_CN="Verity&apos;s Search`97 search97.vts脚本漏洞扫描探测" name_zh_TW="Verity&apos;s Search`97 search97.vts腳本漏洞掃描探測" ruleid="30193" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS 3.0 &quot;%2e&quot; 漏洞获取ASP源码攻击" name_en_US="ASP Source Code Disclosure via Microsoft IIS 3.0 &quot;%2e&quot; Vulnerability" name_zh_CN="利用Microsoft IIS 3.0 &quot;%2e&quot; 漏洞获取ASP源码攻击" name_zh_TW="利用Microsoft IIS 3.0 &quot;%2e&quot; 漏洞獲取ASP源碼攻擊" ruleid="30196" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431999" module="0" name="PHP-Nuke modules.php脚本漏洞扫描探测" name_en_US="PHP-Nuke modules.php Script Vulnerability Detection" name_zh_CN="PHP-Nuke modules.php脚本漏洞扫描探测" name_zh_TW="PHP-Nuke modules.php腳本漏洞掃描探測" ruleid="30410" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="SunOS rpc.selection_svc服务存在性TCP扫描探测" name_en_US="SunOS rpc.selection_svc Service TCP Detection" name_zh_CN="SunOS rpc.selection_svc服务存在性TCP扫描探测" name_zh_TW="SunOS rpc.selection_svc服務存在性TCP掃描探測" ruleid="30198" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS 3.0/4.0 &quot;%81&quot; 漏洞获取ASP源码攻击" name_en_US="ASP Source Code Disclosure via Microsoft IIS 3.0/4.0 &quot;%81&quot; Vulnerability" name_zh_CN="利用Microsoft IIS 3.0/4.0 &quot;%81&quot; 漏洞获取ASP源码攻击" name_zh_TW="利用Microsoft IIS 3.0/4.0 &quot;%81&quot; 漏洞獲取ASP源碼攻擊" ruleid="30199" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="W-Agora editform.php脚本漏洞扫描探测" name_en_US="W-Agora editform.php Script Vulnerability Detection" name_zh_CN="W-Agora editform.php脚本漏洞扫描探测" name_zh_TW="W-Agora editform.php腳本漏洞掃描探測" ruleid="30412" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="Active PHP Bookmarks脚本漏洞扫描探测" name_en_US="Active PHP Bookmarks Script Vulnerability Detection" name_zh_CN="Active PHP Bookmarks脚本漏洞扫描探测" name_zh_TW="Active PHP Bookmarks腳本漏洞掃描探測" ruleid="30415" visible="true" />
			<rule action=" db  screen " enabled="true" group="154142758" module="0" name="AIX RLOGIN -froot非授权root用户访问攻击" name_en_US="AIX RLOGIN -froot Unauthorized root User Access" name_zh_CN="AIX RLOGIN -froot非授权root用户访问攻击" name_zh_TW="AIX RLOGIN -froot非授權root用戶訪問攻擊" ruleid="20286" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Oracle Web Listener批处理文件远程执行命令" name_en_US="File Batch Handling via Oracle Web Listener Remote Command Execution" name_zh_CN="利用Oracle Web Listener批处理文件远程执行命令" name_zh_TW="利用Oracle Web Listener批處理文件遠程執行命令" ruleid="20281" visible="true" />
			<rule action=" db  screen " enabled="true" group="74449190" module="0" name="VanDyke SecureCRT SSH1协议处理远程缓冲区溢出攻击" name_en_US="VanDyke SecureCRT SSH1 Protocol Handling Remote Buffer Overflow" name_zh_CN="VanDyke SecureCRT SSH1协议处理远程缓冲区溢出攻击" name_zh_TW="VanDyke SecureCRT SSH1協議處理遠程緩沖區溢出攻擊" ruleid="20282" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="利用SquirrelMail CGI脚本漏洞远程浏览文件" name_en_US="Remote File Browsing via SquirrelMail CGI Script Vulnerability" name_zh_CN="利用SquirrelMail CGI脚本漏洞远程浏览文件" name_zh_TW="利用SquirrelMail CGI腳本漏洞遠程浏覽文件" ruleid="30514" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315070" module="0" name="Whois.Cart whoiscart脚本目录遍历攻击" name_en_US="Whois.Cart whoiscart Script Directory Traversal" name_zh_CN="Whois.Cart whoiscart脚本目录遍历攻击" name_zh_TW="Whois.Cart whoiscart腳本目錄遍曆攻擊" ruleid="30515" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="NCSA post-query程序漏洞扫描探测" name_en_US="NCSA post-query Vulnerability Detection" name_zh_CN="NCSA post-query程序漏洞扫描探测" name_zh_TW="NCSA post-query程序漏洞掃描探測" ruleid="20041" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="O&apos;Reilly WebSite win-c-sample.exe CGI程序漏洞扫描探测" name_en_US="O&apos;Reilly WebSite win-c-sample.exe CGI Vulnerability Detection" name_zh_CN="O&apos;Reilly WebSite win-c-sample.exe CGI程序漏洞扫描探测" name_zh_TW="O&apos;Reilly WebSite win-c-sample.exe CGI程序漏洞掃描探測" ruleid="20040" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="利用EZshopper loadpage.cgi CGI脚本漏洞进行目录遍历攻击" name_en_US="Directory Traversal via EZshopper loadpage.cgi CGI Script Vulnerability" name_zh_CN="利用EZshopper loadpage.cgi CGI脚本漏洞进行目录遍历攻击" name_zh_TW="利用EZshopper loadpage.cgi CGI腳本漏洞進行目錄遍曆攻擊" ruleid="30510" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431998" module="0" name="PHP-Nuke mailattach.php脚本漏洞扫描探测" name_en_US="PHP-Nuke mailattach.php Script Vulnerability Detection" name_zh_CN="PHP-Nuke mailattach.php脚本漏洞扫描探测" name_zh_TW="PHP-Nuke mailattach.php腳本漏洞掃描探測" ruleid="30417" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888154" module="0" name="CA BrightStor ARCserve Backup caloggerd.exe远程拒绝服务攻击" name_en_US="CA BrightStor ARCserve Backup caloggerd.exe Remote Denial of Service Attack" name_zh_CN="CA BrightStor ARCserve Backup caloggerd.exe远程拒绝服务攻击" name_zh_TW="CA BrightStor ARCserve Backup caloggerd.exe遠程拒絕服務攻擊" ruleid="10190" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423934" module="0" name="PHP-Nuke modules.php远程目录遍历攻击" name_en_US="PHP-Nuke modules.php Remote Directory Traversal" name_zh_CN="PHP-Nuke modules.php远程目录遍历攻击" name_zh_TW="PHP-Nuke modules.php遠程目錄遍曆攻擊" ruleid="30518" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="端口扫描器PING Sweep操作" name_en_US="Port Scanner PING Sweep Operation" name_zh_CN="端口扫描器PING Sweep操作" name_zh_TW="端口掃描器PING Sweep操作" ruleid="30519" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="BLEEDING-EDGE VIRUS木马网络数据通信" name_en_US="BLEEDING-EDGE VIRUS Agobot/Phatbot Infection Successful" name_zh_CN="BLEEDING-EDGE VIRUS木马网络数据通信" name_zh_TW="BLEEDING-EDGE VIRUS木馬網絡數據通信" ruleid="40938" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="W32.Virut.A木马网络数据通信" name_en_US="TROJAN W32.Virut.A joining an IRC Channel" name_zh_CN="W32.Virut.A木马网络数据通信" name_zh_TW="W32.Virut.A木馬網絡數據通信" ruleid="40930" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Trojan.Delf-5496木马网络数据通信" name_en_US="TROJAN Trojan.Delf-5496 Egg Request" name_zh_CN="Trojan.Delf-5496木马网络数据通信" name_zh_TW="Trojan.Delf-5496木馬網絡數據通信" ruleid="40933" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Realtimegaming.com木马网络数据通信" name_en_US="MALWARE Realtimegaming.com Online Casino Spyware Gaming Checkin" name_zh_CN="Realtimegaming.com木马网络数据通信" name_zh_TW="Realtimegaming.com木馬網絡數據通信" ruleid="40937" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="PWS-LDPinch木马网络数据通信" name_en_US="TROJAN LDPinch Reporting infection via Email" name_zh_CN="PWS-LDPinch木马网络数据通信" name_zh_TW="PWS-LDPinch木馬網絡數據通信" ruleid="40936" visible="true" />
			<rule action=" db  screen " enabled="true" group="211877977" module="0" name="TCP DNS 解析请求可疑域名" name_en_US="TCP DNS resolution suspicious domain name" name_zh_CN="TCP DNS 解析请求可疑域名" name_zh_TW="TCP DNS 解析請求可疑域名" ruleid="50264" visible="true" />
			<rule action=" db  screen " enabled="true" group="211877977" module="0" name="TCP DNS解析请求域名" name_en_US="TCP DNS resolution domain name" name_zh_CN="TCP DNS解析请求域名" name_zh_TW="TCP DNS解析請求域名" ruleid="50265" visible="true" />
			<rule action=" db  screen " enabled="true" group="211877977" module="0" name="UDP DNS解析域名返回可疑IP" name_en_US="UDP DNS resolution domain name Find suspicious IP" name_zh_CN="UDP DNS解析域名返回可疑IP" name_zh_TW="UDP DNS解析域名返回可疑IP" ruleid="50266" visible="true" />
			<rule action=" db  screen " enabled="true" group="211877977" module="0" name="TCP DNS解析域名返回可疑IP" name_en_US="TCP DNS Resolution Domain Name Find Suspicious IP" name_zh_CN="TCP DNS解析域名返回可疑IP" name_zh_TW="TCP DNS解析域名返回可疑IP" ruleid="50267" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGIScript.NET CSMailto.cgi脚本漏洞扫描利用" name_en_US="CGIScript.NET CSMailto.cgi Script Vulnerability Detection" name_zh_CN="CGIScript.NET CSMailto.cgi脚本漏洞扫描利用" name_zh_TW="CGIScript.NET CSMailto.cgi腳本漏洞掃描利用" ruleid="30288" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用mcNews header.php脚本漏洞遍历目录" name_en_US="Directory Traversal via mcNews header.php Script Vulnerability" name_zh_CN="利用mcNews header.php脚本漏洞遍历目录" name_zh_TW="利用mcNews header.php腳本漏洞遍曆目錄" ruleid="30289" visible="true" />
			<rule action=" db  screen " enabled="true" group="77660249" module="0" name="DNS解析请求域名" name_en_US="DNS resolution domain name" name_zh_CN="DNS解析请求域名" name_zh_TW="DNS解析請求域名" ruleid="50262" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="非标准端口经过标准网络流量" name_en_US="Non-standard ports through standard network traffic" name_zh_CN="非标准端口经过标准网络流量" name_zh_TW="非標准端口經過標准網絡流量" ruleid="50263" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Marcus S. directory.php脚本漏洞扫描探测" name_en_US="Marcus S. directory.php Script Vulnerability Detection" name_zh_CN="Marcus S. directory.php脚本漏洞扫描探测" name_zh_TW="Marcus S. directory.php腳本漏洞掃描探測" ruleid="30284" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Sunsolve CD sscd_suncourier.pl脚本漏洞扫描利用" name_en_US="Sunsolve CD sscd_suncourier.pl Script Vulnerability Detection" name_zh_CN="Sunsolve CD sscd_suncourier.pl脚本漏洞扫描利用" name_zh_TW="Sunsolve CD sscd_suncourier.pl腳本漏洞掃描利用" ruleid="30285" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="PHPprojekt filemanager_forms.php脚本漏洞扫描利用" name_en_US="PHPprojekt filemanager_forms.php Script Vulnerability Detection" name_zh_CN="PHPprojekt filemanager_forms.php脚本漏洞扫描利用" name_zh_TW="PHPprojekt filemanager_forms.php腳本漏洞掃描利用" ruleid="30286" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="com.endymion.sake.servlet.mail.MailServlet脚本漏洞扫描利用" name_en_US="com.endymion.sake.servlet.mail.MailServlet Script Vulnerability Detection" name_zh_CN="com.endymion.sake.servlet.mail.MailServlet脚本漏洞扫描利用" name_zh_TW="com.endymion.sake.servlet.mail.MailServlet腳本漏洞掃描利用" ruleid="30287" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Hosting Controller filemanager.asp脚本利用扫描探测" name_en_US="Hosting Controller filemanager.asp Script Detection" name_zh_CN="Hosting Controller filemanager.asp脚本利用扫描探测" name_zh_TW="Hosting Controller filemanager.asp腳本利用掃描探測" ruleid="30280" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="Hosting Controller statsbrowse.asp系列脚本漏洞扫描探测" name_en_US="Hosting Controller statsbrowse.asp Series Script Vulnerability Detection" name_zh_CN="Hosting Controller statsbrowse.asp系列脚本漏洞扫描探测" name_zh_TW="Hosting Controller statsbrowse.asp系列腳本漏洞掃描探測" ruleid="30281" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="PostNuke user.php脚本漏洞扫描利用" name_en_US="PostNuke user.php Script Vulnerability Detection" name_zh_CN="PostNuke user.php脚本漏洞扫描利用" name_zh_TW="PostNuke user.php腳本漏洞掃描利用" ruleid="30282" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Apache Win32批处理脚本漏洞扫描探测" name_en_US="Apache Win32 Batch Script Vulnerability Detection" name_zh_CN="Apache Win32批处理脚本漏洞扫描探测" name_zh_TW="Apache Win32批處理腳本漏洞掃描探測" ruleid="30283" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Multiple Vendor CUPS Administration Interface CGI 堆溢出漏洞" name_en_US="HTTP: Multiple Vendor CUPS Administration Interface CGI Heap Overflow" name_zh_CN="HTTP: Multiple Vendor CUPS Administration Interface CGI 堆溢出漏洞" name_zh_TW="HTTP: Multiple Vendor CUPS Administration Interface CGI 堆溢出漏洞" ruleid="29135" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="HTTP: Trend Micro OfficeScan Policy Server漏洞" name_en_US="HTTP: Trend Micro OfficeScan Policy Server" name_zh_CN="HTTP: Trend Micro OfficeScan Policy Server漏洞" name_zh_TW="HTTP: Trend Micro OfficeScan Policy Server漏洞" ruleid="29139" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="通过Web服务获取SmartWin CyberOffice Shopping Cart 2.0数据库文件" name_en_US="SmartWin CyberOffice Shopping Cart 2.0 Database File Disclosure via Web Service" name_zh_CN="通过Web服务获取SmartWin CyberOffice Shopping Cart 2.0数据库文件" name_zh_TW="通過Web服務獲取SmartWin CyberOffice Shopping Cart 2.0數據庫文件" ruleid="30352" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="wwwboard.pl脚本漏洞扫描利用" name_en_US="wwwboard.pl Script Vulnerability Detection" name_zh_CN="wwwboard.pl脚本漏洞扫描利用" name_zh_TW="wwwboard.pl腳本漏洞掃描利用" ruleid="30353" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="利用Talentsoft Web+获取内部IP地址攻击" name_en_US="Internal IP Address Disclosure via Talentsoft Web+" name_zh_CN="利用Talentsoft Web+获取内部IP地址攻击" name_zh_TW="利用Talentsoft Web+獲取內部IP地址攻擊" ruleid="30350" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Talentsoft Web+漏洞获取脚本源码攻击" name_en_US="Script Source Code Disclosure via Talentsoft Web+ Vulnerability" name_zh_CN="利用Talentsoft Web+漏洞获取脚本源码攻击" name_zh_TW="利用Talentsoft Web+漏洞獲取腳本源碼攻擊" ruleid="30351" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="importInfo脚本漏洞扫描探测" name_en_US="importInfo Script Vulnerability Detection" name_zh_CN="importInfo脚本漏洞扫描探测" name_zh_TW="importInfo腳本漏洞掃描探測" ruleid="30356" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用importInfo脚本漏洞远程执行命令" name_en_US="Remote Code Execution via importInfo Script Vulnerability" name_zh_CN="利用importInfo脚本漏洞远程执行命令" name_zh_TW="利用importInfo腳本漏洞遠程執行命令" ruleid="30357" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423925" module="0" name="Phorum violation.php3脚本漏洞扫描利用" name_en_US="Phorum violation.php3 Script Vulnerability Detection" name_zh_CN="Phorum violation.php3脚本漏洞扫描利用" name_zh_TW="Phorum violation.php3腳本漏洞掃描利用" ruleid="30354" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Web Portal customize.php脚本漏洞扫描探测" name_en_US="Web Portal customize.php Script Vulnerability Detection" name_zh_CN="Web Portal customize.php脚本漏洞扫描探测" name_zh_TW="Web Portal customize.php腳本漏洞掃描探測" ruleid="30355" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="BadBlue soinfo.php脚本漏洞扫描利用" name_en_US="BadBlue soinfo.php Script Vulnerability Detection" name_zh_CN="BadBlue soinfo.php脚本漏洞扫描利用" name_zh_TW="BadBlue soinfo.php腳本漏洞掃描利用" ruleid="30358" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="HTTPBench ezhttpbench.php脚本漏洞扫描利用" name_en_US="HTTPBench ezhttpbench.php Script Vulnerability Detection" name_zh_CN="HTTPBench ezhttpbench.php脚本漏洞扫描利用" name_zh_TW="HTTPBench ezhttpbench.php腳本漏洞掃描利用" ruleid="30359" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="BLEEDING-EDGE A型木马网络数据通信" name_en_US="BLEEDING-EDGE WORM MySQL bot DNS lookup A" name_zh_CN="BLEEDING-EDGE A型木马网络数据通信" name_zh_TW="BLEEDING-EDGE A型木馬網絡數據通信" ruleid="40849" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Matrix木马通信" name_en_US="Trojan Matrix Communication on Windows" name_zh_CN="Windows系统下Matrix木马通信" name_zh_TW="Windows系統下Matrix木馬通信" ruleid="40339" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下NetBus木马通信" name_en_US="Trojan NetBus Trojan Communication on Windows" name_zh_CN="Windows系统下NetBus木马通信" name_zh_TW="Windows系統下NetBus木馬通信" ruleid="40338" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具脱兔进行文件下载" name_en_US="P2P File Sharing Tool Tuotu File Download" name_zh_CN="P2P文件共享工具脱兔进行文件下载" name_zh_TW="P2P文件共享工具脫兔進行文件下載" ruleid="50192" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Doly Trojan 1.6木马建立连接" name_en_US="Doly Trojan 1.6 Connection on Windows" name_zh_CN="Windows系统下Doly Trojan 1.6木马建立连接" name_zh_TW="Windows系統下Doly Trojan 1.6木馬建立連接" ruleid="40448" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="HTTP协议Chunked数据编码异常" name_en_US="HTTP Protocol Chunked Data Coding Anomaly" name_zh_CN="HTTP协议Chunked数据编码异常" name_zh_TW="HTTP協議Chunked數據編碼異常" ruleid="50190" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k请求文件片断(UDP)" name_en_US="P2P File Sharing Tool eDonkey/ed2k Request File Fragment (UDP)" name_zh_CN="P2P文件共享工具eDonkey/ed2k请求文件片断(UDP)" name_zh_TW="P2P文件共享工具eDonkey/ed2k請求文件片斷(UDP)" ruleid="50196" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="BitComet通过HTTP协议进行文件下载" name_en_US="BitComet Downloading Files Through HTTP Protocol" name_zh_CN="BitComet通过HTTP协议进行文件下载" name_zh_TW="BitComet通過HTTP協議進行文件下載" ruleid="50197" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="网络代理软件SocksOnline数据通信" name_en_US="Network Agent Software SocksOnline Data Communication" name_zh_CN="网络代理软件SocksOnline数据通信" name_zh_TW="網絡代理軟件SocksOnline數據通信" ruleid="50194" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具迅雷文件下载(UDP)" name_en_US="P2P File Sharing Tool Xunlei File Downloading (UDP)" name_zh_CN="P2P文件共享工具迅雷文件下载(UDP)" name_zh_TW="P2P文件共享工具迅雷文件下載(UDP)" ruleid="50195" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223069" module="0" name="Google网络爬虫抓取网页信息" name_en_US="Google Web Crawlers Capture Page Information" name_zh_CN="Google网络爬虫抓取网页信息" name_zh_TW="Google網絡爬蟲抓取網頁信息" ruleid="50199" visible="true" />
			<rule action=" db  screen " enabled="true" group="204505158" module="0" name="FTP服务Bounce跳转攻击" name_en_US="FTP Service Bounce Attack" name_zh_CN="FTP服务Bounce跳转攻击" name_zh_TW="FTP服務Bounce跳轉攻擊" ruleid="40445" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Doly Trojan 2.0木马建立连接" name_en_US="Doly Trojan 2.0 Connection on Windows" name_zh_CN="Windows系统下Doly Trojan 2.0木马建立连接" name_zh_TW="Windows系統下Doly Trojan 2.0木馬建立連接" ruleid="40447" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下NetBus Pro木马通信" name_en_US="Trojan NetBus Pro Communication on Windows" name_zh_CN="Windows系统下NetBus Pro木马通信" name_zh_TW="Windows系統下NetBus Pro木馬通信" ruleid="40446" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082454" module="0" name="Microsoft SQL Server 2000 Resolution服务keep-alive拒绝服务攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service keep-alive Denial of Service" name_zh_CN="Microsoft SQL Server 2000 Resolution服务keep-alive拒绝服务攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務keep-alive拒絕服務攻擊" ruleid="10052" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082454" module="0" name="Microsoft SQL Server 2000 Resolution服务远程堆破坏拒绝服务攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service Remote Heap Corruption Denial of Service" name_zh_CN="Microsoft SQL Server 2000 Resolution服务远程堆破坏拒绝服务攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務遠程堆破壞拒絕服務攻擊" ruleid="10051" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Sunway ForceControl AngelServer 2001/TCP Type 0X57 栈溢出漏洞" name_en_US="Sunway ForceControl AngelServer 2001/TCP Type 0X57 Stack Overflow Vulnerability" name_zh_CN="Sunway ForceControl AngelServer 2001/TCP Type 0X57 栈溢出漏洞" name_zh_TW="Sunway ForceControl AngelServer 2001/TCP Type 0X57 棧溢出漏洞" ruleid="21311" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Stacheldraht客户端连接检查" name_en_US="DDOS Stacheldraht Client Connection Deteciton" name_zh_CN="DDOS工具Stacheldraht客户端连接检查" name_zh_TW="DDOS工具Stacheldraht客戶端連接檢查" ruleid="40369" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="核新交易软件-7709" name_en_US="He Xin transaction software-7709" name_zh_CN="核新交易软件-7709" name_zh_TW="核新交易軟件-7709" ruleid="51021" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="中投证券-核新" name_en_US="China Jianyin Investment Securities-Hexin" name_zh_CN="中投证券-核新" name_zh_TW="中投證券-核新" ruleid="51020" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="方正证券-核新II" name_en_US="Founder Securities-Hexin edition II" name_zh_CN="方正证券-核新II" name_zh_TW="方正證券-核新II" ruleid="51023" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="方正证券-核新I" name_en_US="Founder Securities-Hexin edition I" name_zh_CN="方正证券-核新I" name_zh_TW="方正證券-核新I" ruleid="51022" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="东方证券-核新" name_en_US="Orient Securities Company limited-Hexin" name_zh_CN="东方证券-核新" name_zh_TW="東方證券-核新" ruleid="51025" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="东方证券-恒生" name_en_US="Orient Securities Company limited-Hengsheng" name_zh_CN="东方证券-恒生" name_zh_TW="東方證券-恒生" ruleid="51024" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="广发华福-核新" name_en_US="Gf Huafu Securities-Hexin" name_zh_CN="广发华福-核新" name_zh_TW="廣發華福-核新" ruleid="51027" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="上海证券-恒生" name_en_US="Shanghai Securities-Hengsheng" name_zh_CN="上海证券-恒生" name_zh_TW="上海證券-恒生" ruleid="51026" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="申银万国-钱龙" name_en_US="Shenyin Wanguo Securities-Qianlong" name_zh_CN="申银万国-钱龙" name_zh_TW="申銀萬國-錢龍" ruleid="51029" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="国信证券-通达信" name_en_US="GuoSen-Tongdaxin" name_zh_CN="国信证券-通达信" name_zh_TW="國信證券-通達信" ruleid="51028" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723445" module="0" name="SMTP服务EXPN命令请求" name_en_US="SMTP Service EXPN Command Request" name_zh_CN="SMTP服务EXPN命令请求" name_zh_TW="SMTP服務EXPN命令請求" ruleid="40364" visible="true" />
			<rule action=" db  screen " enabled="true" group="210829398" module="0" name="IMAP服务用户弱口令认证" name_en_US="IMAP Service Weak User Password Authentication" name_zh_CN="IMAP服务用户弱口令认证" name_zh_TW="IMAP服務用戶弱口令認證" ruleid="50048" visible="true" />
			<rule action=" db  screen " enabled="true" group="205586517" module="0" name="TELNET服务用户认证" name_en_US="TELNET Service User Authentication" name_zh_CN="TELNET服务用户认证" name_zh_TW="TELNET服務用戶認證" ruleid="50049" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723445" module="0" name="SMTP服务VRFY命令请求" name_en_US="SMTP Service VRFY Command Request" name_zh_CN="SMTP服务VRFY命令请求" name_zh_TW="SMTP服務VRFY命令請求" ruleid="40365" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635093" module="0" name="POP3服务用户登录认证失败" name_en_US="POP3 Service User Login Authentication Fail" name_zh_CN="POP3服务用户登录认证失败" name_zh_TW="POP3服務用戶登錄認證失敗" ruleid="50044" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务用户弱口令认证" name_en_US="FTP Service User Weak Password Authentication" name_zh_CN="FTP服务用户弱口令认证" name_zh_TW="FTP服務用戶弱口令認證" ruleid="50045" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635094" module="0" name="POP3服务用户弱口令认证" name_en_US="POP3 Service Weak User Password Authentication" name_zh_CN="POP3服务用户弱口令认证" name_zh_TW="POP3服務用戶弱口令認證" ruleid="50047" visible="true" />
			<rule action=" db  screen " enabled="false" group="72613967" module="0" name="POP3服务接收可疑病毒邮件" name_en_US="POP3 Service Receiving Mails with Suspicious Virus" name_zh_CN="POP3服务接收可疑病毒邮件" name_zh_TW="POP3服務接收可疑病毒郵件" ruleid="50040" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Stacheldraht服务器回应" name_en_US="DDOS Stacheldraht Server Response" name_zh_CN="DDOS工具Stacheldraht服务器回应" name_zh_TW="DDOS工具Stacheldraht服務器回應" ruleid="40366" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635093" module="0" name="POP3服务用户登录认证成功" name_en_US="POP3 Service User Login Authentication Success" name_zh_CN="POP3服务用户登录认证成功" name_zh_TW="POP3服務用戶登錄認證成功" ruleid="50043" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Tatantella TTAWebTop.CGI脚本漏洞扫描利用" name_en_US="Tatantella TTAWebTop.CGI Script Vulnerability Detection" name_zh_CN="Tatantella TTAWebTop.CGI脚本漏洞扫描利用" name_zh_TW="Tatantella TTAWebTop.CGI腳本漏洞掃描利用" ruleid="30320" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="CVE-2012-1857 Microsoft Dynamics AX Enterprise Portal跨站脚本漏洞(MS12-040)" name_en_US="CVE-2012-1857 Microsoft Dynamics AX Enterprise Portal XSS Vulnerability(MS12-040)" name_zh_CN="CVE-2012-1857 Microsoft Dynamics AX Enterprise Portal跨站脚本漏洞(MS12-040)" name_zh_TW="CVE-2012-1857 Microsoft Dynamics AX Enterprise Portal跨站腳本漏洞(MS12-040)" ruleid="22283" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1854 Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-039)" name_en_US="CVE-2012-1854 Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability(MS12-039)" name_zh_CN="CVE-2012-1854 Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-039)" name_zh_TW="CVE-2012-1854 Microsoft Visual Basic for Applications不安全庫加載漏洞(MS12-039)" ruleid="22282" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1849 Microsoft Lync/Office Communicator Lync不安全库加载漏洞(MS12-039)" name_en_US="CVE-2012-1849 Microsoft Lync/Office Communicator Lync Insecure Library Loading Vulnerability(MS12-043)" name_zh_CN="CVE-2012-1849 Microsoft Lync/Office Communicator Lync不安全库加载漏洞(MS12-039)" name_zh_TW="CVE-2012-1849 Microsoft Lync/Office Communicator Lync不安全庫加載漏洞(MS12-039)" ruleid="22281" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1855 Microsoft .NET Framework WinForms内存访问漏洞(MS12-038)" name_en_US="CVE-2012-1855 Microsoft .NET Framework WinForms Memory Access Vulnerability(MS12-038)" name_zh_CN="CVE-2012-1855 Microsoft .NET Framework WinForms内存访问漏洞(MS12-038)" name_zh_TW="CVE-2012-1855 Microsoft .NET Framework WinForms內存訪問漏洞(MS12-038)" ruleid="22280" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1858 Microsoft HTML过滤漏洞(MS12-050)" name_en_US="CVE-2012-1858 Microsoft HTML Sanitization Vulnerability(MS12-050)" name_zh_CN="CVE-2012-1858 Microsoft HTML过滤漏洞(MS12-050)" name_zh_TW="CVE-2012-1858 Microsoft HTML過濾漏洞(MS12-050)" ruleid="22287" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1854 Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-046)" name_en_US="CVE-2012-1854 Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability(MS12-046)" name_zh_CN="CVE-2012-1854 Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-046)" name_zh_TW="CVE-2012-1854 Microsoft Visual Basic for Applications不安全庫加載漏洞(MS12-046)" ruleid="22286" visible="true" />
			<rule action=" db  screen " enabled="true" group="269484202" module="0" name="i@Report报表采集汇总平台认证绕过及任意文件下载漏洞" name_en_US="i@Report Statements Collected Summary Platform Authentication Bypass and Arbitrary File Download Vulnerability" name_zh_CN="i@Report报表采集汇总平台认证绕过及任意文件下载漏洞" name_zh_TW="i@Report報表采集彙總平台認證繞過及任意文件下載漏洞" ruleid="22285" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1863 Microsoft SharePoint反射列表参数漏洞(MS12-050)" name_en_US="CVE-2012-1863 Microsoft SharePoint Reflected List Parameter Vulnerability(MS12-050)" name_zh_CN="CVE-2012-1863 Microsoft SharePoint反射列表参数漏洞(MS12-050)" name_zh_TW="CVE-2012-1863 Microsoft SharePoint反射列表參數漏洞(MS12-050)" ruleid="22289" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1859 Microsoft scriptresx.ashx跨站脚本漏洞(MS12-050)" name_en_US="CVE-2012-1859 Microsoft XSS scriptresx.ashx Vulnerability(MS12-050)" name_zh_CN="CVE-2012-1859 Microsoft scriptresx.ashx跨站脚本漏洞(MS12-050)" name_zh_TW="CVE-2012-1859 Microsoft scriptresx.ashx跨站腳本漏洞(MS12-050)" ruleid="22288" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-4372 Adobe Reader/Acrobat内存破坏漏洞" name_en_US="CVE-2011-4372 Adobe Reader/Acrobat Memory Corruption Vulnerability" name_zh_CN="CVE-2011-4372 Adobe Reader/Acrobat内存破坏漏洞" name_zh_TW="CVE-2011-4372 Adobe Reader/Acrobat內存破壞漏洞" ruleid="21344" visible="true" />
			<rule action=" db  screen " enabled="false" group="138477654" module="0" name="TELNET服务用户弱口令认证" name_en_US="User Weak Password Authentication in TELNET Service" name_zh_CN="TELNET服务用户弱口令认证" name_zh_TW="TELNET服務用戶弱口令認證" ruleid="50053" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423894" module="0" name="Netscape Enterprise Server Web Publisher拒绝服务攻击" name_en_US="Netscape Enterprise Server Web Publisher Denial of Service" name_zh_CN="Netscape Enterprise Server Web Publisher拒绝服务攻击" name_zh_TW="Netscape Enterprise Server Web Publisher拒絕服務攻擊" ruleid="10059" visible="true" />
			<rule action=" db  screen " enabled="true" group="205586517" module="0" name="TELNET服务root用户认证" name_en_US="TELNET Service root User Authentication" name_zh_CN="TELNET服务root用户认证" name_zh_TW="TELNET服務root用戶認證" ruleid="50052" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="CVE-2012-0003 Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI文件解析远程代码执行漏洞(MS12-004)" name_en_US="CVE-2012-0003 Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI Remote Code Execution Vulnerability(MS12-004)" name_zh_CN="CVE-2012-0003 Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI文件解析远程代码执行漏洞(MS12-004)" name_zh_TW="CVE-2012-0003 Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI文件解析遠程代碼執行漏洞(MS12-004)" ruleid="21340" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P软件Shareaza文件下载" name_en_US="P2P Software Shareaza File Downloding" name_zh_CN="P2P软件Shareaza文件下载" name_zh_TW="P2P軟件Shareaza文件下載" ruleid="50227" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="SIPfoundry sipXtapi畸形CSeq字段处理远程缓冲区溢出攻击" name_en_US="SIPfoundry sipXtapi Malformed CSeq Field Handling Remote Buffer Overflow" name_zh_CN="SIPfoundry sipXtapi畸形CSeq字段处理远程缓冲区溢出攻击" name_zh_TW="SIPfoundry sipXtapi畸形CSeq字段處理遠程緩沖區溢出攻擊" ruleid="20708" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Sabdrimer CMS advanced1.php远程文件包含攻击" name_en_US="Sabdrimer CMS advanced1.php Remote File Inclusion" name_zh_CN="Sabdrimer CMS advanced1.php远程文件包含攻击" name_zh_TW="Sabdrimer CMS advanced1.php遠程文件包含攻擊" ruleid="20709" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="SaveWebPortal SITE_Path变量远程文件包含攻击" name_en_US="SaveWebPortal SITE_Path Variable Remote File Inclusion" name_zh_CN="SaveWebPortal SITE_Path变量远程文件包含攻击" name_zh_TW="SaveWebPortal SITE_Path變量遠程文件包含攻擊" ruleid="20700" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="The Search Engine Project (TSEP) colorswitch.php远程文件包含攻击" name_en_US="The Search Engine Project (TSEP) colorswitch.php Remote File Inclusion" name_zh_CN="The Search Engine Project (TSEP) colorswitch.php远程文件包含攻击" name_zh_TW="The Search Engine Project (TSEP) colorswitch.php遠程文件包含攻擊" ruleid="20701" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Knusperleicht ShoutBox SB_INCLUDE_PATH参数远程文件包含攻击" name_en_US="Knusperleicht ShoutBox SB_INCLUDE_PATH Variable Remote File Inclusion" name_zh_CN="Knusperleicht ShoutBox SB_INCLUDE_PATH参数远程文件包含攻击" name_zh_TW="Knusperleicht ShoutBox SB_INCLUDE_PATH參數遠程文件包含攻擊" ruleid="20702" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MyNewsGroups layersmenu.inc.php远程文件包含攻击" name_en_US="MyNewsGroups layersmenu.inc.php Remote File Inclusion" name_zh_CN="MyNewsGroups layersmenu.inc.php远程文件包含攻击" name_zh_TW="MyNewsGroups layersmenu.inc.php遠程文件包含攻擊" ruleid="20703" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Easy File Sharing FTP Server超长PASS命令参数远程缓冲区溢出攻击" name_en_US="Easy File Sharing FTP Server Over-long PASS Parameter Remote Buffer Overflow" name_zh_CN="Easy File Sharing FTP Server超长PASS命令参数远程缓冲区溢出攻击" name_zh_TW="Easy File Sharing FTP Server超長PASS命令參數遠程緩沖區溢出攻擊" ruleid="20704" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Mambo VideoDB组件远程文件包含攻击" name_en_US="Mambo VideoDB Component Remote File Inclusion" name_zh_CN="Mambo VideoDB组件远程文件包含攻击" name_zh_TW="Mambo VideoDB組件遠程文件包含攻擊" ruleid="20705" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Intervations FileCopa LIST命令远程缓冲区溢出攻击" name_en_US="Intervations FileCopa LIST Command Remote Buffer Overflow" name_zh_CN="Intervations FileCopa LIST命令远程缓冲区溢出攻击" name_zh_TW="Intervations FileCopa LIST命令遠程緩沖區溢出攻擊" ruleid="20706" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Symantec Norton个人防火墙ActiveX控件远程溢出攻击" name_en_US="Symantec Norton Private Firewall ActiveX Control Remote Buffer Overflow" name_zh_CN="Symantec Norton个人防火墙ActiveX控件远程溢出攻击" name_zh_TW="Symantec Norton個人防火牆ActiveX控件遠程溢出攻擊" ruleid="20871" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows LPC消息缓冲溢出漏洞" name_en_US="Microsoft Windows LPC Message Buffer Overrun Vulnerability" name_zh_CN="Microsoft Windows LPC消息缓冲溢出漏洞" name_zh_TW="Microsoft Windows LPC消息緩沖溢出漏洞" ruleid="21097" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Word书签漏洞" name_en_US="Microsoft Word Bookmarks Vulnerability" name_zh_CN="Microsoft Word书签漏洞" name_zh_TW="Microsoft Word書簽漏洞" ruleid="21096" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Word栈溢出漏洞" name_en_US="Microsoft Word Stack Overflow Vulnerability" name_zh_CN="Microsoft Word栈溢出漏洞" name_zh_TW="Microsoft Word棧溢出漏洞" ruleid="21095" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows Comct132堆溢出漏洞" name_en_US="Microsoft Windows Comctl32 Heap Overflow Vulnerability" name_zh_CN="Microsoft Windows Comct132堆溢出漏洞" name_zh_TW="Microsoft Windows Comct132堆溢出漏洞" ruleid="21094" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows Media Player内存破坏漏洞" name_en_US="Microsoft Windows Media Player Memory Corruption Vulnerability" name_zh_CN="Microsoft Windows Media Player内存破坏漏洞" name_zh_TW="Microsoft Windows Media Player內存破壞漏洞" ruleid="21093" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows Win32k.sys内核驱动多个本地权限提升漏洞" name_en_US="Vulnerabilities in Microsoft Windows Win32k.sys Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Win32k.sys内核驱动多个本地权限提升漏洞" name_zh_TW="Microsoft Windows Win32k.sys內核驅動多個本地權限提升漏洞" ruleid="21092" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows Win32K键盘布局漏洞" name_en_US="Microsoft Windows Win32K Keyboard Layout Vulnerability" name_zh_CN="Microsoft Windows Win32K键盘布局漏洞" name_zh_TW="Microsoft Windows Win32K鍵盤布局漏洞" ruleid="21091" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows OpenType字体验证漏洞" name_en_US="Microsoft Windows OpenType Font Validation Vulnerability" name_zh_CN="Microsoft Windows OpenType字体验证漏洞" name_zh_TW="Microsoft Windows OpenType字體驗證漏洞" ruleid="21090" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="ExAir示例脚本search.asp拒绝服务攻击" name_en_US="ExAir Sample Script search.asp Denial of Service" name_zh_CN="ExAir示例脚本search.asp拒绝服务攻击" name_zh_TW="ExAir示例腳本search.asp拒絕服務攻擊" ruleid="10050" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Worm.SoBig蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Worm.SoBig" name_zh_CN="SMTP服务发送Worm.SoBig蠕虫病毒邮件" name_zh_TW="SMTP服務發送Worm.SoBig蠕蟲病毒郵件" ruleid="50059" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft .NET Framework x64 JIT编译器漏洞" name_en_US="Microsoft .NET Framework x64 JIT Compiler Vulnerability" name_zh_CN="Microsoft .NET Framework x64 JIT编译器漏洞" name_zh_TW="Microsoft .NET Framework x64 JIT編譯器漏洞" ruleid="21099" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows Media Player网络共享服务RTSP释放后使用漏洞" name_en_US="Windows Media Player Network Sharing Service RTSP Use After Free Remote Code Execution Vulnerability" name_zh_CN="Microsoft Windows Media Player网络共享服务RTSP释放后使用漏洞" name_zh_TW="Microsoft Windows Media Player網絡共享服務RTSP釋放後使用漏洞" ruleid="21098" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="Oracle数据库访问操作" name_en_US="Oracle Database Access" name_zh_CN="Oracle数据库访问操作" name_zh_TW="Oracle數據庫訪問操作" ruleid="50058" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Easynews绕过管理认证攻击" name_en_US="Easynews Admin Authentication Bypass" name_zh_CN="Easynews绕过管理认证攻击" name_zh_TW="Easynews繞過管理認證攻擊" ruleid="20674" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="P-News p-news.php远程文件包含攻击" name_en_US="P-News p-news.php Remote File Inclusion" name_zh_CN="P-News p-news.php远程文件包含攻击" name_zh_TW="P-News p-news.php遠程文件包含攻擊" ruleid="20675" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MiniBB bb_func_txt.php远程文件包含攻击" name_en_US="MiniBB bb_func_txt.php Remote File Inclusion" name_zh_CN="MiniBB bb_func_txt.php远程文件包含攻击" name_zh_TW="MiniBB bb_func_txt.php遠程文件包含攻擊" ruleid="20676" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="TextPattern txpcfg[txpath]变量远程文件包含攻击" name_en_US="TextPattern txpcfg[txpath] Variable Remote File Inclusion" name_zh_CN="TextPattern txpcfg[txpath]变量远程文件包含攻击" name_zh_TW="TextPattern txpcfg[txpath]變量遠程文件包含攻擊" ruleid="20677" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PowerPortal file_name[]变量远程文件包含攻击" name_en_US="PowerPortal file_name[] Variable Remote File Inclusion" name_zh_CN="PowerPortal file_name[]变量远程文件包含攻击" name_zh_TW="PowerPortal file_name[]變量遠程文件包含攻擊" ruleid="20670" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Freenews chemin变量远程文件包含攻击" name_en_US="Freenews chemin Variable Remote File Inclusion" name_zh_CN="Freenews chemin变量远程文件包含攻击" name_zh_TW="Freenews chemin變量遠程文件包含攻擊" ruleid="20671" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHP Live! help.php远程文件包含攻击" name_en_US="PHP Live! help.php Remote File Inclusion" name_zh_CN="PHP Live! help.php远程文件包含攻击" name_zh_TW="PHP Live! help.php遠程文件包含攻擊" ruleid="20672" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="NuralStorm Webmail DEFAULT_SKIN变量远程文件包含攻击" name_en_US="NuralStorm Webmail DEFAULT_SKIN Variable Remote File Inclusion" name_zh_CN="NuralStorm Webmail DEFAULT_SKIN变量远程文件包含攻击" name_zh_TW="NuralStorm Webmail DEFAULT_SKIN變量遠程文件包含攻擊" ruleid="20673" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MySource CMS INCLUDE_PATH变量远程文件包含攻击" name_en_US="MySource CMS INCLUDE_PATH Variable Remote File Inclusion" name_zh_CN="MySource CMS INCLUDE_PATH变量远程文件包含攻击" name_zh_TW="MySource CMS INCLUDE_PATH變量遠程文件包含攻擊" ruleid="20678" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Novell eDirectory/iMonitor HTTP协议畸形HOST字段缓冲区溢出攻击" name_en_US="Novell eDirectory/iMonitor HTTP Protocol Malformed HOST Field Remote Buffer Overflow" name_zh_CN="Novell eDirectory/iMonitor HTTP协议畸形HOST字段缓冲区溢出攻击" name_zh_TW="Novell eDirectory/iMonitor HTTP協議畸形HOST字段緩沖區溢出攻擊" ruleid="20679" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Windows DNS Server NAPTR查询远程代码执行漏洞（MS11-058)" name_en_US="Microsoft Windows DNS Server NAPTR Query Remote Code Execution Vulnerability" name_zh_CN="Microsoft Windows DNS Server NAPTR查询远程代码执行漏洞（MS11-058)" name_zh_TW="Microsoft Windows DNS Server NAPTR查詢遠程代碼執行漏洞（MS11-058)" ruleid="21273" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE样式对象内存破坏远程代码执行漏洞（MS11-057)" name_en_US="Microsoft Internet Explorer Style Object Memory Corruption Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE样式对象内存破坏远程代码执行漏洞（MS11-057)" name_zh_TW="Microsoft IE樣式對象內存破壞遠程代碼執行漏洞（MS11-057)" ruleid="21272" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorers Handling of Iframes 内存破坏漏洞" name_en_US="Microsoft Internet Explorers Handling of Iframes Memory Corruption Vulnerability(cve-2011-1963)" name_zh_CN="Microsoft Internet Explorers Handling of Iframes 内存破坏漏洞" name_zh_TW="Microsoft Internet Explorers Handling of Iframes 內存破壞漏洞" ruleid="21271" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer 任意代码执行漏洞" name_en_US="Microsoft Internet Explorer Execute Arbitrary Programs Vulnerability(cve-2011-1961)" name_zh_CN="Microsoft Internet Explorer 任意代码执行漏洞" name_zh_TW="Microsoft Internet Explorer 任意代碼執行漏洞" ruleid="21270" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Visio远程代码执行漏洞(CVE-2011-1979)（MS11-061)" name_en_US="Microsoft Visio CVE-2011-1979 Remote Code Execution Vulnerability" name_zh_CN="Microsoft Visio远程代码执行漏洞(CVE-2011-1979)（MS11-061)" name_zh_TW="Microsoft Visio遠程代碼執行漏洞(CVE-2011-1979)（MS11-061)" ruleid="21276" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft .NET Framework Chart信息泄露漏洞（MS11-066)" name_en_US="Microsoft .NET Framework Chart Control Information Disclosure Vulnerability" name_zh_CN="Microsoft .NET Framework Chart信息泄露漏洞（MS11-066)" name_zh_TW="Microsoft .NET Framework Chart信息泄露漏洞（MS11-066)" ruleid="21275" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Report Viewer 信息泄露漏洞" name_en_US="Vulnerability in Microsoft Report Viewer Could Allow Information Disclosure (cve-2011-1976)" name_zh_CN="Microsoft Report Viewer 信息泄露漏洞" name_zh_TW="Microsoft Report Viewer 信息泄露漏洞" ruleid="21274" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft SharePoint EditForm.aspx脚本注入漏洞（MS11-074）" name_en_US="Microsoft SharePoint &apos;EditForm.aspx&apos; Script Injection Vulnerability" name_zh_CN="Microsoft SharePoint EditForm.aspx脚本注入漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint EditForm.aspx腳本注入漏洞（MS11-074）" ruleid="21279" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft IIS 5.x/6.0 0DAY JPG/GIF WebShell执行漏洞" name_en_US="Microsoft IIS 5.x/6.0 0DAY JPG/GIF WebShell Execution Vulnerability" name_zh_CN="Microsoft IIS 5.x/6.0 0DAY JPG/GIF WebShell执行漏洞" name_zh_TW="Microsoft IIS 5.x/6.0 0DAY JPG/GIF WebShell執行漏洞" ruleid="21278" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="海阳顶端网ASP木马" name_en_US="HaiYang DingDuan Net ASP Trojan" name_zh_CN="海阳顶端网ASP木马" name_zh_TW="海陽頂端網ASP木馬" ruleid="40966" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="黑基ASP大马v2009 Webshell检测" name_en_US="Heiji ASP DaMa v2009 Webshell Detection" name_zh_CN="黑基ASP大马v2009 Webshell检测" name_zh_TW="黑基ASP大馬v2009 Webshell檢測" ruleid="40967" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.ttdbserverd远程缓冲区溢出攻击" name_en_US="Solaris rpc.ttdbserverd Remote Buffer Overflow" name_zh_CN="Solaris rpc.ttdbserverd远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程緩沖區溢出攻擊" ruleid="20167" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="桂林老兵ASP站长助手Webshell检测" name_en_US="GuiLin LaoBing ASP Webmaster Helper Webshell Detection" name_zh_CN="桂林老兵ASP站长助手Webshell检测" name_zh_TW="桂林老兵ASP站長助手Webshell檢測" ruleid="40964" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="MINOR:Dnsmasq TFTP 服务远程堆缓冲区溢出漏洞" name_en_US="MINOR:Dnsmasq TFTP Service Remote Heap Buffer Overflow" name_zh_CN="MINOR:Dnsmasq TFTP 服务远程堆缓冲区溢出漏洞" name_zh_TW="MINOR:Dnsmasq TFTP 服務遠程堆緩沖區溢出漏洞" ruleid="60028" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="桂林老兵文件管理工具Webshell检测" name_en_US="GuiLin LaoBing Documentation Tool Webshell Detection" name_zh_CN="桂林老兵文件管理工具Webshell检测" name_zh_TW="桂林老兵文件管理工具Webshell檢測" ruleid="40965" visible="true" />
			<rule action=" db  screen " enabled="true" group="368054347" module="0" name="Windows系统下Theef木马活动通信" name_en_US="Trojan Theef Trojan Communication on Windows" name_zh_CN="Windows系统下Theef木马活动通信" name_zh_TW="Windows系統下Theef木馬活動通信" ruleid="40770" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Sugar Suite GLOBALS[sugarEntry]参数本地文件包含攻击" name_en_US="Sugar Suite GLOBALS[sugarEntry] Parameter Local File Inclusion" name_zh_CN="Sugar Suite GLOBALS[sugarEntry]参数本地文件包含攻击" name_zh_TW="Sugar Suite GLOBALS[sugarEntry]參數本地文件包含攻擊" ruleid="30536" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware MySearch下载安装程序" name_en_US="Adware MySearch Downloading Installer on Windows" name_zh_CN="Windows系统下Adware MySearch下载安装程序" name_zh_TW="Windows系統下Adware MySearch下載安裝程序" ruleid="40746" visible="true" />
			<rule action=" db  screen " enabled="false" group="88088630" module="0" name="Microsoft SQL Server登录获取版本信息" name_en_US="Microsoft SQL Server Login Version Information Disclosure" name_zh_CN="Microsoft SQL Server登录获取版本信息" name_zh_TW="Microsoft SQL Server登錄獲取版本信息" ruleid="30528" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用ocPortal index.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via ocPortal index.php Script Vulnerability" name_zh_CN="利用ocPortal index.php脚本漏洞远程执行命令" name_zh_TW="利用ocPortal index.php腳本漏洞遠程執行命令" ruleid="20450" visible="true" />
			<rule action=" db  screen " enabled="true" group="98566439" module="0" name="Microsoft NNTP XPAT命令远程远程缓冲区溢出攻击" name_en_US="Microsoft NNTP XPAT Command Remote Buffer Overflow" name_zh_CN="Microsoft NNTP XPAT命令远程远程缓冲区溢出攻击" name_zh_TW="Microsoft NNTP XPAT命令遠程遠程緩沖區溢出攻擊" ruleid="20451" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="Microsoft Windows NetDDE远程缓冲区溢出攻击" name_en_US="Microsoft Windows NetDDE Remote Buffer Overflow" name_zh_CN="Microsoft Windows NetDDE远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows NetDDE遠程緩沖區溢出攻擊" ruleid="20452" visible="true" />
			<rule action=" db  screen " enabled="true" group="83887151" module="0" name="Windows系统下MSBLAST（冲击波）蠕虫利用TFTP服务传播" name_en_US="Worm MSBLAST Propagation on Windows via TFTP Service" name_zh_CN="Windows系统下MSBLAST（冲击波）蠕虫利用TFTP服务传播" name_zh_TW="Windows系統下MSBLAST（沖擊波）蠕蟲利用TFTP服務傳播" ruleid="20453" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615791" module="0" name="Sasser（震荡波）蠕虫FTP后门操作" name_en_US="Worm Sasser FTP Backdoor" name_zh_CN="Sasser（震荡波）蠕虫FTP后门操作" name_zh_TW="Sasser（震蕩波）蠕蟲FTP後門操作" ruleid="20454" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="雅虎通Webcam Upload ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Messenger Webcam Upload ActiveX Control Remote Stack Overflow" name_zh_CN="雅虎通Webcam Upload ActiveX控件远程栈溢出攻击" name_zh_TW="雅虎通Webcam Upload ActiveX控件遠程棧溢出攻擊" ruleid="20903" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="联众ConnectAndEnterRoom ActiveX控件栈溢出攻击" name_en_US="Ourgame ConnectAndEnterRoom ActiveX Control Stack Overflow" name_zh_CN="联众ConnectAndEnterRoom ActiveX控件栈溢出攻击" name_zh_TW="聯衆ConnectAndEnterRoom ActiveX控件棧溢出攻擊" ruleid="20900" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715494" module="0" name="SMTP服务带超长参数的EXPN命令溢出攻击" name_en_US="SMTP Service EXPN Command with Over-long Parameters Buffer Overflow" name_zh_CN="SMTP服务带超长参数的EXPN命令溢出攻击" name_zh_TW="SMTP服務帶超長參數的EXPN命令溢出攻擊" ruleid="20457" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266598" module="0" name="Apache_W32 Web Server分块编码传输方式远程溢出攻击" name_en_US="Apache_W32 Web Server Chunked Encoding Transmission Remote Buffer Overflow" name_zh_CN="Apache_W32 Web Server分块编码传输方式远程溢出攻击" name_zh_TW="Apache_W32 Web Server分塊編碼傳輸方式遠程溢出攻擊" ruleid="20458" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="UBBThreads dosearch.php远程SQL注入攻击" name_en_US="UBBThreads dosearch.php Remote SQL Injection" name_zh_CN="UBBThreads dosearch.php远程SQL注入攻击" name_zh_TW="UBBThreads dosearch.php遠程SQL注入攻擊" ruleid="20459" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware InstantAccess下载安装程序" name_en_US="Adware InstantAccess Downloading Installer on Windows" name_zh_CN="Windows系统下Adware InstantAccess下载安装程序" name_zh_TW="Windows系統下Adware InstantAccess下載安裝程序" ruleid="40745" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="迅雷PPLAYER.DLL_1_WORK ActiveX控件缓冲区溢出攻击" name_en_US="Xunlei PPLAYER.DLL_1_WORK ActiveX Control Buffer Overflow" name_zh_CN="迅雷PPLAYER.DLL_1_WORK ActiveX控件缓冲区溢出攻击" name_zh_TW="迅雷PPLAYER.DLL_1_WORK ActiveX控件緩沖區溢出攻擊" ruleid="20908" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832746" module="0" name="Borland InterBase ibserver.exe远程栈缓冲区溢出攻击" name_en_US="Borland InterBase ibserver.exe Remote Stack Buffer Overflow" name_zh_CN="Borland InterBase ibserver.exe远程栈缓冲区溢出攻击" name_zh_TW="Borland InterBase ibserver.exe遠程棧緩沖區溢出攻擊" ruleid="20909" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Alibaba alibaba.pl脚本漏洞扫描利用" name_en_US="Alibaba alibaba.pl Script Vulnerability Detection" name_zh_CN="Alibaba alibaba.pl脚本漏洞扫描利用" name_zh_TW="Alibaba alibaba.pl腳本漏洞掃描利用" ruleid="30525" visible="true" />
			<rule action=" db  screen " enabled="false" group="141566005" module="0" name="SSH服务返回版本信息" name_en_US="SSH Service Returning Version Information" name_zh_CN="SSH服务返回版本信息" name_zh_TW="SSH服務返回版本信息" ruleid="30527" visible="true" />
			<rule action=" db  screen " enabled="true" group="361824349" module="0" name="SNMP服务使用默认public口令回应" name_en_US="SNMP Service Responding to Default public Password" name_zh_CN="SNMP服务使用默认public口令回应" name_zh_TW="SNMP服務使用默認public口令回應" ruleid="70085" visible="false" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="site_searcher.cgi脚本漏洞扫描探测" name_en_US="site_searcher.cgi Script Vulnerability Detection" name_zh_CN="site_searcher.cgi脚本漏洞扫描探测" name_zh_TW="site_searcher.cgi腳本漏洞掃描探測" ruleid="30254" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－RESET扫描" name_en_US="Server Port Scan - RESET Scan" name_zh_CN="服务器端口扫描－RESET扫描" name_zh_TW="服務器端口掃描－RESET掃描" ruleid="30521" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－ACK扫描" name_en_US="Server Port Scan - ACK Scan" name_zh_CN="服务器端口扫描－ACK扫描" name_zh_TW="服務器端口掃描－ACK掃描" ruleid="30520" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256698" module="0" name="Home FTP Server远程目录遍历攻击" name_en_US="Home FTP Server Remote Directory Traversal" name_zh_CN="Home FTP Server远程目录遍历攻击" name_zh_TW="Home FTP Server遠程目錄遍曆攻擊" ruleid="30534" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Allaire JRun Servlet畸形请求远程获取源码攻击" name_en_US="Allaire JRun Servlet Malformed Request Source Code Disclosure" name_zh_CN="Allaire JRun Servlet畸形请求远程获取源码攻击" name_zh_TW="Allaire JRun Servlet畸形請求遠程獲取源碼攻擊" ruleid="30523" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－SYNACK扫描" name_en_US="Server Port Scan - SYNACK Scan" name_zh_CN="服务器端口扫描－SYNACK扫描" name_zh_TW="服務器端口掃描－SYNACK掃描" ruleid="30522" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Matt Kruse calendar-admin.pl脚本漏洞扫描探测" name_en_US="Matt Kruse calendar-admin.pl Script Vulnerability Detection" name_zh_CN="Matt Kruse calendar-admin.pl脚本漏洞扫描探测" name_zh_TW="Matt Kruse calendar-admin.pl腳本漏洞掃描探測" ruleid="30168" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft IIS 5.0 codebrws.asp脚本漏洞扫描探测" name_en_US="Microsoft IIS 5.0 codebrws.asp Script Vulnerability Detection" name_zh_CN="Microsoft IIS 5.0 codebrws.asp脚本漏洞扫描探测" name_zh_TW="Microsoft IIS 5.0 codebrws.asp腳本漏洞掃描探測" ruleid="30165" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS 4.0 showcode.asp脚本漏洞遍历目录读取文件" name_en_US="Directory Traversal File Reading via Microsoft IIS 4.0 showcode.asp Script Vulnerability" name_zh_CN="利用Microsoft IIS 4.0 showcode.asp脚本漏洞遍历目录读取文件" name_zh_TW="利用Microsoft IIS 4.0 showcode.asp腳本漏洞遍曆目錄讀取文件" ruleid="30164" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Matt Kruse calendar.pl脚本漏洞扫描探测" name_en_US="Matt Kruse calendar.pl Script Vulnerability Detection" name_zh_CN="Matt Kruse calendar.pl脚本漏洞扫描探测" name_zh_TW="Matt Kruse calendar.pl腳本漏洞掃描探測" ruleid="30167" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS 5.0 codebrws.asp脚本漏洞遍历目录读取文件" name_en_US="Directory Traversal File Reading via Microsoft IIS 5.0 codebrws.asp Script Vulnerability" name_zh_CN="利用Microsoft IIS 5.0 codebrws.asp脚本漏洞遍历目录读取文件" name_zh_TW="利用Microsoft IIS 5.0 codebrws.asp腳本漏洞遍曆目錄讀取文件" ruleid="30166" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 FrontPage 98扩展察看CGI脚本源代码攻击" name_en_US="Microsoft IIS 4.0 FrontPage 98 Extension CGI Script Source Code Disclosure" name_zh_CN="Microsoft IIS 4.0 FrontPage 98扩展察看CGI脚本源代码攻击" name_zh_TW="Microsoft IIS 4.0 FrontPage 98擴展察看CGI腳本源代碼攻擊" ruleid="30160" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft IIS 4.0 showcode.asp脚本漏洞扫描探测" name_en_US="Microsoft IIS 4.0 showcode.asp Script Vulnerability Detection" name_zh_CN="Microsoft IIS 4.0 showcode.asp脚本漏洞扫描探测" name_zh_TW="Microsoft IIS 4.0 showcode.asp腳本漏洞掃描探測" ruleid="30163" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Rod Clark sendform.cgi脚本漏洞扫描探测" name_en_US="Rod Clark sendform.cgi Script Vulnerability Detection" name_zh_CN="Rod Clark sendform.cgi脚本漏洞扫描探测" name_zh_TW="Rod Clark sendform.cgi腳本漏洞掃描探測" ruleid="30162" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725679" module="0" name="Sun Solaris kcms_server远程读取任意文件攻击" name_en_US="Sun Solaris kcms_server Remote Arbitrary File Reading" name_zh_CN="Sun Solaris kcms_server远程读取任意文件攻击" name_zh_TW="Sun Solaris kcms_server遠程讀取任意文件攻擊" ruleid="20296" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420715" module="0" name="Microsoft Windows Locator服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Locator Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows Locator服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows Locator服務遠程緩沖區溢出攻擊" ruleid="20297" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="利用psunami.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via psunami.cgi Script Vulnerability" name_zh_CN="利用psunami.cgi脚本漏洞远程执行命令" name_zh_TW="利用psunami.cgi腳本漏洞遠程執行命令" ruleid="20294" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL COM_CHANGE_USER功能口令认证缺陷漏洞攻击" name_en_US="MySQL COM_CHANGE_USER Function Password Authentication Vulnerability" name_zh_CN="MySQL COM_CHANGE_USER功能口令认证缺陷漏洞攻击" name_zh_TW="MySQL COM_CHANGE_USER功能口令認證缺陷漏洞攻擊" ruleid="20295" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423911" module="0" name="利用DCP-Portal lib.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via DCP-Portal lib.php Script Vulnerability" name_zh_CN="利用DCP-Portal lib.php脚本漏洞远程执行命令" name_zh_TW="利用DCP-Portal lib.php腳本漏洞遠程執行命令" ruleid="20292" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995247" module="0" name="Solaris rpc.ttdbserverd远程堆溢出攻击" name_en_US="Solaris rpc.ttdbserverd Remote Stack Overflow" name_zh_CN="Solaris rpc.ttdbserverd远程堆溢出攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程堆溢出攻擊" ruleid="20293" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Open WebMail openwebmail-shared.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Open WebMail openwebmail-shared.pl Script Vulnerability" name_zh_CN="利用Open WebMail openwebmail-shared.pl脚本漏洞远程执行命令" name_zh_TW="利用Open WebMail openwebmail-shared.pl腳本漏洞遠程執行命令" ruleid="20290" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用Active PHP Bookmarks脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Active PHP Bookmarks Script Vulnerability" name_zh_CN="利用Active PHP Bookmarks脚本漏洞远程执行命令" name_zh_TW="利用Active PHP Bookmarks腳本漏洞遠程執行命令" ruleid="20291" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="RXS-3211 IP摄像头远程密码信息泄露漏洞" name_en_US="RXS-3211 IP Camera UDP Packet Password Information Disclosure Vulnerability" name_zh_CN="RXS-3211 IP摄像头远程密码信息泄露漏洞" name_zh_TW="RXS-3211 IP攝像頭遠程密碼信息泄露漏洞" ruleid="30563" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615035" module="0" name="CVE-2012-0012 Internet Explorer空字节信息泄露漏洞(MS12-010)" name_en_US="CVE-2012-0012 Internet Explorer Null Byte Information Disclosure Vulnerability(MS12-010)" name_zh_CN="CVE-2012-0012 Internet Explorer空字节信息泄露漏洞(MS12-010)" name_zh_TW="CVE-2012-0012 Internet Explorer空字節信息泄露漏洞(MS12-010)" ruleid="30567" visible="true" />
			<rule action=" db  screen " enabled="true" group="208666810" module="0" name="Putty中文版被植入后门解析回传服务器域名" name_en_US="Chinese Version Putty Backdoor Resolution Server Domain Name" name_zh_CN="Putty中文版被植入后门解析回传服务器域名" name_zh_TW="Putty中文版被植入後門解析回傳服務器域名" ruleid="30566" visible="true" />
			<rule action=" db  screen " enabled="true" group="99622970" module="0" name="Nessus远程扫描RDP漏洞(CVE-2012-0002)" name_en_US="Nessus Remote Scan RDP Vulnerability (CVE-2012-0002)" name_zh_CN="Nessus远程扫描RDP漏洞(CVE-2012-0002)" name_zh_TW="Nessus遠程掃描RDP漏洞(CVE-2012-0002)" ruleid="30569" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157638" module="0" name="通过Web服务执行tftp.exe程序" name_en_US="tftp.exe Program Execution via Web Service" name_zh_CN="通过Web服务执行tftp.exe程序" name_zh_TW="通過Web服務執行tftp.exe程序" ruleid="40146" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Bifrose Connect to Controller木马网络数据通信" name_en_US="TROJAN Bifrose Connect to Controller" name_zh_CN="Bifrose Connect to Controller木马网络数据通信" name_zh_TW="Bifrose Connect to Controller木馬網絡數據通信" ruleid="40922" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="LD Pinch 木马网络数据通信" name_en_US="TROJAN LD Pinch Checkin HTTP POST on port 82" name_zh_CN="LD Pinch 木马网络数据通信" name_zh_TW="LD Pinch 木馬網絡數據通信" ruleid="40923" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Win32.Agent.bea木马网络数据通信" name_en_US="TROJAN Win32.Agent.bea C&amp;C connection" name_zh_CN="Win32.Agent.bea木马网络数据通信" name_zh_TW="Win32.Agent.bea木馬網絡數據通信" ruleid="40920" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Bifrose Connect to Controller variant 2木马网络数据通信" name_en_US="TROJAN Bifrose Connect to Controller variant 2" name_zh_CN="Bifrose Connect to Controller variant 2木马网络数据通信" name_zh_TW="Bifrose Connect to Controller variant 2木馬網絡數據通信" ruleid="40921" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="通过Web服务执行cmd.exe程序" name_en_US="cmd.exe Program Execution via Web Service" name_zh_CN="通过Web服务执行cmd.exe程序" name_zh_TW="通過Web服務執行cmd.exe程序" ruleid="40148" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="SopCast网络电视流媒体播放(TCP)" name_en_US="SopCast Network TV Streaming Media Playing (TCP)" name_zh_CN="SopCast网络电视流媒体播放(TCP)" name_zh_TW="SopCast網絡電視流媒體播放(TCP)" ruleid="50211" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="SopCast网络电视流媒体播放(UDP)" name_en_US="SopCast Network TV Streaming Media Playing (UDP)" name_zh_CN="SopCast网络电视流媒体播放(UDP)" name_zh_TW="SopCast網絡電視流媒體播放(UDP)" ruleid="50210" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="NEO(泥巴网)网络电视流媒体播放(UDP)" name_en_US="NEO(nibaa.tv) Network TV Streaming Media Playing (UDP)" name_zh_CN="NEO(泥巴网)网络电视流媒体播放(UDP)" name_zh_TW="NEO(泥巴網)網絡電視流媒體播放(UDP)" ruleid="50213" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="FLV视频文件在线流媒体播放" name_en_US="FLV Video File Online Streaming Media Playing" name_zh_CN="FLV视频文件在线流媒体播放" name_zh_TW="FLV視頻文件在線流媒體播放" ruleid="50212" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="TVUPlayer网络电视流媒体播放(TCP)" name_en_US="TVUPlayer Network TV Streaming Media Playing (TCP)" name_zh_CN="TVUPlayer网络电视流媒体播放(TCP)" name_zh_TW="TVUPlayer網絡電視流媒體播放(TCP)" ruleid="50215" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="TVUPlayer网络电视流媒体播放(UDP)" name_en_US="TVUPlayer Network TV Streaming Media Playing (UDP)" name_zh_CN="TVUPlayer网络电视流媒体播放(UDP)" name_zh_TW="TVUPlayer網絡電視流媒體播放(UDP)" ruleid="50214" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析操作软件渤海-华泰-财富证券用户登录" name_en_US="Stock Market Analysis Software Bohai Securities User Login" name_zh_CN="股票行情分析操作软件渤海-华泰-财富证券用户登录" name_zh_TW="股票行情分析操作軟件渤海-華泰-財富證券用戶登錄" ruleid="50217" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析操作软件飞天行情分析系统用户登录" name_en_US="Stock Market Analysis Software Feitian Market Analysis System User Login" name_zh_CN="股票行情分析操作软件飞天行情分析系统用户登录" name_zh_TW="股票行情分析操作軟件飛天行情分析系統用戶登錄" ruleid="50216" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析操作软件东菀证券-宏源-华融-中信-财富证券用户登录" name_en_US="Stock Market Analtsis Software Dongwan Securities - Hongyuan - Huarong - Zhongxin - Fortune Securities User Login" name_zh_CN="股票行情分析操作软件东菀证券-宏源-华融-中信-财富证券用户登录" name_zh_TW="股票行情分析操作軟件東菀證券-宏源-華融-中信-財富證券用戶登錄" ruleid="50219" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="边锋网络游戏世界用户登陆" name_en_US="BianFeng Network Game World User Login" name_zh_CN="边锋网络游戏世界用户登陆" name_zh_TW="邊鋒網絡遊戲世界用戶登陸" ruleid="50218" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="上海浦东发展银行个人网上银行用户登录" name_en_US="Shanghai Pudong Development Bank Personal Internet Banking User Login" name_zh_CN="上海浦东发展银行个人网上银行用户登录" name_zh_TW="上海浦東發展銀行個人網上銀行用戶登錄" ruleid="50314" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="Molly系列脚本漏洞扫描探测" name_en_US="Molly Series Script Vulnerability Detection" name_zh_CN="Molly系列脚本漏洞扫描探测" name_zh_TW="Molly系列腳本漏洞掃描探測" ruleid="30298" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="TFTP: Dabber 蠕虫" name_en_US="TFTP: Dabber Worm" name_zh_CN="TFTP: Dabber 蠕虫" name_zh_TW="TFTP: Dabber 蠕蟲" ruleid="62116" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="TFTP: 超长文件名溢出漏洞" name_en_US="TFTP: Filename Over Long" name_zh_CN="TFTP: 超长文件名溢出漏洞" name_zh_TW="TFTP: 超長文件名溢出漏洞" ruleid="62115" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="深圳发展银行网上银行用户登录" name_en_US="Shenzhen Development Bank Internet Banking User Login" name_zh_CN="深圳发展银行网上银行用户登录" name_zh_TW="深圳發展銀行網上銀行用戶登錄" ruleid="50315" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="广东发展银行通用版个人网上银行用户登录" name_en_US="Generic Version of Guangdong Development Bank Personal Internet Banking User Login" name_zh_CN="广东发展银行通用版个人网上银行用户登录" name_zh_TW="廣東發展銀行通用版個人網上銀行用戶登錄" ruleid="50316" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Storm Worm Encrypted Variant 1 Traffic 1木马网络数据通信" name_en_US="TROJAN Storm Worm Encrypted Variant 1 Traffic 1" name_zh_CN="Storm Worm Encrypted Variant 1 Traffic 1木马网络数据通信" name_zh_TW="Storm Worm Encrypted Variant 1 Traffic 1木馬網絡數據通信" ruleid="40856" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Storm Worm Encrypted Variant 1 Traffic 2木马网络数据通信" name_en_US="TROJAN Storm Worm Encrypted Variant 1 Traffic 2" name_zh_CN="Storm Worm Encrypted Variant 1 Traffic 2木马网络数据通信" name_zh_TW="Storm Worm Encrypted Variant 1 Traffic 2木馬網絡數據通信" ruleid="40857" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国光大银行企业网上银行用户登录" name_en_US="China Everbright Bank Personal Internet Banking User Login" name_zh_CN="中国光大银行企业网上银行用户登录" name_zh_TW="中國光大銀行企業網上銀行用戶登錄" ruleid="50317" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="POLICY Possible Spambot Host DNS MX Query High Count木马网络数据通信" name_en_US="POLICY Possible Spambot Host DNS MX Query High Count" name_zh_CN="POLICY Possible Spambot Host DNS MX Query High Count木马网络数据通信" name_zh_TW="POLICY Possible Spambot Host DNS MX Query High Count木馬網絡數據通信" ruleid="40853" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Sojourn sojourn.cgi脚本漏洞读取文件" name_en_US="File Reading via Sojourn sojourn.cgi Script Vulnerability" name_zh_CN="利用Sojourn sojourn.cgi脚本漏洞读取文件" name_zh_TW="利用Sojourn sojourn.cgi腳本漏洞讀取文件" ruleid="30369" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGI-World Poll脚本漏洞扫描探测" name_en_US="CGI-World Poll Script Vulnerability Detection" name_zh_CN="CGI-World Poll脚本漏洞扫描探测" name_zh_TW="CGI-World Poll腳本漏洞掃描探測" ruleid="30368" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用CGI-World Poll CGI脚本漏洞获取系统文件" name_en_US="System File Disclosure via CGI-World Poll CGI Script Vulnerability" name_zh_CN="利用CGI-World Poll CGI脚本漏洞获取系统文件" name_zh_TW="利用CGI-World Poll CGI腳本漏洞獲取系統文件" ruleid="30367" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="利用OpenLinux rpm_query CGI获取系统RPM包安装信息" name_en_US="RPM Package Installation Detection via OpenLinux rpm_query CGI" name_zh_CN="利用OpenLinux rpm_query CGI获取系统RPM包安装信息" name_zh_TW="利用OpenLinux rpm_query CGI獲取系統RPM包安裝信息" ruleid="30366" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423925" module="0" name="PhpSmsSend smssend.php脚本漏洞扫描利用" name_en_US="PhpSmsSend smssend.php Script Vulnerability Detection" name_zh_CN="PhpSmsSend smssend.php脚本漏洞扫描利用" name_zh_TW="PhpSmsSend smssend.php腳本漏洞掃描利用" ruleid="30365" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266486" module="0" name="通过Web服务访问.htaccess文件" name_en_US="Access to .htaccess file via Web Service" name_zh_CN="通过Web服务访问.htaccess文件" name_zh_TW="通過Web服務訪問.htaccess文件" ruleid="30364" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Way-Board way-board.cgi脚本漏洞远程浏览文件" name_en_US="Remote File Viewing via Way-Board way-board.cgi Script Vulnerability" name_zh_CN="利用Way-Board way-board.cgi脚本漏洞远程浏览文件" name_zh_TW="利用Way-Board way-board.cgi腳本漏洞遠程浏覽文件" ruleid="30363" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用PHP-Nuke admin.php脚本漏洞浏览本地文件" name_en_US="Local File Browsing via PHP-Nuke admin.php Script Vulnerability" name_zh_CN="利用PHP-Nuke admin.php脚本漏洞浏览本地文件" name_zh_TW="利用PHP-Nuke admin.php腳本漏洞浏覽本地文件" ruleid="30361" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="ION ion-p.exe脚本漏洞扫描利用" name_en_US="ION ion-p.exe Script Vulnerability Detection" name_zh_CN="ION ion-p.exe脚本漏洞扫描利用" name_zh_TW="ION ion-p.exe腳本漏洞掃描利用" ruleid="30360" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="扫描探测helpme.html/helpme2.html页面文件" name_en_US="helpme.html/helpme2.html Page File Detection" name_zh_CN="扫描探测helpme.html/helpme2.html页面文件" name_zh_TW="掃描探測helpme.html/helpme2.html頁面文件" ruleid="30494" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国中信银行个人网上银行用户登录" name_en_US="China CITIC Bank Internet Banking User Login" name_zh_CN="中国中信银行个人网上银行用户登录" name_zh_TW="中國中信銀行個人網上銀行用戶登錄" ruleid="50312" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国民生银行个人网上银行用户登录" name_en_US="China Minsheng Bank Internet Banking User Login" name_zh_CN="中国民生银行个人网上银行用户登录" name_zh_TW="中國民生銀行個人網上銀行用戶登錄" ruleid="50313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="SquirrelMail left_main.php脚本漏洞扫描探测" name_en_US="SquirrelMail left_main.php Script Vulnerability Detection" name_zh_CN="SquirrelMail left_main.php脚本漏洞扫描探测" name_zh_TW="SquirrelMail left_main.php腳本漏洞掃描探測" ruleid="30385" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="SquirrelSpell check_me.mod.php脚本漏洞扫描探测" name_en_US="SquirrelSpell check_me.mod.php Script Vulnerability Detection" name_zh_CN="SquirrelSpell check_me.mod.php脚本漏洞扫描探测" name_zh_TW="SquirrelSpell check_me.mod.php腳本漏洞掃描探測" ruleid="30384" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="Oracle Reports Server rwcgi60脚本漏洞扫描探测" name_en_US="Oracle Reports Server rwcgi60 Script Vulnerability Detection" name_zh_CN="Oracle Reports Server rwcgi60脚本漏洞扫描探测" name_zh_TW="Oracle Reports Server rwcgi60腳本漏洞掃描探測" ruleid="30387" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Messagerie supp_membre.php脚本漏洞扫描探测" name_en_US="Messagerie supp_membre.php Script Vulnerability Detection" name_zh_CN="Messagerie supp_membre.php脚本漏洞扫描探测" name_zh_TW="Messagerie supp_membre.php腳本漏洞掃描探測" ruleid="30386" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Webspeed wsisa.dll脚本漏洞扫描探测" name_en_US="Webspeed wsisa.dll Script Vulnerability Detection" name_zh_CN="Webspeed wsisa.dll脚本漏洞扫描探测" name_zh_TW="Webspeed wsisa.dll腳本漏洞掃描探測" ruleid="30381" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="SWSoft ASPSeek s.cgi CGI程序漏洞扫描探测" name_en_US="SWSoft ASPSeek s.cgi CGI Vulnerability Detection" name_zh_CN="SWSoft ASPSeek s.cgi CGI程序漏洞扫描探测" name_zh_TW="SWSoft ASPSeek s.cgi CGI程序漏洞掃描探測" ruleid="30380" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Blahz-DNS dostuff.php脚本漏洞扫描探测" name_en_US="Blahz-DNS dostuff.php Script Vulnerability Detection" name_zh_CN="Blahz-DNS dostuff.php脚本漏洞扫描探测" name_zh_TW="Blahz-DNS dostuff.php腳本漏洞掃描探測" ruleid="30383" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="DNSTools dnstools.php脚本漏洞扫描探测" name_en_US="DNSTools dnstools.php Script Vulnerability Detection" name_zh_CN="DNSTools dnstools.php脚本漏洞扫描探测" name_zh_TW="DNSTools dnstools.php腳本漏洞掃描探測" ruleid="30382" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Lovgate蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Lovgate" name_zh_CN="SMTP服务发送W32.Lovgate蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Lovgate蠕蟲病毒郵件" ruleid="40452" visible="true" />
			<rule action=" db  screen " enabled="true" group="72613967" module="0" name="POP3服务接收W32.Lovgate蠕虫病毒邮件" name_en_US="POP3 Service Receiving Mails with the W32.Lovgate" name_zh_CN="POP3服务接收W32.Lovgate蠕虫病毒邮件" name_zh_TW="POP3服務接收W32.Lovgate蠕蟲病毒郵件" ruleid="40453" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="Windows系统Nimda蠕虫利用共享传播" name_en_US="Worm Nimda Propagation on Windows via Sharing" name_zh_CN="Windows系统Nimda蠕虫利用共享传播" name_zh_TW="Windows系統Nimda蠕蟲利用共享傳播" ruleid="40450" visible="true" />
			<rule action=" db  screen " enabled="true" group="95682635" module="0" name="Windows系统求职信病毒利用共享传播" name_en_US="Worm.Klez Propagation on Windows via Sharing" name_zh_CN="Windows系统求职信病毒利用共享传播" name_zh_TW="Windows系統求職信病毒利用共享傳播" ruleid="40451" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="通过访问SnoopServlet Servlet获取服务器软件安装路径信息" name_en_US="Server Installation Path Disclosure from SnoopServlet Servlet" name_zh_CN="通过访问SnoopServlet Servlet获取服务器软件安装路径信息" name_zh_TW="通過訪問SnoopServlet Servlet獲取服務器軟件安裝路徑信息" ruleid="30389" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="访问TroubleShooter Servlet获取服务器软件安装路径信息" name_en_US="Server Installation Path Disclosure from TroubleShooter Servlet" name_zh_CN="访问TroubleShooter Servlet获取服务器软件安装路径信息" name_zh_TW="訪問TroubleShooter Servlet獲取服務器軟件安裝路徑信息" ruleid="30388" visible="true" />
			<rule action=" db  screen " enabled="true" group="95682639" module="0" name="Windows系统下W32.Lovgate蠕虫病毒通过共享传播" name_en_US="W32.Lovgate Propagation by Sharing on Windows" name_zh_CN="Windows系统下W32.Lovgate蠕虫病毒通过共享传播" name_zh_TW="Windows系統下W32.Lovgate蠕蟲病毒通過共享傳播" ruleid="40454" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Bugbear.B@mm蠕虫病毒的窃密邮件" name_en_US="SMTP Service Sending Information Theft Mails with W32.Bugbear.B@mm" name_zh_CN="SMTP服务发送W32.Bugbear.B@mm蠕虫病毒的窃密邮件" name_zh_TW="SMTP服務發送W32.Bugbear.B@mm蠕蟲病毒的竊密郵件" ruleid="40455" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN用户音频聊天" name_en_US="Instant Messaging Software MSN User Audio Chatting" name_zh_CN="即时通信软件MSN用户音频聊天" name_zh_TW="即時通信軟件MSN用戶音頻聊天" ruleid="50094" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件操盘手用户登录" name_en_US="Stock Market Analysis Software Caopanshou User Login" name_zh_CN="股票行情分析操作软件操盘手用户登录" name_zh_TW="股票行情分析操作軟件操盤手用戶登錄" ruleid="50329" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络代理软件vidalia bundle火狐代理数据通信" name_en_US="Network Agent Software Vidalia Bundle
Firefox Agents Data Communication" name_zh_CN="网络代理软件vidalia bundle火狐代理数据通信" name_zh_TW="網絡代理軟件vidalia bundle火狐代理數據通信" ruleid="50328" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680341" module="0" name="vnc软件连接" name_en_US="vnc software connection" name_zh_CN="vnc软件连接" name_zh_TW="vnc軟件連接" ruleid="50458" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680341" module="0" name="radmin软件连接" name_en_US="radmin software connection" name_zh_CN="radmin软件连接" name_zh_TW="radmin軟件連接" ruleid="50457" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN用户联系人状态改变为离开" name_en_US="Instant Messaging Software MSN User Contact State Changed into &quot;Leave&quot;" name_zh_CN="即时通信软件MSN用户联系人状态改变为离开" name_zh_TW="即時通信軟件MSN用戶聯系人狀態改變爲離開" ruleid="50093" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件百度Hi用户登录" name_en_US="Instant Messaging Software Baidu Hi User Login" name_zh_CN="即时通信软件百度Hi用户登录" name_zh_TW="即時通信軟件百度Hi用戶登錄" ruleid="50327" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件和讯股道黄金版用户登陆" name_en_US="Stock Market Analysis Software Hexungudao Gold Edition User Login" name_zh_CN="股票行情分析操作软件和讯股道黄金版用户登陆" name_zh_TW="股票行情分析操作軟件和訊股道黃金版用戶登陸" ruleid="50326" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络游戏风雷游戏中心客户端连接服务器" name_en_US="Connection from Client to Server of Online Game fenglei Game Center" name_zh_CN="网络游戏风雷游戏中心客户端连接服务器" name_zh_TW="網絡遊戲風雷遊戲中心客戶端連接服務器" ruleid="50321" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="simplite MSN收发消息" name_en_US="simplite MSN Sending or Receiving Message" name_zh_CN="simplite MSN收发消息" name_zh_TW="simplite MSN收發消息" ruleid="50320" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="期货分析软件文华财经2008用户登录" name_en_US="Futures Analysis Software Webstock2008 User Login" name_zh_CN="期货分析软件文华财经2008用户登录" name_zh_TW="期貨分析軟件文華財經2008用戶登錄" ruleid="50323" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN用户状态改变为离开" name_en_US="Instant Messaging Software MSN User State Changed into &quot;Leave&quot;" name_zh_CN="即时通信软件MSN用户状态改变为离开" name_zh_TW="即時通信軟件MSN用戶狀態改變爲離開" ruleid="50092" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN传送文件失败" name_en_US="Instant Messaging Software MSN Sending Files Failed" name_zh_CN="即时通信软件MSN传送文件失败" name_zh_TW="即時通信軟件MSN傳送文件失敗" ruleid="50091" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN传送文件成功" name_en_US="Instant Messaging Software MSN Sending Files Succeeded" name_zh_CN="即时通信软件MSN传送文件成功" name_zh_TW="即時通信軟件MSN傳送文件成功" ruleid="50090" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="利用SQLQHit.asp CGI脚本漏洞收集系统信息" name_en_US="System Information Collection via SQLQHit.asp CGI Script" name_zh_CN="利用SQLQHit.asp CGI脚本漏洞收集系统信息" name_zh_TW="利用SQLQHit.asp CGI腳本漏洞收集系統信息" ruleid="30496" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Stacheldraht客户端操作" name_en_US="DDOS Stacheldraht Client Operation" name_zh_CN="DDOS工具Stacheldraht客户端操作" name_zh_TW="DDOS工具Stacheldraht客戶端操作" ruleid="40367" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="江海证券通达信交易" name_en_US="Jianhai Securities Tongdaxin market transaction" name_zh_CN="江海证券通达信交易" name_zh_TW="江海證券通達信交易" ruleid="51032" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223066" module="0" name="电子邮件附件大小超出限制" name_en_US="Email attachment is larger than the specified size" name_zh_CN="电子邮件附件大小超出限制" name_zh_TW="電子郵件附件大小超出限制" ruleid="51033" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="安信证券-核新" name_en_US="Essence Securities-Hexin" name_zh_CN="安信证券-核新" name_zh_TW="安信證券-核新" ruleid="51030" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="江海证券通达信行情" name_en_US="Jianhai Securities Tongdaxin market analysis" name_zh_CN="江海证券通达信行情" name_zh_TW="江海證券通達信行情" ruleid="51031" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616789" module="0" name="Microsoft Windows TCP/IP协议栈畸形IP头选项拒绝服务攻击" name_en_US="Microsoft Windows TCP/IP Protocol Stack Malformed IP Header Option Denial of Service" name_zh_CN="Microsoft Windows TCP/IP协议栈畸形IP头选项拒绝服务攻击" name_zh_TW="Microsoft Windows TCP/IP協議棧畸形IP頭選項拒絕服務攻擊" ruleid="10129" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223069" module="0" name="有道网络爬虫抓取网页信息" name_en_US="YoudaoBot Web Crawlers Capture Page Information" name_zh_CN="有道网络爬虫抓取网页信息" name_zh_TW="有道網絡爬蟲抓取網頁信息" ruleid="50372" visible="true" />
			<rule action=" db  screen " enabled="false" group="72613967" module="0" name="POP3服务接收.vbs病毒邮件" name_en_US="POP3 Service Receiving Mails with .vbs Virus" name_zh_CN="POP3服务接收.vbs病毒邮件" name_zh_TW="POP3服務接收.vbs病毒郵件" ruleid="50039" visible="true" />
			<rule action=" db  screen " enabled="true" group="209977423" module="0" name="SMTP服务发送可疑病毒邮件" name_en_US="SMTP Service Sending Mails with Suspicious Virus" name_zh_CN="SMTP服务发送可疑病毒邮件" name_zh_TW="SMTP服務發送可疑病毒郵件" ruleid="50038" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365531" module="0" name="Wu-ftpd多文件名扩展请求远程拒绝服务攻击" name_en_US="Wu-ftpd multiple Filename Requests Remote Denial of Service" name_zh_CN="Wu-ftpd多文件名扩展请求远程拒绝服务攻击" name_zh_TW="Wu-ftpd多文件名擴展請求遠程拒絕服務攻擊" ruleid="10128" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务普通用户认证成功" name_en_US="FTP Service Unprivileged User Authentication Success" name_zh_CN="FTP服务普通用户认证成功" name_zh_TW="FTP服務普通用戶認證成功" ruleid="50031" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618894" module="0" name="DameWare远程控制软件建立连接" name_en_US="Remote Control Software DameWare Connection" name_zh_CN="DameWare远程控制软件建立连接" name_zh_TW="DameWare遠程控制軟件建立連接" ruleid="50030" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780829" module="0" name="SMTP服务用户认证" name_en_US="SMTP Service User Authentication" name_zh_CN="SMTP服务用户认证" name_zh_TW="SMTP服務用戶認證" ruleid="50033" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Worm.MiMail蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Worm.MiMail" name_zh_CN="SMTP服务发送Worm.MiMail蠕虫病毒邮件" name_zh_TW="SMTP服務發送Worm.MiMail蠕蟲病毒郵件" ruleid="50032" visible="true" />
			<rule action=" db  screen " enabled="true" group="210829401" module="0" name="IMAP服务用户认证" name_en_US="IMAP Service User Authentication" name_zh_CN="IMAP服务用户认证" name_zh_TW="IMAP服務用戶認證" ruleid="50035" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780829" module="0" name="SMTP服务用户认证" name_en_US="SMTP Service User Authentication" name_zh_CN="SMTP服务用户认证" name_zh_TW="SMTP服務用戶認證" ruleid="50034" visible="true" />
			<rule action=" db  screen " enabled="true" group="209977423" module="0" name="SMTP服务发送.vbs病毒邮件" name_en_US="SMTP Service Sending Mails with .vbs Virus" name_zh_CN="SMTP服务发送.vbs病毒邮件" name_zh_TW="SMTP服務發送.vbs病毒郵件" ruleid="50037" visible="true" />
			<rule action=" db  screen " enabled="true" group="210829401" module="0" name="IMAP服务用户认证" name_en_US="IMAP Service User Authentication" name_zh_CN="IMAP服务用户认证" name_zh_TW="IMAP服務用戶認證" ruleid="50036" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PostNuke readmsg.php CGI脚本SQL注入攻击" name_en_US="PostNuke readmsg.php CGI Script SQL Injection" name_zh_CN="PostNuke readmsg.php CGI脚本SQL注入攻击" name_zh_TW="PostNuke readmsg.php CGI腳本SQL注入攻擊" ruleid="20502" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="OpenBB read.php CGI脚本SQL注入攻击" name_en_US="OpenBB read.php CGI Script SQL Injection" name_zh_CN="OpenBB read.php CGI脚本SQL注入攻击" name_zh_TW="OpenBB read.php CGI腳本SQL注入攻擊" ruleid="20503" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Oracle Java Runtime Environment组件Hotspot子组件完全控制和拒绝服务漏洞(CVE-2012-1723)" name_en_US="Oracle Java SE CVE-2012-1723 Remote Code Execution Vulnerability" name_zh_CN="Oracle Java Runtime Environment组件Hotspot子组件完全控制和拒绝服务漏洞(CVE-2012-1723)" name_zh_TW="Oracle Java Runtime Environment組件Hotspot子組件完全控制和拒絕服務漏洞(CVE-2012-1723)" ruleid="22290" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423918" module="0" name="phpBB bbcode.php CGI脚本跨站脚本执行攻击" name_en_US="phpBB bbcode.php CGI Cross-Site Scripting" name_zh_CN="phpBB bbcode.php CGI脚本跨站脚本执行攻击" name_zh_TW="phpBB bbcode.php CGI腳本跨站腳本執行攻擊" ruleid="20500" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="UDP畸形数据包拒绝服务攻击" name_en_US="Malformed UDP Packet Denial of Service" name_zh_CN="UDP畸形数据包拒绝服务攻击" name_zh_TW="UDP畸形數據包拒絕服務攻擊" ruleid="10120" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616790" module="0" name="Microsoft NT RAS/PPTP畸形控制包远程拒绝服务攻击" name_en_US="Microsoft NT RAS/PPTP Malformed Packet Remote Denial of Service" name_zh_CN="Microsoft NT RAS/PPTP畸形控制包远程拒绝服务攻击" name_zh_TW="Microsoft NT RAS/PPTP畸形控制包遠程拒絕服務攻擊" ruleid="10127" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814421" module="0" name="DNS服务连接请求淹没拒绝服务攻击" name_en_US="DNS Service Connection Request Flood Denial of Service" name_zh_CN="DNS服务连接请求淹没拒绝服务攻击" name_zh_TW="DNS服務連接請求淹沒拒絕服務攻擊" ruleid="10126" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具KuGoo文件下载" name_en_US="P2P File Sharing Tool KuGoo File Downloading" name_zh_CN="P2P文件共享工具KuGoo文件下载" name_zh_TW="P2P文件共享工具KuGoo文件下載" ruleid="50145" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具百宝文件下载" name_en_US="P2P File Sharing Tool 100bao File Downloading" name_zh_CN="P2P文件共享工具百宝文件下载" name_zh_TW="P2P文件共享工具百寶文件下載" ruleid="50144" visible="true" />
			<rule action=" db  screen " enabled="true" group="368115781" module="0" name="DB2数据库管理服务回应" name_en_US="DB2 Database Management Service Response" name_zh_CN="DB2数据库管理服务回应" name_zh_TW="DB2數據庫管理服務回應" ruleid="50147" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具天网Maze文件下载" name_en_US="P2P File Sharing Tool Maze File Downloading" name_zh_CN="P2P文件共享工具天网Maze文件下载" name_zh_TW="P2P文件共享工具天網Maze文件下載" ruleid="50146" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="PPStream网络电视流媒体播放" name_en_US="PPStream Network TV Streaming Media Playing" name_zh_CN="PPStream网络电视流媒体播放" name_zh_TW="PPStream網絡電視流媒體播放" ruleid="50141" visible="true" />
			<rule action=" db  screen " enabled="true" group="89131030" module="0" name="Windows 2000/NT打印服务拒绝服务攻击" name_en_US="Windows 2000/NT Spooler Denial of Service" name_zh_CN="Windows 2000/NT打印服务拒绝服务攻击" name_zh_TW="Windows 2000/NT打印服務拒絕服務攻擊" ruleid="10125" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具迅雷文件下载(TCP)" name_en_US="P2P File Sharing Tool Xunlei File Downloading (TCP)" name_zh_CN="P2P文件共享工具迅雷文件下载(TCP)" name_zh_TW="P2P文件共享工具迅雷文件下載(TCP)" ruleid="50143" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="沸点网络电视流媒体播放" name_en_US="feidian Network TV Streaming Media Playing" name_zh_CN="沸点网络电视流媒体播放" name_zh_TW="沸點網絡電視流媒體播放" ruleid="50142" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725654" module="0" name="Microsoft Windows NT 4.0远程注册表操作拒绝服务攻击" name_en_US="Microsoft Windows NT 4.0 Remote Registry Operation Denial of Service" name_zh_CN="Microsoft Windows NT 4.0远程注册表操作拒绝服务攻击" name_zh_TW="Microsoft Windows NT 4.0遠程注冊表操作拒絕服務攻擊" ruleid="10124" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="QQ直播流媒体播放" name_en_US="QQ Live Streaming Media Playing" name_zh_CN="QQ直播流媒体播放" name_zh_TW="QQ直播流媒體播放" ruleid="50149" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="猫扑网络电视流媒体播放" name_en_US="mop Network TV Streaming Media Playing" name_zh_CN="猫扑网络电视流媒体播放" name_zh_TW="貓撲網絡電視流媒體播放" ruleid="50148" visible="true" />
			<rule action="" enabled="true" group="233840717" module="0" name="ICMP PING扫描单包" name_en_US="Single ICMP PING Packet " name_zh_CN="ICMP PING扫描单包" name_zh_TW="ICMP PING掃描單包" ruleid="70084" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件TM2008用户登录（TCP）" name_en_US="Instant Messaging Software TM2008 User Login" name_zh_CN="即时通信软件TM2008用户登录（TCP）" name_zh_TW="即時通信軟件TM2008用戶登錄（TCP）" ruleid="50290" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615302" module="0" name="Windows系统远程管理工具PcAnywhere远程登录失败" name_en_US="Windows Remote Management Tool PcAnywhere Remote Login Failed" name_zh_CN="Windows系统远程管理工具PcAnywhere远程登录失败" name_zh_TW="Windows系統遠程管理工具PcAnywhere遠程登錄失敗" ruleid="40053" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Comet WebFileManager CheckUpload.php远程文件包含攻击" name_en_US="Comet WebFileManager CheckUpload.php Remote File Inclusion" name_zh_CN="Comet WebFileManager CheckUpload.php远程文件包含攻击" name_zh_TW="Comet WebFileManager CheckUpload.php遠程文件包含攻擊" ruleid="20699" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="SMTP服务EXPN命令系统帐号存在性探测" name_en_US="SMTP Service EXPN Command System Account Detection" name_zh_CN="SMTP服务EXPN命令系统帐号存在性探测" name_zh_TW="SMTP服務EXPN命令系統帳號存在性探測" ruleid="40363" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="ACal Calendar day.php远程文件包含攻击" name_en_US="ACal Calendar day.php Remote File Inclusion" name_zh_CN="ACal Calendar day.php远程文件包含攻击" name_zh_TW="ACal Calendar day.php遠程文件包含攻擊" ruleid="20693" visible="true" />
			<rule action="" enabled="true" group="233865293" module="0" name="RealVNC客户端发送空认证类型" name_en_US="RealVNC Client Sending NULL Authenticaition Type " name_zh_CN="RealVNC客户端发送空认证类型" name_zh_TW="RealVNC客戶端發送空認證類型" ruleid="70091" visible="false" />
			<rule action=" db  screen " enabled="true" group="76546346" module="0" name="IMAP服务器APPEND命令超长参数缓冲区溢出攻击" name_en_US="IMAP Server APPEND Command Over-Long Parameter Buffer Overflow" name_zh_CN="IMAP服务器APPEND命令超长参数缓冲区溢出攻击" name_zh_TW="IMAP服務器APPEND命令超長參數緩沖區溢出攻擊" ruleid="20849" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Mozilla Firefox Javascript导航器对象远程代码执行攻击" name_en_US="Mozilla Firefox Javascript Navigator Object Remote Code Execution" name_zh_CN="Mozilla Firefox Javascript导航器对象远程代码执行攻击" name_zh_TW="Mozilla Firefox Javascript導航器對象遠程代碼執行攻擊" ruleid="20848" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="CA BrightStor ARCserve Backup Tape Engine服务远程缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup Tape Engine Service Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup Tape Engine服务远程缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup Tape Engine服務遠程緩沖區溢出攻擊" ruleid="20843" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="CA BrightStor ARCserve Message Engine服务远程堆溢出攻击" name_en_US="CA BrightStor ARCserve Message Engine Service Remote Heap Overflow" name_zh_CN="CA BrightStor ARCserve Message Engine服务远程堆溢出攻击" name_zh_TW="CA BrightStor ARCserve Message Engine服務遠程堆溢出攻擊" ruleid="20842" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="CA BrightStor ARCServe BackUp Message/Tape Engine服务远程溢出攻击" name_en_US="CA BrightStor ARCServe BackUp Message/Tape Engine Service Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCServe BackUp Message/Tape Engine服务远程溢出攻击" name_zh_TW="CA BrightStor ARCServe BackUp Message/Tape Engine服務遠程溢出攻擊" ruleid="20841" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Mercury/32 PH Server模块远程缓冲区溢出攻击" name_en_US="Mercury/32 PH Server Module Remote Buffer Overflow" name_zh_CN="Mercury/32 PH Server模块远程缓冲区溢出攻击" name_zh_TW="Mercury/32 PH Server模塊遠程緩沖區溢出攻擊" ruleid="20840" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="NaviCOPA Web Server远程缓冲区溢出攻击" name_en_US="NaviCOPA Web Server Remote Buffer Overflow" name_zh_CN="NaviCOPA Web Server远程缓冲区溢出攻击" name_zh_TW="NaviCOPA Web Server遠程緩沖區溢出攻擊" ruleid="20847" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Mozilla Suite/Firefox compareTo()代码执行攻击" name_en_US="Mozilla Suite/Firefox compareTo() Code Execution" name_zh_CN="Mozilla Suite/Firefox compareTo()代码执行攻击" name_zh_TW="Mozilla Suite/Firefox compareTo()代碼執行攻擊" ruleid="20846" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HTTP协议URL字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long URL Field Buffer Overflow" name_zh_CN="HTTP协议URL字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議URL字段超長緩沖區溢出攻擊" ruleid="20845" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="CA BrightStor ARCserve Backup Media Server组件远程栈溢出攻击" name_en_US="CA BrightStor ARCserve Backup Media Server Component Remote Stack Overflow" name_zh_CN="CA BrightStor ARCserve Backup Media Server组件远程栈溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup Media Server組件遠程棧溢出攻擊" ruleid="20844" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="yoopss YOPS HTTP请求头字段缓冲溢出漏洞" name_en_US="yoopss YOPS HTTP Request Header Buffer Overflow Vulnerability" name_zh_CN="yoopss YOPS HTTP请求头字段缓冲溢出漏洞" name_zh_TW="yoopss YOPS HTTP請求頭字段緩沖溢出漏洞" ruleid="21081" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Internet信息服务（IIS）目录绕过认证漏洞" name_en_US="Microsoft IIS Directory Authentication Bypass Vulnerability" name_zh_CN="Microsoft Internet信息服务（IIS）目录绕过认证漏洞" name_zh_TW="Microsoft Internet信息服務（IIS）目錄繞過認證漏洞" ruleid="21082" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Outlook堆缓冲溢出漏洞" name_en_US="Heap Based Buffer Overflow in Microsoft Outlook Vulnerability" name_zh_CN="Microsoft Outlook堆缓冲溢出漏洞" name_zh_TW="Microsoft Outlook堆緩沖溢出漏洞" ruleid="21083" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows和Office产品Uniscribe字体解析引擎内存破坏漏洞" name_en_US="Microsoft Windows and Office Uniscribe Font Parsing Engine Memory Corruption Vulnerability" name_zh_CN="Microsoft Windows和Office产品Uniscribe字体解析引擎内存破坏漏洞" name_zh_TW="Microsoft Windows和Office産品Uniscribe字體解析引擎內存破壞漏洞" ruleid="21084" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Print Spooler 服务角色扮演漏洞" name_en_US="Microsoft Windows Print Spooler Service Impersonation Vulnerability" name_zh_CN="Microsoft Windows Print Spooler 服务角色扮演漏洞" name_zh_TW="Microsoft Windows Print Spooler 服務角色扮演漏洞" ruleid="21085" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft .NET Framework ASP.NET信息泄露漏洞" name_en_US="Vulnerability in Microsoft .NET Framework ASP.NET Could Allow Information Disclosure" name_zh_CN="Microsoft .NET Framework ASP.NET信息泄露漏洞" name_zh_TW="Microsoft .NET Framework ASP.NET信息泄露漏洞" ruleid="21086" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Office COM对象验证远程代码执行漏洞" name_en_US="Microsoft Windows COM Object Validation Remote Code Execution Vulnerability" name_zh_CN="Microsoft Office COM对象验证远程代码执行漏洞" name_zh_TW="Microsoft Office COM對象驗證遠程代碼執行漏洞" ruleid="21087" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows嵌入式OpenType字体整数溢出漏洞" name_en_US="Microsoft Windows Embedded OpenType Font Integer Overflow Vulnerability" name_zh_CN="Microsoft Windows嵌入式OpenType字体整数溢出漏洞" name_zh_TW="Microsoft Windows嵌入式OpenType字體整數溢出漏洞" ruleid="21088" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Microsoft Windows和Office产品OpenType字体解析漏洞" name_en_US="Microsoft Windows and Office OpenType Font Parsing Vulnerability" name_zh_CN="Microsoft Windows和Office产品OpenType字体解析漏洞" name_zh_TW="Microsoft Windows和Office産品OpenType字體解析漏洞" ruleid="21089" visible="true" />
			<rule action="" enabled="true" group="233898077" module="0" name="RealVNC服务端发送认证类型" name_en_US="RealVNC Server Sending Authentication Type " name_zh_CN="RealVNC服务端发送认证类型" name_zh_TW="RealVNC服務端發送認證類型" ruleid="70090" visible="false" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Nucleus CMS PLUGINADMIN.php远程文件包含攻击" name_en_US="Nucleus CMS PLUGINADMIN.php Remote File Inclusion" name_zh_CN="Nucleus CMS PLUGINADMIN.php远程文件包含攻击" name_zh_TW="Nucleus CMS PLUGINADMIN.php遠程文件包含攻擊" ruleid="20601" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="UBB.threads addpost_newpoll.php远程文件包含攻击" name_en_US="UBB.threads addpost_newpoll.php Remote File Inclusion" name_zh_CN="UBB.threads addpost_newpoll.php远程文件包含攻击" name_zh_TW="UBB.threads addpost_newpoll.php遠程文件包含攻擊" ruleid="20600" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725675" module="0" name="HP OpenView OmniBack非授权命令执行攻击" name_en_US="HP OpenView OmniBack Unauthorized Code Execution" name_zh_CN="HP OpenView OmniBack非授权命令执行攻击" name_zh_TW="HP OpenView OmniBack非授權命令執行攻擊" ruleid="20603" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="DotClear prepend.php远程文件包含攻击" name_en_US="DotClear prepend.php Remote File Inclusion" name_zh_CN="DotClear prepend.php远程文件包含攻击" name_zh_TW="DotClear prepend.php遠程文件包含攻擊" ruleid="20602" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="RaXnet Cacti graph_image.php远程命令执行攻击" name_en_US="RaXnet Cacti graph_image.php Remote Code Execution" name_zh_CN="RaXnet Cacti graph_image.php远程命令执行攻击" name_zh_TW="RaXnet Cacti graph_image.php遠程命令執行攻擊" ruleid="20605" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Simple PHP Blog上传脚本文件执行代码攻击" name_en_US="Simple PHP Blog Upload Script Code Execution" name_zh_CN="Simple PHP Blog上传脚本文件执行代码攻击" name_zh_TW="Simple PHP Blog上傳腳本文件執行代碼攻擊" ruleid="20607" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206187" module="0" name="Lyris ListManager远程命令执行攻击" name_en_US="Lyris ListManager Remote Code Execution" name_zh_CN="Lyris ListManager远程命令执行攻击" name_zh_TW="Lyris ListManager遠程命令執行攻擊" ruleid="20606" visible="true" />
			<rule action=" db  screen " enabled="true" group="156239915" module="0" name="Solaris LPD远程命令执行攻击" name_en_US="Solaris LPD Remote Command Execution" name_zh_CN="Solaris LPD远程命令执行攻击" name_zh_TW="Solaris LPD遠程命令執行攻擊" ruleid="20609" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Barracuda img.pl远程命令执行攻击" name_en_US="Barracuda img.pl Remote Code Execution" name_zh_CN="Barracuda img.pl远程命令执行攻击" name_zh_TW="Barracuda img.pl遠程命令執行攻擊" ruleid="20608" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft Windows Remote Desktop Web Access跨站脚本执行漏洞(CVE-2011-1263)（MS11-061)" name_en_US="Microsoft Windows Remote Desktop Web Access XSS Vulnerability" name_zh_CN="Microsoft Windows Remote Desktop Web Access跨站脚本执行漏洞(CVE-2011-1263)（MS11-061)" name_zh_TW="Microsoft Windows Remote Desktop Web Access跨站腳本執行漏洞(CVE-2011-1263)（MS11-061)" ruleid="21268" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft IE事件处理程序跨域信息泄露漏洞（MS11-057)" name_en_US="Microsoft Internet Explorer Event Handlers Cross Domain Information Disclosure Vulnerability" name_zh_CN="Microsoft IE事件处理程序跨域信息泄露漏洞（MS11-057)" name_zh_TW="Microsoft IE事件處理程序跨域信息泄露漏洞（MS11-057)" ruleid="21269" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Distributed File System(DFS) client 远程代码执行漏洞" name_en_US="Distributed File System(DFS) client Remote Code Executing Vulnerability" name_zh_CN="Distributed File System(DFS) client 远程代码执行漏洞" name_zh_TW="Distributed File System(DFS) client 遠程代碼執行漏洞" ruleid="21264" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name=" MHTML component 信息暴露漏洞" name_en_US=" MHTML component Information Disclosure Vulnerability" name_zh_CN=" MHTML component 信息暴露漏洞" name_zh_TW=" MHTML component 信息暴露漏洞" ruleid="21265" visible="true" />
			<rule action=" db  screen " enabled="true" group="336594986" module="0" name="H3C ER5100身份验证绕过漏洞" name_en_US="H3C ER5100 Authentication Bypass Vulnerability" name_zh_CN="H3C ER5100身份验证绕过漏洞" name_zh_TW="H3C ER5100身份驗證繞過漏洞" ruleid="21266" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer 代码执行漏洞（MS11-057）" name_en_US="Microsoft Internet Explorer Code Execution Vulnerability(cve-2011-1257)" name_zh_CN="Microsoft Internet Explorer 代码执行漏洞（MS11-057）" name_zh_TW="Microsoft Internet Explorer 代碼執行漏洞（MS11-057）" ruleid="21267" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 超过边界访问漏洞" name_en_US="Microsoft Excel Out of Boundary Vulnerability" name_zh_CN="Microsoft Excel 超过边界访问漏洞" name_zh_TW="Microsoft Excel 超過邊界訪問漏洞" ruleid="21260" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 代码执行漏洞" name_en_US="Microsoft Excel Code Execution Vulnerability" name_zh_CN="Microsoft Excel 代码执行漏洞" name_zh_TW="Microsoft Excel 代碼執行漏洞" ruleid="21261" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 2003 超过边界访问漏洞" name_en_US="Microsoft Excel 2003 Out of Boundary Vulnerability" name_zh_CN="Microsoft Excel 2003 超过边界访问漏洞" name_zh_TW="Microsoft Excel 2003 超過邊界訪問漏洞" ruleid="21262" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Visual Studio 信息暴露漏洞" name_en_US="Microsoft Visual Studio Information Disclosure Vulnerability" name_zh_CN="Microsoft Visual Studio 信息暴露漏洞" name_zh_TW="Microsoft Visual Studio 信息暴露漏洞" ruleid="21263" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="WinHTTP Chunked 长整形溢出远程代码执行攻击" name_en_US="WinHTTP Chunked Large Size Overflow Remote Code Execution Attack" name_zh_CN="WinHTTP Chunked 长整形溢出远程代码执行攻击" name_zh_TW="WinHTTP Chunked 長整形溢出遠程代碼執行攻擊" ruleid="20985" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="SynCE vdccm守护程序远程命令注入攻击" name_en_US="SynCE vdccm Remote Command Injection Attack" name_zh_CN="SynCE vdccm守护程序远程命令注入攻击" name_zh_TW="SynCE vdccm守護程序遠程命令注入攻擊" ruleid="20933" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Gateway CWebLaunchCtl ActiveX控件远程栈溢出攻击" name_en_US="Gateway CWebLaunchCtl ActiveX Control Remote Stack Overflow Attack" name_zh_CN="Gateway CWebLaunchCtl ActiveX控件远程栈溢出攻击" name_zh_TW="Gateway CWebLaunchCtl ActiveX控件遠程棧溢出攻擊" ruleid="20932" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Tikiwiki CMS tiki-listmovies.php文件目录遍历攻击" name_en_US="Tikiwiki CMS tiki-listmovies.php Directory Traversal Attack" name_zh_CN="Tikiwiki CMS tiki-listmovies.php文件目录遍历攻击" name_zh_TW="Tikiwiki CMS tiki-listmovies.php文件目錄遍曆攻擊" ruleid="20931" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Wordpress xmlrpc.php脚本远程SQL注入攻击" name_en_US="Wordpress xmlrpc.php Script Remote SQL injection Attack" name_zh_CN="Wordpress xmlrpc.php脚本远程SQL注入攻击" name_zh_TW="Wordpress xmlrpc.php腳本遠程SQL注入攻擊" ruleid="20930" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Macrovision FLEXnet Connect ActiveX控件恶意文件下载攻击" name_en_US="Macrovision FLEXnet Connect ActiveX Control Downloading Malicious File Attack" name_zh_CN="Macrovision FLEXnet Connect ActiveX控件恶意文件下载攻击" name_zh_TW="Macrovision FLEXnet Connect ActiveX控件惡意文件下載攻擊" ruleid="20937" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832746" module="0" name="yaSSL多个远程溢出及无效内存访问攻击" name_en_US="yaSSL Remote Buffer Overflow And Invalid Memory Access Attack" name_zh_CN="yaSSL多个远程溢出及无效内存访问攻击" name_zh_TW="yaSSL多個遠程溢出及無效內存訪問攻擊" ruleid="20935" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723882" module="0" name="CUPS SNMP后端asn1_get_string()函数远程栈溢出攻击" name_en_US="CUPS SNMP asn1_get_string() Remote Stack Overflow Attack" name_zh_CN="CUPS SNMP后端asn1_get_string()函数远程栈溢出攻击" name_zh_TW="CUPS SNMP後端asn1_get_string()函數遠程棧溢出攻擊" ruleid="20934" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_en_US="CA ETrust Intrusion Detection Caller.dll Control Remote Code Execution Attack" name_zh_CN="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_zh_TW="CA ETrust Intrusion Detection Caller.dll控件遠程代碼執行攻擊" ruleid="20939" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="SAP MaxDB cons.exe远程命令注入攻击" name_en_US="SAP MaxDB cons.exe Remote Command Injection Attack" name_zh_CN="SAP MaxDB cons.exe远程命令注入攻击" name_zh_TW="SAP MaxDB cons.exe遠程命令注入攻擊" ruleid="20938" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.cmsd远程缓冲区溢出攻击" name_en_US="Solaris rpc.cmsd Remote Buffer Overflow" name_zh_CN="Solaris rpc.cmsd远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.cmsd遠程緩沖區溢出攻擊" ruleid="20118" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Linux rpc.statd远程格式串TCP溢出攻击" name_en_US="Linux rpc.statd Remote Format String TCP Overflow" name_zh_CN="Linux rpc.statd远程格式串TCP溢出攻击" name_zh_TW="Linux rpc.statd遠程格式串TCP溢出攻擊" ruleid="20115" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.yppasswdd远程缓冲区溢出攻击" name_en_US="Solaris rpc.yppasswdd Remote Buffer Overflow" name_zh_CN="Solaris rpc.yppasswdd远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.yppasswdd遠程緩沖區溢出攻擊" ruleid="20111" visible="true" />
			<rule action=" db  screen " enabled="true" group="227541286" module="0" name="SNMPv1请求处理远程缓冲区溢出攻击" name_en_US="SNMPv1 Request Processing Remote Buffer Overflow" name_zh_CN="SNMPv1请求处理远程缓冲区溢出攻击" name_zh_TW="SNMPv1請求處理遠程緩沖區溢出攻擊" ruleid="20110" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Linux rpc.statd远程格式串UDP溢出攻击" name_en_US="Linux rpc.statd Remote Format String UDP Overflow" name_zh_CN="Linux rpc.statd远程格式串UDP溢出攻击" name_zh_TW="Linux rpc.statd遠程格式串UDP溢出攻擊" ruleid="20113" visible="true" />
			<rule action=" db  screen " enabled="true" group="229638447" module="0" name="SMB服务远程代码执行攻击漏洞" name_en_US="SMB Service Remote Code Execution Vulnerability" name_zh_CN="SMB服务远程代码执行攻击漏洞" name_zh_TW="SMB服務遠程代碼執行攻擊漏洞" ruleid="21462" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Wins服务远程代码执行攻击漏洞" name_en_US="Wins Service Remote Code Execution Vulnerability" name_zh_CN="Wins服务远程代码执行攻击漏洞" name_zh_TW="Wins服務遠程代碼執行攻擊漏洞" ruleid="21463" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Backdoor.ASP.Ace ASP Web后门访问" name_en_US="Backdoor.ASP.Ace ASP Web Backdoor Access" name_zh_CN="Backdoor.ASP.Ace ASP Web后门访问" name_zh_TW="Backdoor.ASP.Ace ASP Web後門訪問" ruleid="21460" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375466" module="0" name="TikiWiki tiki-graph_formula远程PHP代码执行漏洞" name_en_US="TikiWiki tiki-graph_formula Remote PHP Code Execution Vulnerability" name_zh_CN="TikiWiki tiki-graph_formula远程PHP代码执行漏洞" name_zh_TW="TikiWiki tiki-graph_formula遠程PHP代碼執行漏洞" ruleid="21461" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="DedeCMS shopcar.class.php存在后门代码可执行任意PHP命令漏洞" name_en_US="DedeCMS shopcar.class.php Exist Backdoor Code Executable Arbitrary PHP Commands Vulnerability" name_zh_CN="DedeCMS shopcar.class.php存在后门代码可执行任意PHP命令漏洞" name_zh_TW="DedeCMS shopcar.class.php存在後門代碼可執行任意PHP命令漏洞" ruleid="21466" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="DCE-RPC服务远程代码执行攻击" name_en_US="DCE-RPC Service Remote Code Execution Vulnerability" name_zh_CN="DCE-RPC服务远程代码执行攻击" name_zh_TW="DCE-RPC服務遠程代碼執行攻擊" ruleid="21464" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080687" module="0" name="SQL Server服务远程代码执行攻击漏洞" name_en_US="SQL Server Service Remote Code Execution Vulnerability" name_zh_CN="SQL Server服务远程代码执行攻击漏洞" name_zh_TW="SQL Server服務遠程代碼執行攻擊漏洞" ruleid="21465" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="AwStats migrate参数远程执行命令攻击" name_en_US="AwStats migrate Parameter Remomte Code Execution" name_zh_CN="AwStats migrate参数远程执行命令攻击" name_zh_TW="AwStats migrate參數遠程執行命令攻擊" ruleid="20591" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="TopList Hack for phpBB远程文件包含攻击" name_en_US="TopList Hack for phpBB Remote File Inclusion" name_zh_CN="TopList Hack for phpBB远程文件包含攻击" name_zh_TW="TopList Hack for phpBB遠程文件包含攻擊" ruleid="20590" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="MySQL MaxDB HTTP GET请求远程缓冲区溢出攻击" name_en_US="MySQL MaxDB HTTP GET Request Remote Buffer Overflow" name_zh_CN="MySQL MaxDB HTTP GET请求远程缓冲区溢出攻击" name_zh_TW="MySQL MaxDB HTTP GET請求遠程緩沖區溢出攻擊" ruleid="20593" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Epic Games Unreal Engine Secure Query缓冲区溢出攻击" name_en_US="Epic Games Unreal Engine Secure Query Buffer Overflow" name_zh_CN="Epic Games Unreal Engine Secure Query缓冲区溢出攻击" name_zh_TW="Epic Games Unreal Engine Secure Query緩沖區溢出攻擊" ruleid="20592" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Veritas Backup Exec注册请求远程缓冲区溢出攻击" name_en_US="Veritas Backup Exec Register Request Remote Buffer Overflow" name_zh_CN="Veritas Backup Exec注册请求远程缓冲区溢出攻击" name_zh_TW="Veritas Backup Exec注冊請求遠程緩沖區溢出攻擊" ruleid="20595" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Microsoft IIS w3who ISAPI DLL远程缓冲区溢出攻击" name_en_US="Microsoft IIS w3who ISAPI DLL Remote Buffer Overflow" name_zh_CN="Microsoft IIS w3who ISAPI DLL远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS w3who ISAPI DLL遠程緩沖區溢出攻擊" ruleid="20594" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Arkeia Server Backup 77请求类型远程缓冲区溢出攻击" name_en_US="Arkeia Server Backup Type 77 Request Remote Buffer Overflow" name_zh_CN="Arkeia Server Backup 77请求类型远程缓冲区溢出攻击" name_zh_TW="Arkeia Server Backup 77請求類型遠程緩沖區溢出攻擊" ruleid="20597" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="ISS RealSecure/BlackICE协议分析模块ICQ应答处理缓冲区攻击" name_en_US="ISS RealSecure/BlackICE Protocol Analysis Module ICQ Response Handling Buffer Overflow" name_zh_CN="ISS RealSecure/BlackICE协议分析模块ICQ应答处理缓冲区攻击" name_zh_TW="ISS RealSecure/BlackICE協議分析模塊ICQ應答處理緩沖區攻擊" ruleid="20596" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpListPro returnpath变量远程文件包含攻击" name_en_US="phpListPro returnpath Variable Remote File Inclusion" name_zh_CN="phpListPro returnpath变量远程文件包含攻击" name_zh_TW="phpListPro returnpath變量遠程文件包含攻擊" ruleid="20599" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="AOL Instant Messenger Away Message缓冲区溢出攻击" name_en_US="AOL Instant Messenger Away Message Buffer Overflow" name_zh_CN="AOL Instant Messenger Away Message缓冲区溢出攻击" name_zh_TW="AOL Instant Messenger Away Message緩沖區溢出攻擊" ruleid="20598" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="利用Netscape Servers search脚本漏洞远程拒绝服务攻击" name_en_US="Remote Denial of Service via Netscape Servers search Script Vulnerability" name_zh_CN="利用Netscape Servers search脚本漏洞远程拒绝服务攻击" name_zh_TW="利用Netscape Servers search腳本漏洞遠程拒絕服務攻擊" ruleid="10075" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365542" module="0" name="FTP服务SITE EXEC执行命令攻击" name_en_US="FTP Service SITE EXEC Command Execution" name_zh_CN="FTP服务SITE EXEC执行命令攻击" name_zh_TW="FTP服務SITE EXEC執行命令攻擊" ruleid="40046" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务普通用户认证失败" name_en_US="FTP Service Unprivileged User Authentication Fail" name_zh_CN="FTP服务普通用户认证失败" name_zh_TW="FTP服務普通用戶認證失敗" ruleid="40048" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp2.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp2.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp2.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp2.htr文件訪問" ruleid="30178" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr文件訪問" ruleid="30179" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/achg.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/achg.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/achg.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/achg.htr文件訪問" ruleid="30176" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp.htr文件訪問" ruleid="30177" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Microsoft FrontPage authors.pwd文件访问" name_en_US="Access to Microsoft FrontPage authors.pwd File" name_zh_CN="Microsoft FrontPage authors.pwd文件访问" name_zh_TW="Microsoft FrontPage authors.pwd文件訪問" ruleid="30174" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Microsoft FrontPage administrators.pwd文件访问" name_en_US="Access to Microsoft FrontPage administrators.pwd File" name_zh_CN="Microsoft FrontPage administrators.pwd文件访问" name_zh_TW="Microsoft FrontPage administrators.pwd文件訪問" ruleid="30175" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问Microsoft FrontPage扩展users.pwd文件" name_en_US="Access to Microsoft FrontPage Extension users.pwd File" name_zh_CN="访问Microsoft FrontPage扩展users.pwd文件" name_zh_TW="訪問Microsoft FrontPage擴展users.pwd文件" ruleid="30172" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问Microsoft FrontPage扩展service.pwd文件" name_en_US="Access to Microsoft FrontPage Extension service.pwd File" name_zh_CN="访问Microsoft FrontPage扩展service.pwd文件" name_zh_TW="訪問Microsoft FrontPage擴展service.pwd文件" ruleid="30173" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="通过Web服务访问Windows 2000的SAM文件" name_en_US="Access to SAM File of Windows 2000 via Web Service" name_zh_CN="通过Web服务访问Windows 2000的SAM文件" name_zh_TW="通過Web服務訪問Windows 2000的SAM文件" ruleid="30171" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft IE javaprxy.dll COM对象邮件内容引用" name_en_US="Microsoft IE javaprxy.dll COM Object Vulnerability Mail" name_zh_CN="Microsoft IE javaprxy.dll COM对象邮件内容引用" name_zh_TW="Microsoft IE javaprxy.dll COM對象郵件內容引用" ruleid="40784" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537942" module="0" name="FTP服务客户端CWD ~root操作" name_en_US="FTP Service Client End CWD ~root Operation" name_zh_CN="FTP服务客户端CWD ~root操作" name_zh_TW="FTP服務客戶端CWD ~root操作" ruleid="40042" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703782" module="0" name="针对BIND服务的远程溢出攻击" name_en_US="Remote Buffer Overflow on BIND Service" name_zh_CN="针对BIND服务的远程溢出攻击" name_zh_TW="針對BIND服務的遠程溢出攻擊" ruleid="20029" visible="true" />
			<rule action=" db  screen " enabled="true" group="99622970" module="0" name="绿盟远程安全扫描系统远程扫描RDP漏洞" name_en_US="Nsfocus RSAS Remote Scan RDP Vulnerability" name_zh_CN="绿盟远程安全扫描系统远程扫描RDP漏洞" name_zh_TW="綠盟遠程安全掃描系統遠程掃描RDP漏洞" ruleid="30570" visible="true" />
			<rule action=" db  screen " enabled="true" group="269484346" module="0" name="JWPlayer跨站脚本攻击" name_en_US="JWPlayer Xss 0day" name_zh_CN="JWPlayer跨站脚本攻击" name_zh_TW="JWPlayer跨站腳本攻擊" ruleid="30571" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Srizbi木马网络数据通信" name_en_US="TROJAN Srizbi registering with controller" name_zh_CN="Srizbi木马网络数据通信" name_zh_TW="Srizbi木馬網絡數據通信" ruleid="40913" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Cow木马网络数据通信" name_en_US="TROJAN Backdoor Possible Backdoor.Cow Varient Backdoor.Win32.Agent.lam C&amp;C traffic" name_zh_CN="Backdoor.Cow木马网络数据通信" name_zh_TW="Backdoor.Cow木馬網絡數據通信" ruleid="40912" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Vipdataend/Ceckno木马网络数据通信" name_en_US="TROJAN Vipdataend/Ceckno C&amp;C Traffic - Checkin" name_zh_CN="Vipdataend/Ceckno木马网络数据通信" name_zh_TW="Vipdataend/Ceckno木馬網絡數據通信" ruleid="40911" visible="true" />
			<rule action=" db  screen " enabled="true" group="142606630" module="0" name="NetManage Chameleon SMTP服务远程缓冲区溢出攻击" name_en_US="NetManage Chameleon SMTP Service Remote Buffer Overflow" name_zh_CN="NetManage Chameleon SMTP服务远程缓冲区溢出攻击" name_zh_TW="NetManage Chameleon SMTP服務遠程緩沖區溢出攻擊" ruleid="20021" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Trojan-PSW.Win32.Nilage.crg木马网络数据通信" name_en_US="TROJAN Trojan-PSW.Win32.Nilage.crg Checkin" name_zh_CN="Trojan-PSW.Win32.Nilage.crg木马网络数据通信" name_zh_TW="Trojan-PSW.Win32.Nilage.crg木馬網絡數據通信" ruleid="40919" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Progenic木马通信" name_en_US="Trojan Progenic Communication on Windows" name_zh_CN="Windows系统下Progenic木马通信" name_zh_TW="Windows系統下Progenic木馬通信" ruleid="40136" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL空口令HASH绕过认证攻击" name_en_US="MySQL Null Password HASH Authentication Bypass" name_zh_CN="MySQL空口令HASH绕过认证攻击" name_zh_TW="MySQL空口令HASH繞過認證攻擊" ruleid="20432" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Big Brother bb-hist.sh脚本漏洞遍历主机目录" name_en_US="Remote Host Directory Traversal via Big Brother bb-hist.sh Script Vulnerability" name_zh_CN="利用Big Brother bb-hist.sh脚本漏洞遍历主机目录" name_zh_TW="利用Big Brother bb-hist.sh腳本漏洞遍曆主機目錄" ruleid="30526" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="Microsoft IIS bdir.htr脚本漏洞扫描探测" name_en_US="Microsoft IIS bdir.htr Script Vulnerability Detection" name_zh_CN="Microsoft IIS bdir.htr脚本漏洞扫描探测" name_zh_TW="Microsoft IIS bdir.htr腳本漏洞掃描探測" ruleid="40268" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Uploader木马通信" name_en_US="Trojan Uploader Communication on Windows" name_zh_CN="Windows系统下Uploader木马通信" name_zh_TW="Windows系統下Uploader木馬通信" ruleid="40599" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Undetected木马通信" name_en_US="Trojan Undetected Communication on Windows" name_zh_CN="Windows系统下Undetected木马通信" name_zh_TW="Windows系統下Undetected木馬通信" ruleid="40598" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpMyAdmin远程PHP代码注入攻击" name_en_US="phpMyAdmin Remote PHP Code Injection" name_zh_CN="phpMyAdmin远程PHP代码注入攻击" name_zh_TW="phpMyAdmin遠程PHP代碼注入攻擊" ruleid="20430" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft JET adctest.asp脚本漏洞扫描探测" name_en_US="Microsoft JET adctest.asp Script Vulnerability Detection" name_zh_CN="Microsoft JET adctest.asp脚本漏洞扫描探测" name_zh_TW="Microsoft JET adctest.asp腳本漏洞掃描探測" ruleid="40261" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Trojan Spirit木马通信" name_en_US="Trojan Trojan Spirit Communication on Windows" name_zh_CN="Windows系统下Trojan Spirit木马通信" name_zh_TW="Windows系統下Trojan Spirit木馬通信" ruleid="40592" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Trojan Cow木马通信" name_en_US="Trojan Trojan Cow Communication on Windows" name_zh_CN="Windows系统下Trojan Cow木马通信" name_zh_TW="Windows系統下Trojan Cow木馬通信" ruleid="40591" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用Pivot module_db.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Pivot module_db.php Script Vulnerability" name_zh_CN="利用Pivot module_db.php脚本漏洞远程执行命令" name_zh_TW="利用Pivot module_db.php腳本漏洞遠程執行命令" ruleid="20431" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft NTFS ::$DATA漏洞获取ASP源码攻击" name_en_US="ASP Source Code Disclosure via Microsoft NTFS ::$DATA Vulnerability" name_zh_CN="利用Microsoft NTFS ::$DATA漏洞获取ASP源码攻击" name_zh_TW="利用Microsoft NTFS ::$DATA漏洞獲取ASP源碼攻擊" ruleid="40265" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下UltimateRAT木马通信" name_en_US="Trojan UltimateRAT Communication on Windows" name_zh_CN="Windows系统下UltimateRAT木马通信" name_zh_TW="Windows系統下UltimateRAT木馬通信" ruleid="40596" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Ullysse木马通信" name_en_US="Trojan Ullysse Communication on Windows" name_zh_CN="Windows系统下Ullysse木马通信" name_zh_TW="Windows系統下Ullysse木馬通信" ruleid="40595" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Truva木马通信" name_en_US="Trojan Truva Communication on Windows" name_zh_CN="Windows系统下Truva木马通信" name_zh_TW="Windows系統下Truva木馬通信" ruleid="40594" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223069" module="0" name="Baidu网络爬虫抓取网页信息" name_en_US="Baidu Web Crawlers Capture Page Information" name_zh_CN="Baidu网络爬虫抓取网页信息" name_zh_TW="Baidu網絡爬蟲抓取網頁信息" ruleid="50202" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223069" module="0" name="iAsk网络爬虫抓取网页信息" name_en_US="iAsk Web Crawlers Capture Page Information" name_zh_CN="iAsk网络爬虫抓取网页信息" name_zh_TW="iAsk網絡爬蟲抓取網頁信息" ruleid="50203" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="P2P文件共享工具迅雷获取多点下载地址信息" name_en_US="P2P File Sharing Tool Xunlei Obtaining Multi-Point Download Address Information" name_zh_CN="P2P文件共享工具迅雷获取多点下载地址信息" name_zh_TW="P2P文件共享工具迅雷獲取多點下載地址信息" ruleid="50200" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="0" name="网络代理软件自由门数据通信" name_en_US="Network Agent Software Freedoor Data Communication" name_zh_CN="网络代理软件自由门数据通信" name_zh_TW="網絡代理軟件自由門數據通信" ruleid="50201" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件QQ文件传输(UDP)" name_en_US="Instant Messaging Software QQ File Transmission (UDP)" name_zh_CN="即时通信软件QQ文件传输(UDP)" name_zh_TW="即時通信軟件QQ文件傳輸(UDP)" ruleid="50206" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963609" module="1" name="网络代理软件数据通信(UDP)" name_en_US="Network Agent Software Data Communication (UDP)" name_zh_CN="网络代理软件数据通信(UDP)" name_zh_TW="網絡代理軟件數據通信(UDP)" ruleid="50207" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析操作软件申银万国神网E通用户登录" name_en_US="Stock Market Analysis Software sw2000.com.cn User Login" name_zh_CN="股票行情分析操作软件申银万国神网E通用户登录" name_zh_TW="股票行情分析操作軟件申銀萬國神網E通用戶登錄" ruleid="50204" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963609" module="1" name="网络代理软件数据通信(TCP)" name_en_US="Network Agent Software Data Communication (TCP)" name_zh_CN="网络代理软件数据通信(TCP)" name_zh_TW="網絡代理軟件數據通信(TCP)" ruleid="50205" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="土豆网在线流媒体播放" name_en_US="Tudou.com Online Streaming Media Playing" name_zh_CN="土豆网在线流媒体播放" name_zh_TW="土豆網在線流媒體播放" ruleid="50208" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="酷6网在线流媒体播放" name_en_US="ku6.com Online Streaming Media Playing" name_zh_CN="酷6网在线流媒体播放" name_zh_TW="酷6網在線流媒體播放" ruleid="50209" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Outlook Web Access恶意跨站脚本链接邮件传播" name_en_US="Microsoft Outlook Web Access Malicious Cross Site Scripting Mail Propagation" name_zh_CN="Microsoft Outlook Web Access恶意跨站脚本链接邮件传播" name_zh_TW="Microsoft Outlook Web Access惡意跨站腳本鏈接郵件傳播" ruleid="40783" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266486" module="0" name="通过Web服务访问.htpasswd文件" name_en_US="Access to .htpasswd File via Web Service" name_zh_CN="通过Web服务访问.htpasswd文件" name_zh_TW="通過Web服務訪問.htpasswd文件" ruleid="30378" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Ovidentia多个脚本远程文件包含攻击" name_en_US="Ovidentia multiple Scripts Remote File Inclusion" name_zh_CN="Ovidentia多个脚本远程文件包含攻击" name_zh_TW="Ovidentia多個腳本遠程文件包含攻擊" ruleid="20717" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="P2P_Iroffer_IRC_Bot帮助信息木马网络数据通信" name_en_US="P2P iroffer IRC Bot help message" name_zh_CN="P2P_Iroffer_IRC_Bot帮助信息木马网络数据通信" name_zh_TW="P2P_Iroffer_IRC_Bot幫助信息木馬網絡數據通信" ruleid="40861" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315179" module="0" name="iShopCart远程缓冲区溢出攻击" name_en_US="iShopCart Remote Buffer Overflow" name_zh_CN="iShopCart远程缓冲区溢出攻击" name_zh_TW="iShopCart遠程緩沖區溢出攻擊" ruleid="20716" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="扫描探测Sojourn sojourn.cgi脚本漏洞" name_en_US="Sojourn sojourn.cgi Script Vulnerability Detection" name_zh_CN="扫描探测Sojourn sojourn.cgi脚本漏洞" name_zh_TW="掃描探測Sojourn sojourn.cgi腳本漏洞" ruleid="30370" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用ROADS search.pl CGI漏洞远程察看系统文件" name_en_US="System File Disclosure via ROADS search.pl CGI Vulnerability" name_zh_CN="利用ROADS search.pl CGI漏洞远程察看系统文件" name_zh_TW="利用ROADS search.pl CGI漏洞遠程察看系統文件" ruleid="30371" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="search.pl脚本漏洞扫描探测" name_en_US="search.pl Script Vulnerability Detection" name_zh_CN="search.pl脚本漏洞扫描探测" name_zh_TW="search.pl腳本漏洞掃描探測" ruleid="30372" visible="true" />
			<rule action=" db  screen " enabled="true" group="337649718" module="0" name="3COM OfficeConnect Router Web管理接口漏洞扫描探测" name_en_US="3COM OfficeConnect Router Web Management Interface Vulnerability Detection" name_zh_CN="3COM OfficeConnect Router Web管理接口漏洞扫描探测" name_zh_TW="3COM OfficeConnect Router Web管理接口漏洞掃描探測" ruleid="30373" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Big Brother bb-rep.sh脚本漏洞扫描利用" name_en_US="Big Brother bb-rep.sh Script Vulnerability Detection" name_zh_CN="Big Brother bb-rep.sh脚本漏洞扫描利用" name_zh_TW="Big Brother bb-rep.sh腳本漏洞掃描利用" ruleid="30374" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="SaPHPLesson add.php远程SQL注入攻击" name_en_US="SaPHPLesson add.php Remote SQL Injection" name_zh_CN="SaPHPLesson add.php远程SQL注入攻击" name_zh_TW="SaPHPLesson add.php遠程SQL注入攻擊" ruleid="20715" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用Web Shopper shopper.cgi脚本漏洞远程浏览文件" name_en_US="Remote File Browsing via Web Shopper shopper.cgi Script Vulnerability" name_zh_CN="利用Web Shopper shopper.cgi脚本漏洞远程浏览文件" name_zh_TW="利用Web Shopper shopper.cgi腳本漏洞遠程浏覽文件" ruleid="30376" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Web Shopper shopper.cgi脚本漏洞扫描探测" name_en_US="Web Shopper shopper.cgi Script Vulnerability Detection" name_zh_CN="Web Shopper shopper.cgi脚本漏洞扫描探测" name_zh_TW="Web Shopper shopper.cgi腳本漏洞掃描探測" ruleid="30377" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Remote Revise木马通信" name_en_US="Trojan Remote Revise Communication on Windows" name_zh_CN="Windows系统下Remote Revise木马通信" name_zh_TW="Windows系統下Remote Revise木馬通信" ruleid="40467" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Net Devil木马通信" name_en_US="Trojan Net Devil Communication on Windows" name_zh_CN="Windows系统下Net Devil木马通信" name_zh_TW="Windows系統下Net Devil木馬通信" ruleid="40466" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="SelectaPix远程SQL注入攻击" name_en_US="SelectaPix Remote SQL Injection" name_zh_CN="SelectaPix远程SQL注入攻击" name_zh_TW="SelectaPix遠程SQL注入攻擊" ruleid="20714" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Unix Manual manual.php脚本漏洞扫描利用" name_en_US="Unix Manual manual.php Script Vulnerability Detection" name_zh_CN="Unix Manual manual.php脚本漏洞扫描利用" name_zh_TW="Unix Manual manual.php腳本漏洞掃描利用" ruleid="30000" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="DeluxeBB多个脚本远程文件包含攻击" name_en_US="DeluxeBB multiple Scripts Remote File Inclusion" name_zh_CN="DeluxeBB多个脚本远程文件包含攻击" name_zh_TW="DeluxeBB多個腳本遠程文件包含攻擊" ruleid="20713" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Windows资源管理器预览框脚本注入畸形文档邮件附件传播" name_en_US="Microsoft Windows Explorer Preview Pane Script Injection Malformed Document Attachment Propagation" name_zh_CN="Microsoft Windows资源管理器预览框脚本注入畸形文档邮件附件传播" name_zh_TW="Microsoft Windows資源管理器預覽框腳本注入畸形文檔郵件附件傳播" ruleid="40780" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Alvgus木马通信" name_en_US="Trojan Alvgus Communication on Windows" name_zh_CN="Windows系统下Alvgus木马通信" name_zh_TW="Windows系統下Alvgus木馬通信" ruleid="40469" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Bee-hive远程文件包含攻击" name_en_US="Bee-hive Remote File Inclusion" name_zh_CN="Bee-hive远程文件包含攻击" name_zh_TW="Bee-hive遠程文件包含攻擊" ruleid="20712" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Allaire Forums GetFile.cfm脚本漏洞扫描探测" name_en_US="Allaire Forums GetFile.cfm Script Vulnerability Detection" name_zh_CN="Allaire Forums GetFile.cfm脚本漏洞扫描探测" name_zh_TW="Allaire Forums GetFile.cfm腳本漏洞掃描探測" ruleid="30396" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="NETCODE book.cgi脚本漏洞扫描探测" name_en_US="NETCODE book.cgi Script Vulnerability Detection" name_zh_CN="NETCODE book.cgi脚本漏洞扫描探测" name_zh_TW="NETCODE book.cgi腳本漏洞掃描探測" ruleid="30397" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用AlienForm2 af.cgi脚本漏洞遍历目录" name_en_US="Directory Traversal via AlienForm2 af.cgi Script Vulnerability" name_zh_CN="利用AlienForm2 af.cgi脚本漏洞遍历目录" name_zh_TW="利用AlienForm2 af.cgi腳本漏洞遍曆目錄" ruleid="30394" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用Allaire Forums GetFile.cfm远程读取文件" name_en_US="Remote File Reading via Allaire Forums GetFile.cfm" name_zh_CN="利用Allaire Forums GetFile.cfm远程读取文件" name_zh_TW="利用Allaire Forums GetFile.cfm遠程讀取文件" ruleid="30395" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="Cart32 c32web.exe脚本漏洞扫描探测" name_en_US="Cart32 c32web.exe Script Vulnerability Detection" name_zh_CN="Cart32 c32web.exe脚本漏洞扫描探测" name_zh_TW="Cart32 c32web.exe腳本漏洞掃描探測" ruleid="30392" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MF Piadas admin.php远程文件包含攻击" name_en_US="MF Piadas admin.php Remote File Inclusion" name_zh_CN="MF Piadas admin.php远程文件包含攻击" name_zh_TW="MF Piadas admin.php遠程文件包含攻擊" ruleid="20711" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423925" module="0" name="Ultimate PHP Board add.php脚本漏洞扫描利用" name_en_US="Ultimate PHP Board add.php Script Vulnerability Detection" name_zh_CN="Ultimate PHP Board add.php脚本漏洞扫描利用" name_zh_TW="Ultimate PHP Board add.php腳本漏洞掃描利用" ruleid="30390" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Ultimate PHP Board viewtopic.php脚本漏洞扫描探测" name_en_US="Ultimate PHP Board viewtopic.php Script Vulnerability Detection" name_zh_CN="Ultimate PHP Board viewtopic.php脚本漏洞扫描探测" name_zh_TW="Ultimate PHP Board viewtopic.php腳本漏洞掃描探測" ruleid="30391" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Galleria远程文件包含攻击" name_en_US="Galleria Remote File Inclusion" name_zh_CN="Galleria远程文件包含攻击" name_zh_TW="Galleria遠程文件包含攻擊" ruleid="20710" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759691" module="0" name="SMTP服务发送W32.Maslan.A蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Maslan.A" name_zh_CN="SMTP服务发送W32.Maslan.A蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Maslan.A蠕蟲病毒郵件" ruleid="40669" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Mugly蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Mugly" name_zh_CN="SMTP服务发送W32.Mugly蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Mugly蠕蟲病毒郵件" ruleid="40668" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用phpinfo.php脚本漏洞收集系统信息" name_en_US="System Information Disclosure via phpinfo.php Script Vulnerability" name_zh_CN="利用phpinfo.php脚本漏洞收集系统信息" name_zh_TW="利用phpinfo.php腳本漏洞收集系統信息" ruleid="30398" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="Oracle可疑数据库文件下载" name_en_US="Oracle Suspicious File Download" name_zh_CN="Oracle可疑数据库文件下载" name_zh_TW="Oracle可疑數據庫文件下載" ruleid="50448" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序tcsh" name_en_US="Access to Unix Shell Interpreter tcsh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序tcsh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序tcsh" ruleid="20143" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件中投证券卓越版用户登录" name_en_US="Stock Market Analysis Software Zhuoyue Version of China Jianyin Investment Securities User Login" name_zh_CN="股票行情分析操作软件中投证券卓越版用户登录" name_zh_TW="股票行情分析操作軟件中投證券卓越版用戶登錄" ruleid="50339" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="腾讯Web QQ用户登陆" name_en_US="Tencent Web QQ User Login" name_zh_CN="腾讯Web QQ用户登陆" name_zh_TW="騰訊Web QQ用戶登陸" ruleid="50336" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件QQ2008 beta1离线文件传输" name_en_US="Instant Messaging Software QQ2008 beta1 File Offline Transmission" name_zh_CN="即时通信软件QQ2008 beta1离线文件传输" name_zh_TW="即時通信軟件QQ2008 beta1離線文件傳輸" ruleid="50337" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Windows颜色管理模块畸形ICC配置文档邮件附件传播" name_en_US="Microsoft Windows Color Management Module Malformed ICC Configuration Document Attachment Propagation" name_zh_CN="Microsoft Windows颜色管理模块畸形ICC配置文档邮件附件传播" name_zh_TW="Microsoft Windows顔色管理模塊畸形ICC配置文檔郵件附件傳播" ruleid="40781" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="语音聊天工具腾讯和悦网络电话登录" name_en_US="Voice Chat Tools Tencent Heyyo VoIP Login" name_zh_CN="语音聊天工具腾讯和悦网络电话登录" name_zh_TW="語音聊天工具騰訊和悅網絡電話登錄" ruleid="50335" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件中信建投用户登录" name_en_US="Instant Messaging Software Zhongxinjiantou Channel User Login" name_zh_CN="股票行情分析操作软件中信建投用户登录" name_zh_TW="股票行情分析操作軟件中信建投用戶登錄" ruleid="50332" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件校内通用户登录" name_en_US="Instant Messaging Software Xiaoneitong User Login" name_zh_CN="即时通信软件校内通用户登录" name_zh_TW="即時通信軟件校內通用戶登錄" ruleid="50333" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件Raketu用户登录" name_en_US="Instant Messaging Software Raketu User Login" name_zh_CN="即时通信软件Raketu用户登录" name_zh_TW="即時通信軟件Raketu用戶登錄" ruleid="50330" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件双子星绿色通道用户登录" name_en_US="Instant Messaging Software Gemini Green Channel User Login" name_zh_CN="股票行情分析操作软件双子星绿色通道用户登录" name_zh_TW="股票行情分析操作軟件雙子星綠色通道用戶登錄" ruleid="50331" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-2526 Microsoft远程桌面协议漏洞(MS12-053)" name_en_US="CVE-2012-2526 Microsoft Remote Desktop Protocol Vulnerability(MS12-053)" name_zh_CN="CVE-2012-2526 Microsoft远程桌面协议漏洞(MS12-053)" name_zh_TW="CVE-2012-2526 Microsoft遠程桌面協議漏洞(MS12-053)" ruleid="22351" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-2523 Microsoft Internet Explorer JavaScript 整数溢出远程代码执行漏洞(MS12-052)" name_en_US="CVE-2012-2523 Microsoft Internet Explorer JavaScript Integer Overflow Remote Code Execution Vulnerability(MS12-052)" name_zh_CN="CVE-2012-2523 Microsoft Internet Explorer JavaScript 整数溢出远程代码执行漏洞(MS12-052)" name_zh_TW="CVE-2012-2523 Microsoft Internet Explorer JavaScript 整數溢出遠程代碼執行漏洞(MS12-052)" ruleid="22350" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1889 MSXML未初始化内存破坏漏洞(MS12-043)" name_en_US="CVE-2012-1889 MSXML Uninitialized Memory Corruption Vulnerability(MS12-043)" name_zh_CN="CVE-2012-1889 MSXML未初始化内存破坏漏洞(MS12-043)" name_zh_TW="CVE-2012-1889 MSXML未初始化內存破壞漏洞(MS12-043)" ruleid="22352" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="zxshell木马程序通信" name_en_US="zxshell Trojan Communication" name_zh_CN="zxshell木马程序通信" name_zh_TW="zxshell木馬程序通信" ruleid="41036" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288597" module="1" name="恒生交易软件通用版III" name_en_US="transaction software general edition III" name_zh_CN="恒生交易软件通用版III" name_zh_TW="恒生交易軟件通用版III" ruleid="51005" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288597" module="1" name="核新交易软件通用版" name_en_US="He Xin transaction software general edition" name_zh_CN="核新交易软件通用版" name_zh_TW="核新交易軟件通用版" ruleid="51004" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288597" module="1" name="恒生交易软件通用版II" name_en_US="Hong Sheng transaction software general edition II" name_zh_CN="恒生交易软件通用版II" name_zh_TW="恒生交易軟件通用版II" ruleid="51003" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="SRAT木马程序通信" name_en_US="SRAT Trojan Communication" name_zh_CN="SRAT木马程序通信" name_zh_TW="SRAT木馬程序通信" ruleid="41035" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="通达信交易软件通用版" name_en_US="Tong Da Xin transaction software general edition" name_zh_CN="通达信交易软件通用版" name_zh_TW="通達信交易軟件通用版" ruleid="51001" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="GHOST2011 木马通信" name_en_US="GHOST2011 Trojan Communication" name_zh_CN="GHOST2011 木马通信" name_zh_TW="GHOST2011 木馬通信" ruleid="41034" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647573" module="0" name="WinGate FTP代理服务开放" name_en_US="WinGate FTP Proxy Service Open" name_zh_CN="WinGate FTP代理服务开放" name_zh_TW="WinGate FTP代理服務開放" ruleid="50022" visible="true" />
			<rule action=" db  screen " enabled="true" group="72417365" module="0" name="WinGate POP3代理服务开放" name_en_US="WinGate POP3 Proxy Service Open" name_zh_CN="WinGate POP3代理服务开放" name_zh_TW="WinGate POP3代理服務開放" ruleid="50023" visible="true" />
			<rule action=" db  screen " enabled="true" group="68158543" module="0" name="Windows系统下TrueType字体解析漏洞（Duqu 蠕虫）" name_en_US="CVE-2011-3402 Windows TrueType Font Parsing Vulnerability (Worm Duqu) " name_zh_CN="Windows系统下TrueType字体解析漏洞（Duqu 蠕虫）" name_zh_TW="Windows系統下TrueType字體解析漏洞（Duqu 蠕蟲）" ruleid="41032" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务请求数字用户获取列表攻击" name_en_US="List Disclosure to Users with Numeric Usernames via FINGER Request" name_zh_CN="FINGER服务请求数字用户获取列表攻击" name_zh_TW="FINGER服務請求數字用戶獲取列表攻擊" ruleid="40032" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务“;”请求执行命令攻击" name_en_US="FINGER Service &quot;;&quot; Request Command Execution" name_zh_CN="FINGER服务“;”请求执行命令攻击" name_zh_TW="FINGER服務“;”請求執行命令攻擊" ruleid="40034" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务探测NULL用户攻击" name_en_US="FINGER Service NULL User Detection" name_zh_CN="FINGER服务探测NULL用户攻击" name_zh_TW="FINGER服務探測NULL用戶攻擊" ruleid="40035" visible="true" />
			<rule action=" db  screen " enabled="true" group="205586518" module="0" name="TELNET服务IRIX默认内置帐号登录" name_en_US="TELNET Service IRIX Default Built-in Account Login" name_zh_CN="TELNET服务IRIX默认内置帐号登录" name_zh_TW="TELNET服務IRIX默認內置帳號登錄" ruleid="50156" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="BSD Telnet服务器获取客户端信息" name_en_US="BSD Telnet Server Client Information Disclosure" name_zh_CN="BSD Telnet服务器获取客户端信息" name_zh_TW="BSD Telnet服務器獲取客戶端信息" ruleid="50157" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏平台黄金岛登录" name_en_US="Online Game Platform &quot;Treasure Island&quot; Login" name_zh_CN="网络游戏平台黄金岛登录" name_zh_TW="網絡遊戲平台黃金島登錄" ruleid="50154" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件QQ文件传输(TCP)" name_en_US="Instant Messaging Software QQ File Transmission (TCP)" name_zh_CN="即时通信软件QQ文件传输(TCP)" name_zh_TW="即時通信軟件QQ文件傳輸(TCP)" ruleid="50155" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="0" name="SOCKS代理访问操作" name_en_US="SOCKS Agent Access Operation" name_zh_CN="SOCKS代理访问操作" name_zh_TW="SOCKS代理訪問操作" ruleid="50152" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务pipe执行命令攻击" name_en_US="Command Execution via FINGER Service pipe" name_zh_CN="FINGER服务pipe执行命令攻击" name_zh_TW="FINGER服務pipe執行命令攻擊" ruleid="40036" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="TVAnts电视蚂蚁流媒体播放" name_en_US="TVAnts Streaming Media Playing" name_zh_CN="TVAnts电视蚂蚁流媒体播放" name_zh_TW="TVAnts電視螞蟻流媒體播放" ruleid="50150" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="TVKoo网络电视流媒体播放" name_en_US="TVKoo Netwoek TV Streaming Media Playing" name_zh_CN="TVKoo网络电视流媒体播放" name_zh_TW="TVKoo網絡電視流媒體播放" ruleid="50151" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务探测“.”用户" name_en_US="FINGER Service &quot;.&quot; User Detection" name_zh_CN="FINGER服务探测“.”用户" name_zh_TW="FINGER服務探測“.”用戶" ruleid="40037" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477654" module="0" name="Telnet服务IAC选项炸弹攻击" name_en_US="Telnet Service IAC Option Bomb" name_zh_CN="Telnet服务IAC选项炸弹攻击" name_zh_TW="Telnet服務IAC選項炸彈攻擊" ruleid="50158" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件AimExpress启动操作" name_en_US="Instant Messaging Software AimExpress Launching" name_zh_CN="即时通信软件AimExpress启动操作" name_zh_TW="即時通信軟件AimExpress啓動操作" ruleid="50159" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Y3K木马通信" name_en_US="Trojan Y3K Communication on Windows" name_zh_CN="Windows系统下Y3K木马通信" name_zh_TW="Windows系統下Y3K木馬通信" ruleid="40611" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序rsh" name_en_US="Access to Unix Shell Interpreter rsh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序rsh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序rsh" ruleid="20145" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BackConstruction/Noknok木马通信" name_en_US="Trojan BackConstruction/Noknok Communication on Windows" name_zh_CN="Windows系统下BackConstruction/Noknok木马通信" name_zh_TW="Windows系統下BackConstruction/Noknok木馬通信" ruleid="40342" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Netsky.Q@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.Q@mm" name_zh_CN="SMTP服务发送W32.Netsky.Q@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.Q@mm蠕蟲病毒郵件" ruleid="40616" visible="true" />
			<rule action=" db  screen " enabled="true" group="95682639" module="0" name="Windows系统下Plexus蠕虫病毒通过共享传播" name_en_US="Plexus Propagation by Sharing on Windows" name_zh_CN="Windows系统下Plexus蠕虫病毒通过共享传播" name_zh_TW="Windows系統下Plexus蠕蟲病毒通過共享傳播" ruleid="40617" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159518" module="0" name="Microsoft IIS WebDAV超长请求远程拒绝服务攻击" name_en_US="Microsoft IIS WebDAV Over-long Request Remote Denial of Service" name_zh_CN="Microsoft IIS WebDAV超长请求远程拒绝服务攻击" name_zh_TW="Microsoft IIS WebDAV超長請求遠程拒絕服務攻擊" ruleid="10132" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Tron木马通信" name_en_US="Trojan Tron Communication on Windows" name_zh_CN="Windows系统下Tron木马通信" name_zh_TW="Windows系統下Tron木馬通信" ruleid="40593" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Sober.E@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Sober.E@mm" name_zh_CN="SMTP服务发送W32.Sober.E@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.E@mm蠕蟲病毒郵件" ruleid="40619" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Mailers cgimail.exe CGI程序漏洞扫描探测" name_en_US="Mailers cgimail.exe CGI Vulnerability Detection" name_zh_CN="Mailers cgimail.exe CGI程序漏洞扫描探测" name_zh_TW="Mailers cgimail.exe CGI程序漏洞掃描探測" ruleid="40262" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420719" module="0" name="Samba 3.0.x至3.6.3版本ndr_pull_lsa_SidArray堆溢出漏洞(CVE-2012-1182)" name_en_US="Samba 3.0.x to 3.6.3 ndr_pull_lsa_SidArray Heap Overflow Vulnerability(CVE-2012-1182)" name_zh_CN="Samba 3.0.x至3.6.3版本ndr_pull_lsa_SidArray堆溢出漏洞(CVE-2012-1182)" name_zh_TW="Samba 3.0.x至3.6.3版本ndr_pull_lsa_SidArray堆溢出漏洞(CVE-2012-1182)" ruleid="21676" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0158 Microsoft MSCOMCTL.OCX远程代码执行漏洞(MS12-027)" name_en_US="CVE-2012-0158 Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability(MS12-027)" name_zh_CN="CVE-2012-0158 Microsoft MSCOMCTL.OCX远程代码执行漏洞(MS12-027)" name_zh_TW="CVE-2012-0158 Microsoft MSCOMCTL.OCX遠程代碼執行漏洞(MS12-027)" ruleid="21675" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0170 Microsoft Internet Explorer OnReadyStateChange远程代码执行漏洞(MS12-023)" name_en_US="CVE-2012-0170 Microsoft Internet Explorer OnReadyStateChange Remote Code Execution Vulnerability(MS12-023)" name_zh_CN="CVE-2012-0170 Microsoft Internet Explorer OnReadyStateChange远程代码执行漏洞(MS12-023)" name_zh_TW="CVE-2012-0170 Microsoft Internet Explorer OnReadyStateChange遠程代碼執行漏洞(MS12-023)" ruleid="21674" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0171 Microsoft Internet Explorer SelectAll远程代码执行漏洞(MS12-023)" name_en_US="CVE-2012-0171 Microsoft Internet Explorer SelectAll Remote Code Execution Vulnerability(MS12-023)" name_zh_CN="CVE-2012-0171 Microsoft Internet Explorer SelectAll远程代码执行漏洞(MS12-023)" name_zh_TW="CVE-2012-0171 Microsoft Internet Explorer SelectAll遠程代碼執行漏洞(MS12-023)" ruleid="21673" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0172 Microsoft Internet Explorer VML Style远程代码执行漏洞(MS12-023)" name_en_US="CVE-2012-0172 Microsoft Internet Explorer VML Style Remote Code Execution Vulnerability(MS12-023)" name_zh_CN="CVE-2012-0172 Microsoft Internet Explorer VML Style远程代码执行漏洞(MS12-023)" name_zh_TW="CVE-2012-0172 Microsoft Internet Explorer VML Style遠程代碼執行漏洞(MS12-023)" ruleid="21672" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0177 Microsoft Office WPS Converter堆溢出漏洞(MS12-028)" name_en_US="CVE-2012-0177 Microsoft Office WPS Converter Heap Overflow Vulnerability(MS12-028)" name_zh_CN="CVE-2012-0177 Microsoft Office WPS Converter堆溢出漏洞(MS12-028)" name_zh_TW="CVE-2012-0177 Microsoft Office WPS Converter堆溢出漏洞(MS12-028)" ruleid="21671" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Oracle Java SE i18n子组件远程安全漏洞(CVE-2012-0507)" name_en_US="Oracle in Java SE i18n sub-component remote vulnerability(CVE-2012-0507)" name_zh_CN="Oracle Java SE i18n子组件远程安全漏洞(CVE-2012-0507)" name_zh_TW="Oracle Java SE i18n子組件遠程安全漏洞(CVE-2012-0507)" ruleid="21670" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="微软写字板Word97 文本转换器内存破坏漏洞" name_en_US="WordPad Word 97 TextConverter Memory Corruption Vulnerability" name_zh_CN="微软写字板Word97 文本转换器内存破坏漏洞" name_zh_TW="微軟寫字板Word97 文本轉換器內存破壞漏洞" ruleid="21079" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows CSRSS本地权限提升漏洞" name_en_US="Microsoft Windows CSRSS Local Elevation of Privilege Vulnerability" name_zh_CN="Microsoft Windows CSRSS本地权限提升漏洞" name_zh_TW="Microsoft Windows CSRSS本地權限提升漏洞" ruleid="21078" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft MPEG-4编解码器媒体文件解析远程代码执行漏洞" name_en_US="MPEG-4 Codec Vulnerability" name_zh_CN="Microsoft MPEG-4编解码器媒体文件解析远程代码执行漏洞" name_zh_TW="Microsoft MPEG-4編解碼器媒體文件解析遠程代碼執行漏洞" ruleid="21075" visible="true" />
			<rule action=" db  screen " enabled="true" group="95453231" module="0" name="Microsoft Windows SMB 错误处理验证MaxDataCount字段攻击" name_en_US="Microsoft Windows SMB Error handling validate MaxDataCount field Attack" name_zh_CN="Microsoft Windows SMB 错误处理验证MaxDataCount字段攻击" name_zh_TW="Microsoft Windows SMB 錯誤處理驗證MaxDataCount字段攻擊" ruleid="21074" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows LSASS堆溢出漏洞" name_en_US="Microsoft Windows LSASS Heap Overflow Vulnerability" name_zh_CN="Microsoft Windows LSASS堆溢出漏洞" name_zh_TW="Microsoft Windows LSASS堆溢出漏洞" ruleid="21077" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows RPC内存破坏漏洞" name_en_US="Microsoft Windows RPC Memory Corruption Vulnerability" name_zh_CN="Microsoft Windows RPC内存破坏漏洞" name_zh_TW="Microsoft Windows RPC內存破壞漏洞" ruleid="21076" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Windows帮助和支持中心协议处理错误验证URLS攻击" name_en_US="Windows Help And Support Center Protocol Handling Improperly Validating URLs Attack" name_zh_CN="Windows帮助和支持中心协议处理错误验证URLS攻击" name_zh_TW="Windows幫助和支持中心協議處理錯誤驗證URLS攻擊" ruleid="21071" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft SharePoint Server 2007  跨站提权攻击" name_en_US="Microsoft SharePoint Server 2007  XSS elevation of privilege Attack" name_zh_CN="Microsoft SharePoint Server 2007  跨站提权攻击" name_zh_TW="Microsoft SharePoint Server 2007  跨站提權攻擊" ruleid="21070" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="XWork绕过安全限制执行任意命令攻击" name_en_US="XWork bypass security restrictions arbitrary commands execute Attack" name_zh_CN="XWork绕过安全限制执行任意命令攻击" name_zh_TW="XWork繞過安全限制執行任意命令攻擊" ruleid="21073" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Access ActiveX控件实例化远程代码执行攻击" name_en_US="Microsoft Access ActiveX controls instantiation remote execute code attack" name_zh_CN="Microsoft Access ActiveX控件实例化远程代码执行攻击" name_zh_TW="Microsoft Access ActiveX控件實例化遠程代碼執行攻擊" ruleid="21072" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下流光Sensor木马建立连接" name_en_US="Trojan Sensor Connection on Windows" name_zh_CN="Windows系统下流光Sensor木马建立连接" name_zh_TW="Windows系統下流光Sensor木馬建立連接" ruleid="40660" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832603" module="0" name="SSL重协商及资源消耗非对称性导致的分布式拒绝服务攻击" name_en_US="SSL-RENEGOTIATION and Asymmetric Property Ddos" name_zh_CN="SSL重协商及资源消耗非对称性导致的分布式拒绝服务攻击" name_zh_TW="SSL重協商及資源消耗非對稱性導致的分布式拒絕服務攻擊" ruleid="10321" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序rksh" name_en_US="Access to Unix Shell Interpreter rksh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序rksh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序rksh" ruleid="20142" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725671" module="0" name="DistCC守护程序远程命令执行攻击" name_en_US="DistCC Daemon Remote Command Execution" name_zh_CN="DistCC守护程序远程命令执行攻击" name_zh_TW="DistCC守護程序遠程命令執行攻擊" ruleid="20610" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643495" module="0" name="TFTPD服务超长文件名远程缓冲区溢出攻击" name_en_US="TFTPD Service Over-long Filename Remote Buffer Overflow" name_zh_CN="TFTPD服务超长文件名远程缓冲区溢出攻击" name_zh_TW="TFTPD服務超長文件名遠程緩沖區溢出攻擊" ruleid="20611" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Symantec Sygate Management Server认证Applet远程SQL注入攻击" name_en_US="Symantec Sygate Management Server Authentication Applet Remote SQL Injection" name_zh_CN="Symantec Sygate Management Server认证Applet远程SQL注入攻击" name_zh_TW="Symantec Sygate Management Server認證Applet遠程SQL注入攻擊" ruleid="20616" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sentinel License Manager Lservnt服务远程缓冲区溢出攻击" name_en_US="Sentinel License Manager Lservnt Service Remote Buffer Overflow" name_zh_CN="Sentinel License Manager Lservnt服务远程缓冲区溢出攻击" name_zh_TW="Sentinel License Manager Lservnt服務遠程緩沖區溢出攻擊" ruleid="20617" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616799" module="0" name="CVE-2012-0152 Terminal Server拒绝服务漏洞(MS12-020)" name_en_US="CVE-2012-0152 Terminal Server Denial of Service Vulnerability(MS12-020)" name_zh_CN="CVE-2012-0152 Terminal Server拒绝服务漏洞(MS12-020)" name_zh_TW="CVE-2012-0152 Terminal Server拒絕服務漏洞(MS12-020)" ruleid="10327" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596703" module="0" name="CVE-2012-0006 DNS拒绝服务漏洞(MS12-017)" name_en_US="CVE-2012-0006 DNS Denial of Service Vulnerability(MS12-017)" name_zh_CN="CVE-2012-0006 DNS拒绝服务漏洞(MS12-017)" name_zh_TW="CVE-2012-0006 DNS拒絕服務漏洞(MS12-017)" ruleid="10326" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423918" module="0" name="MyBB usercp.php获取管理用户权限攻击" name_en_US="MyBB usercp.php Admin Privilege Escalation" name_zh_CN="MyBB usercp.php获取管理用户权限攻击" name_zh_TW="MyBB usercp.php獲取管理用戶權限攻擊" ruleid="20618" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050471" module="0" name="Apple Mac OS X AppleFileServer预验证远程缓冲区溢出攻击" name_en_US="Apple Mac OS X AppleFileServer Pre-authentication Remote Buffer Overflow" name_zh_CN="Apple Mac OS X AppleFileServer预验证远程缓冲区溢出攻击" name_zh_TW="Apple Mac OS X AppleFileServer預驗證遠程緩沖區溢出攻擊" ruleid="20619" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Logbook logbook.pl脚本漏洞扫描探测" name_en_US="Logbook logbook.pl Script Vulnerability Detection" name_zh_CN="Logbook logbook.pl脚本漏洞扫描探测" name_zh_TW="Logbook logbook.pl腳本漏洞掃描探測" ruleid="30453" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Office共享组件DLL加载任意代码执行漏洞(MS11-023)" name_en_US="Vulnerability in Microsoft Office Could Allow Remote Code Execution" name_zh_CN="Microsoft Office共享组件DLL加载任意代码执行漏洞(MS11-023)" name_zh_TW="Microsoft Office共享組件DLL加載任意代碼執行漏洞(MS11-023)" ruleid="21219" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel图层悬空指针远程代码执行漏洞(MS11-023)" name_en_US="Vulnerability in Microsoft Office Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel图层悬空指针远程代码执行漏洞(MS11-023)" name_zh_TW="Microsoft Excel圖層懸空指針遠程代碼執行漏洞(MS11-023)" ruleid="21218" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序ksh" name_en_US="Access to Unix Shell Interpreter ksh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序ksh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序ksh" ruleid="20141" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647574" module="0" name="Windows系统远程管理工具PcAnywhere管理员远程登录" name_en_US="Windows Remote Management Tool PcAnywhere Administrator Remote Login" name_zh_CN="Windows系统远程管理工具PcAnywhere管理员远程登录" name_zh_TW="Windows系統遠程管理工具PcAnywhere管理員遠程登錄" ruleid="50010" visible="true" />
			<rule action=" db  screen " enabled="true" group="156239911" module="0" name="SGI IRIX lpsched远程命令执行攻击" name_en_US="SGI IRIX lpsched Remote Command Execution" name_zh_CN="SGI IRIX lpsched远程命令执行攻击" name_zh_TW="SGI IRIX lpsched遠程命令執行攻擊" ruleid="20613" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel 远程代码执行漏洞" name_zh_TW="Microsoft Excel 遠程代碼執行漏洞" ruleid="21210" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel 远程代码执行漏洞" name_zh_TW="Microsoft Excel 遠程代碼執行漏洞" ruleid="21213" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel 远程代码执行漏洞" name_zh_TW="Microsoft Excel 遠程代碼執行漏洞" ruleid="21212" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft PowerPoint 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution" name_zh_CN="Microsoft PowerPoint 远程代码执行漏洞" name_zh_TW="Microsoft PowerPoint 遠程代碼執行漏洞" ruleid="21215" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel数据验证记录解析缓冲区溢出漏洞(MS11-021)" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel数据验证记录解析缓冲区溢出漏洞(MS11-021)" name_zh_TW="Microsoft Excel數據驗證記錄解析緩沖區溢出漏洞(MS11-021)" ruleid="21214" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft PowerPoint无效&quot;TimeColorBehaviorContainer&quot;记录远程代码执行漏洞(MS11-022)" name_en_US="Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution" name_zh_CN="Microsoft PowerPoint无效&quot;TimeColorBehaviorContainer&quot;记录远程代码执行漏洞(MS11-022)" name_zh_TW="Microsoft PowerPoint無效&quot;TimeColorBehaviorContainer&quot;記錄遠程代碼執行漏洞(MS11-022)" ruleid="21217" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft PowerPoint无效&quot;PersistDirectoryEntry&quot;记录远程代码执行漏洞(MS11-022)" name_en_US="Vulnerabilities in Microsoft PowerPoint Could Allow Remote Code Execution" name_zh_CN="Microsoft PowerPoint无效&quot;PersistDirectoryEntry&quot;记录远程代码执行漏洞(MS11-022)" name_zh_TW="Microsoft PowerPoint無效&quot;PersistDirectoryEntry&quot;記錄遠程代碼執行漏洞(MS11-022)" ruleid="21216" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞" ruleid="21189" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞" ruleid="21188" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序csh" name_en_US="Access to Unix Shell Interpreter csh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序csh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序csh" ruleid="20144" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户登录" name_en_US="Instant Messaging Software ICQ User Login" name_zh_CN="即时通信软件ICQ用户登录" name_zh_TW="即時通信軟件ICQ用戶登錄" ruleid="50074" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows OpenType Compact字体格式远程代码执行漏洞" name_en_US="Vulnerability in the OpenType Compact Font Format (CFF) Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Compact字体格式远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Compact字體格式遠程代碼執行漏洞" ruleid="21181" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Visio数据类型内存破坏远程代码执行漏洞" name_en_US="Microsoft Visio Data Type Memory Corruption Remote Code Execution Vulnerability" name_zh_CN="Microsoft Visio数据类型内存破坏远程代码执行漏洞" name_zh_TW="Microsoft Visio數據類型內存破壞遠程代碼執行漏洞" ruleid="21183" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Visio对象内存破坏远程代码执行漏洞" name_en_US="Microsoft Visio Object Memory Corruption Remote Code Execution Vulnerability" name_zh_CN="Microsoft Visio对象内存破坏远程代码执行漏洞" name_zh_TW="Microsoft Visio對象內存破壞遠程代碼執行漏洞" ruleid="21182" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows CSRSS本地权限提升漏洞" name_en_US="Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows CSRSS本地权限提升漏洞" name_zh_TW="Microsoft Windows CSRSS本地權限提升漏洞" ruleid="21185" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft VBScript和JScript Scripting引擎信息泄露漏洞" name_en_US="Vulnerability in JScript and VBScript Scripting Engine Could Allow Information Disclosure" name_zh_CN="Microsoft VBScript和JScript Scripting引擎信息泄露漏洞" name_zh_TW="Microsoft VBScript和JScript Scripting引擎信息泄露漏洞" ruleid="21184" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel整数截断本地权限提升漏洞" name_en_US="Microsoft Windows Kernel Integer Truncation Local Privilege Escalation Vulnerability" name_zh_CN="Microsoft Windows Kernel整数截断本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel整數截斷本地權限提升漏洞" ruleid="21187" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows User Access Control (UAC) 绕过本地权限提升漏洞" name_en_US="Microsoft Windows User Access Control (UAC) Bypass Local Privilege Escalation Vulnerability" name_zh_CN="Microsoft Windows User Access Control (UAC) 绕过本地权限提升漏洞" name_zh_TW="Microsoft Windows User Access Control (UAC) 繞過本地權限提升漏洞" ruleid="21186" visible="true" />
			<rule action=" db  screen " enabled="true" group="74449194" module="0" name="PuTTy.exe v0.53 缓冲区溢出攻击" name_en_US="PuTTy.exe v0.53 Buffer Overflow" name_zh_CN="PuTTy.exe v0.53 缓冲区溢出攻击" name_zh_TW="PuTTy.exe v0.53 緩沖區溢出攻擊" ruleid="20854" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="RealNetworks RealPlayer .smil文件处理缓冲区溢出攻击" name_en_US="RealNetworks RealPlayer .smil File Prcocessing Buffer Overflow" name_zh_CN="RealNetworks RealPlayer .smil文件处理缓冲区溢出攻击" name_zh_TW="RealNetworks RealPlayer .smil文件處理緩沖區溢出攻擊" ruleid="20855" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Real Networks Helix Universal Server RTSP Describe字段远程缓冲区溢出攻击" name_en_US="Real Networks Helix Universal Server RTSP Describe Field Remote Buffer Overflow" name_zh_CN="Real Networks Helix Universal Server RTSP Describe字段远程缓冲区溢出攻击" name_zh_TW="Real Networks Helix Universal Server RTSP Describe字段遠程緩沖區溢出攻擊" ruleid="20856" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="WinVNC 客户程序缓冲区溢出攻击" name_en_US="WinVNC Client Buffer Overflow" name_zh_CN="WinVNC 客户程序缓冲区溢出攻击" name_zh_TW="WinVNC 客戶程序緩沖區溢出攻擊" ruleid="20857" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Novell Netmail NMAP服务STOR命令远程溢出攻击" name_en_US="Novell Netmail NMAP Service STOR Command Remote Buffer Overflow" name_zh_CN="Novell Netmail NMAP服务STOR命令远程溢出攻击" name_zh_TW="Novell Netmail NMAP服務STOR命令遠程溢出攻擊" ruleid="20850" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器PASS命令超长参数缓冲区溢出攻击" name_en_US="FTP Server PASS Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务器PASS命令超长参数缓冲区溢出攻击" name_zh_TW="FTP服務器PASS命令超長參數緩沖區溢出攻擊" ruleid="20851" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器UNLOCK命令超长参数缓冲区溢出攻击" name_en_US="FTP Server UNLOCK Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务器UNLOCK命令超长参数缓冲区溢出攻击" name_zh_TW="FTP服務器UNLOCK命令超長參數緩沖區溢出攻擊" ruleid="20852" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Proxy-Pro Professional GateKeeper Web代理缓冲区溢出攻击" name_en_US="Proxy-Pro Professional GateKeeper Web Proxy Buffer Overflow" name_zh_CN="Proxy-Pro Professional GateKeeper Web代理缓冲区溢出攻击" name_zh_TW="Proxy-Pro Professional GateKeeper Web代理緩沖區溢出攻擊" ruleid="20853" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k连接服务器" name_en_US="P2P File Sharing Tool eDonkey/ed2k Server Connection" name_zh_CN="P2P文件共享工具eDonkey/ed2k连接服务器" name_zh_TW="P2P文件共享工具eDonkey/ed2k連接服務器" ruleid="50071" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352042" module="0" name="POP3服务器PASS命令超长参数缓冲区溢出攻击" name_en_US="POP3 Server PASS Command Over-Long Parameter Buffer Overflow" name_zh_CN="POP3服务器PASS命令超长参数缓冲区溢出攻击" name_zh_TW="POP3服務器PASS命令超長參數緩沖區溢出攻擊" ruleid="20859" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190293" module="0" name="Web服务TRACK方法请求" name_en_US="Web Service TRACK Method Request" name_zh_CN="Web服务TRACK方法请求" name_zh_TW="Web服務TRACK方法請求" ruleid="50070" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Trillian aim:// URI处理器远程代码执行攻击" name_en_US="Trillian aim:// URI Processor Remote Code Execution Attack" name_zh_CN="Trillian aim:// URI处理器远程代码执行攻击" name_zh_TW="Trillian aim:// URI處理器遠程代碼執行攻擊" ruleid="20928" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="AOL Instant Messenger通知窗口远程脚本执行攻击" name_en_US="AOL Instant Messenger Remote Script Execution Attack" name_zh_CN="AOL Instant Messenger通知窗口远程脚本执行攻击" name_zh_TW="AOL Instant Messenger通知窗口遠程腳本執行攻擊" ruleid="20929" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="HP Software Update RulesEngine.dll控件远程文件覆盖攻击" name_en_US="HP Software Update RulesEngine.dll Control Remote File Coverage Attack" name_zh_CN="HP Software Update RulesEngine.dll控件远程文件覆盖攻击" name_zh_TW="HP Software Update RulesEngine.dll控件遠程文件覆蓋攻擊" ruleid="20924" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723882" module="0" name="Asterisk SIP T.38 SDP解析远程栈溢出攻击" name_en_US="Asterisk SIP T.38 SDP Remote Stack Overflow Attack" name_zh_CN="Asterisk SIP T.38 SDP解析远程栈溢出攻击" name_zh_TW="Asterisk SIP T.38 SDP解析遠程棧溢出攻擊" ruleid="20925" visible="true" />
			<rule action=" db  screen " enabled="true" group="162531370" module="0" name="Samba MS-RPC远程Shell命令注入执行攻击" name_en_US="Samba MS-RPC Remote Shell Command Injection Attack" name_zh_CN="Samba MS-RPC远程Shell命令注入执行攻击" name_zh_TW="Samba MS-RPC遠程Shell命令注入執行攻擊" ruleid="20926" visible="true" />
			<rule action=" db  screen " enabled="true" group="162529578" module="0" name="Samba NDR MS-RPC请求远程堆溢出攻击" name_en_US="Samba NDR MS-RPC Remote Heap Overflow Attack" name_zh_CN="Samba NDR MS-RPC请求远程堆溢出攻击" name_zh_TW="Samba NDR MS-RPC請求遠程堆溢出攻擊" ruleid="20927" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="IMAP服务器SEARCH命令超长参数远程缓冲区溢出攻击" name_en_US="IMAP Server SEARCH Command Over-Long Parameter Remote Buffer Overflow Attack" name_zh_CN="IMAP服务器SEARCH命令超长参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務器SEARCH命令超長參數遠程緩沖區溢出攻擊" ruleid="20920" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft DirectX SAMI及WAV/AVI文件解析远程代码执行漏洞（MS07-064）" name_en_US="Microsoft DirectX SAMI and WAV/AVI File Parsing Stack Buffer Overflow Vulnerability" name_zh_CN="Microsoft DirectX SAMI及WAV/AVI文件解析远程代码执行漏洞（MS07-064）" name_zh_TW="Microsoft DirectX SAMI及WAV/AVI文件解析遠程代碼執行漏洞（MS07-064）" ruleid="20921" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Samba Send_MailSlot函数远程栈溢出攻击" name_en_US="Samba Send_MailSlot Remote Buffer Overflow Attack" name_zh_CN="Samba Send_MailSlot函数远程栈溢出攻击" name_zh_TW="Samba Send_MailSlot函數遠程棧溢出攻擊" ruleid="20922" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_en_US="CA ETrust Intrusion Detection Caller.dll Control Remote Code Execution Attack" name_zh_CN="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_zh_TW="CA ETrust Intrusion Detection Caller.dll控件遠程代碼執行攻擊" ruleid="20923" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2459 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2459 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2459 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2459 Adobe Flash Player 內存破壞漏洞" ruleid="21325" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="CVE-2011-2458 Adobe Flash Player 跨地域策略Bypass漏洞" name_en_US="CVE-2011-2458 Adobe Flash Player Cross-domain Policy Bypass Vulnerability(Internet Explorer-only)" name_zh_CN="CVE-2011-2458 Adobe Flash Player 跨地域策略Bypass漏洞" name_zh_TW="CVE-2011-2458 Adobe Flash Player 跨地域策略Bypass漏洞" ruleid="21324" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="CVE-2011-2462 Adobe Reader U3D数据处理代码执行漏洞" name_en_US="CVE-2011-2462 Adobe Acrobat and Reader U3D Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2462 Adobe Reader U3D数据处理代码执行漏洞" name_zh_TW="CVE-2011-2462 Adobe Reader U3D數據處理代碼執行漏洞" ruleid="21327" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2460 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2460 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2460 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2460 Adobe Flash Player 內存破壞漏洞" ruleid="21326" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616789" module="0" name="OOB带外紧急数据Winuke拒绝服务攻击" name_en_US="OOB Emergency Data Winuke Denial of Service" name_zh_CN="OOB带外紧急数据Winuke拒绝服务攻击" name_zh_TW="OOB帶外緊急數據Winuke拒絕服務攻擊" ruleid="10039" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2454 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2454 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2454 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2454 Adobe Flash Player 內存破壞漏洞" ruleid="21320" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.sadmind远程缓冲区溢出攻击" name_en_US="Solaris rpc.sadmind Remote Buffer Overflow" name_zh_CN="Solaris rpc.sadmind远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.sadmind遠程緩沖區溢出攻擊" ruleid="20108" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.sadmind服务存在性TCP扫描探测" name_en_US="Solaris rpc.sadmind Service TCP Detection" name_zh_CN="Solaris rpc.sadmind服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.sadmind服務存在性TCP掃描探測" ruleid="20109" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616789" module="0" name="Stream ACK/FIN小数据包洪流拒绝服务攻击" name_en_US="Malformed Stream ACK/FIN Small Packets Flood Denial of Service" name_zh_CN="Stream ACK/FIN小数据包洪流拒绝服务攻击" name_zh_TW="Stream ACK/FIN小數據包洪流拒絕服務攻擊" ruleid="10035" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Microsoft FrontPage 2000 fp30reg.dll缓冲区溢出攻击" name_en_US="Microsoft FrontPage 2000 fp30reg.dll Buffer Overflow" name_zh_CN="Microsoft FrontPage 2000 fp30reg.dll缓冲区溢出攻击" name_zh_TW="Microsoft FrontPage 2000 fp30reg.dll緩沖區溢出攻擊" ruleid="20107" visible="true" />
			<rule action=" db  screen " enabled="true" group="69207078" module="0" name="Windows系统下Code Red网络蠕虫攻击" name_en_US="Code Red Worm on Windows" name_zh_CN="Windows系统下Code Red网络蠕虫攻击" name_zh_TW="Windows系統下Code Red網絡蠕蟲攻擊" ruleid="20104" visible="true" />
			<rule action=" db  screen " enabled="true" group="69207078" module="0" name="Windows系统下Code Red II网络蠕虫攻击" name_en_US="Code Red II Worm on Windows" name_zh_CN="Windows系统下Code Red II网络蠕虫攻击" name_zh_TW="Windows系統下Code Red II網絡蠕蟲攻擊" ruleid="20105" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256682" module="0" name="RhinoSoft Serv-U FTP Server远程目录遍历漏洞" name_en_US="RhinoSoft Serv-U FTP Server Remote Directory Traversal Vulnerability" name_zh_CN="RhinoSoft Serv-U FTP Server远程目录遍历漏洞" name_zh_TW="RhinoSoft Serv-U FTP Server遠程目錄遍曆漏洞" ruleid="21329" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723882" module="0" name="Oracle Java SE  Rhino 脚本引擎远程代码执行漏洞" name_en_US="Oracle Java SE Rhino Script Engine Remote Code Execution Vulnerability" name_zh_CN="Oracle Java SE  Rhino 脚本引擎远程代码执行漏洞" name_zh_TW="Oracle Java SE  Rhino 腳本引擎遠程代碼執行漏洞" ruleid="21328" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Microsoft IIS 4.0 .htr ISAPI扩展远程缓冲区溢出攻击" name_en_US="Microsoft IIS 4.0 .htr ISAPI Extension Remote Buffer Overflow" name_zh_CN="Microsoft IIS 4.0 .htr ISAPI扩展远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 4.0 .htr ISAPI擴展遠程緩沖區溢出攻擊" ruleid="20100" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886374" module="0" name="Solaris ypbind UDP远程缓冲区溢出攻击" name_en_US="Solaris ypbind UDP Remote Buffer Overflow" name_zh_CN="Solaris ypbind UDP远程缓冲区溢出攻击" name_zh_TW="Solaris ypbind UDP遠程緩沖區溢出攻擊" ruleid="20101" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Computer Associates MLink超长数据缓冲区溢出攻击" name_en_US="Computer Associates MLink Over-Long Data Buffer Overflow" name_zh_CN="Computer Associates MLink超长数据缓冲区溢出攻击" name_zh_TW="Computer Associates MLink超長數據緩沖區溢出攻擊" ruleid="20780" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="McAfee ePolicy Orchestrator HTTP GET请求远程格式串攻击" name_en_US="McAfee ePolicy Orchestrator HTTP GET Request Remote Format String" name_zh_CN="McAfee ePolicy Orchestrator HTTP GET请求远程格式串攻击" name_zh_TW="McAfee ePolicy Orchestrator HTTP GET請求遠程格式串攻擊" ruleid="20781" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpSecurePages cfgProgDir变量远程文件包含攻击" name_en_US="phpSecurePages cfgProgDir Variable Remote File Inclusion" name_zh_CN="phpSecurePages cfgProgDir变量远程文件包含攻击" name_zh_TW="phpSecurePages cfgProgDir變量遠程文件包含攻擊" ruleid="20669" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析软件证券之星用户登录" name_en_US="Stock Market Analysis Software stockstar.com Uesr Login" name_zh_CN="股票行情分析软件证券之星用户登录" name_zh_TW="股票行情分析軟件證券之星用戶登錄" ruleid="50171" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Claroline scormExport.inc.php远程文件包含攻击" name_en_US="Claroline scormExport.inc.php Remote File Inclusion" name_zh_CN="Claroline scormExport.inc.php远程文件包含攻击" name_zh_TW="Claroline scormExport.inc.php遠程文件包含攻擊" ruleid="20582" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="VWAR远程文件包含攻击" name_en_US="VWAR Remote File Inclusion" name_zh_CN="VWAR远程文件包含攻击" name_zh_TW="VWAR遠程文件包含攻擊" ruleid="20583" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="PeerCast URL处理远程缓冲区溢出攻击" name_en_US="PeerCast URL Handling Remote Buffer Overflow" name_zh_CN="PeerCast URL处理远程缓冲区溢出攻击" name_zh_TW="PeerCast URL處理遠程緩沖區溢出攻擊" ruleid="20580" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="D2-Shoutbox load参数远程SQL注入攻击" name_en_US="D2-Shoutbox load Parameter Remote SQL Injection" name_zh_CN="D2-Shoutbox load参数远程SQL注入攻击" name_zh_TW="D2-Shoutbox load參數遠程SQL注入攻擊" ruleid="20581" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="phpWebSite hub_dir变量远程执行命令攻击" name_en_US="phpWebSite hub_dir Variable Remote Command Execution" name_zh_CN="phpWebSite hub_dir变量远程执行命令攻击" name_zh_TW="phpWebSite hub_dir變量遠程執行命令攻擊" ruleid="20586" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Simplog tid参数远程SQL注入攻击" name_en_US="Simplog tid Parameter Remote SQL Injection" name_zh_CN="Simplog tid参数远程SQL注入攻击" name_zh_TW="Simplog tid參數遠程SQL注入攻擊" ruleid="20587" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Horde Help模块远程执行命令攻击" name_en_US="Horde Help Module Remote Command Execution" name_zh_CN="Horde Help模块远程执行命令攻击" name_zh_TW="Horde Help模塊遠程執行命令攻擊" ruleid="20584" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Sysinfoscript sysinfo.cgi远程执行命令攻击" name_en_US="Sysinfoscript sysinfo.cgi Remote Command Execution" name_zh_CN="Sysinfoscript sysinfo.cgi远程执行命令攻击" name_zh_TW="Sysinfoscript sysinfo.cgi遠程執行命令攻擊" ruleid="20585" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Invision Power Board search.php远程脚本代码注入攻击" name_en_US="Invision Power Board search.php Remote Script Injection" name_zh_CN="Invision Power Board search.php远程脚本代码注入攻击" name_zh_TW="Invision Power Board search.php遠程腳本代碼注入攻擊" ruleid="20588" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Advanced GuestBook for phpBB远程文件包含攻击" name_en_US="Advanced GuestBook for phpBB Remote File Inclusion" name_zh_CN="Advanced GuestBook for phpBB远程文件包含攻击" name_zh_TW="Advanced GuestBook for phpBB遠程文件包含攻擊" ruleid="20589" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Index Server .htw读取文件漏洞扫描探测" name_en_US="Index Server .htw File Reading Vulnerability Detection" name_zh_CN="Index Server .htw读取文件漏洞扫描探测" name_zh_TW="Index Server .htw讀取文件漏洞掃描探測" ruleid="30149" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Matt Tourtillott maillist.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Matt Tourtillott maillist.pl Script Vulnerability" name_zh_CN="利用Matt Tourtillott maillist.pl脚本漏洞远程执行命令" name_zh_TW="利用Matt Tourtillott maillist.pl腳本漏洞遠程執行命令" ruleid="30148" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898069" module="0" name="ICMP路由请求消息" name_en_US="ICMP Route Request Message" name_zh_CN="ICMP路由请求消息" name_zh_TW="ICMP路由請求消息" ruleid="40059" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cachefsd服务存在性TCP扫描探测" name_en_US="Solaris rpc.cachefsd Service TCP Detection" name_zh_CN="Solaris rpc.cachefsd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.cachefsd服務存在性TCP掃描探測" ruleid="30143" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cachefsd服务存在性UDP扫描探测" name_en_US="Solaris rpc.cachefsd Service UDP Detection" name_zh_CN="Solaris rpc.cachefsd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.cachefsd服務存在性UDP掃描探測" ruleid="30142" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用ht://dig htsearch脚本漏洞读取系统文件" name_en_US="System File Reading via ht://dig htsearch Script Vulneraility" name_zh_CN="利用ht://dig htsearch脚本漏洞读取系统文件" name_zh_TW="利用ht://dig htsearch腳本漏洞讀取系統文件" ruleid="30493" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="Microsoft FrontPage 98 Extensions获取绝对路径信息攻击" name_en_US="Microsoft FrontPage 98 Extensions Absolute Path Information Disclosure" name_zh_CN="Microsoft FrontPage 98 Extensions获取绝对路径信息攻击" name_zh_TW="Microsoft FrontPage 98 Extensions獲取絕對路徑信息攻擊" ruleid="30495" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft IIS 5.0 .printer ISAPI扩展映射存在性扫描探测" name_en_US="Microsoft IIS 5.0 .printer ISAPI Extension Mapping Detection" name_zh_CN="Microsoft IIS 5.0 .printer ISAPI扩展映射存在性扫描探测" name_zh_TW="Microsoft IIS 5.0 .printer ISAPI擴展映射存在性掃描探測" ruleid="30146" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cmsd服务存在性TCP扫描探测" name_en_US="Solaris rpc.cmsd Service TCP Detection" name_zh_CN="Solaris rpc.cmsd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.cmsd服務存在性TCP掃描探測" ruleid="30145" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cmsd服务存在性UDP扫描探测" name_en_US="Solaris rpc.cmsd Service UDP Detection" name_zh_CN="Solaris rpc.cmsd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.cmsd服務存在性UDP掃描探測" ruleid="30144" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="Virtual Programming VP-ASP shopgiftregsearch.asp远程SQL注入攻击" name_en_US="Virtual Programming VP-ASP shopgiftregsearch.asp Remote SQL Injection" name_zh_CN="Virtual Programming VP-ASP shopgiftregsearch.asp远程SQL注入攻击" name_zh_TW="Virtual Programming VP-ASP shopgiftregsearch.asp遠程SQL注入攻擊" ruleid="20788" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2012-0019 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_en_US="CVE-2012-0019 Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015)" name_zh_CN="CVE-2012-0019 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_zh_TW="CVE-2012-0019 Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015)" ruleid="21360" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190234" module="0" name="Microsoft Windows ASP.NET拒绝服务攻击" name_en_US="ASP.NET in Microsoft Windows Denial of Service" name_zh_CN="Microsoft Windows ASP.NET拒绝服务攻击" name_zh_TW="Microsoft Windows ASP.NET拒絕服務攻擊" ruleid="10251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647509" module="0" name="Windows TCP/IP零窗口拒绝服务攻击" name_en_US="Windows TCP/IP Zero Window Size Denial of Service Attack" name_zh_CN="Windows TCP/IP零窗口拒绝服务攻击" name_zh_TW="Windows TCP/IP零窗口拒絕服務攻擊" ruleid="10253" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647509" module="0" name="Windows TCP/IP最后ACK包小窗口拒绝服务攻击" name_en_US="Windows TCP/IP Small Sized Window On The Final ACK Denial of Service Attack" name_zh_CN="Windows TCP/IP最后ACK包小窗口拒绝服务攻击" name_zh_TW="Windows TCP/IP最後ACK包小窗口拒絕服務攻擊" ruleid="10252" visible="true" />
			<rule action=" db  screen " enabled="true" group="70287386" module="0" name="IIS中FTP服务拒绝服务攻击" name_en_US="FTP Service for Internet Information Services Denial of Service" name_zh_CN="IIS中FTP服务拒绝服务攻击" name_zh_TW="IIS中FTP服務拒絕服務攻擊" ruleid="10255" visible="true" />
			<rule action=" db  screen " enabled="true" group="95453210" module="0" name="SMB(sits in a loop)拒绝服务攻击" name_en_US="SMB(sits in a loop)Denial of Service Attack" name_zh_CN="SMB(sits in a loop)拒绝服务攻击" name_zh_TW="SMB(sits in a loop)拒絕服務攻擊" ruleid="10256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Turkojan浏览驱动命令木马网络数据通信" name_en_US="TROJAN Turkojan C&amp;C Browse Drive Command Response metin" name_zh_CN="Turkojan浏览驱动命令木马网络数据通信" name_zh_TW="Turkojan浏覽驅動命令木馬網絡數據通信" ruleid="40900" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="Windows系统下CYG恶意代码活动" name_en_US="Windows CYG Malicious Code Activity" name_zh_CN="Windows系统下CYG恶意代码活动" name_zh_TW="Windows系統下CYG惡意代碼活動" ruleid="40724" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Turkojan Keepalive木马网络数据通信" name_en_US="TROJAN Turkojan C&amp;C Keepalive BAGLANTI" name_zh_CN="Turkojan Keepalive木马网络数据通信" name_zh_TW="Turkojan Keepalive木馬網絡數據通信" ruleid="40903" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Turkojan日志解析木马网络数据通信" name_en_US="TROJAN Turkojan C&amp;C Logs Parse Response Response LOGS1" name_zh_CN="Turkojan日志解析木马网络数据通信" name_zh_TW="Turkojan日志解析木馬網絡數據通信" ruleid="40904" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Turkojan nxt命令木马网络数据通信" name_en_US="TROJAN Turkojan C&amp;C nxt Command Response nxt" name_zh_CN="Turkojan nxt命令木马网络数据通信" name_zh_TW="Turkojan nxt命令木馬網絡數據通信" ruleid="40905" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="LimeWire HTTP畸形请求访问系统文件攻击" name_en_US="LimeWire HTTP Malformed Request System File Access" name_zh_CN="LimeWire HTTP畸形请求访问系统文件攻击" name_zh_TW="LimeWire HTTP畸形請求訪問系統文件攻擊" ruleid="30549" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Oracle Web Listener批处理漏洞远程执行命令扫描利用" name_en_US="Oracle Web Listener Batch Vulnerability Remote Code Execution Detection" name_zh_CN="Oracle Web Listener批处理漏洞远程执行命令扫描利用" name_zh_TW="Oracle Web Listener批處理漏洞遠程執行命令掃描利用" ruleid="30379" visible="true" />
			<rule action=" db  screen " enabled="true" group="145754166" module="0" name="HP Ignite-UX TFTP访问口令文件攻击" name_en_US="HP Ignite-UX TFTP Password File Access" name_zh_CN="HP Ignite-UX TFTP访问口令文件攻击" name_zh_TW="HP Ignite-UX TFTP訪問口令文件攻擊" ruleid="30547" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Linksys Web Camera Software next_file参数非授权访问系统文件攻击" name_en_US="Linksys Web Camera Software next_file Parameter System File Unauthorized Access" name_zh_CN="Linksys Web Camera Software next_file参数非授权访问系统文件攻击" name_zh_TW="Linksys Web Camera Software next_file參數非授權訪問系統文件攻擊" ruleid="30546" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Logics Software LOG-FT远程读取系统文件攻击" name_en_US="Logics Software LOG-FT Remote System File Read" name_zh_CN="Logics Software LOG-FT远程读取系统文件攻击" name_zh_TW="Logics Software LOG-FT遠程讀取系統文件攻擊" ruleid="30545" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Javamail非授权访问系统文件攻击" name_en_US="Javamail System File Unauthorized Access" name_zh_CN="Javamail非授权访问系统文件攻击" name_zh_TW="Javamail非授權訪問系統文件攻擊" ruleid="30544" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="EMC Navisphere Manager目录遍历攻击" name_en_US="EMC Navisphere Manager Directory Traversal" name_zh_CN="EMC Navisphere Manager目录遍历攻击" name_zh_TW="EMC Navisphere Manager目錄遍曆攻擊" ruleid="30543" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="W-Agora site参数远程目录遍历攻击" name_en_US="W-Agora site Parameter Remote Directory Traversal" name_zh_CN="W-Agora site参数远程目录遍历攻击" name_zh_TW="W-Agora site參數遠程目錄遍曆攻擊" ruleid="30542" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="Barracuda Spam Firewall img.pl远程目录遍历攻击" name_en_US="Barracuda Spam Firewall img.pl Remote Directory Traversal" name_zh_CN="Barracuda Spam Firewall img.pl远程目录遍历攻击" name_zh_TW="Barracuda Spam Firewall img.pl遠程目錄遍曆攻擊" ruleid="30541" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Subscribe Me Pro远程目录遍历攻击" name_en_US="Subscribe Me Pro Remote Directory Traversal" name_zh_CN="Subscribe Me Pro远程目录遍历攻击" name_zh_TW="Subscribe Me Pro遠程目錄遍曆攻擊" ruleid="30540" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780821" module="0" name="SMTP服务邮件转发失败" name_en_US="SMTP Service Mail Transmit Failure" name_zh_CN="SMTP服务邮件转发失败" name_zh_TW="SMTP服務郵件轉發失敗" ruleid="40123" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="SMTP服务EXPN命令获取root帐号信息" name_en_US="SMTP Service EXPN Command root Account Information Disclosure" name_zh_CN="SMTP服务EXPN命令获取root帐号信息" name_zh_TW="SMTP服務EXPN命令獲取root帳號信息" ruleid="40120" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下ZXShell木马通信" name_en_US="Trojan ZXShell Communication on Windows" name_zh_CN="Windows系统下ZXShell木马通信" name_zh_TW="Windows系統下ZXShell木馬通信" ruleid="40727" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PhotoPost PP_PATH远程文件包含攻击" name_en_US="PhotoPost PP_PATH Remote File Inclusion" name_zh_CN="PhotoPost PP_PATH远程文件包含攻击" name_zh_TW="PhotoPost PP_PATH遠程文件包含攻擊" ruleid="20665" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下NetAngel木马通信" name_en_US="Trojan NetAngel Communication on Windows" name_zh_CN="Windows系统下NetAngel木马通信" name_zh_TW="Windows系統下NetAngel木馬通信" ruleid="40720" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Tagger LE PHP代码注入执行攻击" name_en_US="Tagger LE PHP Code Injection" name_zh_CN="Tagger LE PHP代码注入执行攻击" name_zh_TW="Tagger LE PHP代碼注入執行攻擊" ruleid="20664" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Peep木马通信" name_en_US="Trojan Peep Communication on Windows" name_zh_CN="Windows系统下Peep木马通信" name_zh_TW="Windows系統下Peep木馬通信" ruleid="40721" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft IIS newdsn.exe脚本漏洞扫描探测" name_en_US="Microsoft IIS newdsn.exe Script Vulnerability Detection" name_zh_CN="Microsoft IIS newdsn.exe脚本漏洞扫描探测" name_zh_TW="Microsoft IIS newdsn.exe腳本漏洞掃描探測" ruleid="40278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Mithril木马通信" name_en_US="Trojan Mithril Communication on Windows" name_zh_CN="Windows系统下Mithril木马通信" name_zh_TW="Windows系統下Mithril木馬通信" ruleid="40704" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下FallingStar木马通信" name_en_US="Trojan FallingStar Communication on Windows" name_zh_CN="Windows系统下FallingStar木马通信" name_zh_TW="Windows系統下FallingStar木馬通信" ruleid="40722" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159542" module="0" name="Microsoft IIS 4.0 异常编码请求" name_en_US="Microsoft IIS 4.0 Abnormal Encoding Request" name_zh_CN="Microsoft IIS 4.0 异常编码请求" name_zh_TW="Microsoft IIS 4.0 異常編碼請求" ruleid="40273" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="ARP协议MAC地址欺骗攻击" name_en_US="ARP Protocl MAC Address Spoofing" name_zh_CN="ARP协议MAC地址欺骗攻击" name_zh_TW="ARP協議MAC地址欺騙攻擊" ruleid="40688" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="通过Web服务执行getdrvs.exe程序" name_en_US="getdrvs.exe Program Execution via Web Service" name_zh_CN="通过Web服务执行getdrvs.exe程序" name_zh_TW="通過Web服務執行getdrvs.exe程序" ruleid="40274" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下DAGGER木马通信" name_en_US="Trojan DAGGER Communication on Windows" name_zh_CN="Windows系统下DAGGER木马通信" name_zh_TW="Windows系統下DAGGER木馬通信" ruleid="40687" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="六间房在线流媒体播放" name_en_US="6.cn Online Streaming Media Playing" name_zh_CN="六间房在线流媒体播放" name_zh_TW="六間房在線流媒體播放" ruleid="50239" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下BITS木马通信" name_en_US="Trojan BITS Communication on Windows" name_zh_CN="Windows系统下BITS木马通信" name_zh_TW="Windows系統下BITS木馬通信" ruleid="40686" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏劲舞团用户登陆" name_en_US="Online Game Jinwutuan User Login" name_zh_CN="网络游戏劲舞团用户登陆" name_zh_TW="網絡遊戲勁舞團用戶登陸" ruleid="50237" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="Qvod网络流媒体播放" name_en_US="Qvod Network Streaming Media Playing " name_zh_CN="Qvod网络流媒体播放" name_zh_TW="Qvod網絡流媒體播放" ruleid="50236" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件财富证券用户登录" name_en_US="Stock Market Analtsis Software Fortune Securities User Login" name_zh_CN="股票行情分析操作软件财富证券用户登录" name_zh_TW="股票行情分析操作軟件財富證券用戶登錄" ruleid="50234" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="远航游戏大厅用户登陆" name_en_US="Yuanhang Games Hall User Login " name_zh_CN="远航游戏大厅用户登陆" name_zh_TW="遠航遊戲大廳用戶登陸" ruleid="50233" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.BG蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.BG" name_zh_CN="SMTP服务发送Mydoom.BG蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.BG蠕蟲病毒郵件" ruleid="40685" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件指南针用户登录" name_en_US="Stock Market Analtsis Software Compass User Login" name_zh_CN="股票行情分析操作软件指南针用户登录" name_zh_TW="股票行情分析操作軟件指南針用戶登錄" ruleid="50231" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件飞狐交易师用户登录" name_en_US="Stock Market Analtsis Software Feihu Trading Division User Login" name_zh_CN="股票行情分析操作软件飞狐交易师用户登录" name_zh_TW="股票行情分析操作軟件飛狐交易師用戶登錄" ruleid="50230" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.BK@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.BK@mm" name_zh_CN="SMTP服务发送W32.Beagle.BK@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.BK@mm蠕蟲病毒郵件" ruleid="40684" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.AX蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AX" name_zh_CN="SMTP服务发送Mydoom.AX蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AX蠕蟲病毒郵件" ruleid="40683" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Big Brother bb-replog.sh脚本漏洞扫描利用" name_en_US="Big Brother bb-replog.sh Script Vulnerability Detection" name_zh_CN="Big Brother bb-replog.sh脚本漏洞扫描利用" name_zh_TW="Big Brother bb-replog.sh腳本漏洞掃描利用" ruleid="30375" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下冬日之恋木马通信" name_en_US="Trojan WinterLove Communication on Windows" name_zh_CN="Windows系统下冬日之恋木马通信" name_zh_TW="Windows系統下冬日之戀木馬通信" ruleid="40698" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Spook 5.8木马通信" name_en_US="Trojan Spook 5.8 Communication on Windows" name_zh_CN="Windows系统下Spook 5.8木马通信" name_zh_TW="Windows系統下Spook 5.8木馬通信" ruleid="40699" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.AZ@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AZ@mm" name_zh_CN="SMTP服务发送W32.Beagle.AZ@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AZ@mm蠕蟲病毒郵件" ruleid="40681" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Executor木马通信" name_en_US="Trojan Executor Communication on Windows" name_zh_CN="Windows系统下Executor木马通信" name_zh_TW="Windows系統下Executor木馬通信" ruleid="40690" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Wow23木马通信" name_en_US="Trojan Wow23 Communication on Windows" name_zh_CN="Windows系统下Wow23木马通信" name_zh_TW="Windows系統下Wow23木馬通信" ruleid="40691" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="ARP协议MAC地址请求回应淹没拒绝服务攻击" name_en_US="ARP Protocol MAC Address Request Flood Denial of Service" name_zh_CN="ARP协议MAC地址请求回应淹没拒绝服务攻击" name_zh_TW="ARP協議MAC地址請求回應淹沒拒絕服務攻擊" ruleid="40692" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Salga.B蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Salga.B" name_zh_CN="SMTP服务发送W32.Salga.B蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Salga.B蠕蟲病毒郵件" ruleid="40680" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下寿鼠 1.1木马通信" name_en_US="Trojan Shoushu 1.1 Communication on Windows" name_zh_CN="Windows系统下寿鼠 1.1木马通信" name_zh_TW="Windows系統下壽鼠 1.1木馬通信" ruleid="40694" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下寿鼠 1.0木马通信" name_en_US="Trojan Shoushu 1.0 Communication on Windows" name_zh_CN="Windows系统下寿鼠 1.0木马通信" name_zh_TW="Windows系統下壽鼠 1.0木馬通信" ruleid="40695" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下网络公牛木马通信" name_en_US="Trojan Netbull Communication on Windows" name_zh_CN="Windows系统下网络公牛木马通信" name_zh_TW="Windows系統下網絡公牛木馬通信" ruleid="40696" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下MagicLink木马通信" name_en_US="Trojan MagicLink Communication on Windows" name_zh_CN="Windows系统下MagicLink木马通信" name_zh_TW="Windows系統下MagicLink木馬通信" ruleid="40697" visible="true" />
			<rule action=" db  screen " enabled="true" group="211820598" module="0" name="DNS服务区信息传输请求操作" name_en_US="DNS Service Zone Information Transmission Request" name_zh_CN="DNS服务区信息传输请求操作" name_zh_TW="DNS服務區信息傳輸請求操作" ruleid="30033" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下AOL ADMIN木马通信" name_en_US="Trojan AOL ADMIN Communication on Windows" name_zh_CN="Windows系统下AOL ADMIN木马通信" name_zh_TW="Windows系統下AOL ADMIN木馬通信" ruleid="40471" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Asylum木马通信" name_en_US="Trojan Asylum Communication on Windows" name_zh_CN="Windows系统下Asylum木马通信" name_zh_TW="Windows系統下Asylum木馬通信" ruleid="40472" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务查询root用户" name_en_US="FINGER Service root User Query" name_zh_CN="FINGER服务查询root用户" name_zh_TW="FINGER服務查詢root用戶" ruleid="30030" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Backage木马通信" name_en_US="Trojan Backage Communication on Windows" name_zh_CN="Windows系统下Backage木马通信" name_zh_TW="Windows系統下Backage木馬通信" ruleid="40474" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BACKDOOR木马通信" name_en_US="Trojan BACKDOOR Communication on Windows" name_zh_CN="Windows系统下BACKDOOR木马通信" name_zh_TW="Windows系統下BACKDOOR木馬通信" ruleid="40475" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Balsitix木马通信" name_en_US="Trojan Balsitix Communication on Windows" name_zh_CN="Windows系统下Balsitix木马通信" name_zh_TW="Windows系統下Balsitix木馬通信" ruleid="40476" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840693" module="0" name="Traceroute UDP探测网络拓扑操作" name_en_US="Traceroute UDP Network Topology Detection" name_zh_CN="Traceroute UDP探测网络拓扑操作" name_zh_TW="Traceroute UDP探測網絡拓撲操作" ruleid="30034" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BDDT木马通信" name_en_US="Trojan BDDT Communication on Windows" name_zh_CN="Windows系统下BDDT木马通信" name_zh_TW="Windows系統下BDDT木馬通信" ruleid="40478" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Bigorna木马通信" name_en_US="Trojan Bigorna Communication on Windows" name_zh_CN="Windows系统下Bigorna木马通信" name_zh_TW="Windows系統下Bigorna木馬通信" ruleid="40479" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="漏洞扫描器ISS Scanner PING操作" name_en_US="ISS Scanner PING Operation" name_zh_CN="漏洞扫描器ISS Scanner PING操作" name_zh_TW="漏洞掃描器ISS Scanner PING操作" ruleid="30039" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840693" module="0" name="网络工具CyberKit PING操作" name_en_US="Network Tool CyberKit PING Operation" name_zh_CN="网络工具CyberKit PING操作" name_zh_TW="網絡工具CyberKit PING操作" ruleid="30038" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424847" module="0" name="网络蠕虫Santy.C搜索目标主机" name_en_US="Worm Santy.C Searching Target Host" name_zh_CN="网络蠕虫Santy.C搜索目标主机" name_zh_TW="網絡蠕蟲Santy.C搜索目標主機" ruleid="40676" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424847" module="0" name="网络蠕虫Santy.A攻击目标主机" name_en_US="Worm Santy.A Attacking Target Host" name_zh_CN="网络蠕虫Santy.A攻击目标主机" name_zh_TW="網絡蠕蟲Santy.A攻擊目標主機" ruleid="40677" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Atak.G蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Atak.G" name_zh_CN="SMTP服务发送W32.Atak.G蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Atak.G蠕蟲病毒郵件" ruleid="40674" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Erkez.D蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Erkez.D" name_zh_CN="SMTP服务发送W32.Erkez.D蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Erkez.D蠕蟲病毒郵件" ruleid="40675" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759691" module="0" name="SMTP服务发送VBS.Junkmail蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with VBS.Junkmail" name_zh_CN="SMTP服务发送VBS.Junkmail蠕虫病毒邮件" name_zh_TW="SMTP服務發送VBS.Junkmail蠕蟲病毒郵件" ruleid="40672" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Atak.F蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Atak.F" name_zh_CN="SMTP服务发送W32.Atak.F蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Atak.F蠕蟲病毒郵件" ruleid="40673" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759691" module="0" name="SMTP服务发送W32.Maslan.C蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Maslan.C" name_zh_CN="SMTP服务发送W32.Maslan.C蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Maslan.C蠕蟲病毒郵件" ruleid="40670" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Acid Battery木马通信" name_en_US="Trojan Acid Battery Communication on Windows" name_zh_CN="Windows系统下Acid Battery木马通信" name_zh_TW="Windows系統下Acid Battery木馬通信" ruleid="40671" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.AI蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AI" name_zh_CN="SMTP服务发送Mydoom.AI蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AI蠕蟲病毒郵件" ruleid="40678" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.AL蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AL" name_zh_CN="SMTP服务发送Mydoom.AL蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AL蠕蟲病毒郵件" ruleid="40679" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国招商银行网上银行个人专业版用户登录" name_en_US="China Merchants Bank Internet Banking Personal Professional Version User Login" name_zh_CN="中国招商银行网上银行个人专业版用户登录" name_zh_TW="中國招商銀行網上銀行個人專業版用戶登錄" ruleid="50309" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Lava-Lava用户登录（HTTPS）" name_en_US="Instant Messaging Software Lava-Lava User Login（HTTPS）" name_zh_CN="即时通信软件Lava-Lava用户登录（HTTPS）" name_zh_TW="即時通信軟件Lava-Lava用戶登錄（HTTPS）" ruleid="50308" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle@mm" name_zh_CN="SMTP服务发送W32.Beagle@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle@mm蠕蟲病毒郵件" ruleid="40461" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="水浒棋牌游戏用户登录" name_en_US="Card Games shuihu User Login" name_zh_CN="水浒棋牌游戏用户登录" name_zh_TW="水浒棋牌遊戲用戶登錄" ruleid="50303" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件慧聪发发用户登录" name_en_US="Instant Messaging Software huicongfafa User Login" name_zh_CN="即时通信软件慧聪发发用户登录" name_zh_TW="即時通信軟件慧聰發發用戶登錄" ruleid="50302" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件阿里旺旺文件传输" name_en_US="Instant Messaging Software aliwangwang File Transfer" name_zh_CN="即时通信软件阿里旺旺文件传输" name_zh_TW="即時通信軟件阿裏旺旺文件傳輸" ruleid="50301" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P软件TeamViewer客户端发送信息（UDP）" name_en_US="P2P Software TeamViewer Client Sending Message(UDP)" name_zh_CN="P2P软件TeamViewer客户端发送信息（UDP）" name_zh_TW="P2P軟件TeamViewer客戶端發送信息（UDP）" ruleid="50300" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Lava-Lava用户登录（UDP）" name_en_US="Instant Messaging Software Lava-Lava User Login（UDP）" name_zh_CN="即时通信软件Lava-Lava用户登录（UDP）" name_zh_TW="即時通信軟件Lava-Lava用戶登錄（UDP）" ruleid="50307" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件中国移动飞信用户登录" name_en_US="Instant Messaging Software China Mobile Feition User Login" name_zh_CN="即时通信软件中国移动飞信用户登录" name_zh_TW="即時通信軟件中國移動飛信用戶登錄" ruleid="50306" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="亲朋棋牌游戏用户登录" name_en_US="Qinpeng Card Games User Login" name_zh_CN="亲朋棋牌游戏用户登录" name_zh_TW="親朋棋牌遊戲用戶登錄" ruleid="50305" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="唐人游游戏用户登录" name_en_US="Tangrenyou Games User Login" name_zh_CN="唐人游游戏用户登录" name_zh_TW="唐人遊遊戲用戶登錄" ruleid="50304" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Satans木马通信" name_en_US="Trojan Satans Communication on Windows" name_zh_CN="Windows系统下Satans木马通信" name_zh_TW="Windows系統下Satans木馬通信" ruleid="40584" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Scarab木马通信" name_en_US="Trojan Scarab Communication on Windows" name_zh_CN="Windows系统下Scarab木马通信" name_zh_TW="Windows系統下Scarab木馬通信" ruleid="40585" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080678" module="0" name="Microsoft SQL Server 2000 Resolution服务远程栈缓冲区溢出攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service Remote Stack Buffer Overflow" name_zh_CN="Microsoft SQL Server 2000 Resolution服务远程栈缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務遠程棧緩沖區溢出攻擊" ruleid="20151" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下SchoolBus木马通信" name_en_US="Trojan SchoolBus Communication on Windows" name_zh_CN="Windows系统下SchoolBus木马通信" name_zh_TW="Windows系統下SchoolBus木馬通信" ruleid="40587" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Revenger木马通信" name_en_US="Trojan Revenger Communication on Windows" name_zh_CN="Windows系统下Revenger木马通信" name_zh_TW="Windows系統下Revenger木馬通信" ruleid="40580" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下The Ripper木马通信" name_en_US="Trojan The Ripper Communication on Windows" name_zh_CN="Windows系统下The Ripper木马通信" name_zh_TW="Windows系統下The Ripper木馬通信" ruleid="40581" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Ruler木马通信" name_en_US="Trojan Ruler Communication on Windows" name_zh_CN="Windows系统下Ruler木马通信" name_zh_TW="Windows系統下Ruler木馬通信" ruleid="40582" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下RUX木马通信" name_en_US="Trojan RUX Communication on Windows" name_zh_CN="Windows系统下RUX木马通信" name_zh_TW="Windows系統下RUX木馬通信" ruleid="40583" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下TCC木马通信" name_en_US="Trojan TCC Communication on Windows" name_zh_CN="Windows系统下TCC木马通信" name_zh_TW="Windows系統下TCC木馬通信" ruleid="40588" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下The Flu木马通信" name_en_US="Trojan The Flu Communication on Windows" name_zh_CN="Windows系统下The Flu木马通信" name_zh_TW="Windows系統下The Flu木馬通信" ruleid="40589" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="HTTP:Oracle Application Server BPEL Module 跨站脚本攻击" name_en_US="HTTP:Oracle Application Server BPEL Module Cross Site Scripting" name_zh_CN="HTTP:Oracle Application Server BPEL Module 跨站脚本攻击" name_zh_TW="HTTP:Oracle Application Server BPEL Module 跨站腳本攻擊" ruleid="60172" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-2521 Microsoft Internet Explorer Asynchronous NULL Object Access远程代码执行漏洞(MS12-052)" name_en_US="CVE-2012-2521 Microsoft Internet Explorer Asynchronous NULL Object Access Remote Code Execution Vulnerability(MS12-052)" name_zh_CN="CVE-2012-2521 Microsoft Internet Explorer Asynchronous NULL Object Access远程代码执行漏洞(MS12-052)" name_zh_TW="CVE-2012-2521 Microsoft Internet Explorer Asynchronous NULL Object Access遠程代碼執行漏洞(MS12-052)" ruleid="22348" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-2522 Microsoft Internet Explorer Virtual Function Table Corruption远程代码执行漏洞(MS12-052)" name_en_US="CVE-2012-2522 Microsoft Internet Explorer Virtual Function Table Corruption Remote Code Execution Vulnerability(MS12-052)" name_zh_CN="CVE-2012-2522 Microsoft Internet Explorer Virtual Function Table Corruption远程代码执行漏洞(MS12-052)" name_zh_TW="CVE-2012-2522 Microsoft Internet Explorer Virtual Function Table Corruption遠程代碼執行漏洞(MS12-052)" ruleid="22349" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1852 Windows Networking Components远程管理协议堆溢出漏洞(MS12-054)" name_en_US="CVE-2012-1852 Windows Networking Components Remote Administration Protocol Heap Overflow Vulnerability(MS12-054)" name_zh_CN="CVE-2012-1852 Windows Networking Components远程管理协议堆溢出漏洞(MS12-054)" name_zh_TW="CVE-2012-1852 Windows Networking Components遠程管理協議堆溢出漏洞(MS12-054)" ruleid="22346" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1853 Windows Networking Components远程管理协议栈溢出漏洞(MS12-054)" name_en_US="CVE-2012-1853 Windows Networking Components Remote Administration Protocol Stack Overflow Vulnerability(MS12-054)" name_zh_CN="CVE-2012-1853 Windows Networking Components远程管理协议栈溢出漏洞(MS12-054)" name_zh_TW="CVE-2012-1853 Windows Networking Components遠程管理協議棧溢出漏洞(MS12-054)" ruleid="22347" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1850 Windows Networking Components远程管理协议拒绝服务漏洞(MS12-054)" name_en_US="CVE-2012-1850 Windows Networking Components Remote Administration Protocol Denial of Service Vulnerability(MS12-054)" name_zh_CN="CVE-2012-1850 Windows Networking Components远程管理协议拒绝服务漏洞(MS12-054)" name_zh_TW="CVE-2012-1850 Windows Networking Components遠程管理協議拒絕服務漏洞(MS12-054)" ruleid="22344" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1851 Windows Networking Components Print Spooler服务格式化串漏洞(MS12-054)" name_en_US="CVE-2012-1851 Windows Networking Components Print Spooler Service Format String Vulnerability(MS12-054)" name_zh_CN="CVE-2012-1851 Windows Networking Components Print Spooler服务格式化串漏洞(MS12-054)" name_zh_TW="CVE-2012-1851 Windows Networking Components Print Spooler服務格式化串漏洞(MS12-054)" ruleid="22345" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="华为路由器http server溢出漏洞" name_en_US="Huawei router http server Overflow Vulnerability" name_zh_CN="华为路由器http server溢出漏洞" name_zh_TW="華爲路由器http server溢出漏洞" ruleid="22342" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-1526 Microsoft Internet Explorer Layout内存破坏漏洞(MS12-052)" name_en_US="CVE-2012-1526 Microsoft Internet Explorer Layout Memory Corruption Vulnerability(MS12-052)" name_zh_CN="CVE-2012-1526 Microsoft Internet Explorer Layout内存破坏漏洞(MS12-052)" name_zh_TW="CVE-2012-1526 Microsoft Internet Explorer Layout內存破壞漏洞(MS12-052)" ruleid="22343" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080678" module="0" name="Microsoft SQL Server 2000 Resolution服务远程堆缓冲区溢出攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service Remote Heap Buffer Overflow" name_zh_CN="Microsoft SQL Server 2000 Resolution服务远程堆缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務遠程堆緩沖區溢出攻擊" ruleid="20150" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="通过Web服务执行root.exe程序" name_en_US="root.exe Program Execution via Web Service" name_zh_CN="通过Web服务执行root.exe程序" name_zh_TW="通過Web服務執行root.exe程序" ruleid="40468" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Inzae.B蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Inzae.B" name_zh_CN="SMTP服务发送W32.Inzae.B蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Inzae.B蠕蟲病毒郵件" ruleid="40665" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647574" module="0" name="Windows系统远程管理工具PCAnywhere会话启动请求" name_en_US="Windows Remote Management Tool PCAnywhere Session Launch Request" name_zh_CN="Windows系统远程管理工具PCAnywhere会话启动请求" name_zh_TW="Windows系統遠程管理工具PCAnywhere會話啓動請求" ruleid="50011" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Inzae.A蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Inzae.A" name_zh_CN="SMTP服务发送W32.Inzae.A蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Inzae.A蠕蟲病毒郵件" ruleid="40664" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="联合证券-易发" name_en_US="HuaTai United Securities United Pro-prone" name_zh_CN="联合证券-易发" name_zh_TW="聯合證券-易發" ruleid="51011" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="中投证券-卓越I" name_en_US="China Jianyin Investment Securities-Zhuoyue edition I" name_zh_CN="中投证券-卓越I" name_zh_TW="中投證券-卓越I" ruleid="51012" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="中投证券-卓越II" name_en_US="China Jianyin Investment Securities-Zhuoyue edition II" name_zh_CN="中投证券-卓越II" name_zh_TW="中投證券-卓越II" ruleid="51013" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="安信证券交易I" name_en_US="Essence Securities transaction I" name_zh_CN="安信证券交易I" name_zh_TW="安信證券交易I" ruleid="51014" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Salga.A蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Salga.A" name_zh_CN="SMTP服务发送W32.Salga.A蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Salga.A蠕蟲病毒郵件" ruleid="40667" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下流光广外女生木马建立连接" name_en_US="Trojan Gwgirl Connection on Windows" name_zh_CN="Windows系统下流光广外女生木马建立连接" name_zh_TW="Windows系統下流光廣外女生木馬建立連接" ruleid="40666" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="Windows系统下Mydoom.AH/AI/AJ/AK及W32.Bofra蠕虫传播" name_en_US="Windows Mydoom.AH/AI/AJ/AK and W32.Bofra Propagation" name_zh_CN="Windows系统下Mydoom.AH/AI/AJ/AK及W32.Bofra蠕虫传播" name_zh_TW="Windows系統下Mydoom.AH/AI/AJ/AK及W32.Bofra蠕蟲傳播" ruleid="40661" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用AlienForm2 alienform.cgi脚本漏洞遍历目录" name_en_US="Directory Traversal via AlienForm2 alienform.cgi Script Vulnerability" name_zh_CN="利用AlienForm2 alienform.cgi脚本漏洞遍历目录" name_zh_TW="利用AlienForm2 alienform.cgi腳本漏洞遍曆目錄" ruleid="30393" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="CA BrightStor ARCserve Backup多个远程缓冲区溢出及内存破坏攻击" name_en_US="CA BrightStor ARCserve Backup Remote Buffer Overflow and Memory Corruption Attack" name_zh_CN="CA BrightStor ARCserve Backup多个远程缓冲区溢出及内存破坏攻击" name_zh_TW="CA BrightStor ARCserve Backup多個遠程緩沖區溢出及內存破壞攻擊" ruleid="20915" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Yanz.B蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Yanz.B" name_zh_CN="SMTP服务发送W32.Yanz.B蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Yanz.B蠕蟲病毒郵件" ruleid="40663" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="VLC媒体播放器axvlc.dll ActiveX控件内存破坏攻击" name_en_US="VLC axvlc.dll ActiveX Memory Corruption Attack" name_zh_CN="VLC媒体播放器axvlc.dll ActiveX控件内存破坏攻击" name_zh_TW="VLC媒體播放器axvlc.dll ActiveX控件內存破壞攻擊" ruleid="20914" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Sober.I@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Sober.I@mm" name_zh_CN="SMTP服务发送W32.Sober.I@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.I@mm蠕蟲病毒郵件" ruleid="40662" visible="true" />
			<rule action=" db  screen " enabled="false" group="95420714" module="0" name="Cisco Security Agent for Windows SMB报文远程栈溢出攻击" name_en_US="Cisco Security Agent for Windows SMB Remote Buffer Overflow Attack" name_zh_CN="Cisco Security Agent for Windows SMB报文远程栈溢出攻击" name_zh_TW="Cisco Security Agent for Windows SMB報文遠程棧溢出攻擊" ruleid="20917" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Windows柯达图像查看器远程代码执行攻击(MS07-055)" name_en_US="Microsoft Windows Kodak Image Viewer Remote Code Execution (MS07-055)" name_zh_CN="Microsoft Windows柯达图像查看器远程代码执行攻击(MS07-055)" name_zh_TW="Microsoft Windows柯達圖像查看器遠程代碼執行攻擊(MS07-055)" ruleid="20911" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft IE FirefoxURL协议处理器命令注入攻击" name_en_US="Microsoft IE FirefoxURL Protocol Handler Command Injection" name_zh_CN="Microsoft IE FirefoxURL协议处理器命令注入攻击" name_zh_TW="Microsoft IE FirefoxURL協議處理器命令注入攻擊" ruleid="20910" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Apple QuickTime RTSP响应头远程栈溢出攻击" name_en_US="Apple QuickTime RTSP Response Header Remote Stack Overflow" name_zh_CN="Apple QuickTime RTSP响应头远程栈溢出攻击" name_zh_TW="Apple QuickTime RTSP響應頭遠程棧溢出攻擊" ruleid="20913" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具WinMX文件传输" name_en_US="P2P File Sharing Tool WinMX File Transmission" name_zh_CN="P2P文件共享工具WinMX文件传输" name_zh_TW="P2P文件共享工具WinMX文件傳輸" ruleid="50163" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具DC++通信" name_en_US="P2P File Sharing Tool DC++ Communication" name_zh_CN="P2P文件共享工具DC++通信" name_zh_TW="P2P文件共享工具DC++通信" ruleid="50162" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具Kazaa用户登录" name_en_US="P2P File Sharing Tool Kazaa User Login" name_zh_CN="P2P文件共享工具Kazaa用户登录" name_zh_TW="P2P文件共享工具Kazaa用戶登錄" ruleid="50161" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具Ares通信" name_en_US="P2P File Sharing Tool Ares Communication" name_zh_CN="P2P文件共享工具Ares通信" name_zh_TW="P2P文件共享工具Ares通信" ruleid="50160" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger解析服务器地址" name_en_US="Instant Messaging Software Yahoo Messenger Server Address Parsing" name_zh_CN="即时通信软件Yahoo Messenger解析服务器地址" name_zh_TW="即時通信軟件Yahoo Messenger解析服務器地址" ruleid="50167" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Pager解析升级站点地址" name_en_US="Instant Messaging Software Yahoo Pager Upgrade Website Address Parsing" name_zh_CN="即时通信软件Yahoo Pager解析升级站点地址" name_zh_TW="即時通信軟件Yahoo Pager解析升級站點地址" ruleid="50166" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger解析升级站点地址" name_en_US="Instant Messaging Software Yahoo Messenger Upgrade Website Address Parsing" name_zh_CN="即时通信软件Yahoo Messenger解析升级站点地址" name_zh_TW="即時通信軟件Yahoo Messenger解析升級站點地址" ruleid="50165" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger文件传输" name_en_US="Instant Messaging Software Yahoo Messenger File Transmission" name_zh_CN="即时通信软件Yahoo Messenger文件传输" name_zh_TW="即時通信軟件Yahoo Messenger文件傳輸" ruleid="50164" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件ICQ文件传输" name_en_US="Instant Messaging Software ICQ File Transmission" name_zh_CN="即时通信软件ICQ文件传输" name_zh_TW="即時通信軟件ICQ文件傳輸" ruleid="50169" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN Messenger解析服务器地址" name_en_US="Instant Messaging Software MSN Messenger Server Address Parsing" name_zh_CN="即时通信软件MSN Messenger解析服务器地址" name_zh_TW="即時通信軟件MSN Messenger解析服務器地址" ruleid="50168" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Neighbor Advertisement 检测" name_en_US="Neighbor Advertisement Check" name_zh_CN="Neighbor Advertisement 检测" name_zh_TW="Neighbor Advertisement 檢測" ruleid="41015" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Neighbor Solicitation 检测" name_en_US="Neighbor Solicitation Check" name_zh_CN="Neighbor Solicitation 检测" name_zh_TW="Neighbor Solicitation 檢測" ruleid="41014" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 证券之星" name_en_US="Stock Trading Operating Software Securities Star" name_zh_CN="股票交易操作软件 证券之星" name_zh_TW="股票交易操作軟件 證券之星" ruleid="50440" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="虚拟局域网组建软件 VNN SoftEther 通信行为" name_en_US="VLAN Formation Software VNN SoftEther Communiction" name_zh_CN="虚拟局域网组建软件 VNN SoftEther 通信行为" name_zh_TW="虛擬局域網組建軟件 VNN SoftEther 通信行爲" ruleid="50441" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitTorrent解析种子文件" name_en_US="P2P File Sharing Tool BitTorrent Resolving Seeds Files" name_zh_CN="P2P文件共享工具BitTorrent解析种子文件" name_zh_TW="P2P文件共享工具BitTorrent解析種子文件" ruleid="50334" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="Oracle 9i/10g XML组件存储过程缓冲区溢出攻击" name_en_US="Oracle 9i/10g XML Component Stored Procedure Buffer Overflow" name_zh_CN="Oracle 9i/10g XML组件存储过程缓冲区溢出攻击" name_zh_TW="Oracle 9i/10g XML組件存儲過程緩沖區溢出攻擊" ruleid="20569" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="Joomla提升权限漏洞" name_en_US="Joomla upgrade privileges vulnerability" name_zh_CN="Joomla提升权限漏洞" name_zh_TW="Joomla提升權限漏洞" ruleid="21668" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Oracle Java SE JRE CORBA子组件远程安全漏洞(CVE-2012-0506)" name_en_US="Oracle Java SE CVE-2012-0506 Remote Java Runtime Environment Vulnerability" name_zh_CN="Oracle Java SE JRE CORBA子组件远程安全漏洞(CVE-2012-0506)" name_zh_TW="Oracle Java SE JRE CORBA子組件遠程安全漏洞(CVE-2012-0506)" ruleid="21669" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="虚拟局域网组建软件 HTTP-Tunnel 通信行为" name_en_US="VLAN Formation Software HTTP-Tunnel Communiction" name_zh_CN="虚拟局域网组建软件 HTTP-Tunnel 通信行为" name_zh_TW="虛擬局域網組建軟件 HTTP-Tunnel 通信行爲" ruleid="50443" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="网游&quot;大冲锋&quot;用户登陆" name_en_US="Online Game &quot;Large Charge&quot; Network Communication Behavior" name_zh_CN="网游&quot;大冲锋&quot;用户登陆" name_zh_TW="網遊&quot;大沖鋒&quot;用戶登陸" ruleid="50444" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="SQL Server可疑数据库文件下载" name_en_US="SQL Server Suspicious File Download" name_zh_CN="SQL Server可疑数据库文件下载" name_zh_TW="SQL Server可疑數據庫文件下載" ruleid="50445" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Veritas NetBackup卷管理器守护程序溢出攻击" name_en_US="Veritas NetBackup Volume Manager Daemon Buffer Overflow" name_zh_CN="Veritas NetBackup卷管理器守护程序溢出攻击" name_zh_TW="Veritas NetBackup卷管理器守護程序溢出攻擊" ruleid="20564" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="利用&quot;../字串突破CGI脚本过滤访问上级目录" name_en_US="CGI Script Filter Bypass And Upper Directory Access via &quot;../ String" name_zh_CN="利用&quot;../字串突破CGI脚本过滤访问上级目录" name_zh_TW="利用&quot;../字串突破CGI腳本過濾訪問上級目錄" ruleid="40348" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="即时通信工具Web MSN文件传送通信" name_en_US="Instant Messaging Tool Web MSN Sending File Attempt" name_zh_CN="即时通信工具Web MSN文件传送通信" name_zh_TW="即時通信工具Web MSN文件傳送通信" ruleid="50446" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft Internet Explorer CStyleSheet对象内存破坏攻击" name_en_US="Microsoft Internet Explorer object of CStyleSheet memory corruption Attack" name_zh_CN="Microsoft Internet Explorer CStyleSheet对象内存破坏攻击" name_zh_TW="Microsoft Internet Explorer CStyleSheet對象內存破壞攻擊" ruleid="21068" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Microsoft IE8 toStaticHTML API 跨站攻击" name_en_US="Microsoft IE8 toStaticHTML API XSS Attack" name_zh_CN="Microsoft IE8 toStaticHTML API 跨站攻击" name_zh_TW="Microsoft IE8 toStaticHTML API 跨站攻擊" ruleid="21069" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="nginx文件类型错误解析漏洞" name_en_US="nginx File Type Error Parsing Vulnerabilities" name_zh_CN="nginx文件类型错误解析漏洞" name_zh_TW="nginx文件類型錯誤解析漏洞" ruleid="21066" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="QQ旋风下载链接处理缓冲区溢出攻击" name_en_US="QQ XuanFeng Download Link Handling Buffer Overflow Attack" name_zh_CN="QQ旋风下载链接处理缓冲区溢出攻击" name_zh_TW="QQ旋風下載鏈接處理緩沖區溢出攻擊" ruleid="21064" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352042" module="0" name="Windows Mail STAT命令回应值处理漏洞" name_en_US="Windows Mail STAT Command Response Value Processing Vulnerability" name_zh_CN="Windows Mail STAT命令回应值处理漏洞" name_zh_TW="Windows Mail STAT命令回應值處理漏洞" ruleid="21065" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Windows nsum.exe服务远程栈溢出漏洞（MS10-025）" name_en_US="Microsoft Windows nsum.exe Service Remote Stack Overflow(MS10-025)" name_zh_CN="Microsoft Windows nsum.exe服务远程栈溢出漏洞（MS10-025）" name_zh_TW="Microsoft Windows nsum.exe服務遠程棧溢出漏洞（MS10-025）" ruleid="21062" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190250" module="0" name="微软Sharepoint XSS特权提升攻击" name_en_US="Microsoft Sharepoint XSS Elevation of Privilege Attack" name_zh_CN="微软Sharepoint XSS特权提升攻击" name_zh_TW="微軟Sharepoint XSS特權提升攻擊" ruleid="21063" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Internet Explorer处理属性远程代码执行攻击" name_en_US="Internet Explorer Handle Attributes Remote Code Execution Attack" name_zh_CN="Internet Explorer处理属性远程代码执行攻击" name_zh_TW="Internet Explorer處理屬性遠程代碼執行攻擊" ruleid="21060" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423918" module="0" name="phpBB Style Changer\Viewer远程SQL注入攻击" name_en_US="phpBB Style Changer\Viewer Remote SQL Injection" name_zh_CN="phpBB Style Changer\Viewer远程SQL注入攻击" name_zh_TW="phpBB Style Changer\Viewer遠程SQL注入攻擊" ruleid="20567" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Randshop header.inc.php远程执行命令攻击" name_en_US="Randshop header.inc.php Remote Code Execution" name_zh_CN="Randshop header.inc.php远程执行命令攻击" name_zh_TW="Randshop header.inc.php遠程執行命令攻擊" ruleid="20629" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="IA WebMail Server超长GET请求远程缓冲区溢出攻击" name_en_US="IA WebMail Server Over-long GET Request Remote Buffer Overflow" name_zh_CN="IA WebMail Server超长GET请求远程缓冲区溢出攻击" name_zh_TW="IA WebMail Server超長GET請求遠程緩沖區溢出攻擊" ruleid="20628" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="ShixxNOTE 6.net远程缓冲区溢出攻击" name_en_US="ShixxNOTE 6.net Remote Buffer Overflow" name_zh_CN="ShixxNOTE 6.net远程缓冲区溢出攻击" name_zh_TW="ShixxNOTE 6.net遠程緩沖區溢出攻擊" ruleid="20627" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641771" module="0" name="SoftCart SoftCart.exe CGI远程缓冲区溢出攻击" name_en_US="SoftCart SoftCart.exe CGI Remote Buffer Overflow" name_zh_CN="SoftCart SoftCart.exe CGI远程缓冲区溢出攻击" name_zh_TW="SoftCart SoftCart.exe CGI遠程緩沖區溢出攻擊" ruleid="20626" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Novell eDirectory Server iMonitor远程缓冲区溢出攻击" name_en_US="Novell eDirectory Server iMonitor Remote Buffer Overflow" name_zh_CN="Novell eDirectory Server iMonitor远程缓冲区溢出攻击" name_zh_TW="Novell eDirectory Server iMonitor遠程緩沖區溢出攻擊" ruleid="20625" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Novell ZENworks Desktop/Server管理远程缓冲区溢出攻击" name_en_US="Novell ZENworks Desktop/Server Management Remote Buffer Overflow" name_zh_CN="Novell ZENworks Desktop/Server管理远程缓冲区溢出攻击" name_zh_TW="Novell ZENworks Desktop/Server管理遠程緩沖區溢出攻擊" ruleid="20624" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832743" module="0" name="BomberClone错误消息处理远程缓冲区溢出攻击" name_en_US="BomberClone Error Message Handling Remote Buffer Overflow" name_zh_CN="BomberClone错误消息处理远程缓冲区溢出攻击" name_zh_TW="BomberClone錯誤消息處理遠程緩沖區溢出攻擊" ruleid="20623" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="BakBone NetVault远程内存破坏执行指令攻击" name_en_US="BakBone NetVault Remote Memory Corruption Code Execution" name_zh_CN="BakBone NetVault远程内存破坏执行指令攻击" name_zh_TW="BakBone NetVault遠程內存破壞執行指令攻擊" ruleid="20622" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="BadBlue ext.dll mfcisapicommand远程缓冲区溢出攻击" name_en_US="BadBlue ext.dll mfcisapicommand Remote Buffer Overflow" name_zh_CN="BadBlue ext.dll mfcisapicommand远程缓冲区溢出攻击" name_zh_TW="BadBlue ext.dll mfcisapicommand遠程緩沖區溢出攻擊" ruleid="20621" visible="true" />
			<rule action=" db  screen " enabled="false" group="69206311" module="0" name="Sybase EAServer WebConsol远程缓冲区溢出攻击" name_en_US="Sybase EAServer WebConsol Remote Buffer Overflow" name_zh_CN="Sybase EAServer WebConsol远程缓冲区溢出攻击" name_zh_TW="Sybase EAServer WebConsol遠程緩沖區溢出攻擊" ruleid="20620" visible="false" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel 远程代码执行漏洞" name_zh_TW="Microsoft Excel 遠程代碼執行漏洞" ruleid="21208" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel Office Art远程代码执行漏洞(MS11-021)" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel Office Art远程代码执行漏洞(MS11-021)" name_zh_TW="Microsoft Excel Office Art遠程代碼執行漏洞(MS11-021)" ruleid="21209" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Adobe Flash Player &quot;SWF&quot;文件远程内存破坏漏洞" name_en_US="Adobe Flash Player &quot;SWF&quot; File Remote Memory Corruption Vulnerability" name_zh_CN="Adobe Flash Player &quot;SWF&quot;文件远程内存破坏漏洞" name_zh_TW="Adobe Flash Player &quot;SWF&quot;文件遠程內存破壞漏洞" ruleid="21202" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Integard Home和Pro HTTP请求远程栈溢出漏洞" name_en_US="Integard Home and Pro HTTP Request Remote Stack Overflow Vulnerabilities" name_zh_CN="Integard Home和Pro HTTP请求远程栈溢出漏洞" name_zh_TW="Integard Home和Pro HTTP請求遠程棧溢出漏洞" ruleid="21203" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Windows Media 远程代码执行漏洞" name_en_US="Vulnerabilities in Windows Media Could Allow Remote Code Execution" name_zh_CN="Windows Media 远程代码执行漏洞" name_zh_TW="Windows Media 遠程代碼執行漏洞" ruleid="21200" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Windows Media &quot;.dvr-ms&quot; 远程代码执行漏洞" name_en_US="Vulnerabilities in Windows Media &quot;.dvr-ms&quot; Could Allow Remote Code Execution" name_zh_CN="Windows Media &quot;.dvr-ms&quot; 远程代码执行漏洞" name_zh_TW="Windows Media &quot;.dvr-ms&quot; 遠程代碼執行漏洞" ruleid="21201" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel缓冲区分配整数溢出远程代码执行漏洞(MS11-021)" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel缓冲区分配整数溢出远程代码执行漏洞(MS11-021)" name_zh_TW="Microsoft Excel緩沖區分配整數溢出遠程代碼執行漏洞(MS11-021)" ruleid="21206" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)" name_zh_TW="Microsoft Excel堆緩沖區溢出漏洞(MS11-021)" ruleid="21207" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="ActFax Server多个远程缓冲区溢出漏洞" name_en_US="ActFax Server Multiple Remote Buffer Overflow Vulnerabilities" name_zh_CN="ActFax Server多个远程缓冲区溢出漏洞" name_zh_TW="ActFax Server多個遠程緩沖區溢出漏洞" ruleid="21204" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="WordPad Text Converters 远程代码执行漏洞" name_en_US="Vulnerability in WordPad Text Converters Could Allow Remote Code Execution" name_zh_CN="WordPad Text Converters 远程代码执行漏洞" name_zh_TW="WordPad Text Converters 遠程代碼執行漏洞" ruleid="21205" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Office Groove 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Groove Could Allow Remote Code Execution" name_zh_CN="Microsoft Office Groove 远程代码执行漏洞" name_zh_TW="Microsoft Office Groove 遠程代碼執行漏洞" ruleid="21198" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Remote Desktop Client 远程代码执行漏洞" name_en_US="Vulnerability in Remote Desktop Client Could Allow Remote Code Execution" name_zh_CN="Remote Desktop Client 远程代码执行漏洞" name_zh_TW="Remote Desktop Client 遠程代碼執行漏洞" ruleid="21199" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞" ruleid="21192" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kerberos 权限提升漏洞" name_en_US="Vulnerabilities in Kerberos Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Kerberos 权限提升漏洞" name_zh_TW="Microsoft Windows Kerberos 權限提升漏洞" ruleid="21193" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞" ruleid="21190" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞" ruleid="21191" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="淘宝阿里旺旺ActiveX控件远程栈溢出漏洞" name_en_US="Taobaowangwang ActiveX Control Remote Stack Overflow" name_zh_CN="淘宝阿里旺旺ActiveX控件远程栈溢出漏洞" name_zh_TW="淘寶阿裏旺旺ActiveX控件遠程棧溢出漏洞" ruleid="21194" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft 恶意软件保护引擎允许特权提升漏洞" name_en_US="Microsoft Malware Protection Engine Local Privilege Escalation Vulnerability" name_zh_CN="Microsoft 恶意软件保护引擎允许特权提升漏洞" name_zh_TW="Microsoft 惡意軟件保護引擎允許特權提升漏洞" ruleid="21195" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Alt-N WebAdmin USER参数远程溢出攻击" name_en_US="Alt-N WebAdmin USER Parameter Remote Buffer Overflow" name_zh_CN="Alt-N WebAdmin USER参数远程溢出攻击" name_zh_TW="Alt-N WebAdmin USER參數遠程溢出攻擊" ruleid="20821" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IIS 5.1远程缓冲区溢出攻击(MS07-041)" name_en_US="Microsoft IIS 5.1 Remote Buffer Overflow (MS07-041)" name_zh_CN="Microsoft IIS 5.1远程缓冲区溢出攻击(MS07-041)" name_zh_TW="Microsoft IIS 5.1遠程緩沖區溢出攻擊(MS07-041)" ruleid="20820" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Apple Quicktime RTSP畸形URL处理缓冲区溢出攻击" name_en_US="Apple Quicktime RTSP Malformed URL Processing Buffer Overflow" name_zh_CN="Apple Quicktime RTSP畸形URL处理缓冲区溢出攻击" name_zh_TW="Apple Quicktime RTSP畸形URL處理緩沖區溢出攻擊" ruleid="20823" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Apple iTunes m3u/pls播放列表远程缓冲区溢出攻击" name_en_US="Apple iTunes m3u/pls Playlist Remote Buffer Overflow" name_zh_CN="Apple iTunes m3u/pls播放列表远程缓冲区溢出攻击" name_zh_TW="Apple iTunes m3u/pls播放列表遠程緩沖區溢出攻擊" ruleid="20822" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器MKD命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server MKD Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器MKD命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器MKD命令超長參數遠程緩沖區溢出攻擊" ruleid="20824" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="NCTsoft NCTAudioFile2 ActiveX控件远程栈溢出攻击" name_en_US="NCTsoft NCTAudioFile2 ActiveX Control Remote Stack Overflow" name_zh_CN="NCTsoft NCTAudioFile2 ActiveX控件远程栈溢出攻击" name_zh_TW="NCTsoft NCTAudioFile2 ActiveX控件遠程棧溢出攻擊" ruleid="20827" visible="true" />
			<rule action=" db  screen " enabled="true" group="74449194" module="0" name="SSH Server Key Exchange Algorithm String缓冲区溢出攻击" name_en_US="SSH Server Key Exchange Algorithm String Buffer Overflow" name_zh_CN="SSH Server Key Exchange Algorithm String缓冲区溢出攻击" name_zh_TW="SSH Server Key Exchange Algorithm String緩沖區溢出攻擊" ruleid="20829" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Firefox location.QueryInterface()代码执行攻击" name_en_US="Firefox location.QueryInterface() Code Execution" name_zh_CN="Firefox location.QueryInterface()代码执行攻击" name_zh_TW="Firefox location.QueryInterface()代碼執行攻擊" ruleid="20828" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="ActivePDF服务器报文处理远程堆溢出攻击" name_en_US="ActivePDF Server Deal With Message Remote Heap Overflow" name_zh_CN="ActivePDF服务器报文处理远程堆溢出攻击" name_zh_TW="ActivePDF服務器報文處理遠程堆溢出攻擊" ruleid="20959" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHP-Nuke marks.php CGI脚本远程SQL注入攻击" name_en_US="PHP-Nuke marks.php CGI Script Remote SQL Injection" name_zh_CN="PHP-Nuke marks.php CGI脚本远程SQL注入攻击" name_zh_TW="PHP-Nuke marks.php CGI腳本遠程SQL注入攻擊" ruleid="20489" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL CREATE FUNCTION功能mysql.func表插入恶意函数库攻击" name_en_US="MySQL CREATE FUNCTION mysql.func Table Malicious Library Injection" name_zh_CN="MySQL CREATE FUNCTION功能mysql.func表插入恶意函数库攻击" name_zh_TW="MySQL CREATE FUNCTION功能mysql.func表插入惡意函數庫攻擊" ruleid="20488" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Yahoo! Music Jukebox mediagrid.dll ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Music Jukebox mediagrid.dll ActiveX Control Remote Stack Overflow" name_zh_CN="Yahoo! Music Jukebox mediagrid.dll ActiveX控件远程栈溢出攻击" name_zh_TW="Yahoo! Music Jukebox mediagrid.dll ActiveX控件遠程棧溢出攻擊" ruleid="20951" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Apple QuickTime QTPlugin.ocx ActiveX控件栈溢出攻击" name_en_US="Apple QuickTime QTPlugin.ocx ActiveX Control Stack Overflow" name_zh_CN="Apple QuickTime QTPlugin.ocx ActiveX控件栈溢出攻击" name_zh_TW="Apple QuickTime QTPlugin.ocx ActiveX控件棧溢出攻擊" ruleid="20950" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="利用VBulletin misc.php CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via VBulletin misc.php CGI Script Vulnerability" name_zh_CN="利用VBulletin misc.php CGI脚本漏洞远程执行命令" name_zh_TW="利用VBulletin misc.php CGI腳本漏洞遠程執行命令" ruleid="20481" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="利用VBulletin forumdisplay.php CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via VBulletin forumdisplay.php CGI Script Vulnerability" name_zh_CN="利用VBulletin forumdisplay.php CGI脚本漏洞远程执行命令" name_zh_TW="利用VBulletin forumdisplay.php CGI腳本漏洞遠程執行命令" ruleid="20480" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL CREATE FUNCTION功能libc函数库插入执行代码攻击" name_en_US="MySQL CREATE FUNCTION libc Insert Operation Code Execution" name_zh_CN="MySQL CREATE FUNCTION功能libc函数库插入执行代码攻击" name_zh_TW="MySQL CREATE FUNCTION功能libc函數庫插入執行代碼攻擊" ruleid="20487" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Ipswitch IMAP超长EXAMINE命令参数缓冲区溢出攻击" name_en_US="Ipswitch IMAP Over-long EXAMINE Command Parameter Buffer Overflow" name_zh_CN="Ipswitch IMAP超长EXAMINE命令参数缓冲区溢出攻击" name_zh_TW="Ipswitch IMAP超長EXAMINE命令參數緩沖區溢出攻擊" ruleid="20486" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="UBB.threads editpost.php CGI脚本远程SQL注入攻击" name_en_US="UBB.threads editpost.php CGI Script Remote SQL Injection" name_zh_CN="UBB.threads editpost.php CGI脚本远程SQL注入攻击" name_zh_TW="UBB.threads editpost.php CGI腳本遠程SQL注入攻擊" ruleid="20485" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="利用WEBInsta Limbo CGI脚本远程执行命令攻击" name_en_US="Remote Code Execution via WEBInsta Limbo CGI Script" name_zh_CN="利用WEBInsta Limbo CGI脚本远程执行命令攻击" name_zh_TW="利用WEBInsta Limbo CGI腳本遠程執行命令攻擊" ruleid="20484" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3412 Microsoft Publisher内存破坏漏洞" name_en_US="CVE-2011-3412 Microsoft Publisher Memory Corruption Vulnerability(MS11-091)" name_zh_CN="CVE-2011-3412 Microsoft Publisher内存破坏漏洞" name_zh_TW="CVE-2011-3412 Microsoft Publisher內存破壞漏洞" ruleid="21336" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3413 Microsoft PowerPoint OfficeArt远程代码执行漏洞" name_en_US="CVE-2011-3413 Microsoft PowerPoint OfficeArt Shape RCE Vulnerability(MS11-094)" name_zh_CN="CVE-2011-3413 Microsoft PowerPoint OfficeArt远程代码执行漏洞" name_zh_TW="CVE-2011-3413 Microsoft PowerPoint OfficeArt遠程代碼執行漏洞" ruleid="21337" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用CdomainFree whois_raw.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CdomainFree whois_raw.cgi Script Vulnerability" name_zh_CN="利用CdomainFree whois_raw.cgi脚本漏洞远程执行命令" name_zh_TW="利用CdomainFree whois_raw.cgi腳本漏洞遠程執行命令" ruleid="20139" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323110" module="0" name="WebSPIRS webspirs.cgi脚本漏洞扫描探测" name_en_US="WebSPIRS webspirs.cgi Script Vulnerability Detection" name_zh_CN="WebSPIRS webspirs.cgi脚本漏洞扫描探测" name_zh_TW="WebSPIRS webspirs.cgi腳本漏洞掃描探測" ruleid="20138" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3401 Microsoft Windows Media Player和Media Center &quot;.dvr-ms&quot;文件处理远程代码执行漏洞" name_en_US="CVE-2011-3401 Windows Media Remote Code Execution Vulnerability(MS11-092)" name_zh_CN="CVE-2011-3401 Microsoft Windows Media Player和Media Center &quot;.dvr-ms&quot;文件处理远程代码执行漏洞" name_zh_TW="CVE-2011-3401 Microsoft Windows Media Player和Media Center &quot;.dvr-ms&quot;文件處理遠程代碼執行漏洞" ruleid="21332" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3400 Microsoft Windows OLE32远程代码执行漏洞" name_en_US="CVE-2011-3400 Microsoft Windows OLE32 Remote Code Execution Vulnerability(MS11-093)" name_zh_CN="CVE-2011-3400 Microsoft Windows OLE32远程代码执行漏洞" name_zh_TW="CVE-2011-3400 Microsoft Windows OLE32遠程代碼執行漏洞" ruleid="21333" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3397 Microsoft Windows Time组件远程代码执行漏洞" name_en_US="CVE-2011-3397 Microsoft Time Remote Code Execution Vulnerability(MS11-090)" name_zh_CN="CVE-2011-3397 Microsoft Windows Time组件远程代码执行漏洞" name_zh_TW="CVE-2011-3397 Microsoft Windows Time組件遠程代碼執行漏洞" ruleid="21330" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3411 Microsoft Publisher无效指针远程代码执行漏洞" name_en_US="CVE-2011-3411 Microsoft Publisher Invalid Pointer Remote Code Execution Vulnerability(MS11-091)" name_zh_CN="CVE-2011-3411 Microsoft Publisher无效指针远程代码执行漏洞" name_zh_TW="CVE-2011-3411 Microsoft Publisher無效指針遠程代碼執行漏洞" ruleid="21331" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="IGMP碎片包IGMPNuke拒绝服务攻击" name_en_US="IGMP Fragmented Packet IGMPNuke Denial of Service" name_zh_CN="IGMP碎片包IGMPNuke拒绝服务攻击" name_zh_TW="IGMP碎片包IGMPNuke拒絕服務攻擊" ruleid="10026" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Microsoft IIS 4.0/5.0 Unicode解码漏洞攻击" name_en_US="Microsoft IIS 4.0/5.0 Unicode Decoding Vulnerability" name_zh_CN="Microsoft IIS 4.0/5.0 Unicode解码漏洞攻击" name_zh_TW="Microsoft IIS 4.0/5.0 Unicode解碼漏洞攻擊" ruleid="20132" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用NCSA test-cgi脚本获得目录内容列表" name_en_US="Directory Content Listing via NCSA test-cgi Script" name_zh_CN="利用NCSA test-cgi脚本获得目录内容列表" name_zh_TW="利用NCSA test-cgi腳本獲得目錄內容列表" ruleid="20131" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用IRIX pfdispaly.cgi脚本漏洞远程执行命令或读取文件" name_en_US="Remote Code Execution or File Reading via IRIX pfdispaly.cgi Script Vulnerability" name_zh_CN="利用IRIX pfdispaly.cgi脚本漏洞远程执行命令或读取文件" name_zh_TW="利用IRIX pfdispaly.cgi腳本漏洞遠程執行命令或讀取文件" ruleid="20137" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3403 Microsoft Excel远程代码执行漏洞" name_en_US="CVE-2011-3403 Microsoft Excel Remote Code Execution Vulnerability(MS11-096)" name_zh_CN="CVE-2011-3403 Microsoft Excel远程代码执行漏洞" name_zh_TW="CVE-2011-3403 Microsoft Excel遠程代碼執行漏洞" ruleid="21338" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-3410 Microsoft Publisher数组索引越界导致的远程代码执行漏洞" name_en_US="CVE-2011-3410 Microsoft Publisher Array Index Out of Bounds vulnerability(MS11-091)" name_zh_CN="CVE-2011-3410 Microsoft Publisher数组索引越界导致的远程代码执行漏洞" name_zh_TW="CVE-2011-3410 Microsoft Publisher數組索引越界導致的遠程代碼執行漏洞" ruleid="21339" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161615" module="0" name="后门：Doly客户连接变种1" name_en_US="Backdoor: Doly Client Connection Variant 1" name_zh_CN="后门：Doly客户连接变种1" name_zh_TW="後門：Doly客戶連接變種1" ruleid="40952" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS bdir.htr脚本漏洞浏览目录" name_en_US="Directory Browsing via Microsoft IIS bdir.htr Script Vulnerability" name_zh_CN="利用Microsoft IIS bdir.htr脚本漏洞浏览目录" name_zh_TW="利用Microsoft IIS bdir.htr腳本漏洞浏覽目錄" ruleid="30488" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159542" module="0" name="Windows Apache服务器请求路径处理遍历目录攻击" name_en_US="Windows Apache Server Request Path Handling Directory Traversal" name_zh_CN="Windows Apache服务器请求路径处理遍历目录攻击" name_zh_TW="Windows Apache服務器請求路徑處理遍曆目錄攻擊" ruleid="30489" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315071" module="0" name="利用phpMyAdmin export.php脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via phpMyAdmin export.php Script Vulnerability" name_zh_CN="利用phpMyAdmin export.php脚本漏洞遍历目录攻击" name_zh_TW="利用phpMyAdmin export.php腳本漏洞遍曆目錄攻擊" ruleid="30482" visible="true" />
			<rule action=" db  screen " enabled="true" group="99622974" module="0" name="Microsoft Windows ASN.1库BER解码堆破坏漏洞扫描探测" name_en_US="Microsoft Windows ASN.1 Base BER Decoding Heap Corruption Vulnerability Detection" name_zh_CN="Microsoft Windows ASN.1库BER解码堆破坏漏洞扫描探测" name_zh_TW="Microsoft Windows ASN.1庫BER解碼堆破壞漏洞掃描探測" ruleid="30483" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315070" module="0" name="利用QuikStore Shopping Cart quikstore.cgi脚本漏洞远程读取任意文件" name_en_US="Remote Arbitrary File Reading via QuikStore Shopping Cart quikstore.cgi Script Vulnerability" name_zh_CN="利用QuikStore Shopping Cart quikstore.cgi脚本漏洞远程读取任意文件" name_zh_TW="利用QuikStore Shopping Cart quikstore.cgi腳本漏洞遠程讀取任意文件" ruleid="30480" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="MDaemon form2raw.cgi脚本漏洞扫描探测" name_en_US="MDaemon form2raw.cgi Script Vulnerability Detection" name_zh_CN="MDaemon form2raw.cgi脚本漏洞扫描探测" name_zh_TW="MDaemon form2raw.cgi腳本漏洞掃描探測" ruleid="30481" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Microsoft IIS ISM.DLL文件名截断漏洞获取文件内容攻击" name_en_US="File Content Disclosure via Microsoft IIS ISM.DLL Filename Truncation Vulnerability" name_zh_CN="利用Microsoft IIS ISM.DLL文件名截断漏洞获取文件内容攻击" name_zh_TW="利用Microsoft IIS ISM.DLL文件名截斷漏洞獲取文件內容攻擊" ruleid="30487" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680342" module="0" name="Netopia Timbuktu Pro用户名/口令明文传输" name_en_US="Netopia Timbuktu Pro Username/Passowrd Transmission in Plain Text" name_zh_CN="Netopia Timbuktu Pro用户名/口令明文传输" name_zh_TW="Netopia Timbuktu Pro用戶名/口令明文傳輸" ruleid="40065" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="Oracle 9i XDB HTTP认证远程缓冲区溢出攻击" name_en_US="Oracle 9i XDB HTTP Authentication Remote Buffer Overflow" name_zh_CN="Oracle 9i XDB HTTP认证远程缓冲区溢出攻击" name_zh_TW="Oracle 9i XDB HTTP認證遠程緩沖區溢出攻擊" ruleid="20555" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="WebCalendar activity_log.php CGI脚本SQL注入攻击" name_en_US="WebCalendar activity_log.php CGI Script SQL Injection" name_zh_CN="WebCalendar activity_log.php CGI脚本SQL注入攻击" name_zh_TW="WebCalendar activity_log.php CGI腳本SQL注入攻擊" ruleid="20554" visible="true" />
			<rule action=" db  screen " enabled="true" group="346062874" module="0" name="BIND 9动态更新报文远程拒绝服务攻击" name_en_US="BIND 9 Dynamic Update Packet Remote Denial of Service" name_zh_CN="BIND 9动态更新报文远程拒绝服务攻击" name_zh_TW="BIND 9動態更新報文遠程拒絕服務攻擊" ruleid="10248" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Abe Timmerman zml.cgi脚本漏洞遍历目录" name_en_US="Directory Traversal via Abe Timmerman zml.cgi Script Vulnerability" name_zh_CN="利用Abe Timmerman zml.cgi脚本漏洞遍历目录" name_zh_TW="利用Abe Timmerman zml.cgi腳本漏洞遍曆目錄" ruleid="20004" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Mambo globals.php远程文件包含攻击" name_en_US="Mambo globals.php Remote File Inclusion" name_zh_CN="Mambo globals.php远程文件包含攻击" name_zh_TW="Mambo globals.php遠程文件包含攻擊" ruleid="20551" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHP-Nuke query功能SQL注入攻击" name_en_US="PHP-Nuke query function SQL Injection" name_zh_CN="PHP-Nuke query功能SQL注入攻击" name_zh_TW="PHP-Nuke query功能SQL注入攻擊" ruleid="20550" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows MSDTC写任意内存地址攻击" name_en_US="Microsoft Windows MSDTC Arbitrary Memory Address Overwriting" name_zh_CN="Microsoft Windows MSDTC写任意内存地址攻击" name_zh_TW="Microsoft Windows MSDTC寫任意內存地址攻擊" ruleid="20553" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="MailEnable IMAP超长邮箱名W3C日志记录溢出攻击" name_en_US="MailEnable IMAP Over-long Mailbox Name W3C Log Buffer Overflow" name_zh_CN="MailEnable IMAP超长邮箱名W3C日志记录溢出攻击" name_zh_TW="MailEnable IMAP超長郵箱名W3C日志記錄溢出攻擊" ruleid="20552" visible="true" />
			<rule action=" db  screen " enabled="true" group="233865242" module="0" name="Land拒绝服务攻击" name_en_US="Land Denial of Service Attacks" name_zh_CN="Land拒绝服务攻击" name_zh_TW="Land拒絕服務攻擊" ruleid="10242" visible="true" />
			<rule action=" db  screen " enabled="true" group="82870298" module="0" name="特定类型LDAP请求拒绝服务攻击" name_en_US="Particular Type Of LDAP Request Denial of Service" name_zh_CN="特定类型LDAP请求拒绝服务攻击" name_zh_TW="特定類型LDAP請求拒絕服務攻擊" ruleid="10240" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpBB signature_bbcode_uid变量远程任意命令执行攻击" name_en_US="phpBB signature_bbcode_uid Variable Remote Arbitrary Command Execution" name_zh_CN="phpBB signature_bbcode_uid变量远程任意命令执行攻击" name_zh_TW="phpBB signature_bbcode_uid變量遠程任意命令執行攻擊" ruleid="20558" visible="true" />
			<rule action=" db  screen " enabled="true" group="137363750" module="0" name="AIX FTP Server远程缓冲区溢出攻击" name_en_US="AIX FTP Server Remote Buffer Overflow" name_zh_CN="AIX FTP Server远程缓冲区溢出攻击" name_zh_TW="AIX FTP Server遠程緩沖區溢出攻擊" ruleid="20009" visible="true" />
			<rule action=" db  screen " enabled="true" group="143655206" module="0" name="IMAP用户认证远程缓冲区溢出攻击" name_en_US="IMAP User Authentication Remote Buffer Overflow" name_zh_CN="IMAP用户认证远程缓冲区溢出攻击" name_zh_TW="IMAP用戶認證遠程緩沖區溢出攻擊" ruleid="20008" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="aBitWhizzy abitwhizzy.php远程目录遍历攻击" name_en_US="aBitWhizzy abitwhizzy.php Remote Directory Traversal" name_zh_CN="aBitWhizzy abitwhizzy.php远程目录遍历攻击" name_zh_TW="aBitWhizzy abitwhizzy.php遠程目錄遍曆攻擊" ruleid="30558" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157626" module="0" name="活动目录Federation服务信息泄露攻击" name_en_US="Active Directory Federation Services Information Disclosure Attack" name_zh_CN="活动目录Federation服务信息泄露攻击" name_zh_TW="活動目錄Federation服務信息泄露攻擊" ruleid="30559" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Novell NetMail Username Authentication 缓冲区溢出漏洞" name_en_US="HTTP: Novell NetMail Username Authentication Buffer Overflow" name_zh_CN="HTTP: Novell NetMail Username Authentication 缓冲区溢出漏洞" name_zh_TW="HTTP: Novell NetMail Username Authentication 緩沖區溢出漏洞" ruleid="29248" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Minis month参数远程目录遍历攻击" name_en_US="Minis month Parameter Remote Directory Traversal" name_zh_CN="Minis month参数远程目录遍历攻击" name_zh_TW="Minis month參數遠程目錄遍曆攻擊" ruleid="30550" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Fastream NETFile FTP/Web Server远程目录遍历攻击" name_en_US="Fastream NETFile FTP/Web Server Remote Directory Traversal" name_zh_CN="Fastream NETFile FTP/Web Server远程目录遍历攻击" name_zh_TW="Fastream NETFile FTP/Web Server遠程目錄遍曆攻擊" ruleid="30551" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="Nokia SGSN DX200远程SNMP信息攻击" name_en_US="Nokia SGSN DX200 Remote SNMP Request Information Disclosure" name_zh_CN="Nokia SGSN DX200远程SNMP信息攻击" name_zh_TW="Nokia SGSN DX200遠程SNMP信息攻擊" ruleid="30552" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Nokia Electronic Documentation远程获取目录列表攻击" name_en_US="Nokia Electronic Documentation Remote Directory List Disclosure" name_zh_CN="Nokia Electronic Documentation远程获取目录列表攻击" name_zh_TW="Nokia Electronic Documentation遠程獲取目錄列表攻擊" ruleid="30553" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316985" module="0" name="WEB-INF目录远程获取信息攻击" name_en_US="WEB-INF Directory Remote Information Disclosure" name_zh_CN="WEB-INF目录远程获取信息攻击" name_zh_TW="WEB-INF目錄遠程獲取信息攻擊" ruleid="30554" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="MRTG CGI远程读取任意文件攻击" name_en_US="MRTG CGI Arbitrary Remote File Reading" name_zh_CN="MRTG CGI远程读取任意文件攻击" name_zh_TW="MRTG CGI遠程讀取任意文件攻擊" ruleid="30555" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: PHP 任意文件本地上传漏洞" name_en_US="HTTP: PHP Arbitrary File Location Upload Vulnerability" name_zh_CN="HTTP: PHP 任意文件本地上传漏洞" name_zh_TW="HTTP: PHP 任意文件本地上傳漏洞" ruleid="29240" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP:Apple CUPS SGI Image Format Decoding imagetops Filter 缓冲区溢出漏洞" name_en_US="HTTP:Apple CUPS SGI Image Format Decoding imagetops Filter Buffer Overflow" name_zh_CN="HTTP:Apple CUPS SGI Image Format Decoding imagetops Filter 缓冲区溢出漏洞" name_zh_TW="HTTP:Apple CUPS SGI Image Format Decoding imagetops Filter 緩沖區溢出漏洞" ruleid="29241" visible="true" />
			<rule action=" db  screen " enabled="true" group="142614582" module="0" name="SMTP服务decode帐号存在性探测" name_en_US="SMTP Service decode Account Detection" name_zh_CN="SMTP服务decode帐号存在性探测" name_zh_TW="SMTP服務decode帳號存在性探測" ruleid="40118" visible="true" />
			<rule action=" db  screen " enabled="true" group="142639142" module="0" name="Sendmail 5.x RCPT命令远程执行命令攻击" name_en_US="Sendmail 5.x RCPT Remote Command Execution" name_zh_CN="Sendmail 5.x RCPT命令远程执行命令攻击" name_zh_TW="Sendmail 5.x RCPT命令遠程執行命令攻擊" ruleid="40115" visible="true" />
			<rule action=" db  screen " enabled="true" group="142639142" module="0" name="Sendmail 5.58 DEBUG远程执行命令攻击" name_en_US="Sendmail 5.58 DEBUG Remote Command Execution" name_zh_CN="Sendmail 5.58 DEBUG远程执行命令攻击" name_zh_TW="Sendmail 5.58 DEBUG遠程執行命令攻擊" ruleid="40114" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 申银万国神网E通" name_en_US="Stock Trading Operating Software Shenyin Wanguo Shenwang Etong" name_zh_CN="股票交易操作软件 申银万国神网E通" name_zh_TW="股票交易操作軟件 申銀萬國神網E通" ruleid="50436" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件QQ用户登录（TCP）" name_en_US="Instant Messaging Software QQ User Login (TCP)" name_zh_CN="即时通信软件QQ用户登录（TCP）" name_zh_TW="即時通信軟件QQ用戶登錄（TCP）" ruleid="50076" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="迅雷看看在线流媒体播放(TCP)" name_en_US="Thunder kankan  Online Streaming Media Playing (TCP)" name_zh_CN="迅雷看看在线流媒体播放(TCP)" name_zh_TW="迅雷看看在線流媒體播放(TCP)" ruleid="50228" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="迅雷看看在线流媒体播放(UDP)" name_en_US="Thunder kankan  Online Streaming Media Playing (UDP)" name_zh_CN="迅雷看看在线流媒体播放(UDP)" name_zh_TW="迅雷看看在線流媒體播放(UDP)" ruleid="50229" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="QQ相关程序数据传输" name_en_US="QQ Super Tornado File Downloading" name_zh_CN="QQ相关程序数据传输" name_zh_TW="QQ相關程序數據傳輸" ruleid="50220" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="播播视频软件流媒体播放" name_en_US="bobo Video Software streaming media playing " name_zh_CN="播播视频软件流媒体播放" name_zh_TW="播播視頻軟件流媒體播放" ruleid="50222" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析操作软件华泰证券和江海证券用户登录" name_en_US="Stock Market Analtsis Software Huatai Securities and Jianghai Securities User Login" name_zh_CN="股票行情分析操作软件华泰证券和江海证券用户登录" name_zh_TW="股票行情分析操作軟件華泰證券和江海證券用戶登錄" ruleid="50223" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="UUSee网络电视流媒体播放" name_en_US="UUSee Network TV Streaming Media Playing " name_zh_CN="UUSee网络电视流媒体播放" name_zh_TW="UUSee網絡電視流媒體播放" ruleid="50224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="阿里旺旺即时通信软件用户登陆" name_en_US="aliwangwang Instant Messaging Software Users Login " name_zh_CN="阿里旺旺即时通信软件用户登陆" name_zh_TW="阿裏旺旺即時通信軟件用戶登陸" ruleid="50226" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="W32.HLLW.Doomjuice木马网络数据通信" name_en_US="REGISTERED FREE BACKDOOR DoomJuice file upload attempt" name_zh_CN="W32.HLLW.Doomjuice木马网络数据通信" name_zh_TW="W32.HLLW.Doomjuice木馬網絡數據通信" ruleid="40835" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703782" module="0" name="BIND iquery远程缓冲区溢出攻击" name_en_US="BIND iquery Remote Buffer Overflow" name_zh_CN="BIND iquery远程缓冲区溢出攻击" name_zh_TW="BIND iquery遠程緩沖區溢出攻擊" ruleid="20313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="利用Invision Board ipchat.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Invision Board ipchat.php Script Vulnerability" name_zh_CN="利用Invision Board ipchat.php脚本漏洞远程执行命令" name_zh_TW="利用Invision Board ipchat.php腳本漏洞遠程執行命令" ruleid="20311" visible="true" />
			<rule action=" db  screen " enabled="true" group="142606639" module="0" name="Sendmail 8.12 邮件头处理远程缓冲区溢出攻击" name_en_US="Sendmail 8.12 Mail Header Handling Remote Buffer Overflow" name_zh_CN="Sendmail 8.12 邮件头处理远程缓冲区溢出攻击" name_zh_TW="Sendmail 8.12 郵件頭處理遠程緩沖區溢出攻擊" ruleid="20310" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="利用phping脚本漏洞远程执行命令" name_en_US="Remote Code Execution via phping Script Vulnerability" name_zh_CN="利用phping脚本漏洞远程执行命令" name_zh_TW="利用phping腳本漏洞遠程執行命令" ruleid="20317" visible="true" />
			<rule action=" db  screen " enabled="true" group="137363759" module="0" name="FTP服务器长路径名缓冲区溢出攻击" name_en_US="FTP Server Long Path Name Buffer Overflow" name_zh_CN="FTP服务器长路径名缓冲区溢出攻击" name_zh_TW="FTP服務器長路徑名緩沖區溢出攻擊" ruleid="20316" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用Webchat defines.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Webchat defines.php Script Vulnerability" name_zh_CN="利用Webchat defines.php脚本漏洞远程执行命令" name_zh_TW="利用Webchat defines.php腳本漏洞遠程執行命令" ruleid="20318" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="NCSA test-cgi脚本漏洞扫描探测" name_en_US="NCSA test-cgi Script Vulnerability Detection" name_zh_CN="NCSA test-cgi脚本漏洞扫描探测" name_zh_TW="NCSA test-cgi腳本漏洞掃描探測" ruleid="30154" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下无赖小子木马通信" name_en_US="Trojan Way2.5 Communication on Windows" name_zh_CN="Windows系统下无赖小子木马通信" name_zh_TW="Windows系統下無賴小子木馬通信" ruleid="40706" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Skunkware view-source脚本漏洞扫描探测" name_en_US="Skunkware view-source Script Vulnerability Detection" name_zh_CN="Skunkware view-source脚本漏洞扫描探测" name_zh_TW="Skunkware view-source腳本漏洞掃描探測" ruleid="30156" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Skunkware view-source脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Skunkware view-source Script Vulnerability" name_zh_CN="利用Skunkware view-source脚本漏洞远程执行命令" name_zh_TW="利用Skunkware view-source腳本漏洞遠程執行命令" ruleid="30157" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Index Server .htw漏洞远程读取文件" name_en_US="Remote File Reading via Index Server .htw Vulnerability" name_zh_CN="利用Index Server .htw漏洞远程读取文件" name_zh_TW="利用Index Server .htw漏洞遠程讀取文件" ruleid="30150" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="BNB survey.cgi脚本漏洞扫描探测" name_en_US="BNB survey.cgi Script Vulnerability Detection" name_zh_CN="BNB survey.cgi脚本漏洞扫描探测" name_zh_TW="BNB survey.cgi腳本漏洞掃描探測" ruleid="30152" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="BNBForm bnbform.cgi脚本漏洞扫描探测" name_en_US="BNBForm bnbform.cgi Script Vulnerability Detection" name_zh_CN="BNBForm bnbform.cgi脚本漏洞扫描探测" name_zh_TW="BNBForm bnbform.cgi腳本漏洞掃描探測" ruleid="30153" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="WinZip FileView ActiveX控件远程栈溢出攻击" name_en_US="WinZip FileView ActiveX Control Remote Stack Overflow" name_zh_CN="WinZip FileView ActiveX控件远程栈溢出攻击" name_zh_TW="WinZip FileView ActiveX控件遠程棧溢出攻擊" ruleid="40800" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="Microsoft MDAC RDS.Dataspace ActiveX控件远程代码执行攻击" name_en_US="Microsoft MDAC RDS.Dataspace ActiveX Control Remote Code Execution" name_zh_CN="Microsoft MDAC RDS.Dataspace ActiveX控件远程代码执行攻击" name_zh_TW="Microsoft MDAC RDS.Dataspace ActiveX控件遠程代碼執行攻擊" ruleid="40803" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="IE ADODB.Connection对象Execute函数内存破坏攻击" name_en_US="IE ADODB.Connection Object Execution Memory Corruption" name_zh_CN="IE ADODB.Connection对象Execute函数内存破坏攻击" name_zh_TW="IE ADODB.Connection對象Execute函數內存破壞攻擊" ruleid="40802" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="AnyForm AnyForm2脚本漏洞扫描探测" name_en_US="AnyForm AnyForm2 Script Vulnerability Detection" name_zh_CN="AnyForm AnyForm2脚本漏洞扫描探测" name_zh_TW="AnyForm AnyForm2腳本漏洞掃描探測" ruleid="30158" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="IRIX pfdispaly.cgi脚本漏洞扫描探测" name_en_US="IRIX pfdispaly.cgi Script Vulnerability Detection" name_zh_CN="IRIX pfdispaly.cgi脚本漏洞扫描探测" name_zh_TW="IRIX pfdispaly.cgi腳本漏洞掃描探測" ruleid="30159" visible="true" />
			<rule action=" db  screen " enabled="true" group="83951690" module="0" name="DCERPC协议通信数据编码异常" name_en_US="DCERPC Protocol Communication Data Abnormal Encoding" name_zh_CN="DCERPC协议通信数据编码异常" name_zh_TW="DCERPC協議通信數據編碼異常" ruleid="40807" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="HP Mercury Quality Center ActiveX控件远程栈溢出攻击" name_en_US="HP Mercury Quality Center ActiveX Control Remote Stack Overflow" name_zh_CN="HP Mercury Quality Center ActiveX控件远程栈溢出攻击" name_zh_TW="HP Mercury Quality Center ActiveX控件遠程棧溢出攻擊" ruleid="40806" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下网络神偷木马通信" name_en_US="Trojan NetThief Communication on Windows" name_zh_CN="Windows系统下网络神偷木马通信" name_zh_TW="Windows系統下網絡神偷木馬通信" ruleid="40705" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Cafeini木马通信" name_en_US="Trojan Cafeini Communication on Windows" name_zh_CN="Windows系统下Cafeini木马通信" name_zh_TW="Windows系統下Cafeini木馬通信" ruleid="40489" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898069" module="0" name="ICMP子网掩码请求消息" name_en_US="ICMP Netmask Request Message" name_zh_CN="ICMP子网掩码请求消息" name_zh_TW="ICMP子網掩碼請求消息" ruleid="30029" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="Avaya Cajun固件未公开SNMP共同体字符串访问攻击" name_en_US="Avaya Cajun Firmware Undocummented SNMP Community String Access" name_zh_CN="Avaya Cajun固件未公开SNMP共同体字符串访问攻击" name_zh_TW="Avaya Cajun固件未公開SNMP共同體字符串訪問攻擊" ruleid="30556" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Breach Pro木马通信" name_en_US="Trojan Breach Pro Communication on Windows" name_zh_CN="Windows系统下Breach Pro木马通信" name_zh_TW="Windows系統下Breach Pro木馬通信" ruleid="40485" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Breach木马通信" name_en_US="Trojan Breach Communication on Windows" name_zh_CN="Windows系统下Breach木马通信" name_zh_TW="Windows系統下Breach木馬通信" ruleid="40484" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Buschtrommel木马通信" name_en_US="Trojan Buschtrommel Communication on Windows" name_zh_CN="Windows系统下Buschtrommel木马通信" name_zh_TW="Windows系統下Buschtrommel木馬通信" ruleid="40487" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Bugs木马通信" name_en_US="Trojan Bugs Communication on Windows" name_zh_CN="Windows系统下Bugs木马通信" name_zh_TW="Windows系統下Bugs木馬通信" ruleid="40486" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Black Angel木马通信" name_en_US="Trojan Black Angel Communication on Windows" name_zh_CN="Windows系统下Black Angel木马通信" name_zh_TW="Windows系統下Black Angel木馬通信" ruleid="40481" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Bla木马通信" name_en_US="Trojan Bla Communication on Windows" name_zh_CN="Windows系统下Bla木马通信" name_zh_TW="Windows系統下Bla木馬通信" ruleid="40480" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Blazer/Sockets de Troie木马通信" name_en_US="Trojan Blazer/Sockets de Troie Communication on Windows" name_zh_CN="Windows系统下Blazer/Sockets de Troie木马通信" name_zh_TW="Windows系統下Blazer/Sockets de Troie木馬通信" ruleid="40483" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Blade Runner木马通信" name_en_US="Trojan Blade Runner Communication on Windows" name_zh_CN="Windows系统下Blade Runner木马通信" name_zh_TW="Windows系統下Blade Runner木馬通信" ruleid="40482" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.AR/AV/AVV/AU@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AR/AV/AVV/AU@mm" name_zh_CN="SMTP服务发送W32.Beagle.AR/AV/AVV/AU@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AR/AV/AVV/AU@mm蠕蟲病毒郵件" ruleid="40643" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Mexer.E蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Mexer.E" name_zh_CN="SMTP服务发送W32.Mexer.E蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Mexer.E蠕蟲病毒郵件" ruleid="40642" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.AB蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AB" name_zh_CN="SMTP服务发送Mydoom.AB蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AB蠕蟲病毒郵件" ruleid="40641" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.Y蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.Y" name_zh_CN="SMTP服务发送Mydoom.Y蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.Y蠕蟲病毒郵件" ruleid="40640" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="Windows系统下Worm.MSN.funny蠕虫通过MSN传播" name_en_US="Worm.MSN.funny Propagation via MSN on Windows" name_zh_CN="Windows系统下Worm.MSN.funny蠕虫通过MSN传播" name_zh_TW="Windows系統下Worm.MSN.funny蠕蟲通過MSN傳播" ruleid="40647" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Bagz蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Bagz" name_zh_CN="SMTP服务发送W32.Bagz蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Bagz蠕蟲病毒郵件" ruleid="40646" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Fili蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Fili" name_zh_CN="SMTP服务发送W32.Fili蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Fili蠕蟲病毒郵件" ruleid="40645" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.AC蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AC" name_zh_CN="SMTP服务发送Mydoom.AC蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AC蠕蟲病毒郵件" ruleid="40644" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Netsky.AD@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.AD@mm" name_zh_CN="SMTP服务发送W32.Netsky.AD@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.AD@mm蠕蟲病毒郵件" ruleid="40649" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.AF蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AF" name_zh_CN="SMTP服务发送Mydoom.AF蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AF蠕蟲病毒郵件" ruleid="40648" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国兴业银行网上银行用户登录" name_en_US="China&apos;s Industrial Bank Internet Bank Internet Banking User Login" name_zh_CN="中国兴业银行网上银行用户登录" name_zh_TW="中國興業銀行網上銀行用戶登錄" ruleid="50318" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="RFC1867标准上传文件" name_en_US="RFC1867 file uploading" name_zh_CN="RFC1867标准上传文件" name_zh_TW="RFC1867標准上傳文件" ruleid="50319" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用PowerPlay ppdscgi.exe脚本漏洞获取信息" name_en_US="Information Disclosure via PowerPlay ppdscgi.exe Script Vulnerability" name_zh_CN="利用PowerPlay ppdscgi.exe脚本漏洞获取信息" name_zh_TW="利用PowerPlay ppdscgi.exe腳本漏洞獲取信息" ruleid="40243" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="WINS Service 代码执行漏洞" name_en_US="WINS Service Code Execution Vulnerability" name_zh_CN="WINS Service 代码执行漏洞" name_zh_TW="WINS Service 代碼執行漏洞" ruleid="21237" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375471" module="0" name="Adobe Flash Player对象处理远程代码执行漏洞" name_en_US="Adobe Flash Player CVE-2011-0611 &apos;SWF&apos; File Remote Memory Corruption Vulnerability" name_zh_CN="Adobe Flash Player对象处理远程代码执行漏洞" name_zh_TW="Adobe Flash Player對象處理遠程代碼執行漏洞" ruleid="21236" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="恒生交易软件通用版I" name_en_US="Hong Sheng transaction software general edition I" name_zh_CN="恒生交易软件通用版I" name_zh_TW="恒生交易軟件通用版I" ruleid="51002" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端从服务器端获取文件" name_en_US="Server Files Disclosure to TFTP Service Client" name_zh_CN="TFTP服务客户端从服务器端获取文件" name_zh_TW="TFTP服務客戶端從服務器端獲取文件" ruleid="50000" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端企图获取服务器上一级目录文件" name_en_US="TFTP Service Client Attempting to Obtain Files of Upper Level Server Directory" name_zh_CN="TFTP服务客户端企图获取服务器上一级目录文件" name_zh_TW="TFTP服務客戶端企圖獲取服務器上一級目錄文件" ruleid="50001" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端企图获取服务器根目录文件" name_en_US="TFTP Service Client Attempting to Obtain Files in the Server Root Directory" name_zh_CN="TFTP服务客户端企图获取服务器根目录文件" name_zh_TW="TFTP服務客戶端企圖獲取服務器根目錄文件" ruleid="50002" visible="true" />
			<rule action=" db  screen " enabled="true" group="361824341" module="0" name="SNMP服务访问使用默认private口令" name_en_US="SNMP Service Access with Default private Password" name_zh_CN="SNMP服务访问使用默认private口令" name_zh_TW="SNMP服務訪問使用默認private口令" ruleid="50003" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务ftp匿名用户认证" name_en_US="FTP Service ftp Anonymous User Authentication" name_zh_CN="FTP服务ftp匿名用户认证" name_zh_TW="FTP服務ftp匿名用戶認證" ruleid="50004" visible="true" />
			<rule action=" db  screen " enabled="true" group="138444885" module="0" name="TELNET服务客户端使用ld_library_path环境变量" name_en_US="TELNET Service Client Using ld_library_path Environment Variable" name_zh_CN="TELNET服务客户端使用ld_library_path环境变量" name_zh_TW="TELNET服務客戶端使用ld_library_path環境變量" ruleid="50006" visible="true" />
			<rule action=" db  screen " enabled="true" group="138444885" module="0" name="TELNET服务客户端使用ld_preload环境变量" name_en_US="TELNET Service Client Using ld_preload Environment" name_zh_CN="TELNET服务客户端使用ld_preload环境变量" name_zh_TW="TELNET服務客戶端使用ld_preload環境變量" ruleid="50007" visible="true" />
			<rule action="" enabled="true" group="73433165" module="0" name="Cisco可疑拒绝服务攻击协议包" name_en_US="Suspicious Cisco DoS Packets " name_zh_CN="Cisco可疑拒绝服务攻击协议包" name_zh_TW="Cisco可疑拒絕服務攻擊協議包" ruleid="70082" visible="false" />
			<rule action="" enabled="true" group="233865293" module="0" name="TCP端口3连接请求" name_en_US="TCP Port 3 Connection Request " name_zh_CN="TCP端口3连接请求" name_zh_TW="TCP端口3連接請求" ruleid="70083" visible="false" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 证券之星" name_en_US="Stock Market Analtsis Software Securities Star" name_zh_CN="股票行情分析软件 证券之星" name_zh_TW="股票行情分析軟件 證券之星" ruleid="50439" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 中投证券卓越版" name_en_US="Stock Trading Operating Software China Investment Securities Zhuoyue Edition" name_zh_CN="股票交易操作软件 中投证券卓越版" name_zh_TW="股票交易操作軟件 中投證券卓越版" ruleid="50438" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Conficker(A类)木马网络数据通信" name_en_US="CURRENT_EVENTS Conficker.a Shellcode" name_zh_CN="Conficker(A类)木马网络数据通信" name_zh_TW="Conficker(A類)木馬網絡數據通信" ruleid="40830" visible="true" />
			<rule action="" enabled="true" group="73433165" module="0" name="Windows系统NETBIOS 137端口扫描" name_en_US="Scan on Port 137 for Windows NETBIOS " name_zh_CN="Windows系统NETBIOS 137端口扫描" name_zh_TW="Windows系統NETBIOS 137端口掃描" ruleid="70081" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Conficker(B类)木马网络数据通信" name_en_US="CURRENT_EVENTS Conficker.b Shellcode" name_zh_CN="Conficker(B类)木马网络数据通信" name_zh_TW="Conficker(B類)木馬網絡數據通信" ruleid="40831" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="QQ农场建立连接" name_en_US="QQ Farm Establish Connection" name_zh_CN="QQ农场建立连接" name_zh_TW="QQ農場建立連接" ruleid="50384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="Veritas Backup Exec For Windows/NetWare使用内置口令访问攻击" name_en_US="Veritas Backup Exec For Windows/NetWare Access via Built-in Password" name_zh_CN="Veritas Backup Exec For Windows/NetWare使用内置口令访问攻击" name_zh_TW="Veritas Backup Exec For Windows/NetWare使用內置口令訪問攻擊" ruleid="30516" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315070" module="0" name="phpMyAdmin grab_globals.lib.php CGI脚本远程文件包含攻击" name_en_US="phpMyAdmin grab_globals.lib.php CGI Script Remote File Inclusion" name_zh_CN="phpMyAdmin grab_globals.lib.php CGI脚本远程文件包含攻击" name_zh_TW="phpMyAdmin grab_globals.lib.php CGI腳本遠程文件包含攻擊" ruleid="30517" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH远程缓冲区溢出攻击" name_en_US="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH Remote Buffer Overflow" name_zh_CN="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH远程缓冲区溢出攻击" name_zh_TW="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH遠程緩沖區溢出攻擊" ruleid="20636" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="SQuery gore.php远程执行命令攻击" name_en_US="SQuery gore.php Remote Code Execution" name_zh_CN="SQuery gore.php远程执行命令攻击" name_zh_TW="SQuery gore.php遠程執行命令攻擊" ruleid="20637" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="Orinoco OEM Residential Gateway远程获取SNMP口令攻击" name_en_US="Orinoco OEM Residential Gateway Remote SNMP Password Disclosure" name_zh_CN="Orinoco OEM Residential Gateway远程获取SNMP口令攻击" name_zh_TW="Orinoco OEM Residential Gateway遠程獲取SNMP口令攻擊" ruleid="30557" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Turkojan信息命令木马网络数据通信" name_en_US="TROJAN Turkojan C&amp;C Info Command Response MINFO" name_zh_CN="Turkojan信息命令木马网络数据通信" name_zh_TW="Turkojan信息命令木馬網絡數據通信" ruleid="40901" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Zeroboard多个CGI脚本目录遍历攻击" name_en_US="Zeroboard multiple CGI Scripts Directory Traversal" name_zh_CN="Zeroboard多个CGI脚本目录遍历攻击" name_zh_TW="Zeroboard多個CGI腳本目錄遍曆攻擊" ruleid="30511" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国银行网上银行用户登录" name_en_US="Internet Banking Bank of China User Login" name_zh_CN="中国银行网上银行用户登录" name_zh_TW="中國銀行網上銀行用戶登錄" ruleid="50388" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159542" module="0" name="Microsoft IIS 5.0 &quot;Translate: f&quot;头标记获取源码攻击" name_en_US="Microsoft IIS 5.0 &quot;Translate: f&quot; Header Tag Source Code Execution" name_zh_CN="Microsoft IIS 5.0 &quot;Translate: f&quot;头标记获取源码攻击" name_zh_TW="Microsoft IIS 5.0 &quot;Translate: f&quot;頭標記獲取源碼攻擊" ruleid="30512" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 中信证券至信版网上交易系统" name_en_US="Stock Trading Operating Software Zhongxin Securities Zhixin Online Trading System" name_zh_CN="股票交易操作软件 中信证券至信版网上交易系统" name_zh_TW="股票交易操作軟件 中信證券至信版網上交易系統" ruleid="50430" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件大策略下载股票信息" name_en_US="Stock Market Analysis Software dcl Stock Information Downloading" name_zh_CN="股票行情分析操作软件大策略下载股票信息" name_zh_TW="股票行情分析操作軟件大策略下載股票信息" ruleid="50178" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件盘口王用户登录" name_en_US="Stock Market Analysis Software Pankouwang User Login" name_zh_CN="股票行情分析操作软件盘口王用户登录" name_zh_TW="股票行情分析操作軟件盤口王用戶登錄" ruleid="50179" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件大智慧用户登录" name_en_US="Stock Market Analysis Software Dazhihui User Login" name_zh_CN="股票行情分析操作软件大智慧用户登录" name_zh_TW="股票行情分析操作軟件大智慧用戶登錄" ruleid="50174" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件龙卷风用户登录" name_en_US="Stock Market Analysis Software Tornado User Login" name_zh_CN="股票行情分析操作软件龙卷风用户登录" name_zh_TW="股票行情分析操作軟件龍卷風用戶登錄" ruleid="50175" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件分析家用户登录" name_en_US="Stock Market Analysis Software Analyst User Login" name_zh_CN="股票行情分析操作软件分析家用户登录" name_zh_TW="股票行情分析操作軟件分析家用戶登錄" ruleid="50176" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件中国银河证券海王星用户登录" name_en_US="Stock Market Analysis Software China Galaxy Securities Neptune User Login" name_zh_CN="股票行情分析操作软件中国银河证券海王星用户登录" name_zh_TW="股票行情分析操作軟件中國銀河證券海王星用戶登錄" ruleid="50177" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647574" module="0" name="Windows系统远程管理工具PcAnywhere登录连接" name_en_US="Windows Remote Management Tool PcAnywhere Login Connection" name_zh_CN="Windows系统远程管理工具PcAnywhere登录连接" name_zh_TW="Windows系統遠程管理工具PcAnywhere登錄連接" ruleid="50170" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo主控端连接建立" name_en_US="DDOS Tool Trinoo Console Connection" name_zh_CN="DDOS工具Trinoo主控端连接建立" name_zh_TW="DDOS工具Trinoo主控端連接建立" ruleid="40388" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件同花顺用户登录" name_en_US="Stock Market Analysis Software 10jqka.com.cn User Login" name_zh_CN="股票行情分析操作软件同花顺用户登录" name_zh_TW="股票行情分析操作軟件同花順用戶登錄" ruleid="50172" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="股票行情分析操作软件钱龙旗舰用户登录" name_en_US="Stock Market Analysis Software qianlong.com.cn User Login" name_zh_CN="股票行情分析操作软件钱龙旗舰用户登录" name_zh_TW="股票行情分析操作軟件錢龍旗艦用戶登錄" ruleid="50173" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Tinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40389" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="利用Sambar Server CGI程序远程获取信息攻击" name_en_US="Information Disclosure via Sambar Server CGI Program" name_zh_CN="利用Sambar Server CGI程序远程获取信息攻击" name_zh_TW="利用Sambar Server CGI程序遠程獲取信息攻擊" ruleid="30455" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="微软IE &apos;winhlp32.exe&apos; &apos;MsgBox()&apos;远程代码执行攻击" name_en_US="Microsoft Internet Explorer &apos;winhlp32.exe&apos; &apos;MsgBox()&apos; Remote Code Execution Attack" name_zh_CN="微软IE &apos;winhlp32.exe&apos; &apos;MsgBox()&apos;远程代码执行攻击" name_zh_TW="微軟IE &apos;winhlp32.exe&apos; &apos;MsgBox()&apos;遠程代碼執行攻擊" ruleid="21059" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Microsoft SMB Server COPY命令远程代码执行攻击" name_en_US="Microsoft SMB Server COPY command Remote Code Execution Attack" name_zh_CN="Microsoft SMB Server COPY命令远程代码执行攻击" name_zh_TW="Microsoft SMB Server COPY命令遠程代碼執行攻擊" ruleid="21058" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="通过Web服务访问Cyber-Cats Chitchat口令文件" name_en_US="Access to Cyber-Cats Chitchat File via Web Service" name_zh_CN="通过Web服务访问Cyber-Cats Chitchat口令文件" name_zh_TW="通過Web服務訪問Cyber-Cats Chitchat口令文件" ruleid="30454" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="Windows NT/9x畸形TCP/IP包淹没拒绝服务攻击" name_en_US="Windows NT/9x Malformed TCP/IP Packet Flood Denial of Service" name_zh_CN="Windows NT/9x畸形TCP/IP包淹没拒绝服务攻击" name_zh_TW="Windows NT/9x畸形TCP/IP包淹沒拒絕服務攻擊" ruleid="10122" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190251" module="0" name="微软Internet Explorer DOM操作内存破坏攻击" name_en_US="Microsoft Internet Explorer DOM Operation Memory Corruption Attack" name_zh_CN="微软Internet Explorer DOM操作内存破坏攻击" name_zh_TW="微軟Internet Explorer DOM操作內存破壞攻擊" ruleid="21052" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157611" module="0" name="利用Microsoft Internet Explorer CSS漏洞远程执行代码" name_en_US="Remote Code Execution via Microsoft Internet Explorer CSS Vulnerability" name_zh_CN="利用Microsoft Internet Explorer CSS漏洞远程执行代码" name_zh_TW="利用Microsoft Internet Explorer CSS漏洞遠程執行代碼" ruleid="21051" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190251" module="0" name="Internet Explorer处理特定表格操作内存破坏攻击" name_en_US="Internet Explorer Handling Certain Table Operations Memory Corruption Vulnerability" name_zh_CN="Internet Explorer处理特定表格操作内存破坏攻击" name_zh_TW="Internet Explorer處理特定表格操作內存破壞攻擊" ruleid="21057" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="利用CGI脚本对Sambar Server进行目录遍历攻击" name_en_US="Directory Traversal against Sambar Server via CGI Script" name_zh_CN="利用CGI脚本对Sambar Server进行目录遍历攻击" name_zh_TW="利用CGI腳本對Sambar Server進行目錄遍曆攻擊" ruleid="30457" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190251" module="0" name="Microsoft IE表格对象释放内存破坏攻击" name_en_US="Microsoft IE TableCell Object Remove Memory Corruption Attack" name_zh_CN="Microsoft IE表格对象释放内存破坏攻击" name_zh_TW="Microsoft IE表格對象釋放內存破壞攻擊" ruleid="21054" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Sambar Server目录遍历脚本漏洞扫描探测" name_en_US="Sambar Server Directory Traversal Script Vulnerability Detection" name_zh_CN="Sambar Server目录遍历脚本漏洞扫描探测" name_zh_TW="Sambar Server目錄遍曆腳本漏洞掃描探測" ruleid="30456" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715750" module="0" name="SMTP服务EXPN命令暴力猜测用户名攻击" name_en_US="SMTP Service EXPN Command Username Brute Force" name_zh_CN="SMTP服务EXPN命令暴力猜测用户名攻击" name_zh_TW="SMTP服務EXPN命令暴力猜測用戶名攻擊" ruleid="30451" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Vipdataend 木马网络数据通信" name_en_US="TROJAN Vipdataend C&amp;C Traffic - Checkin FYWL" name_zh_CN="Vipdataend 木马网络数据通信" name_zh_TW="Vipdataend 木馬網絡數據通信" ruleid="40906" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Hylafax faxsurvey脚本漏洞扫描探测" name_en_US="Hylafax faxsurvey Script Vulnerability Detection" name_zh_CN="Hylafax faxsurvey脚本漏洞扫描探测" name_zh_TW="Hylafax faxsurvey腳本漏洞掃描探測" ruleid="30101" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715750" module="0" name="SMTP服务VRFY命令暴力猜测用户名攻击" name_en_US="SMTP Service VRFY Command Username Brute Force" name_zh_CN="SMTP服务VRFY命令暴力猜测用户名攻击" name_zh_TW="SMTP服務VRFY命令暴力猜測用戶名攻擊" ruleid="30452" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Phorum pm.php本地文件包含执行命令攻击" name_en_US="Phorum pm.php Local File Inclusion Remote Code Execution" name_zh_CN="Phorum pm.php本地文件包含执行命令攻击" name_zh_TW="Phorum pm.php本地文件包含執行命令攻擊" ruleid="20638" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="SimpleBoard sbp参数远程执行命令攻击" name_en_US="SimpleBoard sbp Parameter Remote Code Execution" name_zh_CN="SimpleBoard sbp参数远程执行命令攻击" name_zh_TW="SimpleBoard sbp參數遠程執行命令攻擊" ruleid="20639" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer Multiple Unspecified 远程代码执行漏洞" name_en_US="Microsoft Internet Explorer Multiple Unspecified Remote Code Execution Vulnerabilities" name_zh_CN="Microsoft Internet Explorer Multiple Unspecified 远程代码执行漏洞" name_zh_TW="Microsoft Internet Explorer Multiple Unspecified 遠程代碼執行漏洞" ruleid="21235" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Vulnerability in JScript and VBScript Scripting Engines 远程代码执行漏洞" name_en_US="Vulnerability in JScript and VBScript Scripting Engines Could Allow Remote Code Execution" name_zh_CN="Vulnerability in JScript and VBScript Scripting Engines 远程代码执行漏洞" name_zh_TW="Vulnerability in JScript and VBScript Scripting Engines 遠程代碼執行漏洞" ruleid="21234" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Microsoft Windows SMB客户端远程代码执行漏洞" name_en_US="Vulnerabilities in SMB Client Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows SMB客户端远程代码执行漏洞" name_zh_TW="Microsoft Windows SMB客戶端遠程代碼執行漏洞" ruleid="21233" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Microsoft Windows &apos;BROWSER ELECTION&apos; 缓冲区溢出漏洞" name_en_US="Microsoft Windows &apos;BROWSER ELECTION&apos; Buffer Overflow Vulnerability" name_zh_CN="Microsoft Windows &apos;BROWSER ELECTION&apos; 缓冲区溢出漏洞" name_zh_TW="Microsoft Windows &apos;BROWSER ELECTION&apos; 緩沖區溢出漏洞" ruleid="21232" visible="true" />
			<rule action=" db  screen " enabled="true" group="77594922" module="0" name="Microsoft Windows DNS解析远程代码执行漏洞（MS11-030）" name_en_US="Vulnerability in DNS Client Service Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows DNS解析远程代码执行漏洞（MS11-030）" name_zh_TW="Microsoft Windows DNS解析遠程代碼執行漏洞（MS11-030）" ruleid="21231" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Microsoft Windows SMB操作解析远程代码执行漏洞(MS11-020)" name_en_US="Vulnerabilities in SMB Server Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows SMB操作解析远程代码执行漏洞(MS11-020)" name_zh_TW="Microsoft Windows SMB操作解析遠程代碼執行漏洞(MS11-020)" ruleid="21230" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="PoPToP PPTP read()参数负值远程缓冲区溢出攻击" name_en_US="PoPToP PPTP read() Negative Parameter Remote Buffer Overflow" name_zh_CN="PoPToP PPTP read()参数负值远程缓冲区溢出攻击" name_zh_TW="PoPToP PPTP read()參數負值遠程緩沖區溢出攻擊" ruleid="20630" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Subversion日期解析函数缓冲区溢出攻击" name_en_US="Subversion Data Parsing function Buffer Overflow" name_zh_CN="Subversion日期解析函数缓冲区溢出攻击" name_zh_TW="Subversion日期解析函數緩沖區溢出攻擊" ruleid="20631" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve Backup发现服务远程缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup Discovery Service Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup发现服务远程缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup發現服務遠程緩沖區溢出攻擊" ruleid="20632" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve Backup UniversalAgent缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup UniversalAgent Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup UniversalAgent缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup UniversalAgent緩沖區溢出攻擊" ruleid="20633" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA License Server GETCONFIG请求缓冲区溢出攻击" name_en_US="CA License Server GETCONFIG Request Buffer Overflow" name_zh_CN="CA License Server GETCONFIG请求缓冲区溢出攻击" name_zh_TW="CA License Server GETCONFIG請求緩沖區溢出攻擊" ruleid="20634" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA License Client GETCONFIG请求缓冲区溢出攻击" name_en_US="CA License Client GETCONFIG Request Buffer Overflow" name_zh_CN="CA License Client GETCONFIG请求缓冲区溢出攻击" name_zh_TW="CA License Client GETCONFIG請求緩沖區溢出攻擊" ruleid="20635" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Office PowerPoint 2003 执行任意代码漏洞" name_en_US="Microsoft Office PowerPoint 2003 Execute Arbitrary Code Vulnerability" name_zh_CN="Microsoft Office PowerPoint 2003 执行任意代码漏洞" name_zh_TW="Microsoft Office PowerPoint 2003 執行任意代碼漏洞" ruleid="21239" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Office PowerPoint 2007 执行任意代码漏洞" name_en_US="Microsoft Office PowerPoint 2007 Execute Arbitrary Code Vulnerability" name_zh_CN="Microsoft Office PowerPoint 2007 执行任意代码漏洞" name_zh_TW="Microsoft Office PowerPoint 2007 執行任意代碼漏洞" ruleid="21238" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Vipdataend XY类木马网络数据通信" name_en_US="TROJAN Vipdataend C&amp;C Traffic - Checkin XY" name_zh_CN="Vipdataend XY类木马网络数据通信" name_zh_TW="Vipdataend XY類木馬網絡數據通信" ruleid="40907" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Vipdataend XYLL类木马网络数据通信" name_en_US="TROJAN Vipdataend C&amp;C Traffic - Checkin XYLL" name_zh_CN="Vipdataend XYLL类木马网络数据通信" name_zh_TW="Vipdataend XYLL類木馬網絡數據通信" ruleid="40908" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer对象类型属性缓冲区溢出攻击（MS03-020)" name_en_US="Microsoft Internet Explorer Object Type Attribute Buffer Overflow (MS03-020)" name_zh_CN="Microsoft Internet Explorer对象类型属性缓冲区溢出攻击（MS03-020)" name_zh_TW="Microsoft Internet Explorer對象類型屬性緩沖區溢出攻擊（MS03-020)" ruleid="20832" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HTTP协议认证字段超长溢出攻击" name_en_US="HTTP Protocol Over-Long Authentication Field Buffer Overflow" name_zh_CN="HTTP协议认证字段超长溢出攻击" name_zh_TW="HTTP協議認證字段超長溢出攻擊" ruleid="20833" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Ipswitch WhatsUp Gold远程缓冲区溢出攻击" name_en_US="Ipswitch WhatsUp Gold Remote Buffer Overflow" name_zh_CN="Ipswitch WhatsUp Gold远程缓冲区溢出攻击" name_zh_TW="Ipswitch WhatsUp Gold遠程緩沖區溢出攻擊" ruleid="20830" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Kerio Personal Firewall验证包远程缓冲区溢出攻击" name_en_US="Kerio Personal Firewall Authentication Packet Remote Buffer Overflow" name_zh_CN="Kerio Personal Firewall验证包远程缓冲区溢出攻击" name_zh_TW="Kerio Personal Firewall驗證包遠程緩沖區溢出攻擊" ruleid="20831" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546346" module="0" name="IMAP服务器LOGIN命令超长参数缓冲区溢出攻击" name_en_US="IMAP Server LOGIN Command Over-Long Parameter Buffer Overflow" name_zh_CN="IMAP服务器LOGIN命令超长参数缓冲区溢出攻击" name_zh_TW="IMAP服務器LOGIN命令超長參數緩沖區溢出攻擊" ruleid="20836" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="SAP-DB/MaxDB WebDBM远程缓冲区溢出攻击" name_en_US="SAP-DB/MaxDB WebDBM Remote Buffer Overflow" name_zh_CN="SAP-DB/MaxDB WebDBM远程缓冲区溢出攻击" name_zh_TW="SAP-DB/MaxDB WebDBM遠程緩沖區溢出攻擊" ruleid="20834" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="GoodTech Telnet Server缓冲区溢出攻击" name_en_US="GoodTech Telnet Server Buffer Overflow" name_zh_CN="GoodTech Telnet Server缓冲区溢出攻击" name_zh_TW="GoodTech Telnet Server緩沖區溢出攻擊" ruleid="20838" visible="true" />
			<rule action=" db  screen " enabled="true" group="89129258" module="0" name="Hummingbird InetD组件远程缓冲区溢出攻击" name_en_US="Hummingbird InetD Component Remote Buffer Overflow" name_zh_CN="Hummingbird InetD组件远程缓冲区溢出攻击" name_zh_TW="Hummingbird InetD組件遠程緩沖區溢出攻擊" ruleid="20839" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703782" module="0" name="ISC Bind 8 TSIG远程缓冲区溢出攻击" name_en_US="ISC Bind 8 TSIG Remote Buffer Overflow" name_zh_CN="ISC Bind 8 TSIG远程缓冲区溢出攻击" name_zh_TW="ISC Bind 8 TSIG遠程緩沖區溢出攻擊" ruleid="20124" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="Matt Tourtillott maillist.pl脚本漏洞扫描探测" name_en_US="Matt Tourtillott maillist.pl Script Vulnerability Detection" name_zh_CN="Matt Tourtillott maillist.pl脚本漏洞扫描探测" name_zh_TW="Matt Tourtillott maillist.pl腳本漏洞掃描探測" ruleid="20125" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="McAfee E-Business Server预认证远程代码执行攻击" name_en_US="McAfee E-Business Server Pre-authentication Remote Code Execution" name_zh_CN="McAfee E-Business Server预认证远程代码执行攻击" name_zh_TW="McAfee E-Business Server預認證遠程代碼執行攻擊" ruleid="20948" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Aurigma Image Uploader ImageUploader4.ocx ActiveX控件栈溢出攻击" name_en_US="Aurigma Image Uploader ImageUploader4.ocx ActiveX Control Stack Overflow" name_zh_CN="Aurigma Image Uploader ImageUploader4.ocx ActiveX控件栈溢出攻击" name_zh_TW="Aurigma Image Uploader ImageUploader4.ocx ActiveX控件棧溢出攻擊" ruleid="20949" visible="true" />
			<rule action=" db  screen " enabled="true" group="156238118" module="0" name="Linux系统LPRng远程格式化串溢出攻击" name_en_US="Linux LPRng Remote Format String Overflow" name_zh_CN="Linux系统LPRng远程格式化串溢出攻击" name_zh_TW="Linux系統LPRng遠程格式化串溢出攻擊" ruleid="20122" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="BitDefender在线扫描器OScan.OCX ActiveX控件堆溢出攻击" name_en_US="BitDefender OScan.OCX ActiveX Control Heap Overflow Attack" name_zh_CN="BitDefender在线扫描器OScan.OCX ActiveX控件堆溢出攻击" name_zh_TW="BitDefender在線掃描器OScan.OCX ActiveX控件堆溢出攻擊" ruleid="20942" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Lycos文件上传组件FileUploader.dll ActiveX控件堆溢出攻击" name_en_US="Lycos FileUploader.dll ActiveX Control Heap Overflow Attack" name_zh_CN="Lycos文件上传组件FileUploader.dll ActiveX控件堆溢出攻击" name_zh_TW="Lycos文件上傳組件FileUploader.dll ActiveX控件堆溢出攻擊" ruleid="20943" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="AOL YGPPicEdit.dll ActiveX控件远程溢出攻击" name_en_US="AOL YGPPicEdit.dll ActiveX Control Remote Overflow Attack" name_zh_CN="AOL YGPPicEdit.dll ActiveX控件远程溢出攻击" name_zh_TW="AOL YGPPicEdit.dll ActiveX控件遠程溢出攻擊" ruleid="20940" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="IBM Lotus Domino Web Access上传模块ActiveX控件栈溢出攻击" name_en_US="IBM Lotus Domino Web Access ActiveX Control Stack Overflow Attack" name_zh_CN="IBM Lotus Domino Web Access上传模块ActiveX控件栈溢出攻击" name_zh_TW="IBM Lotus Domino Web Access上傳模塊ActiveX控件棧溢出攻擊" ruleid="20941" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Toshiba Surveillix MeIpCamX.DLL ActiveX控件远程栈溢出攻击" name_en_US="Toshiba Surveillix MeIpCamX.DLL ActiveX Control Remote Stack Overflow" name_zh_CN="Toshiba Surveillix MeIpCamX.DLL ActiveX控件远程栈溢出攻击" name_zh_TW="Toshiba Surveillix MeIpCamX.DLL ActiveX控件遠程棧溢出攻擊" ruleid="20946" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="RTS Sentry PTZCamPanelCtrl ActiveX控件远程栈溢出攻击" name_en_US="RTS Sentry PTZCamPanelCtrl ActiveX Control Remote Stack Overflow" name_zh_CN="RTS Sentry PTZCamPanelCtrl ActiveX控件远程栈溢出攻击" name_zh_TW="RTS Sentry PTZCamPanelCtrl ActiveX控件遠程棧溢出攻擊" ruleid="20947" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP Virtual Rooms hpvirtualrooms14.dll控件缓冲区溢出攻击" name_en_US="HP Virtual Rooms hpvirtualrooms14.dll Control Buffer Overflow Attack" name_zh_CN="HP Virtual Rooms hpvirtualrooms14.dll控件缓冲区溢出攻击" name_zh_TW="HP Virtual Rooms hpvirtualrooms14.dll控件緩沖區溢出攻擊" ruleid="20944" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Visual FoxPro vfp6r.dll ActiveX控件任意代码执行攻击" name_en_US="Microsoft Visual FoxPro vfp6r.dll ActiveX Control Arbitrary Code Execution Attack" name_zh_CN="Microsoft Visual FoxPro vfp6r.dll ActiveX控件任意代码执行攻击" name_zh_TW="Microsoft Visual FoxPro vfp6r.dll ActiveX控件任意代碼執行攻擊" ruleid="20945" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="ExcelTable Response Splitting 跨站脚本攻击漏洞" name_en_US="cve-2011-1895 ExcelTable Response Splitting XSS Vulnerability" name_zh_CN="ExcelTable Response Splitting 跨站脚本攻击漏洞" name_zh_TW="ExcelTable Response Splitting 跨站腳本攻擊漏洞" ruleid="21303" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Font Library File 缓冲区溢出漏洞" name_en_US="cve-2011-2003 Font Library File Buffer Overrun Vulnerability" name_zh_CN="Font Library File 缓冲区溢出漏洞" name_zh_TW="Font Library File 緩沖區溢出漏洞" ruleid="21302" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Virtual Function Table Corruption 远程代码执行漏洞" name_en_US="cve-2011-2001 Virtual Function Table Corruption Remote Code Execution Vulnerability" name_zh_CN="Virtual Function Table Corruption 远程代码执行漏洞" name_zh_TW="Virtual Function Table Corruption 遠程代碼執行漏洞" ruleid="21301" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Body Element 远程代码执行漏洞" name_en_US="cve-2011-2000 Body Element Remote Code Execution Vulnerability" name_zh_CN="Body Element 远程代码执行漏洞" name_zh_TW="Body Element 遠程代碼執行漏洞" ruleid="21300" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="SNMP NetPower NetServer远程读取任意文件漏洞" name_en_US="SNMP NetPower NetServer Remote Read Arbitrary Files Vulnerability" name_zh_CN="SNMP NetPower NetServer远程读取任意文件漏洞" name_zh_TW="SNMP NetPower NetServer遠程讀取任意文件漏洞" ruleid="21307" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Sunway ForceControl AngelServer栈溢出漏洞" name_en_US="Sunway ForceControl AngelServer Stack Overflow Vulnerability" name_zh_CN="Sunway ForceControl AngelServer栈溢出漏洞" name_zh_TW="Sunway ForceControl AngelServer棧溢出漏洞" ruleid="21306" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Default Reflected 跨站脚本攻击漏洞" name_en_US="cve-2011-1897 Default Reflected XSS Vulnerability" name_zh_CN="Default Reflected 跨站脚本攻击漏洞" name_zh_TW="Default Reflected 跨站腳本攻擊漏洞" ruleid="21305" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="ExcelTable Reflected 跨站脚本攻击漏洞" name_en_US="cve-2011-1896 ExcelTable Reflected XSS Vulnerability" name_zh_CN="ExcelTable Reflected 跨站脚本攻击漏洞" name_zh_TW="ExcelTable Reflected 跨站腳本攻擊漏洞" ruleid="21304" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Microsoft IIS WebDAV PROPFIND拒绝服务漏洞攻击" name_en_US="Microsoft IIS WebDAV PROPFIND Denial of Service" name_zh_CN="Microsoft IIS WebDAV PROPFIND拒绝服务漏洞攻击" name_zh_TW="Microsoft IIS WebDAV PROPFIND拒絕服務漏洞攻擊" ruleid="10013" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="ForceControl httpsvr目录穿越漏洞" name_en_US="ForceControl httpsvr Directory Traversal Vulnerability" name_zh_CN="ForceControl httpsvr目录穿越漏洞" name_zh_TW="ForceControl httpsvr目錄穿越漏洞" ruleid="21308" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256662" module="0" name="Microsoft FTP服务器STAT命令glob()扩展拒绝服务攻击" name_en_US="Microsoft FTP Server STAT Command Globbing Denial of Service" name_zh_CN="Microsoft FTP服务器STAT命令glob()扩展拒绝服务攻击" name_zh_TW="Microsoft FTP服務器STAT命令glob()擴展拒絕服務攻擊" ruleid="10017" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="访问ExAir示例脚本advsearch.asp拒绝服务攻击" name_en_US="Visiting ExAir Sample Script advsearch.asp Denial of Service" name_zh_CN="访问ExAir示例脚本advsearch.asp拒绝服务攻击" name_zh_TW="訪問ExAir示例腳本advsearch.asp拒絕服務攻擊" ruleid="10016" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157590" module="0" name="Microsoft IIS fpcount.exe程序漏洞扫描探测" name_en_US="Microsoft IIS fpcount.exe Vulnerability Detection" name_zh_CN="Microsoft IIS fpcount.exe程序漏洞扫描探测" name_zh_TW="Microsoft IIS fpcount.exe程序漏洞掃描探測" ruleid="10015" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="利用OmniHTTPd visadmin.exe程序漏洞拒绝服务攻击" name_en_US="Denial of Service via OmniHTTPd visadmin.exe Vulnerability" name_zh_CN="利用OmniHTTPd visadmin.exe程序漏洞拒绝服务攻击" name_zh_TW="利用OmniHTTPd visadmin.exe程序漏洞拒絕服務攻擊" ruleid="10014" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.W蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.W" name_zh_CN="SMTP服务发送Mydoom.W蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.W蠕蟲病毒郵件" ruleid="40639" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="迅雷HTTP协议文件下载" name_en_US="Thunder Downloading Files From HTTP Protocol" name_zh_CN="迅雷HTTP协议文件下载" name_zh_TW="迅雷HTTP協議文件下載" ruleid="50260" visible="true" />
			<rule action=" db  screen " enabled="true" group="77660249" module="0" name="DNS解析请求可疑域名" name_en_US="DNS Resolution Suspicious Domain Name" name_zh_CN="DNS解析请求可疑域名" name_zh_TW="DNS解析請求可疑域名" ruleid="50261" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886238" module="0" name="Windows NetLogon Service拒绝服务攻击 " name_en_US="Windows NetLogon Service Denial Of Service Vulnerability" name_zh_CN="Windows NetLogon Service拒绝服务攻击 " name_zh_TW="Windows NetLogon Service拒絕服務攻擊 " ruleid="10277" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Real VNC Server CutText拒绝服务攻击" name_en_US="Real VNC Server CutText Denial of Service" name_zh_CN="Real VNC Server CutText拒绝服务攻击" name_zh_TW="Real VNC Server CutText拒絕服務攻擊" ruleid="10276" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159515" module="0" name="Smurf拒绝服务攻击" name_en_US="Smurf denial of service" name_zh_CN="Smurf拒绝服务攻击" name_zh_TW="Smurf拒絕服務攻擊" ruleid="10274" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190239" module="0" name="Microsoft Windows TLSv1拒绝服务漏洞" name_en_US="Microsoft Windows TLSv1 Denial of Service Vulnerability" name_zh_CN="Microsoft Windows TLSv1拒绝服务漏洞" name_zh_TW="Microsoft Windows TLSv1拒絕服務漏洞" ruleid="10272" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157727" module="0" name="Microsoft IIS重复请求参数拒绝服务漏洞" name_en_US="Microsoft IIS Repeated Parameter Request Denial of Service Vulnerability" name_zh_CN="Microsoft IIS重复请求参数拒绝服务漏洞" name_zh_TW="Microsoft IIS重複請求參數拒絕服務漏洞" ruleid="10271" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159518" module="0" name="Microsoft Exchange Server拒绝服务攻击" name_en_US="Vulnerability in Microsoft Exchange Server Could Allow Denial of Service" name_zh_CN="Microsoft Exchange Server拒绝服务攻击" name_zh_TW="Microsoft Exchange Server拒絕服務攻擊" ruleid="10279" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159518" module="0" name="Microsoft Hyper-v VMBus拒绝服务攻击" name_en_US="Microsoft Hyper-V VMBus Denial of Service Vulnerability" name_zh_CN="Microsoft Hyper-v VMBus拒绝服务攻击" name_zh_TW="Microsoft Hyper-v VMBus拒絕服務攻擊" ruleid="10278" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="XML-RPC for PHP远程代码注入攻击" name_en_US="XML-RPC for PHP Remote Code Injection" name_zh_CN="XML-RPC for PHP远程代码注入攻击" name_zh_TW="XML-RPC for PHP遠程代碼注入攻擊" ruleid="20546" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="CuteNews远程PHP代码注入攻击" name_en_US="CuteNews Remote PHP Code Injection" name_zh_CN="CuteNews远程PHP代码注入攻击" name_zh_TW="CuteNews遠程PHP代碼注入攻擊" ruleid="20547" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Microsoft IIS .htw远程跨站脚本攻击" name_en_US="Microsoft IIS .htw Remote Cross-site Scripting" name_zh_CN="Microsoft IIS .htw远程跨站脚本攻击" name_zh_TW="Microsoft IIS .htw遠程跨站腳本攻擊" ruleid="20544" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Mantis bug_sponsorship_list_view_inc.php远程文件包含攻击" name_en_US="Mantis bug_sponsorship_list_view_inc.php Remote File Inclusion" name_zh_CN="Mantis bug_sponsorship_list_view_inc.php远程文件包含攻击" name_zh_TW="Mantis bug_sponsorship_list_view_inc.php遠程文件包含攻擊" ruleid="20545" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE HRAlign客户端缓冲区溢出攻击" name_en_US="Microsoft IE HRAlign Client Buffer Overflow" name_zh_CN="Microsoft IE HRAlign客户端缓冲区溢出攻击" name_zh_TW="Microsoft IE HRAlign客戶端緩沖區溢出攻擊" ruleid="20542" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE Object客户端数据远程命令执行攻击" name_en_US="Microsoft IE Object Client Data Remote Code Execution" name_zh_CN="Microsoft IE Object客户端数据远程命令执行攻击" name_zh_TW="Microsoft IE Object客戶端數據遠程命令執行攻擊" ruleid="20543" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows即插即用UMPNPMGR.DLL wsprintfW远程溢出攻击" name_en_US="Microsoft Windows Plug and Play UMPNPMGR.DLL wsprintfW Remote Buffer Overflow" name_zh_CN="Microsoft Windows即插即用UMPNPMGR.DLL wsprintfW远程溢出攻击" name_zh_TW="Microsoft Windows即插即用UMPNPMGR.DLL wsprintfW遠程溢出攻擊" ruleid="20540" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE Object Tag客户端缓冲区溢出攻击" name_en_US="Microsoft IE Object Tag Client Buffer Overflow" name_zh_CN="Microsoft IE Object Tag客户端缓冲区溢出攻击" name_zh_TW="Microsoft IE Object Tag客戶端緩沖區溢出攻擊" ruleid="20541" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网上彩票投注软件ok178彩票用户登录" name_en_US="Online Betting Lottery Software ok178 Lottery User Login" name_zh_CN="网上彩票投注软件ok178彩票用户登录" name_zh_TW="網上彩票投注軟件ok178彩票用戶登錄" ruleid="50345" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723887" module="0" name="Snort Back Orifice预处理器远程栈溢出攻击" name_en_US="Snort Back Orifice Preprocessor Remote Stack Overflow" name_zh_CN="Snort Back Orifice预处理器远程栈溢出攻击" name_zh_TW="Snort Back Orifice預處理器遠程棧溢出攻擊" ruleid="20548" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Phorum search.php CGI脚本SQL注入攻击" name_en_US="Phorum search.php CGI Script SQL Injection" name_zh_CN="Phorum search.php CGI脚本SQL注入攻击" name_zh_TW="Phorum search.php CGI腳本SQL注入攻擊" ruleid="20549" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件QQ2009 beta2离线文件传输" name_en_US="Instant Messaging Software QQ2009 beta2 File Offline Transmission" name_zh_CN="即时通信软件QQ2009 beta2离线文件传输" name_zh_TW="即時通信軟件QQ2009 beta2離線文件傳輸" ruleid="50344" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用WEBgais websendmail脚本漏洞远程执行命令" name_en_US="Remote Code Execution via WEBgais websendmail Script Vulnerability" name_zh_CN="利用WEBgais websendmail脚本漏洞远程执行命令" name_zh_TW="利用WEBgais websendmail腳本漏洞遠程執行命令" ruleid="20089" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440793" module="0" name="HTTP访问URL" name_en_US="HTTP Access URL" name_zh_CN="HTTP访问URL" name_zh_TW="HTTP訪問URL" ruleid="50268" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议Destination AliasAddress Choice扩展选项数据畸形" name_en_US="H.225 Protocol Destination AliasAddress Choice Extended Option Malformed Data" name_zh_CN="H.225协议Destination AliasAddress Choice扩展选项数据畸形" name_zh_TW="H.225協議Destination AliasAddress Choice擴展選項數據畸形" ruleid="10155" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635097" module="0" name="POP收邮件" name_en_US="POP Recieve Mail" name_zh_CN="POP收邮件" name_zh_TW="POP收郵件" ruleid="50269" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Invision Power Board index.php st参数远程SQL注入攻击" name_en_US="Invision Power Board index.php st Parameter Remote SQL Injection" name_zh_CN="Invision Power Board index.php st参数远程SQL注入攻击" name_zh_TW="Invision Power Board index.php st參數遠程SQL注入攻擊" ruleid="20494" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpBB kb.php CGI脚本SQL注入攻击" name_en_US="phpBB kb.php CGI Script SQL Injection" name_zh_CN="phpBB kb.php CGI脚本SQL注入攻击" name_zh_TW="phpBB kb.php CGI腳本SQL注入攻擊" ruleid="20495" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="UBB.threads printthread.php CGI脚本SQL注入攻击" name_en_US="UBB.threads printthread.php CGI Script SQL Injection" name_zh_CN="UBB.threads printthread.php CGI脚本SQL注入攻击" name_zh_TW="UBB.threads printthread.php CGI腳本SQL注入攻擊" ruleid="20496" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497775" module="0" name="Microsoft Exchange Server SMTP服务畸形X-LINK2STATE命令远程溢出攻击" name_en_US="Microsoft Exchange Server SMTP Service Malformed X-LINK2STATE Command Remote Buffer Overflow" name_zh_CN="Microsoft Exchange Server SMTP服务畸形X-LINK2STATE命令远程溢出攻击" name_zh_TW="Microsoft Exchange Server SMTP服務畸形X-LINK2STATE命令遠程溢出攻擊" ruleid="20497" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用phpCoin auxpage.php CGI脚本远程执行命令攻击" name_en_US="Remote Code Execution via phpCoin auxpage.php CGI Script" name_zh_CN="利用phpCoin auxpage.php CGI脚本远程执行命令攻击" name_zh_TW="利用phpCoin auxpage.php CGI腳本遠程執行命令攻擊" ruleid="20490" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PunBB profile.php CGI脚本远程SQL注入攻击" name_en_US="PunBB profile.php CGI Script Remote SQL Injection" name_zh_CN="PunBB profile.php CGI脚本远程SQL注入攻击" name_zh_TW="PunBB profile.php CGI腳本遠程SQL注入攻擊" ruleid="20491" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PostNuke News模块CGI脚本SQL注入攻击" name_en_US="PostNuke News Module CGI Script Remote SQL Injection" name_zh_CN="PostNuke News模块CGI脚本SQL注入攻击" name_zh_TW="PostNuke News模塊CGI腳本SQL注入攻擊" ruleid="20492" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHP-Nuke querylang参数CGI漏洞攻击" name_en_US="PHP-Nuke querylang Parameter CGI Vulnerability" name_zh_CN="PHP-Nuke querylang参数CGI漏洞攻击" name_zh_TW="PHP-Nuke querylang參數CGI漏洞攻擊" ruleid="20493" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Transmission Scout木马通信" name_en_US="Trojan Transmission Scout Communication on Windows" name_zh_CN="Windows系统下Transmission Scout木马通信" name_zh_TW="Windows系統下Transmission Scout木馬通信" ruleid="40590" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Bugbear.M蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Bugbear.M" name_zh_CN="SMTP服务发送W32.Bugbear.M蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Bugbear.M蠕蟲病毒郵件" ruleid="40635" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PhotoPost member.php CGI脚本SQL注入攻击" name_en_US="PhotoPost member.php CGI Script SQL Injection" name_zh_CN="PhotoPost member.php CGI脚本SQL注入攻击" name_zh_TW="PhotoPost member.php CGI腳本SQL注入攻擊" ruleid="20498" visible="true" />
			<rule action=" db  screen " enabled="true" group="78645274" module="0" name="TFTPD32远程格式串文件名拒绝服务攻击" name_en_US="TFTPD32 Username Remote Format String Denial of Service" name_zh_CN="TFTPD32远程格式串文件名拒绝服务攻击" name_zh_TW="TFTPD32遠程格式串文件名拒絕服務攻擊" ruleid="10158" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具Vagaa用户登录" name_en_US="P2P File Sharing Tool Vagaa User Login" name_zh_CN="P2P文件共享工具Vagaa用户登录" name_zh_TW="P2P文件共享工具Vagaa用戶登錄" ruleid="50153" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315034" module="0" name="Simple PHP Blog comment_delete_cgi.php远程文件删除攻击" name_en_US="Simple PHP Blog comment_delete_cgi.php Remote File Deletion" name_zh_CN="Simple PHP Blog comment_delete_cgi.php远程文件删除攻击" name_zh_TW="Simple PHP Blog comment_delete_cgi.php遠程文件刪除攻擊" ruleid="10159" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="漏洞扫描器Cybercop Scanner EXPN命令探测SMTP服务" name_en_US="Cybercop Scanner EXPN Command Detecting SMTP Service" name_zh_CN="漏洞扫描器Cybercop Scanner EXPN命令探测SMTP服务" name_zh_TW="漏洞掃描器Cybercop Scanner EXPN命令探測SMTP服務" ruleid="30239" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840693" module="0" name="Traceroute ICMP/IPOPT探测网络拓扑操作" name_en_US="Traceroute ICMP/IPOPT Network Topology Detection" name_zh_CN="Traceroute ICMP/IPOPT探测网络拓扑操作" name_zh_TW="Traceroute ICMP/IPOPT探測網絡拓撲操作" ruleid="30234" visible="true" />
			<rule action=" db  screen " enabled="true" group="202383414" module="0" name="漏洞扫描器Cybercop Scanner Web服务探测" name_en_US="Cybercop Scanner Web Service Detection" name_zh_CN="漏洞扫描器Cybercop Scanner Web服务探测" name_zh_TW="漏洞掃描器Cybercop Scanner Web服務探測" ruleid="30237" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840693" module="0" name="Traceroute ICMP探测网络拓扑操作" name_en_US="Traceroute ICMP Network Topology Detection" name_zh_CN="Traceroute ICMP探测网络拓扑操作" name_zh_TW="Traceroute ICMP探測網絡拓撲操作" ruleid="30236" visible="true" />
			<rule action=" db  screen " enabled="true" group="137363750" module="0" name="Wu-ftpd SITE EXEC命令远程格式串漏洞攻击" name_en_US="Wu-ftpd SITE EXEC Command Remote Format String Vulnerability" name_zh_CN="Wu-ftpd SITE EXEC命令远程格式串漏洞攻击" name_zh_TW="Wu-ftpd SITE EXEC命令遠程格式串漏洞攻擊" ruleid="20129" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Ultors木马通信" name_en_US="Trojan Ultors Communication on Windows" name_zh_CN="Windows系统下Ultors木马通信" name_zh_TW="Windows系統下Ultors木馬通信" ruleid="40597" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用DotBr exec.php3脚本漏洞远程执行命令" name_en_US="Remote Code Execution via DotBr exec.php3 Script Vulnerability" name_zh_CN="利用DotBr exec.php3脚本漏洞远程执行命令" name_zh_TW="利用DotBr exec.php3腳本漏洞遠程執行命令" ruleid="20308" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用DotBr system.php3脚本漏洞远程执行命令" name_en_US="Remote Code Execution via DotBr system.php3 Script Vulnerability" name_zh_CN="利用DotBr system.php3脚本漏洞远程执行命令" name_zh_TW="利用DotBr system.php3腳本漏洞遠程執行命令" ruleid="20309" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用emailreader_execute_on_each_page.inc.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via emailreader_execute_on_each_page.inc.php Script Vulnerability" name_zh_CN="利用emailreader_execute_on_each_page.inc.php脚本漏洞远程执行命令" name_zh_TW="利用emailreader_execute_on_each_page.inc.php腳本漏洞遠程執行命令" ruleid="20304" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用email.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via email.php Script Vulnerability" name_zh_CN="利用email.php脚本漏洞远程执行命令" name_zh_TW="利用email.php腳本漏洞遠程執行命令" ruleid="20305" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="利用PHP-Nuke modules.php脚本漏洞获取口令HASH攻击" name_en_US="Password HASH Disclosure via PHP-Nuke modules.php Script Vulnerability" name_zh_CN="利用PHP-Nuke modules.php脚本漏洞获取口令HASH攻击" name_zh_TW="利用PHP-Nuke modules.php腳本漏洞獲取口令HASH攻擊" ruleid="20306" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用D-Forum CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via D-Forum CGI Script Vulnerability" name_zh_CN="利用D-Forum CGI脚本漏洞远程执行命令" name_zh_TW="利用D-Forum CGI腳本漏洞遠程執行命令" ruleid="20307" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用YABB SE news.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via YABB SE news.php Script Vulnerability" name_zh_CN="利用YABB SE news.php脚本漏洞远程执行命令" name_zh_TW="利用YABB SE news.php腳本漏洞遠程執行命令" ruleid="20301" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用YABB SE packages.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via YABB SE packages.php Script Vulnerability" name_zh_CN="利用YABB SE packages.php脚本漏洞远程执行命令" name_zh_TW="利用YABB SE packages.php腳本漏洞遠程執行命令" ruleid="20302" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="利用myphpPageTool CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via myphpPageTool CGI Script Vulnerability" name_zh_CN="利用myphpPageTool CGI脚本漏洞远程执行命令" name_zh_TW="利用myphpPageTool CGI腳本漏洞遠程執行命令" ruleid="20303" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Matt Wright textcounter.pl脚本漏洞扫描探测" name_en_US="Matt Wright textcounter.pl Script Vulnerability Detection" name_zh_CN="Matt Wright textcounter.pl脚本漏洞扫描探测" name_zh_TW="Matt Wright textcounter.pl腳本漏洞掃描探測" ruleid="30121" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用Guestbook wguest.exe程序漏洞读取文件" name_en_US="File Reading via Guestbook wguest.exe Vulnerability" name_zh_CN="利用Guestbook wguest.exe程序漏洞读取文件" name_zh_TW="利用Guestbook wguest.exe程序漏洞讀取文件" ruleid="30120" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="WEBgais websendmail脚本漏洞扫描探测" name_en_US="WEBgais websendmail Script Vulnerability Detection" name_zh_CN="WEBgais websendmail脚本漏洞扫描探测" name_zh_TW="WEBgais websendmail腳本漏洞掃描探測" ruleid="30123" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="WEBgais webgais脚本漏洞扫描探测" name_en_US="WEBgais webgais Script Vulnerability Detection" name_zh_CN="WEBgais webgais脚本漏洞扫描探测" name_zh_TW="WEBgais webgais腳本漏洞掃描探測" ruleid="30122" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="IRIX wrap脚本漏洞扫描探测" name_en_US="IRIX wrap Script Vulnerability Detection" name_zh_CN="IRIX wrap脚本漏洞扫描探测" name_zh_TW="IRIX wrap腳本漏洞掃描探測" ruleid="30125" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用IRIX wrap脚本漏洞远程浏览服务器目录" name_en_US="Remote Server Direcotry Browsing via IRIX wrap Script Vulnerability" name_zh_CN="利用IRIX wrap脚本漏洞远程浏览服务器目录" name_zh_TW="利用IRIX wrap腳本漏洞遠程浏覽服務器目錄" ruleid="30124" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Zeroboard _head.php脚本漏洞扫描探测" name_en_US="Zeroboard _head.php Script Vulnerability Detection" name_zh_CN="Zeroboard _head.php脚本漏洞扫描探测" name_zh_TW="Zeroboard _head.php腳本漏洞掃描探測" ruleid="30126" visible="true" />
			<rule action=" db  screen " enabled="false" group="69214262" module="0" name="Microsoft IIS 4.0 .htr ISAPI映射扫描探测" name_en_US="Microsoft IIS 4.0 .htr ISAPI Mapping Detection" name_zh_CN="Microsoft IIS 4.0 .htr ISAPI映射扫描探测" name_zh_TW="Microsoft IIS 4.0 .htr ISAPI映射掃描探測" ruleid="30128" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="2" name="阻止用户访问可疑网页" name_en_US="Block User Browsing Suspicious Web Page" name_zh_CN="阻止用户访问可疑网页" name_zh_TW="阻止用戶訪問可疑網頁" ruleid="40816" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="2" name="用户访问可疑网页" name_en_US="User Browsing Suspicious Web Page" name_zh_CN="用户访问可疑网页" name_zh_TW="用戶訪問可疑網頁" ruleid="40817" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223050" module="0" name="HTTP协议可疑命令请求" name_en_US="HTTP Protocol Request with Suspicious Command" name_zh_CN="HTTP协议可疑命令请求" name_zh_TW="HTTP協議可疑命令請求" ruleid="40814" visible="false" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rusersd服务存在性TCP扫描探测" name_en_US="Solaris rpc.rusersd Service TCP Detection" name_zh_CN="Solaris rpc.rusersd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rusersd服務存在性TCP掃描探測" ruleid="30059" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Dark Connection Inside木马通信" name_en_US="Trojan Dark Connection Inside Communication on Windows" name_zh_CN="Windows系统下Dark Connection Inside木马通信" name_zh_TW="Windows系統下Dark Connection Inside木馬通信" ruleid="40498" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下DFch木马通信" name_en_US="Trojan DFch Communication on Windows" name_zh_CN="Windows系统下DFch木马通信" name_zh_TW="Windows系統下DFch木馬通信" ruleid="40499" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.admind服务存在性UDP扫描探测" name_en_US="Solaris rpc.admind Service UDP Detection" name_zh_CN="Solaris rpc.admind服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.admind服務存在性UDP掃描探測" ruleid="30051" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rstatd服务存在性UDP扫描探测" name_en_US="Solaris rpc.rstatd Service UDP Detection" name_zh_CN="Solaris rpc.rstatd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rstatd服務存在性UDP掃描探測" ruleid="30050" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Connection木马通信" name_en_US="Trojan Connection Communication on Windows" name_zh_CN="Windows系统下Connection木马通信" name_zh_TW="Windows系統下Connection木馬通信" ruleid="40494" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Crack Down木马通信" name_en_US="Trojan Crack Down Communication on Windows" name_zh_CN="Windows系统下Crack Down木马通信" name_zh_TW="Windows系統下Crack Down木馬通信" ruleid="40495" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Bionet木马通信" name_en_US="Trojan Bionet Communication on Windows" name_zh_CN="Windows系统下Bionet木马通信" name_zh_TW="Windows系統下Bionet木馬通信" ruleid="40492" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Chupacabra木马通信" name_en_US="Trojan Chupacabra Communication on Windows" name_zh_CN="Windows系统下Chupacabra木马通信" name_zh_TW="Windows系統下Chupacabra木馬通信" ruleid="40493" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypupdated服务存在性UDP扫描探测" name_en_US="Solaris rpc.ypupdated Service UDP Detection" name_zh_CN="Solaris rpc.ypupdated服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.ypupdated服務存在性UDP掃描探測" ruleid="30057" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypserv服务存在性UDP扫描探测" name_en_US="Solaris rpc.ypserv Service UDP Detection" name_zh_CN="Solaris rpc.ypserv服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.ypserv服務存在性UDP掃描探測" ruleid="30056" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="QQ超级旋风HTTP协议文件下载" name_en_US="QQ Downloading Files From HTTP Protocol" name_zh_CN="QQ超级旋风HTTP协议文件下载" name_zh_TW="QQ超級旋風HTTP協議文件下載" ruleid="50360" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486041" module="0" name="Windows SMB协议用户认证失败" name_en_US="Windows SMB User Authentication Failed" name_zh_CN="Windows SMB协议用户认证失败" name_zh_TW="Windows SMB協議用戶認證失敗" ruleid="50363" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Spook木马建立连接" name_en_US="Trojan Spook Connection on Windows" name_zh_CN="Windows系统下Spook木马建立连接" name_zh_TW="Windows系統下Spook木馬建立連接" ruleid="40658" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下风雪木马客户端与服务端建立连接" name_en_US="Trojan Snowdoor Client Connection to Server on Windows" name_zh_CN="Windows系统下风雪木马客户端与服务端建立连接" name_zh_TW="Windows系統下風雪木馬客戶端與服務端建立連接" ruleid="40659" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="LimeWire文件下载" name_en_US="LimeWire File Downloading" name_zh_CN="LimeWire文件下载" name_zh_TW="LimeWire文件下載" ruleid="50367" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="P2P文件共享工具Winny通过TCP协议进行文件传输" name_en_US="Winny Downloading files Through TCP Protocol" name_zh_CN="P2P文件共享工具Winny通过TCP协议进行文件传输" name_zh_TW="P2P文件共享工具Winny通過TCP協議進行文件傳輸" ruleid="50366" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下灰鸽子木马MINI版客户端连接服务器" name_en_US="Trojan Huigezi MINI Client Connnection to Server on Windows" name_zh_CN="Windows系统下灰鸽子木马MINI版客户端连接服务器" name_zh_TW="Windows系統下灰鴿子木馬MINI版客戶端連接服務器" ruleid="40654" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="Windows系统下Worm.Agobot蠕虫通过ISA防火墙活动" name_en_US="Worm.Agobot on Windows Breaching ISA Firewall" name_zh_CN="Windows系统下Worm.Agobot蠕虫通过ISA防火墙活动" name_zh_TW="Windows系統下Worm.Agobot蠕蟲通過ISA防火牆活動" ruleid="40655" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下网络神偷木马通过80端口通信" name_en_US="Nethief Communication on Port 80 on Windows" name_zh_CN="Windows系统下网络神偷木马通过80端口通信" name_zh_TW="Windows系統下網絡神偷木馬通過80端口通信" ruleid="40656" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352070" module="0" name="POP3服务畸形邮件溢出客户端攻击" name_en_US="POP3 Service Malformed Mail Overflow on Client" name_zh_CN="POP3服务畸形邮件溢出客户端攻击" name_zh_TW="POP3服務畸形郵件溢出客戶端攻擊" ruleid="40657" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Darby蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Darby" name_zh_CN="SMTP服务发送W32.Darby蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Darby蠕蟲病毒郵件" ruleid="40650" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423950" module="0" name="利用CGI程序执行SQL注入攻击" name_en_US="SQL Injection Execution via CGI Program" name_zh_CN="利用CGI程序执行SQL注入攻击" name_zh_TW="利用CGI程序執行SQL注入攻擊" ruleid="40651" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下灰鸽子木马VIP专业版客户端连接服务器" name_en_US="Trojan Huigezi VIP Professional Client and Server Connection" name_zh_CN="Windows系统下灰鸽子木马VIP专业版客户端连接服务器" name_zh_TW="Windows系統下灰鴿子木馬VIP專業版客戶端連接服務器" ruleid="40652" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下灰鸽子木马辐射版客户端连接服务器" name_en_US="Trojan Huigezi Radiation Client Connection to Server on Windows" name_zh_CN="Windows系统下灰鸽子木马辐射版客户端连接服务器" name_zh_TW="Windows系統下灰鴿子木馬輻射版客戶端連接服務器" ruleid="40653" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Netspy木马通信" name_en_US="Trojan Netspy Trojan Communication on Windows" name_zh_CN="Windows系统下Netspy木马通信" name_zh_TW="Windows系統下Netspy木馬通信" ruleid="40337" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Subseven木马通信" name_en_US="Trojan Subseven Communication on Windows" name_zh_CN="Windows系统下Subseven木马通信" name_zh_TW="Windows系統下Subseven木馬通信" ruleid="40336" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下wollf木马建立连接" name_en_US="Trojan wollf Connection on Windows" name_zh_CN="Windows系统下wollf木马建立连接" name_zh_TW="Windows系統下wollf木馬建立連接" ruleid="40335" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASP Rootkit Webshell检测" name_en_US="ASP Rootkit Webshell Detection" name_zh_CN="ASP Rootkit Webshell检测" name_zh_TW="ASP Rootkit Webshell檢測" ruleid="40955" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="通过Web服务执行.cmd程序" name_en_US=".cmd Program Execution via Web Service" name_zh_CN="通过Web服务执行.cmd程序" name_zh_TW="通過Web服務執行.cmd程序" ruleid="40250" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下xtcp木马建立连接" name_en_US="Trojan xtcp Connection on Windows" name_zh_CN="Windows系统下xtcp木马建立连接" name_zh_TW="Windows系統下xtcp木馬建立連接" ruleid="40334" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="iCat Managers carbo.dll脚本漏洞扫描探测" name_en_US="iCat Managers carbo.dll Script Vulnerability Detection" name_zh_CN="iCat Managers carbo.dll脚本漏洞扫描探测" name_zh_TW="iCat Managers carbo.dll腳本漏洞掃描探測" ruleid="40256" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft IIS 4.0 ism.dll脚本漏洞扫描探测" name_en_US="Microsoft IIS 4.0 ism.dll Script Vulnerability Detection" name_zh_CN="Microsoft IIS 4.0 ism.dll脚本漏洞扫描探测" name_zh_TW="Microsoft IIS 4.0 ism.dll腳本漏洞掃描探測" ruleid="40258" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下WinShell木马建立连接" name_en_US="Trojan WinShell Connection on Windows" name_zh_CN="Windows系统下WinShell木马建立连接" name_zh_TW="Windows系統下WinShell木馬建立連接" ruleid="40331" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下tini木马连接建立" name_en_US="Trojan tini Connection on Windows" name_zh_CN="Windows系统下tini木马连接建立" name_zh_TW="Windows系統下tini木馬連接建立" ruleid="40330" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下蓝色火焰木马通信" name_en_US="Trojan BlueFlame Communication on Windows" name_zh_CN="Windows系统下蓝色火焰木马通信" name_zh_TW="Windows系統下藍色火焰木馬通信" ruleid="40755" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Win32.Inject.zy木马网络数据通信" name_en_US="TROJAN Win32.Inject.zy Checkin Post" name_zh_CN="Win32.Inject.zy木马网络数据通信" name_zh_TW="Win32.Inject.zy木馬網絡數據通信" ruleid="40879" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏石器时代客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Stone Age&quot;" name_zh_CN="网络游戏石器时代客户端连接服务器" name_zh_TW="網絡遊戲石器時代客戶端連接服務器" ruleid="50109" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏坦克宝贝客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Tankbaay&quot;" name_zh_CN="网络游戏坦克宝贝客户端连接服务器" name_zh_TW="網絡遊戲坦克寶貝客戶端連接服務器" ruleid="50108" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Danton木马通信" name_en_US="Trojan Danton Communication on Windows" name_zh_CN="Windows系统下Danton木马通信" name_zh_TW="Windows系統下Danton木馬通信" ruleid="40497" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏泡泡堂客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;paopaotang&quot;" name_zh_CN="网络游戏泡泡堂客户端连接服务器" name_zh_TW="網絡遊戲泡泡堂客戶端連接服務器" ruleid="50101" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏平台浩方对战登录" name_en_US="Online Game Platform &quot;cga.com.cn&quot; Login" name_zh_CN="网络游戏平台浩方对战登录" name_zh_TW="網絡遊戲平台浩方對戰登錄" ruleid="50100" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏传奇世界客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;The Legend&quot;" name_zh_CN="网络游戏传奇世界客户端连接服务器" name_zh_TW="網絡遊戲傳奇世界客戶端連接服務器" ruleid="50103" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件QQ访问游戏平台" name_en_US="Instant Messaging Software QQ Game Access Platform" name_zh_CN="即时通信软件QQ访问游戏平台" name_zh_TW="即時通信軟件QQ訪問遊戲平台" ruleid="50102" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏封神榜客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;The Gods&apos; Myth&quot;" name_zh_CN="网络游戏封神榜客户端连接服务器" name_zh_TW="網絡遊戲封神榜客戶端連接服務器" ruleid="50105" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏大话西游客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Dahuaxiyou&quot;" name_zh_CN="网络游戏大话西游客户端连接服务器" name_zh_TW="網絡遊戲大話西遊客戶端連接服務器" ruleid="50104" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏平台联众游戏登录" name_en_US="Online Game Platform &quot;Ourgame&quot; Login" name_zh_CN="网络游戏平台联众游戏登录" name_zh_TW="網絡遊戲平台聯衆遊戲登錄" ruleid="50107" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏剑侠情缘客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Knights&apos; Affection&quot;" name_zh_CN="网络游戏剑侠情缘客户端连接服务器" name_zh_TW="網絡遊戲劍俠情緣客戶端連接服務器" ruleid="50106" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="虚拟局域网组建软件 Hamachi 通信行为" name_en_US="VLAN Formation Software Hamachi Communiction" name_zh_CN="虚拟局域网组建软件 Hamachi 通信行为" name_zh_TW="虛擬局域網組建軟件 Hamachi 通信行爲" ruleid="50442" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="PPTV网络电视流媒体播放(UDP)" name_en_US="PPTV Network TV Streaming Media Playing (UDP)" name_zh_CN="PPTV网络电视流媒体播放(UDP)" name_zh_TW="PPTV網絡電視流媒體播放(UDP)" ruleid="50193" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Microsoft IIS FTPd服务NLST命令远程栈溢出攻击" name_en_US="Microsoft IIS FTPd NLST Remote Buffer Overflow Attack " name_zh_CN="Microsoft IIS FTPd服务NLST命令远程栈溢出攻击" name_zh_TW="Microsoft IIS FTPd服務NLST命令遠程棧溢出攻擊" ruleid="21045" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Windows TCP/IP小时间戳远程代码执行攻击" name_en_US="Windows TCP/IP Smaller Timestamp Remote Code Execution" name_zh_CN="Windows TCP/IP小时间戳远程代码执行攻击" name_zh_TW="Windows TCP/IP小時間戳遠程代碼執行攻擊" ruleid="21046" visible="true" />
			<rule action=" db  screen " enabled="true" group="95453231" module="0" name="SMB错误命令绕过检查远程代码执行攻击" name_en_US="SMB Incorrect Command Bypasses Checks Remote Code Execution Attack" name_zh_CN="SMB错误命令绕过检查远程代码执行攻击" name_zh_TW="SMB錯誤命令繞過檢查遠程代碼執行攻擊" ruleid="21047" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Visual Studio ATL库COM对象初始化远程代码执行攻击" name_en_US="Visual Studio ATL Library COM Object Initialize Remote Code Execution" name_zh_CN="Visual Studio ATL库COM对象初始化远程代码执行攻击" name_zh_TW="Visual Studio ATL庫COM對象初始化遠程代碼執行攻擊" ruleid="21040" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="微软活动模板库(ATL) ReadFromStream函数远程代码执行攻击" name_en_US="Microsoft Active Template Library (ATL) ReadFromStream Function Remote Code Execution" name_zh_CN="微软活动模板库(ATL) ReadFromStream函数远程代码执行攻击" name_zh_TW="微軟活動模板庫(ATL) ReadFromStream函數遠程代碼執行攻擊" ruleid="21041" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="微软活动模板库(ATL) Load方法远程代码执行攻击" name_en_US="Microsoft Active Template Library (ATL) Load method Remote Code Execution" name_zh_CN="微软活动模板库(ATL) Load方法远程代码执行攻击" name_zh_TW="微軟活動模板庫(ATL) Load方法遠程代碼執行攻擊" ruleid="21042" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="WINS未验证整数溢出远程代码执行攻击" name_en_US="WINS Unauthenticated Integer Overflow Remote Code Execution" name_zh_CN="WINS未验证整数溢出远程代码执行攻击" name_zh_TW="WINS未驗證整數溢出遠程代碼執行攻擊" ruleid="21043" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="IIS中FTP服务远程代码执行攻击" name_en_US="FTP Service for Internet Information Services Could Cause Remote Code Execution Attack" name_zh_CN="IIS中FTP服务远程代码执行攻击" name_zh_TW="IIS中FTP服務遠程代碼執行攻擊" ruleid="21048" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="WSDAPI服务远程代码执行攻击" name_en_US="WSDAPI Service Remote Code Execution Attack" name_zh_CN="WSDAPI服务远程代码执行攻击" name_zh_TW="WSDAPI服務遠程代碼執行攻擊" ruleid="21049" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Backdoor.Win32.VB.brg Reporting Version木马网络数据通信" name_en_US="TROJAN Backdoor.Win32.VB.brg C&amp;C Reporting Version" name_zh_CN="Backdoor.Win32.VB.brg Reporting Version木马网络数据通信" name_zh_TW="Backdoor.Win32.VB.brg Reporting Version木馬網絡數據通信" ruleid="40888" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft GDI+ EMF图形处理整数溢出内存破坏漏洞（MS11-029）" name_en_US="Vulnerability in GDI+ Could Allow Remote Code Execution" name_zh_CN="Microsoft GDI+ EMF图形处理整数溢出内存破坏漏洞（MS11-029）" name_zh_TW="Microsoft GDI+ EMF圖形處理整數溢出內存破壞漏洞（MS11-029）" ruleid="21220" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Windows Fax Cover Page Editor 远程代码执行漏洞" name_en_US="Vulnerability in Windows Fax Cover Page Editor Could Allow Remote Code Execution" name_zh_CN="Windows Fax Cover Page Editor 远程代码执行漏洞" name_zh_TW="Windows Fax Cover Page Editor 遠程代碼執行漏洞" ruleid="21221" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE布局处理释放后重用远程内存破坏漏洞(MS11-018)" name_en_US="Cumulative Security Update for Internet Explorer" name_zh_CN="Microsoft IE布局处理释放后重用远程内存破坏漏洞(MS11-018)" name_zh_TW="Microsoft IE布局處理釋放後重用遠程內存破壞漏洞(MS11-018)" ruleid="21222" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Internet Explorer安全漏洞" name_en_US="Cumulative Security Update for Internet Explorer" name_zh_CN="Internet Explorer安全漏洞" name_zh_TW="Internet Explorer安全漏洞" ruleid="21223" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE JavaScript跨域信息泄露漏洞(MS11-018)" name_en_US="Cumulative Security Update for Internet Explorer" name_zh_CN="Microsoft IE JavaScript跨域信息泄露漏洞(MS11-018)" name_zh_TW="Microsoft IE JavaScript跨域信息泄露漏洞(MS11-018)" ruleid="21224" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE多个远程代码执行漏洞" name_en_US="Cumulative Security Update for Internet Explorer" name_zh_CN="Microsoft IE多个远程代码执行漏洞" name_zh_TW="Microsoft IE多個遠程代碼執行漏洞" ruleid="21225" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Windows OpenType Compact Font Format (CFF) Driver 远程代码执行漏洞" name_en_US="Vulnerability in the Microsoft Windows OpenType Compact Font Format (CFF) Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Compact Font Format (CFF) Driver 远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Compact Font Format (CFF) Driver 遠程代碼執行漏洞" ruleid="21226" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE Developer Tools ActiveX控件远程内存破坏漏洞（MS10-034）" name_en_US="Cumulative Security Update for ActiveX Kill Bits" name_zh_CN="Microsoft IE Developer Tools ActiveX控件远程内存破坏漏洞（MS10-034）" name_zh_TW="Microsoft IE Developer Tools ActiveX控件遠程內存破壞漏洞（MS10-034）" ruleid="21227" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="ActiveX Kill Bits安全漏洞" name_en_US="Cumulative Security Update for ActiveX Kill Bits" name_zh_CN="ActiveX Kill Bits安全漏洞" name_zh_TW="ActiveX Kill Bits安全漏洞" ruleid="21228" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Windows Messenger ActiveX控件远程代码执行漏洞（MS11-027）" name_en_US="Cumulative Security Update for ActiveX Kill Bits" name_zh_CN="Microsoft Windows Messenger ActiveX控件远程代码执行漏洞（MS11-027）" name_zh_TW="Microsoft Windows Messenger ActiveX控件遠程代碼執行漏洞（MS11-027）" ruleid="21229" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="NullSession Cookie Crash 漏洞" name_en_US="cve-2011-2012 NullSession Cookie Crash Vulnerability" name_zh_CN="NullSession Cookie Crash 漏洞" name_zh_TW="NullSession Cookie Crash 漏洞" ruleid="10313" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Snabase.exe Endless loop 拒绝服务攻击漏洞" name_en_US="cve-2011-2007 Endless loop DoS in snabase.exe Vulnerability" name_zh_CN="Snabase.exe Endless loop 拒绝服务攻击漏洞" name_zh_TW="Snabase.exe Endless loop 拒絕服務攻擊漏洞" ruleid="10314" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Sunway ForceControl AngelServer Type 6拒绝服务漏洞" name_en_US="Sunway ForceControl AngelServer Type 6 Denial of Service Vulnerability" name_zh_CN="Sunway ForceControl AngelServer Type 6拒绝服务漏洞" name_zh_TW="Sunway ForceControl AngelServer Type 6拒絕服務漏洞" ruleid="10315" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Sunway ForceControl AngelServer Type 7 重启拒绝服务漏洞" name_en_US="Sunway ForceControl AngelServer Type 7 Reboot Denial of Service Vulnerability" name_zh_CN="Sunway ForceControl AngelServer Type 7 重启拒绝服务漏洞" name_zh_TW="Sunway ForceControl AngelServer Type 7 重啓拒絕服務漏洞" ruleid="10316" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Contacy.info 木马网络数据通信" name_en_US="TROJAN contacy.info Trojan Checkin User agent clk_jdfhid" name_zh_CN="Contacy.info 木马网络数据通信" name_zh_TW="Contacy.info 木馬網絡數據通信" ruleid="40881" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Win32.Small.dvs木马网络数据通信 " name_en_US="TROJAN Win32.Small.dvs or Related DDOS Checkin" name_zh_CN="Win32.Small.dvs木马网络数据通信 " name_zh_TW="Win32.Small.dvs木馬網絡數據通信 " ruleid="40880" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Sality Virus 木马网络数据通信" name_en_US="VIRUS Sality Virus User Agent Detected KUKU" name_zh_CN="Sality Virus 木马网络数据通信" name_zh_TW="Sality Virus 木馬網絡數據通信" ruleid="40882" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="ASPAdmin文件操作" name_en_US="ASPAdmin Files Operation" name_zh_CN="ASPAdmin文件操作" name_zh_TW="ASPAdmin文件操作" ruleid="40971" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="LanDesk管理套件Alert服务AOLSRVR.EXE缓冲区溢出攻击" name_en_US="LanDesk Management Suite Alert Service AOLSRVR.EXE Buffer Overflow" name_zh_CN="LanDesk管理套件Alert服务AOLSRVR.EXE缓冲区溢出攻击" name_zh_TW="LanDesk管理套件Alert服務AOLSRVR.EXE緩沖區溢出攻擊" ruleid="20809" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Agent URI解析远程代码执行攻击" name_en_US="Microsoft Agent URI Resolution Remote Code Execution" name_zh_CN="Microsoft Agent URI解析远程代码执行攻击" name_zh_TW="Microsoft Agent URI解析遠程代碼執行攻擊" ruleid="20808" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows UPnP远程栈溢出攻击" name_en_US="Microsoft Windows UPnP Remote Stack Overflow" name_zh_CN="Microsoft Windows UPnP远程栈溢出攻击" name_zh_TW="Microsoft Windows UPnP遠程棧溢出攻擊" ruleid="20807" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows DNS服务器RPC接口远程缓冲区溢出攻击" name_en_US="Microsoft Windows DNS Server RPC Interface Remote Buffer Overflow" name_zh_CN="Microsoft Windows DNS服务器RPC接口远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows DNS服務器RPC接口遠程緩沖區溢出攻擊" ruleid="20804" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080554" module="0" name="PHPWind passport_client.php文件UPDATE参数远程SQL注入攻击" name_en_US="PHPWind passport_client.php File UPDATE Parameter Remote SQL Injection" name_zh_CN="PHPWind passport_client.php文件UPDATE参数远程SQL注入攻击" name_zh_TW="PHPWind passport_client.php文件UPDATE參數遠程SQL注入攻擊" ruleid="20803" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546346" module="0" name="IMAP服务器SUBSCRIBE命令超长参数远程缓冲区溢出攻击" name_en_US="IMAP Server SUBSCRIBE Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="IMAP服务器SUBSCRIBE命令超长参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務器SUBSCRIBE命令超長參數遠程緩沖區溢出攻擊" ruleid="20802" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="CA Brightstor Backup Mediasvr.exe远程指令执行攻击" name_en_US="CA Brightstor Backup Mediasvr.exe Remote Code Execution" name_zh_CN="CA Brightstor Backup Mediasvr.exe远程指令执行攻击" name_zh_TW="CA Brightstor Backup Mediasvr.exe遠程指令執行攻擊" ruleid="20801" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows动画光标畸形ANI头结构远程栈溢出攻击" name_en_US="Microsoft Windows Cartoon Cursor Malformed ANI Header Structure Remote Stack Overflow" name_zh_CN="Microsoft Windows动画光标畸形ANI头结构远程栈溢出攻击" name_zh_TW="Microsoft Windows動畫光標畸形ANI頭結構遠程棧溢出攻擊" ruleid="20800" visible="true" />
			<rule action=" db  screen " enabled="false" group="368082966" module="0" name="指令Modem挂起ICMP消息攻击" name_en_US="Signal Modem Hang ICMP Message" name_zh_CN="指令Modem挂起ICMP消息攻击" name_zh_TW="指令Modem挂起ICMP消息攻擊" ruleid="10004" visible="false" />
			<rule action=" db  screen " enabled="true" group="150995222" module="0" name="Solaris rpc.ttdbserverd远程拒绝服务攻击" name_en_US="Solaris rpc.ttdbserverd Remote Denial of Service" name_zh_CN="Solaris rpc.ttdbserverd远程拒绝服务攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程拒絕服務攻擊" ruleid="10005" visible="true" />
			<rule action=" db  screen " enabled="true" group="165675302" module="0" name="Cassandra NNTPServer v1.10远程缓冲区溢出攻击" name_en_US="Cassandra NNTPServer v1.10 Remote Buffer Overflow" name_zh_CN="Cassandra NNTPServer v1.10远程缓冲区溢出攻击" name_zh_TW="Cassandra NNTPServer v1.10遠程緩沖區溢出攻擊" ruleid="10006" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834517" module="0" name="IP重叠分片包Teardrop拒绝服务攻击" name_en_US="IP Fragment Overlap Teardrop Denial of Service Attacks" name_zh_CN="IP重叠分片包Teardrop拒绝服务攻击" name_zh_TW="IP重疊分片包Teardrop拒絕服務攻擊" ruleid="10000" visible="false" />
			<rule action=" db  screen " enabled="true" group="213911574" module="0" name="FINGER服务代理递归查询拒绝服务攻击" name_en_US="FINGER Service Agent Recursive Query Denial of Service" name_zh_CN="FINGER服务代理递归查询拒绝服务攻击" name_zh_TW="FINGER服務代理遞歸查詢拒絕服務攻擊" ruleid="10001" visible="true" />
			<rule action=" db  screen " enabled="true" group="142639142" module="0" name="Sendmail 5.x MAIL命令远程执行命令攻击" name_en_US="Sendmail 5.x MAIL Remote Command Execution" name_zh_CN="Sendmail 5.x MAIL命令远程执行命令攻击" name_zh_TW="Sendmail 5.x MAIL命令遠程執行命令攻擊" ruleid="20157" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="访问Allaire ColdFusion startstop.html页面操作" name_en_US="Visiting Allaire ColdFusion startstop.html Page" name_zh_CN="访问Allaire ColdFusion startstop.html页面操作" name_zh_TW="訪問Allaire ColdFusion startstop.html頁面操作" ruleid="10009" visible="true" />
			<rule action=" db  screen " enabled="true" group="142606635" module="0" name="Exim auth_spa_server()缓冲区溢出攻击" name_en_US="Exim auth_spa_server() Buffer Overflow" name_zh_CN="Exim auth_spa_server()缓冲区溢出攻击" name_zh_TW="Exim auth_spa_server()緩沖區溢出攻擊" ruleid="20797" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Snort DCE/RPC预处理器远程缓冲区溢出攻击" name_en_US="Snort DCE/RPC Preprocessor Remote Buffer Overflow" name_zh_CN="Snort DCE/RPC预处理器远程缓冲区溢出攻击" name_zh_TW="Snort DCE/RPC預處理器遠程緩沖區溢出攻擊" ruleid="20796" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Wordpress 2.1.1远程命令执行后门攻击" name_en_US="Wordpress 2.1.1 Remote Command Execution Backdoor" name_zh_CN="Wordpress 2.1.1远程命令执行后门攻击" name_zh_TW="Wordpress 2.1.1遠程命令執行後門攻擊" ruleid="20795" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="PollMentor pollmentorres.asp远程SQL注入攻击" name_en_US="PollMentor pollmentorres.asp Remote SQL Injection" name_zh_CN="PollMentor pollmentorres.asp远程SQL注入攻击" name_zh_TW="PollMentor pollmentorres.asp遠程SQL注入攻擊" ruleid="20794" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2452 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2452 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2452 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2452 Adobe Flash Player 內存破壞漏洞" ruleid="21318" visible="true" />
			<rule action=" db  screen " enabled="true" group="138414119" module="0" name="SunOS 5.10/5.11 TELNET服务远程绕过认证访问攻击" name_en_US="SunOS 5.10/5.11 TELNET Service Remote Authentication Bypass" name_zh_CN="SunOS 5.10/5.11 TELNET服务远程绕过认证访问攻击" name_zh_TW="SunOS 5.10/5.11 TELNET服務遠程繞過認證訪問攻擊" ruleid="20792" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="CM68 News oldnews.inc.php远程文件包含攻击" name_en_US="CM68 News oldnews.inc.php Remote File Inclusion" name_zh_CN="CM68 News oldnews.inc.php远程文件包含攻击" name_zh_TW="CM68 News oldnews.inc.php遠程文件包含攻擊" ruleid="20791" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Blog:CMS NP_UserSharing.php远程文件包含攻击" name_en_US="Blog:CMS NP_UserSharing.php Remote File Inclusion" name_zh_CN="Blog:CMS NP_UserSharing.php远程文件包含攻击" name_zh_TW="Blog:CMS NP_UserSharing.php遠程文件包含攻擊" ruleid="20790" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2432 Adobe Acrobat 和 Adobe Reader U3D  Tiff 栈溢出漏洞" name_en_US="CVE-2011-2432 Adobe Acrobat and Reader U3D Tiff Remote Buffer Overflow Vulnerability" name_zh_CN="CVE-2011-2432 Adobe Acrobat 和 Adobe Reader U3D  Tiff 栈溢出漏洞" name_zh_TW="CVE-2011-2432 Adobe Acrobat 和 Adobe Reader U3D  Tiff 棧溢出漏洞" ruleid="21314" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2445 Adobe Flash Player ActionScript 3.0 内存破坏漏洞" name_en_US="CVE-2011-2445 Adobe Flash Player ActionScript 3.0  Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2445 Adobe Flash Player ActionScript 3.0 内存破坏漏洞" name_zh_TW="CVE-2011-2445 Adobe Flash Player ActionScript 3.0 內存破壞漏洞" ruleid="21315" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2450 Adobe Flash Player 栈溢出漏洞" name_en_US="CVE-2011-2450 Adobe Flash Player Heap Corruption Vulnerability" name_zh_CN="CVE-2011-2450 Adobe Flash Player 栈溢出漏洞" name_zh_TW="CVE-2011-2450 Adobe Flash Player 棧溢出漏洞" ruleid="21316" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2451 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2451 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2451 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2451 Adobe Flash Player 內存破壞漏洞" ruleid="21317" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Sunway ForceControl AngelServer 2001/TCP Type 0X53 栈溢出漏洞" name_en_US="Sunway ForceControl AngelServer 2001/TCP Type 0X53 Stack Overflow Vulnerability" name_zh_CN="Sunway ForceControl AngelServer 2001/TCP Type 0X53 栈溢出漏洞" name_zh_TW="Sunway ForceControl AngelServer 2001/TCP Type 0X53 棧溢出漏洞" ruleid="21310" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="miniBB bb_func_usernfo.php远程SQL注入攻击" name_en_US="miniBB bb_func_usernfo.php Remote SQL Injection" name_zh_CN="miniBB bb_func_usernfo.php远程SQL注入攻击" name_zh_TW="miniBB bb_func_usernfo.php遠程SQL注入攻擊" ruleid="20463" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="SNMP NetPower NetServer 内存破坏漏洞" name_en_US="SNMP NetPower NetServer Memory Corruption Vulnerability" name_zh_CN="SNMP NetPower NetServer 内存破坏漏洞" name_zh_TW="SNMP NetPower NetServer 內存破壞漏洞" ruleid="21312" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="MailEnable APPEND命令畸形参数远程缓冲区溢出攻击" name_en_US="MailEnable APPEND Command Malformed Parameter Remote Buffer Overflow" name_zh_CN="MailEnable APPEND命令畸形参数远程缓冲区溢出攻击" name_zh_TW="MailEnable APPEND命令畸形參數遠程緩沖區溢出攻擊" ruleid="20798" visible="true" />
			<rule action=" db  screen " enabled="true" group="162529579" module="0" name="Samba QFILEPATHINFO请求应答构造缓冲区溢出攻击" name_en_US="Samba QFILEPATHINFO Request Response Structure Buffer Overflow" name_zh_CN="Samba QFILEPATHINFO请求应答构造缓冲区溢出攻击" name_zh_TW="Samba QFILEPATHINFO請求應答構造緩沖區溢出攻擊" ruleid="20464" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Invision Power Board index.php远程SQL注入攻击" name_en_US="Invision Power Board index.php Remote SQL Injection" name_zh_CN="Invision Power Board index.php远程SQL注入攻击" name_zh_TW="Invision Power Board index.php遠程SQL注入攻擊" ruleid="20467" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="AwStates Referer字段处理远程执行任意命令攻击" name_en_US="AwStates Referer Field Handling Remote Arbitrary Command Execution" name_zh_CN="AwStates Referer字段处理远程执行任意命令攻击" name_zh_TW="AwStates Referer字段處理遠程執行任意命令攻擊" ruleid="20573" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MyBB showteam.php远程SQL注入攻击" name_en_US="MyBB showteam.php Remote SQL Injection" name_zh_CN="MyBB showteam.php远程SQL注入攻击" name_zh_TW="MyBB showteam.php遠程SQL注入攻擊" ruleid="20572" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Invision Power Board Army Mod远程SQL注入攻击" name_en_US="Invision Power Board Army Mod Remote SQL Injection" name_zh_CN="Invision Power Board Army Mod远程SQL注入攻击" name_zh_TW="Invision Power Board Army Mod遠程SQL注入攻擊" ruleid="20571" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="RunCMS远程及本地文件包含攻击" name_en_US="RunCMS Remote and Local File Inclusion" name_zh_CN="RunCMS远程及本地文件包含攻击" name_zh_TW="RunCMS遠程及本地文件包含攻擊" ruleid="20570" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423918" module="0" name="Mambo task参数远程SQL注入攻击" name_en_US="Mambo task Parameter Remote SQL Injection" name_zh_CN="Mambo task参数远程SQL注入攻击" name_zh_TW="Mambo task參數遠程SQL注入攻擊" ruleid="20577" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHP-Nuke Your_Account模块远程SQL注入攻击" name_en_US="PHP-Nuke Your_Account Module Remote SQL Injection" name_zh_CN="PHP-Nuke Your_Account模块远程SQL注入攻击" name_zh_TW="PHP-Nuke Your_Account模塊遠程SQL注入攻擊" ruleid="20576" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PLUME CMS prepend.php远程任意命令执行攻击" name_en_US="PLUME CMS prepend.php Remote Arbitrary Command Execution" name_zh_CN="PLUME CMS prepend.php远程任意命令执行攻击" name_zh_TW="PLUME CMS prepend.php遠程任意命令執行攻擊" ruleid="20574" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Apache Tomcat Snoop Servlet远程获取信息攻击" name_en_US="Apache Tomcat Snoop Servlet Remote Information Disclosure" name_zh_CN="Apache Tomcat Snoop Servlet远程获取信息攻击" name_zh_TW="Apache Tomcat Snoop Servlet遠程獲取信息攻擊" ruleid="30406" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Guestbook Script本地文件包含执行命令攻击" name_en_US="Guestbook Script Local File Inclusion Command Execution" name_zh_CN="Guestbook Script本地文件包含执行命令攻击" name_zh_TW="Guestbook Script本地文件包含執行命令攻擊" ruleid="20579" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="WEBInsta Limbo Itemid变量远程执行命令攻击" name_en_US="WEBInsta Limbo Itemid Variable Remote Command Execution" name_zh_CN="WEBInsta Limbo Itemid变量远程执行命令攻击" name_zh_TW="WEBInsta Limbo Itemid變量遠程執行命令攻擊" ruleid="20578" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BackOrifice木马通信" name_en_US="Trojan BackOrifice Communication on Windows" name_zh_CN="Windows系统下BackOrifice木马通信" name_zh_TW="Windows系統下BackOrifice木馬通信" ruleid="40693" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Windows GDI32内核组件远程代码执行攻击" name_en_US="Windows GDI32 Polylines Rendering Remote Code Execution Attack" name_zh_CN="Microsoft Windows GDI32内核组件远程代码执行攻击" name_zh_TW="Microsoft Windows GDI32內核組件遠程代碼執行攻擊" ruleid="20977" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="MW6 Barcode ActiveX控件远程缓冲区溢出攻击" name_en_US="MW6 Technologies Barcode ActiveX Control Supplement Heap Buffer Overflow Attack" name_zh_CN="MW6 Barcode ActiveX控件远程缓冲区溢出攻击" name_zh_TW="MW6 Barcode ActiveX控件遠程緩沖區溢出攻擊" ruleid="20976" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP Instant Support HPISDataManager.dll ActiveX控件GetFileTime函数缓冲区溢出攻击" name_en_US="HP Instant Support HPISDataManager.dll ActiveX Control Buffer Overflow Attack" name_zh_CN="HP Instant Support HPISDataManager.dll ActiveX控件GetFileTime函数缓冲区溢出攻击" name_zh_TW="HP Instant Support HPISDataManager.dll ActiveX控件GetFileTime函數緩沖區溢出攻擊" ruleid="20975" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft IE对象处理内存破坏攻击" name_en_US="Microsoft Internet Explorer XML Handling Remote Code Execution Attack" name_zh_CN="Microsoft IE对象处理内存破坏攻击" name_zh_TW="Microsoft IE對象處理內存破壞攻擊" ruleid="20974" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Facebook PhotoUploader ActiveX控件超长属性参数栈溢出攻击" name_en_US="Facebook Photo Uploader ImageUploader FileMask Method ActiveX Buffer Overflow Attack" name_zh_CN="Facebook PhotoUploader ActiveX控件超长属性参数栈溢出攻击" name_zh_TW="Facebook PhotoUploader ActiveX控件超長屬性參數棧溢出攻擊" ruleid="20973" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="Windows Server服务RPC请求缓冲区溢出攻击(MS08-067)" name_en_US="Microsoft Windows Server Service RPC Handling Remote Code Execution Attack(MS08-067)" name_zh_CN="Windows Server服务RPC请求缓冲区溢出攻击(MS08-067)" name_zh_TW="Windows Server服務RPC請求緩沖區溢出攻擊(MS08-067)" ruleid="20972" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Borland InterBase ibserver.exe服务远程缓冲区溢出攻击" name_en_US="Borland InterBase IBServer Remote Buffer Overflow Attack" name_zh_CN="Borland InterBase ibserver.exe服务远程缓冲区溢出攻击" name_zh_TW="Borland InterBase ibserver.exe服務遠程緩沖區溢出攻擊" ruleid="20970" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Trend Micro Interscan Viruswall CGI程序缓冲区溢出漏洞扫描探测" name_en_US="Trend Micro Interscan Viruswall CGI Buffer Overflow Detection" name_zh_CN="Trend Micro Interscan Viruswall CGI程序缓冲区溢出漏洞扫描探测" name_zh_TW="Trend Micro Interscan Viruswall CGI程序緩沖區溢出漏洞掃描探測" ruleid="30408" visible="true" />
			<rule action=" db  screen " enabled="true" group="77627434" module="0" name="Microsoft Windows WINS WPAD Registration欺骗攻击" name_en_US="Microsoft Windows WINS WPAD Registration Spoof Attack" name_zh_CN="Microsoft Windows WINS WPAD Registration欺骗攻击" name_zh_TW="Microsoft Windows WINS WPAD Registration欺騙攻擊" ruleid="20979" visible="true" />
			<rule action=" db  screen " enabled="true" group="77627434" module="0" name="Microsoft Windows DNS WPAD Registration欺骗攻击" name_en_US="Microsoft Windows DNS WPAD Registration Spoof Attack" name_zh_CN="Microsoft Windows DNS WPAD Registration欺骗攻击" name_zh_TW="Microsoft Windows DNS WPAD Registration欺騙攻擊" ruleid="20978" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下网络红娘木马通信" name_en_US="Trojan RedGirl Communication on Windows" name_zh_CN="Windows系统下网络红娘木马通信" name_zh_TW="Windows系統下網絡紅娘木馬通信" ruleid="40719" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下随意门木马通信" name_en_US="Trojan RandomDoor Communication on Windows" name_zh_CN="Windows系统下随意门木马通信" name_zh_TW="Windows系統下隨意門木馬通信" ruleid="40718" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ttdbserverd服务存在性TCP扫描探测" name_en_US="Solaris rpc.ttdbserverd Service TCP Detection" name_zh_CN="Solaris rpc.ttdbserverd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.ttdbserverd服務存在性TCP掃描探測" ruleid="30228" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows NT SMB建立连接" name_en_US="Windows NT SMB Connection Establishment" name_zh_CN="Windows NT SMB建立连接" name_zh_TW="Windows NT SMB建立連接" ruleid="30226" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ttdbserverd服务存在性UDP扫描探测" name_en_US="Solaris rpc.ttdbserverd Service UDP Detection" name_zh_CN="Solaris rpc.ttdbserverd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.ttdbserverd服務存在性UDP掃描探測" ruleid="30227" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="OmniHTTPd visadmin.exe程序漏洞扫描探测" name_en_US="OmniHTTPd visadmin.exe Vulnerability Detection" name_zh_CN="OmniHTTPd visadmin.exe程序漏洞扫描探测" name_zh_TW="OmniHTTPd visadmin.exe程序漏洞掃描探測" ruleid="30224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下广外男生木马通信" name_en_US="Trojan gwboy Communication on Windows" name_zh_CN="Windows系统下广外男生木马通信" name_zh_TW="Windows系統下廣外男生木馬通信" ruleid="40716" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 5.0 +.htr文件泄漏漏洞获取源代码攻击" name_en_US="Source Code Disclosure from Microsoft IIS 5.0 +.htr File" name_zh_CN="Microsoft IIS 5.0 +.htr文件泄漏漏洞获取源代码攻击" name_zh_TW="Microsoft IIS 5.0 +.htr文件泄漏漏洞獲取源代碼攻擊" ruleid="30222" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage orders.htm文件获取服务器信息" name_en_US="Server Information Disclosure from Frontpage orders.htm File" name_zh_CN="访问Frontpage orders.htm文件获取服务器信息" name_zh_TW="訪問Frontpage orders.htm文件獲取服務器信息" ruleid="30223" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件service.stp获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File service.stp" name_zh_CN="访问Frontpage配置文件service.stp获取服务器信息" name_zh_TW="訪問Frontpage配置文件service.stp獲取服務器信息" ruleid="30220" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件registrations.txt获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File registrations.txt" name_zh_CN="访问Frontpage配置文件registrations.txt获取服务器信息" name_zh_TW="訪問Frontpage配置文件registrations.txt獲取服務器信息" ruleid="30221" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Mdaemon Mail Server FORM2RAW.exe 缓冲区溢出漏洞" name_en_US="HTTP: Mdaemon Mail Server FORM2RAW.exe Buffer Overflow" name_zh_CN="HTTP: Mdaemon Mail Server FORM2RAW.exe 缓冲区溢出漏洞" name_zh_TW="HTTP: Mdaemon Mail Server FORM2RAW.exe 緩沖區溢出漏洞" ruleid="29194" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Apache Tomcat Servlet  Engine 目录遍历漏洞" name_en_US="HTTP: Apache Tomcat Servlet  Engine Directory Traversal Vulnerability" name_zh_CN="HTTP: Apache Tomcat Servlet  Engine 目录遍历漏洞" name_zh_TW="HTTP: Apache Tomcat Servlet  Engine 目錄遍曆漏洞" ruleid="29195" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="HTTP: HP OpenView Network Node Manager 远程命令执行漏洞" name_en_US="HTTP: HP OpenView Network Node Manager Remote Command Execution" name_zh_CN="HTTP: HP OpenView Network Node Manager 远程命令执行漏洞" name_zh_TW="HTTP: HP OpenView Network Node Manager 遠程命令執行漏洞" ruleid="29198" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206319" module="0" name="Windows Media服务nsiislog.dll远程缓冲区溢出攻击" name_en_US="Windows Media Service nsiislog.dll Remote Buffer Overflow" name_zh_CN="Windows Media服务nsiislog.dll远程缓冲区溢出攻击" name_zh_TW="Windows Media服務nsiislog.dll遠程緩沖區溢出攻擊" ruleid="20379" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Trinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40390" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618894" module="0" name="波尔远程控制软件建立连接" name_en_US="Remote Control Software Boer Connection" name_zh_CN="波尔远程控制软件建立连接" name_zh_TW="波爾遠程控制軟件建立連接" ruleid="40825" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Trinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40392" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618894" module="0" name="NetOp远程控制软件建立连接(TCP)" name_en_US="Remote Control Software NetOp Connection(TCP)" name_zh_CN="NetOp远程控制软件建立连接(TCP)" name_zh_TW="NetOp遠程控制軟件建立連接(TCP)" ruleid="40823" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="Windows系统下灰鸽子木马火狐版客户端连接服务器" name_en_US="Trojan Huigezi Firefox Client Connnection to Server on Windows" name_zh_CN="Windows系统下灰鸽子木马火狐版客户端连接服务器" name_zh_TW="Windows系統下灰鴿子木馬火狐版客戶端連接服務器" ruleid="40822" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898069" module="0" name="ICMP路由通告消息" name_en_US="ICMP Route Notification Message" name_zh_CN="ICMP路由通告消息" name_zh_TW="ICMP路由通告消息" ruleid="40397" visible="true" />
			<rule action=" db  screen " enabled="false" group="166727750" module="0" name="DDOS工具Shaft SynFlood攻击" name_en_US="DDOS Tool Shaft SynFlood" name_zh_CN="DDOS工具Shaft SynFlood攻击" name_zh_TW="DDOS工具Shaft SynFlood攻擊" ruleid="40109" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Doly Trojan 1.5木马建立连接" name_en_US="Doly Trojan 1.5 Connection on Windows" name_zh_CN="Windows系统下Doly Trojan 1.5木马建立连接" name_zh_TW="Windows系統下Doly Trojan 1.5木馬建立連接" ruleid="40399" visible="true" />
			<rule action=" db  screen " enabled="true" group="150997039" module="0" name="Solaris rpc.sadmind弱认证远程执行命令攻击" name_en_US="Solaris rpc.sadmind Weak Authentication Remote Command Execution" name_zh_CN="Solaris rpc.sadmind弱认证远程执行命令攻击" name_zh_TW="Solaris rpc.sadmind弱認證遠程執行命令攻擊" ruleid="20370" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Windows RPC DCOM接口长路径名远程堆缓冲区溢出攻击" name_en_US="Windows RPC DCOM Interface Long Path Name Remote Stack Buffer Overflow" name_zh_CN="Windows RPC DCOM接口长路径名远程堆缓冲区溢出攻击" name_zh_TW="Windows RPC DCOM接口長路徑名遠程堆緩沖區溢出攻擊" ruleid="20372" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows Messenger服务远程堆溢出攻击" name_en_US="Microsoft Windows Messenger Service Remote Heap Overflow" name_zh_CN="Microsoft Windows Messenger服务远程堆溢出攻击" name_zh_TW="Microsoft Windows Messenger服務遠程堆溢出攻擊" ruleid="20377" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412326" module="0" name="System V系统Login远程缓冲区溢出攻击" name_en_US="System V Login Remote Buffer Overflow" name_zh_CN="System V系统Login远程缓冲区溢出攻击" name_zh_TW="System V系統Login遠程緩沖區溢出攻擊" ruleid="20376" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.sadmind服务存在性UDP扫描探测" name_en_US="Solaris rpc.sadmind Service UDP Detection" name_zh_CN="Solaris rpc.sadmind服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.sadmind服務存在性UDP掃描探測" ruleid="30133" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423942" module="0" name="Web服务请求URL中使用%00恶意编码" name_en_US="Malicious %00 Encoding in Web Service Request URL" name_zh_CN="Web服务请求URL中使用%00恶意编码" name_zh_TW="Web服務請求URL中使用%00惡意編碼" ruleid="40003" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft FrontPage fp30reg.dll漏洞扫描探测" name_en_US="Microsoft FrontPage fp30reg.dll Vulnerability Detection" name_zh_CN="Microsoft FrontPage fp30reg.dll漏洞扫描探测" name_zh_TW="Microsoft FrontPage fp30reg.dll漏洞掃描探測" ruleid="30131" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下MastersParadise木马建立连接" name_en_US="Trojan MastersParadise Connection on Windows" name_zh_CN="Windows系统下MastersParadise木马建立连接" name_zh_TW="Windows系統下MastersParadise木馬建立連接" ruleid="40004" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.snmpXdmid服务存在性TCP扫描探测" name_en_US="Solaris rpc.snmpXdmid Service TCP Detection" name_zh_CN="Solaris rpc.snmpXdmid服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.snmpXdmid服務存在性TCP掃描探測" ruleid="30134" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.snmpXdmid服务存在性UDP扫描探测" name_en_US="Solaris rpc.snmpXdmid Service UDP Detection" name_zh_CN="Solaris rpc.snmpXdmid服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.snmpXdmid服務存在性UDP掃描探測" ruleid="30135" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.pcnfsd服务存在性UDP扫描探测" name_en_US="Solaris rpc.pcnfsd Service UDP Detection" name_zh_CN="Solaris rpc.pcnfsd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.pcnfsd服務存在性UDP掃描探測" ruleid="30048" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rexd服务存在性UDP扫描探测" name_en_US="Solaris rpc.rexd Service UDP Detection" name_zh_CN="Solaris rpc.rexd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rexd服務存在性UDP掃描探測" ruleid="30049" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="SunOS rpc.selection_svc服务存在性UDP扫描探测" name_en_US="SunOS rpc.selection_svc Service UDP Detection" name_zh_CN="SunOS rpc.selection_svc服务存在性UDP扫描探测" name_zh_TW="SunOS rpc.selection_svc服務存在性UDP掃描探測" ruleid="30042" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.automountd服务存在性UDP扫描探测" name_en_US="Solaris rpc.automountd Service UDP Detection" name_zh_CN="Solaris rpc.automountd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.automountd服務存在性UDP掃描探測" ruleid="30043" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="端口扫描器Nmap PING操作" name_en_US="Port Scanner Nmap PING Operation" name_zh_CN="端口扫描器Nmap PING操作" name_zh_TW="端口掃描器Nmap PING操作" ruleid="30040" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="SunRPC服务信息DUMP查询" name_en_US="SunRPC Service Information DUMP Query" name_zh_CN="SunRPC服务信息DUMP查询" name_zh_TW="SunRPC服務信息DUMP查詢" ruleid="30041" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365542" module="0" name="FTP服务转换功能远程执行命令攻击" name_en_US="FTP Service Switch Feature Remote Command Execution" name_zh_CN="FTP服务转换功能远程执行命令攻击" name_zh_TW="FTP服務轉換功能遠程執行命令攻擊" ruleid="40069" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.nisd服务存在性UDP扫描探测" name_en_US="Solaris rpc.nisd Service UDP Detection" name_zh_CN="Solaris rpc.nisd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.nisd服務存在性UDP掃描探測" ruleid="30047" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.bootparamd服务存在性UDP扫描探测" name_en_US="Solaris rpc.bootparamd Service UDP Detection" name_zh_CN="Solaris rpc.bootparamd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.bootparamd服務存在性UDP掃描探測" ruleid="30044" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Saros蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Saros" name_zh_CN="SMTP服务发送W32.Saros蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Saros蠕蟲病毒郵件" ruleid="40629" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Lovgate.AN/AO蠕虫变种病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Lovgate.AN/AO Variant" name_zh_CN="SMTP服务发送W32.Lovgate.AN/AO蠕虫变种病毒邮件" name_zh_TW="SMTP服務發送W32.Lovgate.AN/AO蠕蟲變種病毒郵件" ruleid="40628" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="腾讯通RTX用户登陆" name_en_US="Tencent RTX User Login" name_zh_CN="腾讯通RTX用户登陆" name_zh_TW="騰訊通RTX用戶登陸" ruleid="50370" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223069" module="0" name="Msn网络爬虫抓取网页信息" name_en_US="Msn Web Crawlers Capture Page Information" name_zh_CN="Msn网络爬虫抓取网页信息" name_zh_TW="Msn網絡爬蟲抓取網頁信息" ruleid="50371" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Http Content Length字段超长" name_en_US="Http Content Length Too Long" name_zh_CN="Http Content Length字段超长" name_zh_TW="Http Content Length字段超長" ruleid="50376" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="PaperBus VPN代理软件通信" name_en_US="PaperBus VPN Proxy Software Communication" name_zh_CN="PaperBus VPN代理软件通信" name_zh_TW="PaperBus VPN代理軟件通信" ruleid="50374" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Http Content Encoding 字段超长" name_en_US="Http Content Encoding Too Long" name_zh_CN="Http Content Encoding 字段超长" name_zh_TW="Http Content Encoding 字段超長" ruleid="50375" visible="true" />
			<rule action=" db  screen " enabled="true" group="69210187" module="0" name="Yesadvertising Banking间谍软件活动" name_en_US="Yesadvertising Banking Spyware Activity" name_zh_CN="Yesadvertising Banking间谍软件活动" name_zh_TW="Yesadvertising Banking間諜軟件活動" ruleid="40621" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Sober.D@mm蠕虫病毒邮件" name_en_US="SMTP Servicec Sending Mails with W32.Sober.D@mm" name_zh_CN="SMTP服务发送W32.Sober.D@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.D@mm蠕蟲病毒郵件" ruleid="40620" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.AB/AX@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AB/AX@mm" name_zh_CN="SMTP服务发送W32.Beagle.AB/AX@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AB/AX@mm蠕蟲病毒郵件" ruleid="40623" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Lovgate蠕虫变种五毒虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Lovgate Variant Worm.Supnot" name_zh_CN="SMTP服务发送W32.Lovgate蠕虫变种五毒虫病毒邮件" name_zh_TW="SMTP服務發送W32.Lovgate蠕蟲變種五毒蟲病毒郵件" ruleid="40625" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.AG@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AG@mm" name_zh_CN="SMTP服务发送W32.Beagle.AG@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AG@mm蠕蟲病毒郵件" ruleid="40624" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.P蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.P" name_zh_CN="SMTP服务发送Mydoom.P蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.P蠕蟲病毒郵件" ruleid="40627" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.M蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.M" name_zh_CN="SMTP服务发送Mydoom.M蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.M蠕蟲病毒郵件" ruleid="40626" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用calendar_admin.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via calendar_admin.pl Script Vulnerability" name_zh_CN="利用calendar_admin.pl脚本漏洞远程执行命令" name_zh_TW="利用calendar_admin.pl腳本漏洞遠程執行命令" ruleid="20205" visible="true" />
			<rule action=" db  screen " enabled="true" group="88113190" module="0" name="Microsoft SQL Server xp_cmdshell存储过程执行命令攻击" name_en_US="Microsoft SQL Server xp_cmdshell Stored Procedure Command Execution" name_zh_CN="Microsoft SQL Server xp_cmdshell存储过程执行命令攻击" name_zh_TW="Microsoft SQL Server xp_cmdshell存儲過程執行命令攻擊" ruleid="20207" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="calendar_admin.pl脚本漏洞扫描探测" name_en_US="calendar_admin.pl Script Vulnerability Detection" name_zh_CN="calendar_admin.pl脚本漏洞扫描探测" name_zh_TW="calendar_admin.pl腳本漏洞掃描探測" ruleid="20206" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412326" module="0" name="IRIX telnetd远程格式化串溢出攻击" name_en_US="IRIX telnetd Remote Format String Buffer Overflow" name_zh_CN="IRIX telnetd远程格式化串溢出攻击" name_zh_TW="IRIX telnetd遠程格式化串溢出攻擊" ruleid="20201" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Oracle Web Listener snork.bat批处理漏洞扫描利用" name_en_US="Oracle Web Listener snork.bat Vulnerability Detection" name_zh_CN="Oracle Web Listener snork.bat批处理漏洞扫描利用" name_zh_TW="Oracle Web Listener snork.bat批處理漏洞掃描利用" ruleid="20200" visible="true" />
			<rule action=" db  screen " enabled="true" group="144705574" module="0" name="BIND NXT远程缓冲区溢出攻击" name_en_US="BIND NXT Remote Buffer Overflow" name_zh_CN="BIND NXT远程缓冲区溢出攻击" name_zh_TW="BIND NXT遠程緩沖區溢出攻擊" ruleid="20202" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo主控端回应" name_en_US="DDOS Tool Trinoo Console Response" name_zh_CN="DDOS工具Trinoo主控端回应" name_zh_TW="DDOS工具Trinoo主控端回應" ruleid="40104" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Phorum admin.php3脚本漏洞扫描利用" name_en_US="Phorum admin.php3 Script Vulnerability Detection" name_zh_CN="Phorum admin.php3脚本漏洞扫描利用" name_zh_TW="Phorum admin.php3腳本漏洞掃描利用" ruleid="20209" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用PHP-Nuke index.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via PHP-Nuke index.php Script Vulnerability" name_zh_CN="利用PHP-Nuke index.php脚本漏洞远程执行命令" name_zh_TW="利用PHP-Nuke index.php腳本漏洞遠程執行命令" ruleid="20208" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用GrayCMS error.php CGI脚本远程执行命令攻击" name_en_US="GrayCMS error.php CGI Script Remote Command Execution" name_zh_CN="利用GrayCMS error.php CGI脚本远程执行命令攻击" name_zh_TW="利用GrayCMS error.php CGI腳本遠程執行命令攻擊" ruleid="20499" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下M2 Trojan木马通信" name_en_US="Trojan M2 Communication on Windows" name_zh_CN="Windows系统下M2 Trojan木马通信" name_zh_TW="Windows系統下M2 Trojan木馬通信" ruleid="40535" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Lithium木马通信" name_en_US="Trojan Lithium Communication on Windows" name_zh_CN="Windows系统下Lithium木马通信" name_zh_TW="Windows系統下Lithium木馬通信" ruleid="40534" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Massaker木马通信" name_en_US="Trojan Massaker Communication on Windows" name_zh_CN="Windows系统下Massaker木马通信" name_zh_TW="Windows系統下Massaker木馬通信" ruleid="40537" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Mantis木马通信" name_en_US="Trojan Mantis Communication on Windows" name_zh_CN="Windows系统下Mantis木马通信" name_zh_TW="Windows系統下Mantis木馬通信" ruleid="40536" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Latinus/Pest木马通信" name_en_US="Trojan Latinus/Pest Communication on Windows" name_zh_CN="Windows系统下Latinus/Pest木马通信" name_zh_TW="Windows系統下Latinus/Pest木馬通信" ruleid="40531" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Last 2000木马通信" name_en_US="Trojan Last 2000 Communication on Windows" name_zh_CN="Windows系统下Last 2000木马通信" name_zh_TW="Windows系統下Last 2000木馬通信" ruleid="40530" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Leszcz木马通信" name_en_US="Trojan Leszcz Communication on Windows" name_zh_CN="Windows系统下Leszcz木马通信" name_zh_TW="Windows系統下Leszcz木馬通信" ruleid="40533" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Le Guardien木马通信" name_en_US="Trojan Le Guardien Communication on Windows" name_zh_CN="Windows系统下Le Guardien木马通信" name_zh_TW="Windows系統下Le Guardien木馬通信" ruleid="40532" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Mavericks Matrix木马通信" name_en_US="Trojan Mavericks Matrix Communication on Windows" name_zh_CN="Windows系统下Mavericks Matrix木马通信" name_zh_TW="Windows系統下Mavericks Matrix木馬通信" ruleid="40539" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Masters Paradise木马通信" name_en_US="Trojan Masters Paradise Communication on Windows" name_zh_CN="Windows系统下Masters Paradise木马通信" name_zh_TW="Windows系統下Masters Paradise木馬通信" ruleid="40538" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下ButtMan木马通信" name_en_US="Trojan ButtMan Communication on Windows" name_zh_CN="Windows系统下ButtMan木马通信" name_zh_TW="Windows系統下ButtMan木馬通信" ruleid="40488" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户发送可疑文件" name_en_US="Instant Messaging Software ICQ User Sending Suspicious Files" name_zh_CN="即时通信软件ICQ用户发送可疑文件" name_zh_TW="即時通信軟件ICQ用戶發送可疑文件" ruleid="50124" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190251" module="0" name="微软IE mergeAttributes内存破坏攻击" name_en_US="Microsoft IE mergeAttributes Memory Corruption Attack" name_zh_CN="微软IE mergeAttributes内存破坏攻击" name_zh_TW="微軟IE mergeAttributes內存破壞攻擊" ruleid="21053" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户下线" name_en_US="Instant Messaging Software ICQ User Offline" name_zh_CN="即时通信软件ICQ用户下线" name_zh_TW="即時通信軟件ICQ用戶下線" ruleid="50118" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户状态改变为离开" name_en_US="Instant Messaging Software ICQ User State Changed into &quot;Leave&quot;" name_zh_CN="即时通信软件ICQ用户状态改变为离开" name_zh_TW="即時通信軟件ICQ用戶狀態改變爲離開" ruleid="50119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger用户接收消息" name_en_US="Instant Messaging Software Yahoo Messenger User Receiving Messages" name_zh_CN="即时通信软件Yahoo Messenger用户接收消息" name_zh_TW="即時通信軟件Yahoo Messenger用戶接收消息" ruleid="50112" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger用户下线" name_en_US="Instant Messaging Software Yahoo Messenger User Offline" name_zh_CN="即时通信软件Yahoo Messenger用户下线" name_zh_TW="即時通信軟件Yahoo Messenger用戶下線" ruleid="50113" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger用户登录" name_en_US="Instant Messaging Software Yahoo Messenger User Login" name_zh_CN="即时通信软件Yahoo Messenger用户登录" name_zh_TW="即時通信軟件Yahoo Messenger用戶登錄" ruleid="50110" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger用户发送消息" name_en_US="Instant Messaging Software Yahoo Messenger User Sending Messages" name_zh_CN="即时通信软件Yahoo Messenger用户发送消息" name_zh_TW="即時通信軟件Yahoo Messenger用戶發送消息" ruleid="50111" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户发送消息" name_en_US="Instant Messaging Software ICQ User Sending Messages" name_zh_CN="即时通信软件ICQ用户发送消息" name_zh_TW="即時通信軟件ICQ用戶發送消息" ruleid="50116" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户接收消息" name_en_US="Instant Messaging Software ICQ User Receiving Messages" name_zh_CN="即时通信软件ICQ用户接收消息" name_zh_TW="即時通信軟件ICQ用戶接收消息" ruleid="50117" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger传送文件" name_en_US="Instant Messaging Software Yahoo Messenger File Transmission" name_zh_CN="即时通信软件Yahoo Messenger传送文件" name_zh_TW="即時通信軟件Yahoo Messenger傳送文件" ruleid="50114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件Yahoo Messenger用户状态改变为离开" name_en_US="Instant Messaging Software Yahoo Messenger User State Changed into &quot;Leave&quot;" name_zh_CN="即时通信软件Yahoo Messenger用户状态改变为离开" name_zh_TW="即時通信軟件Yahoo Messenger用戶狀態改變爲離開" ruleid="50115" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206187" module="0" name="TrackerCam PHP参数远程缓冲区溢出攻击" name_en_US="TrackerCam PHP Parameter Remote Buffer Overflow" name_zh_CN="TrackerCam PHP参数远程缓冲区溢出攻击" name_zh_TW="TrackerCam PHP參數遠程緩沖區溢出攻擊" ruleid="20612" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下CyberNetic木马通信" name_en_US="Trojan CyberNetic Communication on Windows" name_zh_CN="Windows系统下CyberNetic木马通信" name_zh_TW="Windows系統下CyberNetic木馬通信" ruleid="40714" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="ExAir示例脚本query.asp拒绝服务攻击" name_en_US="ExAir Sample Script query.asp Denial of Service" name_zh_CN="ExAir示例脚本query.asp拒绝服务攻击" name_zh_TW="ExAir示例腳本query.asp拒絕服務攻擊" ruleid="10049" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616795" module="0" name="CVE-2011-3414 Microsoft ASP.NET哈希冲突远程拒绝服务漏洞" name_en_US="CVE-2011-3414 Microsoft ASP.NET Hashe Collision Denial Of Service Vulnerability(MS11-100)" name_zh_CN="CVE-2011-3414 Microsoft ASP.NET哈希冲突远程拒绝服务漏洞" name_zh_TW="CVE-2011-3414 Microsoft ASP.NET哈希沖突遠程拒絕服務漏洞" ruleid="10322" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Chopper Webshell检测" name_en_US="Chopper Webshell Detection" name_zh_CN="Chopper Webshell检测" name_zh_TW="Chopper Webshell檢測" ruleid="40958" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643495" module="0" name="FutureSoft TFTP Server 2000远程缓冲区溢出攻击" name_en_US="FutureSoft TFTP Server 2000 Remote Buffer Overflow" name_zh_CN="FutureSoft TFTP Server 2000远程缓冲区溢出攻击" name_zh_TW="FutureSoft TFTP Server 2000遠程緩沖區溢出攻擊" ruleid="20614" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="PAJAX pajax_call_dispatcher.php远程执行命令攻击" name_en_US="PAJAX pajax_call_dispatcher.php Remote Code Execution" name_zh_CN="PAJAX pajax_call_dispatcher.php远程执行命令攻击" name_zh_TW="PAJAX pajax_call_dispatcher.php遠程執行命令攻擊" ruleid="20615" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="CVE-2012-0017 Microsoft SharePoint Inplview.aspx中XSS远程代码执行漏洞(MS12-011)" name_en_US="CVE-2012-0017 Microsoft SharePoint XSS in inplview.aspx Remote Code Execution Vulnerability(MS12-011)" name_zh_CN="CVE-2012-0017 Microsoft SharePoint Inplview.aspx中XSS远程代码执行漏洞(MS12-011)" name_zh_TW="CVE-2012-0017 Microsoft SharePoint Inplview.aspx中XSS遠程代碼執行漏洞(MS12-011)" ruleid="21359" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Visual Studio ATL VariantClear()远程代码执行攻击" name_en_US="Visual Studio ATL VariantClear() Remote Code Execution" name_zh_CN="Visual Studio ATL VariantClear()远程代码执行攻击" name_zh_TW="Visual Studio ATL VariantClear()遠程代碼執行攻擊" ruleid="21039" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="微软IE多个内存破坏远程代码执行攻击" name_en_US="Microsoft IE
Multiple Memory Corruption Remote Code Execution" name_zh_CN="微软IE多个内存破坏远程代码执行攻击" name_zh_TW="微軟IE多個內存破壞遠程代碼執行攻擊" ruleid="21038" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745882" module="1" name="ptunnel连接" name_en_US="ptunnel Connect" name_zh_CN="ptunnel连接" name_zh_TW="ptunnel連接" ruleid="50454" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745882" module="1" name="dns2tcp隧道连接" name_en_US="dns2tcp Tunnel Connect" name_zh_CN="dns2tcp隧道连接" name_zh_TW="dns2tcp隧道連接" ruleid="50453" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN用户接收消息" name_en_US="Instant Messaging Software MSN User Receiving Messages" name_zh_CN="即时通信软件MSN用户接收消息" name_zh_TW="即時通信軟件MSN用戶接收消息" ruleid="50085" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Excel &quot;RealTimeData&quot;记录解析远程代码执行漏洞(MS11-021)" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel &quot;RealTimeData&quot;记录解析远程代码执行漏洞(MS11-021)" name_zh_TW="Microsoft Excel &quot;RealTimeData&quot;記錄解析遠程代碼執行漏洞(MS11-021)" ruleid="21211" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21149" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞" name_en_US="Microsoft Windows Vulnerabilities in the OpenType Font (OTF) Format Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Font (OTF) Format Driver遠程代碼執行漏洞" ruleid="21148" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端在服务器端创建文件" name_en_US="TFTP Service Client File Creation On the Server" name_zh_CN="TFTP服务客户端在服务器端创建文件" name_zh_TW="TFTP服務客戶端在服務器端創建文件" ruleid="40066" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Internet Connection Signup Wizard加载不安全库导致远程代码执行漏洞" name_en_US="Insecure Library Loading in Internet Connection Signup Wizard Could Allow Remote Code Execution" name_zh_CN="Internet Connection Signup Wizard加载不安全库导致远程代码执行漏洞" name_zh_TW="Internet Connection Signup Wizard加載不安全庫導致遠程代碼執行漏洞" ruleid="21145" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Windows Consent User Interface权限提升漏洞" name_en_US="Vulnerability in Microsoft Windows Consent User Interface Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Consent User Interface权限提升漏洞" name_zh_TW="Microsoft Windows Consent User Interface權限提升漏洞" ruleid="21144" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft SharePoint远程代码执行漏洞" name_en_US="Vulnerability in Microsoft SharePoint could allow Remote Code Execution " name_zh_CN="Microsoft SharePoint远程代码执行漏洞" name_zh_TW="Microsoft SharePoint遠程代碼執行漏洞" ruleid="21147" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Media Encoder远程代码执行漏洞" name_en_US="Vulnerability in Windows Media Encoder Could Allow Remote Code Execution " name_zh_CN="Windows Media Encoder远程代码执行漏洞" name_zh_TW="Windows Media Encoder遠程代碼執行漏洞" ruleid="21146" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Movie Maker远程代码执行漏洞" name_en_US="Vulnerability in Windows Movie Maker Could Allow Remote Code Execution" name_zh_CN="Windows Movie Maker远程代码执行漏洞" name_zh_TW="Windows Movie Maker遠程代碼執行漏洞" ruleid="21141" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Address Book远程代码执行漏洞" name_en_US="Vulnerability in Windows Address Book Could Allow Remote Code Execution" name_zh_CN="Windows Address Book远程代码执行漏洞" name_zh_TW="Windows Address Book遠程代碼執行漏洞" ruleid="21140" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft NDProxy Driver权限提升漏洞" name_en_US="Vulnerability in Microsoft NDProxy Driver Could Allow Elevation of Privilege" name_zh_CN="Microsoft NDProxy Driver权限提升漏洞" name_zh_TW="Microsoft NDProxy Driver權限提升漏洞" ruleid="21143" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21142" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161615" module="0" name="后门：Donald Dick客户连接" name_en_US="Backdoor: Donald Dick Client Connection" name_zh_CN="后门：Donald Dick客户连接" name_zh_TW="後門：Donald Dick客戶連接" ruleid="40953" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834566" module="0" name="Ping of Death拒绝服务攻击" name_en_US="Ping of Death Denial of Service Attacks" name_zh_CN="Ping of Death拒绝服务攻击" name_zh_TW="Ping of Death拒絕服務攻擊" ruleid="40075" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="3" name="网络数据中发现病毒文件" name_en_US="Virus File Found in Newwork Data" name_zh_CN="网络数据中发现病毒文件" name_zh_TW="網絡數據中發現病毒文件" ruleid="40818" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643498" module="0" name="3Com TFTP超长传输模式字段远程缓冲区溢出攻击" name_en_US="3Com TFTP Over-Long Transporting Mode Field Remote Buffer Overflow" name_zh_CN="3Com TFTP超长传输模式字段远程缓冲区溢出攻击" name_zh_TW="3Com TFTP超長傳輸模式字段遠程緩沖區溢出攻擊" ruleid="20818" visible="true" />
			<rule action=" db  screen " enabled="true" group="212861226" module="0" name="Apache Tomcat JK Web Server Connector超长URL栈溢出攻击" name_en_US="Apache Tomcat JK Web Server Connector Over-Long URL Stack Overflow" name_zh_CN="Apache Tomcat JK Web Server Connector超长URL栈溢出攻击" name_zh_TW="Apache Tomcat JK Web Server Connector超長URL棧溢出攻擊" ruleid="20819" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="3" name="用户限制类文件传输" name_en_US="Restricted Files Transmitting" name_zh_CN="用户限制类文件传输" name_zh_TW="用戶限制類文件傳輸" ruleid="40819" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546346" module="0" name="IMAP服务器畸形CRAM-MD5认证请求缓冲区溢出攻击" name_en_US="IMAP Server Malformed CRAM-MD5 Authentication Request Buffer Overflow" name_zh_CN="IMAP服务器畸形CRAM-MD5认证请求缓冲区溢出攻击" name_zh_TW="IMAP服務器畸形CRAM-MD5認證請求緩沖區溢出攻擊" ruleid="20810" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886378" module="0" name="Microsoft Windows路由和远程访问服务溢出攻击（MS06-025）" name_en_US="Microsoft Windows Route and Remote Access Service Buffer Overflow (MS06-025)" name_zh_CN="Microsoft Windows路由和远程访问服务溢出攻击（MS06-025）" name_zh_TW="Microsoft Windows路由和遠程訪問服務溢出攻擊（MS06-025）" ruleid="20811" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615786" module="0" name="MSN相册蠕虫发送photos.zip可疑文件" name_en_US="MSN Album Worm Sending Suspicious photos.zip Files" name_zh_CN="MSN相册蠕虫发送photos.zip可疑文件" name_zh_TW="MSN相冊蠕蟲發送photos.zip可疑文件" ruleid="20812" visible="true" />
			<rule action=" db  screen " enabled="true" group="147849514" module="0" name="Kerberos 5 KAdminD服务程序远程栈溢出攻击" name_en_US="Kerberos 5 KAdminD Server Remote Stack Overflow" name_zh_CN="Kerberos 5 KAdminD服务程序远程栈溢出攻击" name_zh_TW="Kerberos 5 KAdminD服務程序遠程棧溢出攻擊" ruleid="20813" visible="true" />
			<rule action=" db  screen " enabled="true" group="138414122" module="0" name="MIT Kerberos 5 Telnet守护程序绕过认证访问攻击" name_en_US="MIT Kerberos 5 Telnet Daemon Authentication Bypass" name_zh_CN="MIT Kerberos 5 Telnet守护程序绕过认证访问攻击" name_zh_TW="MIT Kerberos 5 Telnet守護程序繞過認證訪問攻擊" ruleid="20814" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft IE恶意数据编码指令执行攻击" name_en_US="Microsoft IE Malicious Data Encoding Code Execution" name_zh_CN="Microsoft IE恶意数据编码指令执行攻击" name_zh_TW="Microsoft IE惡意數據編碼指令執行攻擊" ruleid="20815" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375466" module="0" name="Netscape Enterprise HTTP协议Accept字段远程缓冲区溢出漏洞" name_en_US="Netscape Enterprise HTTP Protocol Accept Field Remote Buffer Overflow" name_zh_CN="Netscape Enterprise HTTP协议Accept字段远程缓冲区溢出漏洞" name_zh_TW="Netscape Enterprise HTTP協議Accept字段遠程緩沖區溢出漏洞" ruleid="20816" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Oracle 9iAS/10g应用服务器WEB缓冲远程堆溢出攻击" name_en_US="Oracle 9iAS/10g Application Server WEB Buffer Remote Heap Overflow" name_zh_CN="Oracle 9iAS/10g应用服务器WEB缓冲远程堆溢出攻击" name_zh_TW="Oracle 9iAS/10g應用服務器WEB緩沖遠程堆溢出攻擊" ruleid="20817" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="SalesLogix Eviewer slxweb.dll程序漏洞扫描探测" name_en_US="SalesLogix Eviewer slxweb.dll Vulnerability Detection" name_zh_CN="SalesLogix Eviewer slxweb.dll程序漏洞扫描探测" name_zh_TW="SalesLogix Eviewer slxweb.dll程序漏洞掃描探測" ruleid="10071" visible="true" />
			<rule action=" db  screen " enabled="true" group="144705558" module="0" name="ISC BIND OPT资源记录远程拒绝服务攻击" name_en_US="ISC BIND OPT Resource Record Remote Denial of Service" name_zh_CN="ISC BIND OPT资源记录远程拒绝服务攻击" name_zh_TW="ISC BIND OPT資源記錄遠程拒絕服務攻擊" ruleid="10070" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序bash" name_en_US="Access to Unix Shell Interpreter bash via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序bash" name_zh_TW="通過Web服務訪問Unix Shell解釋程序bash" ruleid="20140" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641622" module="0" name="利用3COM OfficeConnect Router Web管理接口漏洞拒绝服务攻击" name_en_US="Denial of Service via 3COM OfficeConnect Router Web Management Interface Vulnerability" name_zh_CN="利用3COM OfficeConnect Router Web管理接口漏洞拒绝服务攻击" name_zh_TW="利用3COM OfficeConnect Router Web管理接口漏洞拒絕服務攻擊" ruleid="10072" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="通过Web服务访问Unix Shell解释程序zsh" name_en_US="Access to Unix Shell Interpreter zsh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序zsh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序zsh" ruleid="20146" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Microsoft JET catalog_type.asp脚本漏洞扫描探测" name_en_US="Microsoft JET catalog_type.asp Script Vulnerability Detection" name_zh_CN="Microsoft JET catalog_type.asp脚本漏洞扫描探测" name_zh_TW="Microsoft JET catalog_type.asp腳本漏洞掃描探測" ruleid="20147" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="利用Behold! Software Counter.exe CGI漏洞拒绝服务攻击" name_en_US="Denial of Service via Behold! Software Counter.exe CGI Vulnerability" name_zh_CN="利用Behold! Software Counter.exe CGI漏洞拒绝服务攻击" name_zh_TW="利用Behold! Software Counter.exe CGI漏洞拒絕服務攻擊" ruleid="10077" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="Behold! Software Counter.exe CGI程序漏洞扫描探测" name_en_US="Behold! Software Counter.exe CGI Vulnerability Detection" name_zh_CN="Behold! Software Counter.exe CGI程序漏洞扫描探测" name_zh_TW="Behold! Software Counter.exe CGI程序漏洞掃描探測" ruleid="10076" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Microsoft JET catalog_type.asp脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Microsoft JET catalog_type.asp Script Vulnerability" name_zh_CN="利用Microsoft JET catalog_type.asp脚本漏洞远程执行命令" name_zh_TW="利用Microsoft JET catalog_type.asp腳本漏洞遠程執行命令" ruleid="20148" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="扫描利用PERL工具远程执行命令" name_en_US="Remote Code Execution via PERL Scan" name_zh_CN="扫描利用PERL工具远程执行命令" name_zh_TW="掃描利用PERL工具遠程執行命令" ruleid="20149" visible="true" />
			<rule action=" db  screen " enabled="true" group="233833002" module="0" name="MySQL用户验证暴力猜测" name_en_US="MySQL user authentication violence guess" name_zh_CN="MySQL用户验证暴力猜测" name_zh_TW="MySQL用戶驗證暴力猜測" ruleid="21369" visible="true" />
			<rule action=" db  screen " enabled="true" group="227541542" module="0" name="SNMP暴力猜测用户口令" name_en_US="SNMP violence guess user password" name_zh_CN="SNMP暴力猜测用户口令" name_zh_TW="SNMP暴力猜測用戶口令" ruleid="21368" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCServe BackUp LGServer远程栈缓冲区溢出攻击" name_en_US="CA BrightStor ARCServe BackUp LGServer Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCServe BackUp LGServer远程栈缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCServe BackUp LGServer遠程棧緩沖區溢出攻擊" ruleid="20782" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Aigaion远程文件包含攻击" name_en_US="Aigaion Remote File Inclusion" name_zh_CN="Aigaion远程文件包含攻击" name_zh_TW="Aigaion遠程文件包含攻擊" ruleid="20783" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="ComVironment grab_globals.lib.php脚本远程文件包含攻击" name_en_US="ComVironment grab_globals.lib.php Script Remote File Inclusion" name_zh_CN="ComVironment grab_globals.lib.php脚本远程文件包含攻击" name_zh_TW="ComVironment grab_globals.lib.php腳本遠程文件包含攻擊" ruleid="20784" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Uberghey frontpage.php远程文件包含攻击" name_en_US="Uberghey frontpage.php Remote File Inclusion" name_zh_CN="Uberghey frontpage.php远程文件包含攻击" name_zh_TW="Uberghey frontpage.php遠程文件包含攻擊" ruleid="20785" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHPMyphorum frame.php远程文件包含攻击" name_en_US="PHPMyphorum frame.php Remote File Inclusion" name_zh_CN="PHPMyphorum frame.php远程文件包含攻击" name_zh_TW="PHPMyphorum frame.php遠程文件包含攻擊" ruleid="20786" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="webSPELL gallery.php远程SQL注入攻击" name_en_US="webSPELL gallery.php Remote SQL Injection" name_zh_CN="webSPELL gallery.php远程SQL注入攻击" name_zh_TW="webSPELL gallery.php遠程SQL注入攻擊" ruleid="20787" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2012-0020 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_en_US="CVE-2012-0020 Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015)" name_zh_CN="CVE-2012-0020 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_zh_TW="CVE-2012-0020 Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015)" ruleid="21361" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Jshop Server远程文件包含攻击" name_en_US="Jshop Server Remote File Inclusion" name_zh_CN="Jshop Server远程文件包含攻击" name_zh_TW="Jshop Server遠程文件包含攻擊" ruleid="20789" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2012-0138 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_en_US="CVE-2012-0138 Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015)" name_zh_CN="CVE-2012-0138 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_zh_TW="CVE-2012-0138 Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015)" ruleid="21363" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2012-0137 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_en_US="CVE-2012-0137 Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015)" name_zh_CN="CVE-2012-0137 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_zh_TW="CVE-2012-0137 Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015)" ruleid="21362" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="CVE-2012-0145 Microsoft SharePoint Wizardlist.aspx中XSS远程代码执行漏洞(MS12-011)" name_en_US="CVE-2012-0145 Microsoft SharePoint XSS in Wizardlist.aspx Remote Code Execution Vulnerability(MS12-011)" name_zh_CN="CVE-2012-0145 Microsoft SharePoint Wizardlist.aspx中XSS远程代码执行漏洞(MS12-011)" name_zh_TW="CVE-2012-0145 Microsoft SharePoint Wizardlist.aspx中XSS遠程代碼執行漏洞(MS12-011)" ruleid="21365" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="CVE-2012-0144 Microsoft SharePoint Themeweb.aspx中XSS远程代码执行漏洞(MS12-011)" name_en_US="CVE-2012-0144 Microsoft SharePoint XSS in themeweb.aspx Remote Code Execution Vulnerability(MS12-011)" name_zh_CN="CVE-2012-0144 Microsoft SharePoint Themeweb.aspx中XSS远程代码执行漏洞(MS12-011)" name_zh_TW="CVE-2012-0144 Microsoft SharePoint Themeweb.aspx中XSS遠程代碼執行漏洞(MS12-011)" ruleid="21364" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2012-0136 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_en_US="CVE-2012-0136 Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015)" name_zh_CN="CVE-2012-0136 Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015)" name_zh_TW="CVE-2012-0136 Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015)" ruleid="21367" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="CVE-2012-0155 Internet Explorer VML远程代码执行漏洞(MS12-010)" name_en_US="CVE-2012-0155 Internet Explorer VML Remote Code Execution Vulnerability(MS12-010)" name_zh_CN="CVE-2012-0155 Internet Explorer VML远程代码执行漏洞(MS12-010)" name_zh_TW="CVE-2012-0155 Internet Explorer VML遠程代碼執行漏洞(MS12-010)" ruleid="21366" visible="true" />
			<rule action=" db  screen " enabled="true" group="227606613" module="0" name="SNMP操作使用弱口令" name_en_US="SNMP operation use weak passwords" name_zh_CN="SNMP操作使用弱口令" name_zh_TW="SNMP操作使用弱口令" ruleid="50450" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Oracle Reports Server获取任意文件部分内容攻击" name_en_US="Oracle Reports Server Partial File Content Disclosure" name_zh_CN="Oracle Reports Server获取任意文件部分内容攻击" name_zh_TW="Oracle Reports Server獲取任意文件部分內容攻擊" ruleid="30535" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834554" module="0" name="Arkeia Client默认root用户口令访问" name_en_US="Arkeia Client Default root Account Password" name_zh_CN="Arkeia Client默认root用户口令访问" name_zh_TW="Arkeia Client默認root用戶口令訪問" ruleid="30532" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Webmin/Usermin远程访问任意文件攻击" name_en_US="Webmin/Usermin Remote Arbitrary File Access" name_zh_CN="Webmin/Usermin远程访问任意文件攻击" name_zh_TW="Webmin/Usermin遠程訪問任意文件攻擊" ruleid="30533" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="PPTV网络电视流媒体播放(TCP)" name_en_US="PPTV Network TV Streaming Media Playing (TCP)" name_zh_CN="PPTV网络电视流媒体播放(TCP)" name_zh_TW="PPTV網絡電視流媒體播放(TCP)" ruleid="50140" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="Windows系统下Spyware Spytech下载安装程序" name_en_US="Spyware Spytech Downloading Installer on Windows" name_zh_CN="Windows系统下Spyware Spytech下载安装程序" name_zh_TW="Windows系統下Spyware Spytech下載安裝程序" ruleid="40771" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="Caucho Resin Windows远程目录遍历攻击" name_en_US="Caucho Resin Windows Remote Directory Traversal" name_zh_CN="Caucho Resin Windows远程目录遍历攻击" name_zh_TW="Caucho Resin Windows遠程目錄遍曆攻擊" ruleid="30531" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Site@School远程文件包含攻击" name_en_US="Site@School Remote File Inclusion" name_zh_CN="Site@School远程文件包含攻击" name_zh_TW="Site@School遠程文件包含攻擊" ruleid="20668" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Hop-by-Hop Options Header 检测" name_en_US="Hop-by-Hop Options Header Check" name_zh_CN="Hop-by-Hop Options Header 检测" name_zh_TW="Hop-by-Hop Options Header 檢測" ruleid="41019" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Redirect Message 检测" name_en_US="Redirect Message Check" name_zh_CN="Redirect Message 检测" name_zh_TW="Redirect Message 檢測" ruleid="41018" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Nirvana木马通信" name_en_US="Trojan Nirvana Communication on Windows" name_zh_CN="Windows系统下Nirvana木马通信" name_zh_TW="Windows系統下Nirvana木馬通信" ruleid="40556" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序甲壳虫 Gh0st 系统管理" name_en_US="Remote Control Program Beetle System Management" name_zh_CN="远程控制程序甲壳虫 Gh0st 系统管理" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 系統管理" ruleid="41011" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序甲壳虫 Gh0st 终端操作" name_en_US="Remote Control Program Beetle Terminal Operation" name_zh_CN="远程控制程序甲壳虫 Gh0st 终端操作" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 終端操作" ruleid="41010" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190278" module="0" name="WebHancer 间谍软件" name_en_US="Foistware/Spyware: WebHancer" name_zh_CN="WebHancer 间谍软件" name_zh_TW="WebHancer 間諜軟件" ruleid="41013" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序甲壳虫 Gh0st 视频监控" name_en_US="Remote Control Program Beetle Video Monitor" name_zh_CN="远程控制程序甲壳虫 Gh0st 视频监控" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 視頻監控" ruleid="41012" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377247" module="0" name="Apache HTTP Server畸形Range选项处理远程拒绝服务漏洞" name_en_US="Apache HTTP Server Range Denial Of Service Vulnerability" name_zh_CN="Apache HTTP Server畸形Range选项处理远程拒绝服务漏洞" name_zh_TW="Apache HTTP Server畸形Range選項處理遠程拒絕服務漏洞" ruleid="10291" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Microsoft Windows TCP/IP QOS远程拒绝服务漏洞（MS11-064)" name_en_US="Microsoft Windows TCP/IP QOS CVE-2011-1965 Remote Denial Of Service Vulnerability" name_zh_CN="Microsoft Windows TCP/IP QOS远程拒绝服务漏洞（MS11-064)" name_zh_TW="Microsoft Windows TCP/IP QOS遠程拒絕服務漏洞（MS11-064)" ruleid="10290" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Router Advertisement 检测" name_en_US="Router Advertisement Check" name_zh_CN="Router Advertisement 检测" name_zh_TW="Router Advertisement 檢測" ruleid="41017" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Router Solicitation 检测" name_en_US="Router Solicitation Check" name_zh_CN="Router Solicitation 检测" name_zh_TW="Router Solicitation 檢測" ruleid="41016" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="LoudBlog backend_settings.php远程任意命令执行攻击" name_en_US="LoudBlog backend_settings.php Remote Arbitrary Command Execution" name_zh_CN="LoudBlog backend_settings.php远程任意命令执行攻击" name_zh_TW="LoudBlog backend_settings.php遠程任意命令執行攻擊" ruleid="20568" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888159" module="0" name="Microsoft Windows 2000 RPC DCOM接口拒绝服务攻击" name_en_US="Microsoft Windows 2000 RPC DCOM Interface Denial of Service" name_zh_CN="Microsoft Windows 2000 RPC DCOM接口拒绝服务攻击" name_zh_TW="Microsoft Windows 2000 RPC DCOM接口拒絕服務攻擊" ruleid="10108" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725675" module="0" name="Nullsoft SHOUTcast文件请求远程格式串攻击" name_en_US="Nullsoft SHOUTcast File Request Remote Format String Vulnerability" name_zh_CN="Nullsoft SHOUTcast文件请求远程格式串攻击" name_zh_TW="Nullsoft SHOUTcast文件請求遠程格式串攻擊" ruleid="20565" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="Oracle DBMS绕过登录访问控制攻击" name_en_US="Oracle DBMS Login Access Control Bypass" name_zh_CN="Oracle DBMS绕过登录访问控制攻击" name_zh_TW="Oracle DBMS繞過登錄訪問控制攻擊" ruleid="20566" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943390" module="0" name="Cisco IOS IPv4报文处理拒绝服务攻击" name_en_US="Cisco IOS IPv4 Message Handling Denial of Service" name_zh_CN="Cisco IOS IPv4报文处理拒绝服务攻击" name_zh_TW="Cisco IOS IPv4報文處理拒絕服務攻擊" ruleid="10106" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="CuteNews show_archives.php远程任意命令执行攻击" name_en_US="CuteNews show_archives.php Remote Arbitrary Command Execution" name_zh_CN="CuteNews show_archives.php远程任意命令执行攻击" name_zh_TW="CuteNews show_archives.php遠程任意命令執行攻擊" ruleid="20560" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="CubeCart orderSuccess.inc.php远程任意命令执行攻击" name_en_US="CubeCart orderSuccess.inc.php Remote Arbitrary Command Execution" name_zh_CN="CubeCart orderSuccess.inc.php远程任意命令执行攻击" name_zh_TW="CubeCart orderSuccess.inc.php遠程任意命令執行攻擊" ruleid="20561" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Valdersoft Shopping Cart远程任意命令执行攻击" name_en_US="Valdersoft Shopping Cart Remote Arbitrary Command Execution" name_zh_CN="Valdersoft Shopping Cart远程任意命令执行攻击" name_zh_TW="Valdersoft Shopping Cart遠程任意命令執行攻擊" ruleid="20562" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Windows图形渲染引擎WMF格式文件执行指令攻击" name_en_US="Microsoft Windows Graphics Rendering Engine WMF Format File Code Execution" name_zh_CN="Microsoft Windows图形渲染引擎WMF格式文件执行指令攻击" name_zh_TW="Microsoft Windows圖形渲染引擎WMF格式文件執行指令攻擊" ruleid="20563" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Net Raider木马通信" name_en_US="Trojan Net Raider Communication on Windows" name_zh_CN="Windows系统下Net Raider木马通信" name_zh_TW="Windows系統下Net Raider木馬通信" ruleid="40550" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723882" module="0" name="HP OpenView网络节点管理器ovspmd远程堆溢出攻击" name_en_US="HP OpenView Network Node Manager Ovspmd Remote Heap Overflow" name_zh_CN="HP OpenView网络节点管理器ovspmd远程堆溢出攻击" name_zh_TW="HP OpenView網絡節點管理器ovspmd遠程堆溢出攻擊" ruleid="20960" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下CrazzyNet木马通信" name_en_US="Trojan CrazzyNet Communication on Windows" name_zh_CN="Windows系统下CrazzyNet木马通信" name_zh_TW="Windows系統下CrazzyNet木馬通信" ruleid="40496" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="RealNetworks RealPlayer rmoc3260.dll ActiveX控件内存破坏攻击" name_en_US="RealNetworks RealPlayer rmoc3260.dll ActiveX Control Memory Corruption" name_zh_CN="RealNetworks RealPlayer rmoc3260.dll ActiveX控件内存破坏攻击" name_zh_TW="RealNetworks RealPlayer rmoc3260.dll ActiveX控件內存破壞攻擊" ruleid="20963" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="联众世界GLIEDown2.dll Active控件任意代码执行攻击" name_en_US="OurGame GLIEDown2.dll Active Control Of Arbitrary Code Execution" name_zh_CN="联众世界GLIEDown2.dll Active控件任意代码执行攻击" name_zh_TW="聯衆世界GLIEDown2.dll Active控件任意代碼執行攻擊" ruleid="20964" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Yahoo!助手yNotifier.dll ActiveX控件内存破坏攻击" name_en_US="Yahoo! Assistant yNotifier.dll ActiveX Control Memory Corruption" name_zh_CN="Yahoo!助手yNotifier.dll ActiveX控件内存破坏攻击" name_zh_TW="Yahoo!助手yNotifier.dll ActiveX控件內存破壞攻擊" ruleid="20965" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="PeerCast getAuthUserPass函数栈溢出攻击" name_en_US="PeerCast getAuthUserPass Function Stack Overflow" name_zh_CN="PeerCast getAuthUserPass函数栈溢出攻击" name_zh_TW="PeerCast getAuthUserPass函數棧溢出攻擊" ruleid="20966" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP HPeDiag ActiveX控件信息泄露及远程代码执行攻击" name_en_US="HP HPeDiag ActiveX Controls Information Disclosure And Remote Code Execution" name_zh_CN="HP HPeDiag ActiveX控件信息泄露及远程代码执行攻击" name_zh_TW="HP HPeDiag ActiveX控件信息泄露及遠程代碼執行攻擊" ruleid="20967" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Creative软件自动升级引擎ActiveX控件栈溢出攻击" name_en_US="Creative Software AutoUpdate Engine ActiveX Control Stack Overflow" name_zh_CN="Creative软件自动升级引擎ActiveX控件栈溢出攻击" name_zh_TW="Creative軟件自動升級引擎ActiveX控件棧溢出攻擊" ruleid="20968" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Borland InterBase畸形报文远程栈溢出攻击" name_en_US="Borland InterBase Malformed Packet Remote Stack Based Buffer Overflow Attack" name_zh_CN="Borland InterBase畸形报文远程栈溢出攻击" name_zh_TW="Borland InterBase畸形報文遠程棧溢出攻擊" ruleid="20969" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件registrations.htm获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File registrations.htm" name_zh_CN="访问Frontpage配置文件registrations.htm获取服务器信息" name_zh_TW="訪問Frontpage配置文件registrations.htm獲取服務器信息" ruleid="30219" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件register.txt获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File register.txt" name_zh_CN="访问Frontpage配置文件register.txt获取服务器信息" name_zh_TW="訪問Frontpage配置文件register.txt獲取服務器信息" ruleid="30218" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下彩虹兽人木马通信" name_en_US="Trojan Bifrost Communication on Windows" name_zh_CN="Windows系统下彩虹兽人木马通信" name_zh_TW="Windows系統下彩虹獸人木馬通信" ruleid="40708" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下byshell木马通信" name_en_US="Trojan byshell Communication on Windows" name_zh_CN="Windows系统下byshell木马通信" name_zh_TW="Windows系統下byshell木馬通信" ruleid="40709" visible="true" />
			<rule action=" db  screen " enabled="true" group="83894326" module="0" name="Solaris rpc.rwalld服务存在性TCP扫描探测" name_en_US="Solaris rpc.rwalld Service TCP Detection" name_zh_CN="Solaris rpc.rwalld服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rwalld服務存在性TCP掃描探測" ruleid="30213" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用iCat Managers carbo.dll脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via iCat Managers carbo.dll Script Vulnerability" name_zh_CN="利用iCat Managers carbo.dll脚本漏洞远程遍历目录" name_zh_TW="利用iCat Managers carbo.dll腳本漏洞遠程遍曆目錄" ruleid="30212" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.pcnfsd服务存在性TCP扫描探测" name_en_US="Solaris rpc.pcnfsd Service TCP Detection" name_zh_CN="Solaris rpc.pcnfsd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.pcnfsd服務存在性TCP掃描探測" ruleid="30211" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.nisd服务存在性TCP扫描探测" name_en_US="Solaris rpc.nisd Service TCP Detection" name_zh_CN="Solaris rpc.nisd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.nisd服務存在性TCP掃描探測" ruleid="30210" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件orders.txt获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File orders.txt" name_zh_CN="访问Frontpage配置文件orders.txt获取服务器信息" name_zh_TW="訪問Frontpage配置文件orders.txt獲取服務器信息" ruleid="30217" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage .cnf配置文件获取服务器信息" name_en_US="Server Information Disclosure from Frontpage .cnf File" name_zh_CN="访问Frontpage .cnf配置文件获取服务器信息" name_zh_TW="訪問Frontpage .cnf配置文件獲取服務器信息" ruleid="30216" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="通过Web服务访问site.csc文件获取数据信息" name_en_US="Data Disclosure from site.csc file via Web Service" name_zh_CN="通过Web服务访问site.csc文件获取数据信息" name_zh_TW="通過Web服務訪問site.csc文件獲取數據信息" ruleid="30215" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="利用Microsoft IIS .idq ISAPI扩展获取绝对路径攻击" name_en_US="Absolute Path Disclosure via Microsoft IIS .idq ISAPI Extension" name_zh_CN="利用Microsoft IIS .idq ISAPI扩展获取绝对路径攻击" name_zh_TW="利用Microsoft IIS .idq ISAPI擴展獲取絕對路徑攻擊" ruleid="30214" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Celine木马通信" name_en_US="Trojan Celine Communication on Windows" name_zh_CN="Windows系统下Celine木马通信" name_zh_TW="Windows系統下Celine木馬通信" ruleid="40490" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Beast木马通信" name_en_US="Trojan Beast Communication on Windows" name_zh_CN="Windows系统下Beast木马通信" name_zh_TW="Windows系統下Beast木馬通信" ruleid="40707" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Cero木马通信" name_en_US="Trojan Cero Communication on Windows" name_zh_CN="Windows系统下Cero木马通信" name_zh_TW="Windows系統下Cero木馬通信" ruleid="40491" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Mstream主控端探测分布端" name_en_US="DDOS Tool Mstream Console and Distributed End Detection" name_zh_CN="DDOS工具Mstream主控端探测分布端" name_zh_TW="DDOS工具Mstream主控端探測分布端" ruleid="40382" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Mstream分布端回应主控端" name_en_US="DDOS Tool Mstream Distributed End Responding to the Console" name_zh_CN="DDOS工具Mstream分布端回应主控端" name_zh_TW="DDOS工具Mstream分布端回應主控端" ruleid="40383" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Real Networks Helix Universal Server远程缓冲区溢出攻击" name_en_US="Real Networks Helix Universal Server Remote Buffer Overflow" name_zh_CN="Real Networks Helix Universal Server远程缓冲区溢出攻击" name_zh_TW="Real Networks Helix Universal Server遠程緩沖區溢出攻擊" ruleid="20368" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Mstream主分布端连接分布端" name_en_US="Connection Between DDOS Tool Mstream Main Distributed End and Distributed End" name_zh_CN="DDOS工具Mstream主分布端连接分布端" name_zh_TW="DDOS工具Mstream主分布端連接分布端" ruleid="40381" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Mydoom.a木马网络数据通信" name_en_US="REGISTERED FREE BACKDOOR mydoom.a backdoor upload/execute attempt" name_zh_CN="Mydoom.a木马网络数据通信" name_zh_TW="Mydoom.a木馬網絡數據通信" ruleid="40834" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Trinoo主控端发送指令" name_en_US="DDOS Tool Trinoo Console Sending Command" name_zh_CN="DDOS工具Trinoo主控端发送指令" name_zh_TW="DDOS工具Trinoo主控端發送指令" ruleid="40387" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Mstream分布端回应主控端" name_en_US="DDOS Tool Mstream Distributed End Responding to the Console" name_zh_CN="DDOS工具Mstream分布端回应主控端" name_zh_TW="DDOS工具Mstream分布端回應主控端" ruleid="40384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="MALWARE Speed-runner.com B类木马网络数据通信" name_en_US="MALWARE Speed-runner.com Fake Speed Test User-Agent SpeedRunner" name_zh_CN="MALWARE Speed-runner.com B类木马网络数据通信" name_zh_TW="MALWARE Speed-runner.com B類木馬網絡數據通信" ruleid="40837" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows DCOM RPC接口长主机名远程缓冲区溢出攻击" name_en_US="Microsoft Windows DCOM RPC Interface Long Host Name Remote Buffer Overflow" name_zh_CN="Microsoft Windows DCOM RPC接口长主机名远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows DCOM RPC接口長主機名遠程緩沖區溢出攻擊" ruleid="20363" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用HappyMall E-Commerce normal_html.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via HappyMall E-Commerce normal_html.cgi Script Vulnerability" name_zh_CN="利用HappyMall E-Commerce normal_html.cgi脚本漏洞远程执行命令" name_zh_TW="利用HappyMall E-Commerce normal_html.cgi腳本漏洞遠程執行命令" ruleid="20360" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用shoutbox脚本漏洞远程执行命令" name_en_US="Remote Code Execution via shoutbox Script Vulnerability" name_zh_CN="利用shoutbox脚本漏洞远程执行命令" name_zh_TW="利用shoutbox腳本漏洞遠程執行命令" ruleid="20361" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615791" module="0" name="Windows系统下SDBot蠕虫传播操作" name_en_US="Worm SDBot Propagation on Windows" name_zh_CN="Windows系统下SDBot蠕虫传播操作" name_zh_TW="Windows系統下SDBot蠕蟲傳播操作" ruleid="20366" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680317" module="0" name="Windows icmpsendecho函数发送ICMP包" name_en_US="Windows icmpsendecho Sending ICMP Packet" name_zh_CN="Windows icmpsendecho函数发送ICMP包" name_zh_TW="Windows icmpsendecho函數發送ICMP包" ruleid="20367" visible="false" />
			<rule action=" db  screen " enabled="true" group="83887151" module="0" name="Windows系统下MSBLAST（冲击波）蠕虫传播" name_en_US="Worm MSBLAST on Windows" name_zh_CN="Windows系统下MSBLAST（冲击波）蠕虫传播" name_zh_TW="Windows系統下MSBLAST（沖擊波）蠕蟲傳播" ruleid="20365" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647562" module="0" name="Windows系统下熊猫烧香蠕虫病毒下载恶意代码" name_en_US="Nimaya Downloading Malicious Code on Windows" name_zh_CN="Windows系统下熊猫烧香蠕虫病毒下载恶意代码" name_zh_TW="Windows系統下熊貓燒香蠕蟲病毒下載惡意代碼" ruleid="40796" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214266" module="0" name="Alt-N WebAdmin WebAdmin.dll脚本漏洞扫描探测" name_en_US="Alt-N WebAdmin WebAdmin.dll Script Vulnerability Detection" name_zh_CN="Alt-N WebAdmin WebAdmin.dll脚本漏洞扫描探测" name_zh_TW="Alt-N WebAdmin WebAdmin.dll腳本漏洞掃描探測" ruleid="30459" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="利用AN HTTPd count.pl脚本漏洞遍历目录" name_en_US="Directory Traversal via AN HTTPd count.pl Script Vulnerability" name_zh_CN="利用AN HTTPd count.pl脚本漏洞遍历目录" name_zh_TW="利用AN HTTPd count.pl腳本漏洞遍曆目錄" ruleid="30458" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Roar Smith info2www脚本漏洞扫描探测" name_en_US="Roar Smith info2www Script Vulnerability Detection" name_zh_CN="Roar Smith info2www脚本漏洞扫描探测" name_zh_TW="Roar Smith info2www腳本漏洞掃描探測" ruleid="30109" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Miva htmlscript脚本漏洞扫描探测" name_en_US="Miva htmlscript Script Vulnerability Detection" name_zh_CN="Miva htmlscript脚本漏洞扫描探测" name_zh_TW="Miva htmlscript腳本漏洞掃描探測" ruleid="30108" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Miva htmlscript脚本漏洞远程遍历目录读取文件" name_en_US="Remote Directory Traversal File Reading via Miva htmlscript Script Vulnerability" name_zh_CN="利用Miva htmlscript脚本漏洞远程遍历目录读取文件" name_zh_TW="利用Miva htmlscript腳本漏洞遠程遍曆目錄讀取文件" ruleid="30107" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="IRIX handler脚本漏洞扫描探测" name_en_US="IRIX handler Script Vulnerability Detection" name_zh_CN="IRIX handler脚本漏洞扫描探测" name_zh_TW="IRIX handler腳本漏洞掃描探測" ruleid="30106" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="GuestBook guestbook.pl脚本漏洞扫描探测" name_en_US="GuestBook guestbook.pl Script Vulnerability Detection" name_zh_CN="GuestBook guestbook.pl脚本漏洞扫描探测" name_zh_TW="GuestBook guestbook.pl腳本漏洞掃描探測" ruleid="30105" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Feartech ftp.pl脚本漏洞扫描探测" name_en_US="Feartech ftp.pl Script Vulnerability Detection" name_zh_CN="Feartech ftp.pl脚本漏洞扫描探测" name_zh_TW="Feartech ftp.pl腳本漏洞掃描探測" ruleid="30104" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Feartech ftp.pl脚本漏洞远程获取主机目录攻击" name_en_US="Remote Host Directory Disclosure via Feartech ftp.pl Script Vulnerability" name_zh_CN="利用Feartech ftp.pl脚本漏洞远程获取主机目录攻击" name_zh_TW="利用Feartech ftp.pl腳本漏洞遠程獲取主機目錄攻擊" ruleid="30103" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="FormMail formmail.pl脚本漏洞扫描探测" name_en_US="FormMail formmail.pl Script Vulnerability Detection" name_zh_CN="FormMail formmail.pl脚本漏洞扫描探测" name_zh_TW="FormMail formmail.pl腳本漏洞掃描探測" ruleid="30102" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="paFileDB CGI脚本远程SQL注入攻击" name_en_US="paFileDB CGI Script Remote SQL Injection" name_zh_CN="paFileDB CGI脚本远程SQL注入攻击" name_zh_TW="paFileDB CGI腳本遠程SQL注入攻擊" ruleid="20483" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CVSWeb cvsweb.cgi脚本漏洞扫描探测" name_en_US="CVSWeb cvsweb.cgi Script Vulnerability Detection" name_zh_CN="CVSWeb cvsweb.cgi脚本漏洞扫描探测" name_zh_TW="CVSWeb cvsweb.cgi腳本漏洞掃描探測" ruleid="30100" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616799" module="0" name="Microsoft Windows即插即用功能远程拒绝服务攻击" name_en_US="Microsoft Windows Plug and Play Feature Remote Denial of Service" name_zh_CN="Microsoft Windows即插即用功能远程拒绝服务攻击" name_zh_TW="Microsoft Windows即插即用功能遠程拒絕服務攻擊" ruleid="10134" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Amanda木马通信" name_en_US="Trojan Amanda Communication on Windows" name_zh_CN="Windows系统下Amanda木马通信" name_zh_TW="Windows系統下Amanda木馬通信" ruleid="40470" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616789" module="0" name="Microsoft Windows畸形IGMPv3报文远程拒绝服务攻击" name_en_US="Microsoft Windows Malformed IGMPv3 Message Remote Denial of Service" name_zh_CN="Microsoft Windows畸形IGMPv3报文远程拒绝服务攻击" name_zh_TW="Microsoft Windows畸形IGMPv3報文遠程拒絕服務攻擊" ruleid="10135" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616798" module="0" name="传奇克星拒绝服务攻击" name_en_US="Legend Terminator Denial of Service" name_zh_CN="传奇克星拒绝服务攻击" name_zh_TW="傳奇克星拒絕服務攻擊" ruleid="10136" visible="true" />
			<rule action=" db  screen " enabled="true" group="202506329" module="1" name="新浪视频在线流媒体播放" name_en_US="Sina Video Online Streaming Media Playing" name_zh_CN="新浪视频在线流媒体播放" name_zh_TW="新浪視頻在線流媒體播放" ruleid="50369" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Blackmal.C蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Blackmal.C" name_zh_CN="SMTP服务发送W32.Blackmal.C蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Blackmal.C蠕蟲病毒郵件" ruleid="40638" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422495" module="0" name="Microsoft Windows SMB srv.sys空指针引用远程拒绝服务攻击" name_en_US="Microsoft Windows SMB srv.sys Null Pointer Reference Remote Denial of Service" name_zh_CN="Microsoft Windows SMB srv.sys空指针引用远程拒绝服务攻击" name_zh_TW="Microsoft Windows SMB srv.sys空指針引用遠程拒絕服務攻擊" ruleid="10137" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="Windows系统下W32.Bropia蠕虫通过MSN传播" name_en_US="W32.Bropia Propagation via MSN on Windows" name_zh_CN="Windows系统下W32.Bropia蠕虫通过MSN传播" name_zh_TW="Windows系統下W32.Bropia蠕蟲通過MSN傳播" ruleid="40682" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="风行网络电视流媒体播放" name_en_US="Funshion Network TV Streaming Media Playing" name_zh_CN="风行网络电视流媒体播放" name_zh_TW="風行網絡電視流媒體播放" ruleid="50349" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="皮皮在线流媒体播放" name_en_US="PiPi Online Streaming Media Playing" name_zh_CN="皮皮在线流媒体播放" name_zh_TW="皮皮在線流媒體播放" ruleid="50348" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件Web网页MSN用户登录" name_en_US="Instant Messaging Software Web MSN User Login" name_zh_CN="即时通信软件Web网页MSN用户登录" name_zh_TW="即時通信軟件Web網頁MSN用戶登錄" ruleid="50347" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="多家厂商TCP/IP协议栈实现ICMP重置TCP连接拒绝服务攻击" name_en_US="Many Vendors TCP/IP Protocol Stack Implementation ICMP Reset TCP Connection Denial of Service" name_zh_CN="多家厂商TCP/IP协议栈实现ICMP重置TCP连接拒绝服务攻击" name_zh_TW="多家廠商TCP/IP協議棧實現ICMP重置TCP連接拒絕服務攻擊" ruleid="10130" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Beagle.AO@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AO@mm" name_zh_CN="SMTP服务发送W32.Beagle.AO@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AO@mm蠕蟲病毒郵件" ruleid="40630" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.Q蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.Q" name_zh_CN="SMTP服务发送Mydoom.Q蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.Q蠕蟲病毒郵件" ruleid="40631" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.S/T蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.S/T" name_zh_CN="SMTP服务发送Mydoom.S/T蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.S/T蠕蟲病毒郵件" ruleid="40636" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Mydoom.V蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.V" name_zh_CN="SMTP服务发送Mydoom.V蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.V蠕蟲病毒郵件" ruleid="40637" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Neveg蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Neveg" name_zh_CN="SMTP服务发送W32.Neveg蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Neveg蠕蟲病毒郵件" ruleid="40634" visible="true" />
			<rule action=" db  screen " enabled="true" group="76548123" module="0" name="IMAP服务器SELECT命令超长参数缓冲区溢出攻击" name_en_US="SELECT Command on the IMAP Server Over-long Parameter Buffer Overflow" name_zh_CN="IMAP服务器SELECT命令超长参数缓冲区溢出攻击" name_zh_TW="IMAP服務器SELECT命令超長參數緩沖區溢出攻擊" ruleid="10131" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="CSM Alibaba Web Server get32.exe脚本漏洞扫描探测" name_en_US="CSM Alibaba Web Server get32.exe Script Vulnerability Detection" name_zh_CN="CSM Alibaba Web Server get32.exe脚本漏洞扫描探测" name_zh_TW="CSM Alibaba Web Server get32.exe腳本漏洞掃描探測" ruleid="20216" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用Web Portal customize.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Web Portal customize.php Script Vulnerability" name_zh_CN="利用Web Portal customize.php脚本漏洞远程执行命令" name_zh_TW="利用Web Portal customize.php腳本漏洞遠程執行命令" ruleid="20217" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用FreeNews aff_news.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via FreeNews aff_news.php Script Vulnerability" name_zh_CN="利用FreeNews aff_news.php脚本漏洞远程执行命令" name_zh_TW="利用FreeNews aff_news.php腳本漏洞遠程執行命令" ruleid="20214" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用FreeNews screen.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via FreeNews screen.php Script Vulnerability" name_zh_CN="利用FreeNews screen.php脚本漏洞远程执行命令" name_zh_TW="利用FreeNews screen.php腳本漏洞遠程執行命令" ruleid="20215" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="FreeNews aff_news.php脚本漏洞扫描探测" name_en_US="FreeNews aff_news.php Script Vulnerability Detection" name_zh_CN="FreeNews aff_news.php脚本漏洞扫描探测" name_zh_TW="FreeNews aff_news.php腳本漏洞掃描探測" ruleid="20212" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="FreeNews screen.php脚本漏洞扫描探测" name_en_US="FreeNews screen.php Script Vulnerability Detection" name_zh_CN="FreeNews screen.php脚本漏洞扫描探测" name_zh_TW="FreeNews screen.php腳本漏洞掃描探測" ruleid="20213" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Talentsoft Web+例子脚本执行命令攻击" name_en_US="Remote Code Execution via Talentsoft Web+ Sample Script" name_zh_CN="利用Talentsoft Web+例子脚本执行命令攻击" name_zh_TW="利用Talentsoft Web+例子腳本執行命令攻擊" ruleid="20210" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Phorum 3.0.7 auth.php3脚本漏洞扫描利用" name_en_US="Phorum 3.0.7 auth.php3 Script Vulnerability Detection" name_zh_CN="Phorum 3.0.7 auth.php3脚本漏洞扫描利用" name_zh_TW="Phorum 3.0.7 auth.php3腳本漏洞掃描利用" ruleid="20211" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN用户发送消息" name_en_US="Instant Messaging Software MSN User Sending Messages" name_zh_CN="即时通信软件MSN用户发送消息" name_zh_TW="即時通信軟件MSN用戶發送消息" ruleid="50084" visible="true" />
			<rule action=" db  screen " enabled="true" group="156239899" module="0" name="Sun Solaris LPD删除系统文件攻击" name_en_US="Sun Solaris LPD System File Deletion" name_zh_CN="Sun Solaris LPD删除系统文件攻击" name_zh_TW="Sun Solaris LPD刪除系統文件攻擊" ruleid="10133" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用Web Portal index.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Web Portal index.php Script Vulnerability" name_zh_CN="利用Web Portal index.php脚本漏洞远程执行命令" name_zh_TW="利用Web Portal index.php腳本漏洞遠程執行命令" ruleid="20218" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723878" module="0" name="OpenSSL远程缓冲区溢出攻击" name_en_US="OpenSSL Remote Buffer Overflow" name_zh_CN="OpenSSL远程缓冲区溢出攻击" name_zh_TW="OpenSSL遠程緩沖區溢出攻擊" ruleid="20219" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Pennumbra木马通信" name_en_US="Pennumbra Communication on Windows " name_zh_CN="Windows系统下Pennumbra木马通信" name_zh_TW="Windows系統下Pennumbra木馬通信" ruleid="40702" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Spook 6.0木马通信" name_en_US="Trojan Spook 6.0 Communication on Windows" name_zh_CN="Windows系统下Spook 6.0木马通信" name_zh_TW="Windows系統下Spook 6.0木馬通信" ruleid="40703" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Intruzzo木马通信" name_en_US="Trojan Intruzzo Communication on Windows" name_zh_CN="Windows系统下Intruzzo木马通信" name_zh_TW="Windows系統下Intruzzo木馬通信" ruleid="40526" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Kid Terror木马通信" name_en_US="Trojan Kid Terror Communication on Windows" name_zh_CN="Windows系统下Kid Terror木马通信" name_zh_TW="Windows系統下Kid Terror木馬通信" ruleid="40527" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Insane Network木马通信" name_en_US="Trojan Insane Network Communication on Windows" name_zh_CN="Windows系统下Insane Network木马通信" name_zh_TW="Windows系統下Insane Network木馬通信" ruleid="40524" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Intruder木马通信" name_en_US="Trojan Intruder Communication on Windows" name_zh_CN="Windows系统下Intruder木马通信" name_zh_TW="Windows系統下Intruder木馬通信" ruleid="40525" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Infector木马通信" name_en_US="Trojan Infector Communication on Windows" name_zh_CN="Windows系统下Infector木马通信" name_zh_TW="Windows系統下Infector木馬通信" ruleid="40522" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Infra木马通信" name_en_US="Trojan Infra Communication on Windows" name_zh_CN="Windows系统下Infra木马通信" name_zh_TW="Windows系統下Infra木馬通信" ruleid="40523" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下HydroLeak木马通信" name_en_US="Trojan HydroLeak Communication on Windows" name_zh_CN="Windows系统下HydroLeak木马通信" name_zh_TW="Windows系統下HydroLeak木馬通信" ruleid="40520" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下InCommand木马通信" name_en_US="Trojan InCommand Communication on Windows" name_zh_CN="Windows系统下InCommand木马通信" name_zh_TW="Windows系統下InCommand木馬通信" ruleid="40521" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Konik木马通信" name_en_US="Trojan Konik Communication on Windows" name_zh_CN="Windows系统下Konik木马通信" name_zh_TW="Windows系統下Konik木馬通信" ruleid="40528" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Kuang木马通信" name_en_US="Trojan Kuang Communication on Windows" name_zh_CN="Windows系统下Kuang木马通信" name_zh_TW="Windows系統下Kuang木馬通信" ruleid="40529" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下流萤 2.3木马通信" name_en_US="FireFly 2.3 Communication on Windows" name_zh_CN="Windows系统下流萤 2.3木马通信" name_zh_TW="Windows系統下流螢 2.3木馬通信" ruleid="40700" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件仟家信黄金分析用户登录" name_en_US="Stock Market Analysis Software Qianjiaxin Gold User Login" name_zh_CN="股票行情分析操作软件仟家信黄金分析用户登录" name_zh_TW="股票行情分析操作軟件仟家信黃金分析用戶登錄" ruleid="50299" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="通过Web服务执行finger程序" name_en_US="finger Program Execution via Web Service" name_zh_CN="通过Web服务执行finger程序" name_zh_TW="通過Web服務執行finger程序" ruleid="30076" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器ADM-FTP扫描FTP服务" name_en_US="ADM-FTP Scanner Scanning FTP Service" name_zh_CN="漏洞扫描器ADM-FTP扫描FTP服务" name_zh_TW="漏洞掃描器ADM-FTP掃描FTP服務" ruleid="30075" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840693" module="0" name="网络嗅探工具Sniffer Pro/NetXRay PING操作" name_en_US="Sniffer Pro/NetXRay PING Operation" name_zh_CN="网络嗅探工具Sniffer Pro/NetXRay PING操作" name_zh_TW="網絡嗅探工具Sniffer Pro/NetXRay PING操作" ruleid="30073" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537949" module="0" name="通过FTP协议下载文件" name_en_US="Downloading Files Through FTP Protocol" name_zh_CN="通过FTP协议下载文件" name_zh_TW="通過FTP協議下載文件" ruleid="50291" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2455 Adobe Flash Player 内存破坏漏洞" name_en_US="CVE-2011-2455 Adobe Flash Player Memory Corruption Vulnerability" name_zh_CN="CVE-2011-2455 Adobe Flash Player 内存破坏漏洞" name_zh_TW="CVE-2011-2455 Adobe Flash Player 內存破壞漏洞" ruleid="21321" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963609" module="1" name="即时通信软件ICQ用户登录（HTTP代理）" name_en_US="Instant Messaging Software ICQ User Login（HTTP Proxy）" name_zh_CN="即时通信软件ICQ用户登录（HTTP代理）" name_zh_TW="即時通信軟件ICQ用戶登錄（HTTP代理）" ruleid="50293" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440797" module="0" name="通过HTTP协议下载文件" name_en_US="Downloading Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载文件" name_zh_TW="通過HTTP協議下載文件" ruleid="50292" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件TM2008用户登录（UDP）" name_en_US="Instant Messaging Software TM2008 User Login（UDP）" name_zh_CN="即时通信软件TM2008用户登录（UDP）" name_zh_TW="即時通信軟件TM2008用戶登錄（UDP）" ruleid="50295" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信软件MSN-[i]菜单回显" name_en_US="Instant Messaging Software MSN-[i] Menu Echo" name_zh_CN="即时通信软件MSN-[i]菜单回显" name_zh_TW="即時通信軟件MSN-[i]菜單回顯" ruleid="50294" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="边锋网络游戏进入游戏房间" name_en_US="BianFeng Network Game World Entering Game Room" name_zh_CN="边锋网络游戏进入游戏房间" name_zh_TW="邊鋒網絡遊戲進入遊戲房間" ruleid="50297" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具迅雷通过DNS查询资源服务器IP地址" name_en_US="P2P File Sharing Tool Xunlei Searching The IP Address of Source Server Through DNS Protocol" name_zh_CN="P2P文件共享工具迅雷通过DNS查询资源服务器IP地址" name_zh_TW="P2P文件共享工具迅雷通過DNS查詢資源服務器IP地址" ruleid="50296" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件QQ收发消息" name_en_US="Instant Messaging Software QQ Send/Receive Messages" name_zh_CN="即时通信软件QQ收发消息" name_zh_TW="即時通信軟件QQ收發消息" ruleid="50245" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2457 Adobe Flash Player 栈溢出漏洞" name_en_US="CVE-2011-2457 Adobe Flash Player Stack overflow vulnerability" name_zh_CN="CVE-2011-2457 Adobe Flash Player 栈溢出漏洞" name_zh_TW="CVE-2011-2457 Adobe Flash Player 棧溢出漏洞" ruleid="21323" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下远程控制任我行木马通信" name_en_US="Remote Control Software Trojan.LetMein.a Communication on Windows" name_zh_CN="Windows系统下远程控制任我行木马通信" name_zh_TW="Windows系統下遠程控制任我行木馬通信" ruleid="40701" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="CVE-2011-2456 Adobe Flash Player 缓冲区溢出漏洞" name_en_US="CVE-2011-2456 Adobe Flash Player Buffer Overflow Vulnerability" name_zh_CN="CVE-2011-2456 Adobe Flash Player 缓冲区溢出漏洞" name_zh_TW="CVE-2011-2456 Adobe Flash Player 緩沖區溢出漏洞" ruleid="21322" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.snmpXdmid远程缓冲区溢出攻击" name_en_US="Solaris rpc.snmpXdmid Remote Buffer Overflow" name_zh_CN="Solaris rpc.snmpXdmid远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.snmpXdmid遠程緩沖區溢出攻擊" ruleid="20106" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Excel畸形STYLE格式文档邮件附件传播" name_en_US="Microsoft Excel Malformed STYLE Format Document Attachemtn Propagation" name_zh_CN="Microsoft Excel畸形STYLE格式文档邮件附件传播" name_zh_TW="Microsoft Excel畸形STYLE格式文檔郵件附件傳播" ruleid="40778" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834517" module="0" name="IP/ICMP畸形分片包Jolt2拒绝服务攻击" name_en_US="Malformed IP/ICMP Packet Jolt2 Denial of Service" name_zh_CN="IP/ICMP畸形分片包Jolt2拒绝服务攻击" name_zh_TW="IP/ICMP畸形分片包Jolt2拒絕服務攻擊" ruleid="10037" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏星际争霸（Starcraft）网络对战" name_en_US=" Online Game &quot;Starcraft&quot; Online Fight" name_zh_CN="网络游戏星际争霸（Starcraft）网络对战" name_zh_TW="網絡遊戲星際爭霸（Starcraft）網絡對戰" ruleid="50127" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏反恐精英（CS）网络对战" name_en_US="Online Game CS Online Fight" name_zh_CN="网络游戏反恐精英（CS）网络对战" name_zh_TW="網絡遊戲反恐精英（CS）網絡對戰" ruleid="50126" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ发现非法信息" name_en_US="Instant Messaging Software ICQ Illegal Information" name_zh_CN="即时通信软件ICQ发现非法信息" name_zh_TW="即時通信軟件ICQ發現非法信息" ruleid="50125" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616789" module="0" name="mstream ACK/FIN小数据包洪流拒绝服务攻击" name_en_US="mstream ACK/FIN Small Packets Flood Denial of Service" name_zh_CN="mstream ACK/FIN小数据包洪流拒绝服务攻击" name_zh_TW="mstream ACK/FIN小數據包洪流拒絕服務攻擊" ruleid="10036" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户视频聊天" name_en_US="Instant Messaging Software ICQ User Video Chatting" name_zh_CN="即时通信软件ICQ用户视频聊天" name_zh_TW="即時通信軟件ICQ用戶視頻聊天" ruleid="50123" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ用户音频聊天" name_en_US="Instant Messaging Software ICQ User Audio Chatting" name_zh_CN="即时通信软件ICQ用户音频聊天" name_zh_TW="即時通信軟件ICQ用戶音頻聊天" ruleid="50122" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信软件ICQ传送文件企图" name_en_US="Instant Messaging Software ICQ Sending File Attempt" name_zh_CN="即时通信软件ICQ传送文件企图" name_zh_TW="即時通信軟件ICQ傳送文件企圖" ruleid="50121" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏魔兽争霸客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Warcraft&quot;" name_zh_CN="网络游戏魔兽争霸客户端连接服务器" name_zh_TW="網絡遊戲魔獸爭霸客戶端連接服務器" ruleid="50120" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Microsoft IIS .ida/.idq ISAPI扩展远程缓冲区溢出攻击" name_en_US="Microsoft IIS .ida/.idq ISAPI Extension Remote Buffer Overflow" name_zh_CN="Microsoft IIS .ida/.idq ISAPI扩展远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS .ida/.idq ISAPI擴展遠程緩沖區溢出攻擊" ruleid="20102" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitTorrent通过UDP协议获取文件信息" name_en_US="P2P File Sharing Tool BitTorrent Obtainning Files over UDP Protocol" name_zh_CN="P2P文件共享工具BitTorrent通过UDP协议获取文件信息" name_zh_TW="P2P文件共享工具BitTorrent通過UDP協議獲取文件信息" ruleid="50129" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏魔兽争霸（Warcraft）网络对战" name_en_US="Online Game &quot;Warcraft&quot;" name_zh_CN="网络游戏魔兽争霸（Warcraft）网络对战" name_zh_TW="網絡遊戲魔獸爭霸（Warcraft）網絡對戰" ruleid="50128" visible="true" />
			<rule action=" db  screen " enabled="true" group="269484207" module="0" name="phpcms 2008多个漏洞" name_en_US="phpcms 2008 Multiple Vulnerabilities" name_zh_CN="phpcms 2008多个漏洞" name_zh_TW="phpcms 2008多個漏洞" ruleid="22302" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Windows恶意.lnk文件邮件附件传播" name_en_US="Microsoft Windows Malicious .lnk Document Attachment Propagation" name_zh_CN="Microsoft Windows恶意.lnk文件邮件附件传播" name_zh_TW="Microsoft Windows惡意.lnk文件郵件附件傳播" ruleid="40777" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="CVE-2012-0002 Remote Desktop Protocol中远程代码执行漏洞(MS12-020)" name_en_US="CVE-2012-0002 Remote Desktop Protocol Remote Code Execution Vulnerability(MS12-020)" name_zh_CN="CVE-2012-0002 Remote Desktop Protocol中远程代码执行漏洞(MS12-020)" name_zh_TW="CVE-2012-0002 Remote Desktop Protocol中遠程代碼執行漏洞(MS12-020)" ruleid="21458" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="Windows系统下Adware Speedbar网络通信" name_en_US="Windows Adware Speedbar Network Communication" name_zh_CN="Windows系统下Adware Speedbar网络通信" name_zh_TW="Windows系統下Adware Speedbar網絡通信" ruleid="40776" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="0" name="DHCP服务器Offer配置信息操作" name_en_US="DHCP Server Offer Information Configuration Operation" name_zh_CN="DHCP服务器Offer配置信息操作" name_zh_TW="DHCP服務器Offer配置信息操作" ruleid="50097" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="pagelog.cgi脚本漏洞扫描探测" name_en_US="pagelog.cgi Script Vulnerability Detection" name_zh_CN="pagelog.cgi脚本漏洞扫描探测" name_zh_TW="pagelog.cgi腳本漏洞掃描探測" ruleid="30338" visible="true" />
			<rule action=" db  screen " enabled="true" group="71307337" module="0" name="Microsoft Windows 2000 telnet执行NTLM认证" name_en_US="Microsoft Windows 2000 telnet NTLM Authentication" name_zh_CN="Microsoft Windows 2000 telnet执行NTLM认证" name_zh_TW="Microsoft Windows 2000 telnet執行NTLM認證" ruleid="40775" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏QUAKE客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;QUAKE&quot;" name_zh_CN="网络游戏QUAKE客户端连接服务器" name_zh_TW="網絡遊戲QUAKE客戶端連接服務器" ruleid="50096" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745866" module="1" name="Windows系统下Adware P2PNetworking网络通信" name_en_US="Windows Adware P2PNetworking Network Communication" name_zh_CN="Windows系统下Adware P2PNetworking网络通信" name_zh_TW="Windows系統下Adware P2PNetworking網絡通信" ruleid="40774" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834517" module="0" name="IP/ICMP畸形分片包Jolt拒绝服务攻击" name_en_US="Malformed IP/ICMP Fragmented Packet Jolt Denial of Service" name_zh_CN="IP/ICMP畸形分片包Jolt拒绝服务攻击" name_zh_TW="IP/ICMP畸形分片包Jolt拒絕服務攻擊" ruleid="10032" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件QQ用户登录（UDP）" name_en_US="Instant Messaging Software QQ User Login (UDP)" name_zh_CN="即时通信软件QQ用户登录（UDP）" name_zh_TW="即時通信軟件QQ用戶登錄（UDP）" ruleid="50095" visible="true" />
			<rule action=" db  screen " enabled="true" group="368054347" module="0" name="SyGate未公开远程管理端口通信" name_en_US="SyGate Inpublic Remote Management Port Communication" name_zh_CN="SyGate未公开远程管理端口通信" name_zh_TW="SyGate未公開遠程管理端口通信" ruleid="40769" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="Windows系统下Adware Conspy下载更新" name_en_US="Windows Adware Conspy Download Upgrade" name_zh_CN="Windows系统下Adware Conspy下载更新" name_zh_TW="Windows系統下Adware Conspy下載更新" ruleid="40773" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware Superbar下载安装程序" name_en_US="Adware Superbar Downloading Installer on Windows" name_zh_CN="Windows系统下Adware Superbar下载安装程序" name_zh_TW="Windows系統下Adware Superbar下載安裝程序" ruleid="40772" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Publisher远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞" ruleid="21158" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞" name_en_US="Vulnerabilities in the Microsoft Windows OpenType Font (OTF) Format Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Font (OTF) Format Driver遠程代碼執行漏洞" ruleid="21159" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Publisher远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞" ruleid="21156" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Publisher远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞" ruleid="21157" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21154" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Publisher远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Publisher Could Allow Remote Code Execution" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞" ruleid="21155" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21152" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21153" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21150" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Office Graphics Filters Could Allow for Remote Code Execution" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞" ruleid="21151" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206166" module="0" name="利用WebSphere helpout.exe程序漏洞拒绝服务攻击" name_en_US="Denial of Service via WebSphere helpout.exe Vulnerability" name_zh_CN="利用WebSphere helpout.exe程序漏洞拒绝服务攻击" name_zh_TW="利用WebSphere helpout.exe程序漏洞拒絕服務攻擊" ruleid="10062" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616790" module="0" name="Microsoft Windows 2000域控制器拒绝服务攻击" name_en_US="Microsoft Windows 2000 Domain Controller Denial of Service" name_zh_CN="Microsoft Windows 2000域控制器拒绝服务攻击" name_zh_TW="Microsoft Windows 2000域控制器拒絕服務攻擊" ruleid="10063" visible="false" />
			<rule action=" db  screen " enabled="false" group="88082454" module="0" name="Oracle 9i TNS单字节包拒绝服务攻击" name_en_US="Oracle 9i TNS Off-by-one Denial of Service" name_zh_CN="Oracle 9i TNS单字节包拒绝服务攻击" name_zh_TW="Oracle 9i TNS單字節包拒絕服務攻擊" ruleid="10060" visible="true" />
			<rule action=" db  screen " enabled="false" group="73402390" module="0" name="Microsoft Windows 2000 RPC服务远程拒绝服务攻击" name_en_US="Microsoft Windows 2000 RPC Service Remote Denial of Service" name_zh_CN="Microsoft Windows 2000 RPC服务远程拒绝服务攻击" name_zh_TW="Microsoft Windows 2000 RPC服務遠程拒絕服務攻擊" ruleid="10061" visible="false" />
			<rule action=" db  screen " enabled="true" group="222300182" module="0" name="Oracle TNS Listener Service_CurLoad远程拒绝服务攻击" name_en_US="Oracle TNS Listener Service_CurLoad Remote Denial of Service" name_zh_CN="Oracle TNS Listener Service_CurLoad远程拒绝服务攻击" name_zh_TW="Oracle TNS Listener Service_CurLoad遠程拒絕服務攻擊" ruleid="10066" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Netscape Enterprise Server REVLOG请求远程拒绝服务攻击" name_en_US="Netscape Enterprise Server REVLOG Request Remote Denial of Service" name_zh_CN="Netscape Enterprise Server REVLOG请求远程拒绝服务攻击" name_zh_TW="Netscape Enterprise Server REVLOG請求遠程拒絕服務攻擊" ruleid="10067" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理页面admin_forum.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Page admin_forum.php" name_zh_CN="Ultimate PHP Board远程管理页面admin_forum.php访问" name_zh_TW="Ultimate PHP Board遠程管理頁面admin_forum.php訪問" ruleid="20179" visible="true" />
			<rule action=" db  screen " enabled="true" group="73402390" module="0" name="Windows 9x SMB_COM_SEND_SINGLE_BLOCK操作拒绝服务攻击" name_en_US="Windows 9x SMB_COM_SEND_SINGLE_BLOCK Denial of Service" name_zh_CN="Windows 9x SMB_COM_SEND_SINGLE_BLOCK操作拒绝服务攻击" name_zh_TW="Windows 9x SMB_COM_SEND_SINGLE_BLOCK操作拒絕服務攻擊" ruleid="10065" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理页面admin_config.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Page admin_config.php" name_zh_CN="Ultimate PHP Board远程管理页面admin_config.php访问" name_zh_TW="Ultimate PHP Board遠程管理頁面admin_config.php訪問" ruleid="20177" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理脚本admin_members.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Script admin_members.php" name_zh_CN="Ultimate PHP Board远程管理脚本admin_members.php访问" name_zh_TW="Ultimate PHP Board遠程管理腳本admin_members.php訪問" ruleid="20176" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377238" module="0" name="Allaire JRun Servlet畸形请求远程拒绝服务攻击" name_en_US="Allaire JRun Servlet Malformed Requests Remote Denial of Service" name_zh_CN="Allaire JRun Servlet畸形请求远程拒绝服务攻击" name_zh_TW="Allaire JRun Servlet畸形請求遠程拒絕服務攻擊" ruleid="10068" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423894" module="0" name="Unify eWave ServletExec远程拒绝服务攻击" name_en_US="Unify eWave ServletExec Remote Denial of Service" name_zh_CN="Unify eWave ServletExec远程拒绝服务攻击" name_zh_TW="Unify eWave ServletExec遠程拒絕服務攻擊" ruleid="10069" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Savant Webserver cgitest.exe远程缓冲区溢出攻击" name_en_US="Savant Webserver cgitest.exe Remote Buffer Overflow" name_zh_CN="Savant Webserver cgitest.exe远程缓冲区溢出攻击" name_zh_TW="Savant Webserver cgitest.exe遠程緩沖區溢出攻擊" ruleid="20173" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用vBulletin Calendar.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via vBulletin Calendar.php Script Vulnerability" name_zh_CN="利用vBulletin Calendar.php脚本漏洞远程执行命令" name_zh_TW="利用vBulletin Calendar.php腳本漏洞遠程執行命令" ruleid="20172" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157606" module="0" name="Microsoft IIS 4.0/5.0 CGI文件名错误解码攻击" name_en_US="Microsoft IIS 4.0/5.0 CGI Filename Incorrect Decoding" name_zh_CN="Microsoft IIS 4.0/5.0 CGI文件名错误解码攻击" name_zh_TW="Microsoft IIS 4.0/5.0 CGI文件名錯誤解碼攻擊" ruleid="20171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Millenium木马通信" name_en_US="Trojan Millenium Communication on Windows" name_zh_CN="Windows系统下Millenium木马通信" name_zh_TW="Windows系統下Millenium木馬通信" ruleid="40543" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Squid Cache FTP代理URL缓冲区溢出攻击" name_en_US="Squid Cache FTP Proxy URL Buffer Overflow" name_zh_CN="Squid Cache FTP代理URL缓冲区溢出攻击" name_zh_TW="Squid Cache FTP代理URL緩沖區溢出攻擊" ruleid="20779" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Microsoft SQLXML ISAPI远程缓冲区溢出攻击" name_en_US="Microsoft SQLXML ISAPI Remote Buffer Overflow" name_zh_CN="Microsoft SQLXML ISAPI远程缓冲区溢出攻击" name_zh_TW="Microsoft SQLXML ISAPI遠程緩沖區溢出攻擊" ruleid="20778" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206314" module="0" name="SAP DB Webagent远程缓冲区溢出攻击" name_en_US="SAP DB Webagent Remote Buffer Overflow" name_zh_CN="SAP DB Webagent远程缓冲区溢出攻击" name_zh_TW="SAP DB Webagent遠程緩沖區溢出攻擊" ruleid="20775" visible="true" />
			<rule action=" db  screen " enabled="true" group="142608427" module="0" name="bsmtpd远程命令注入攻击" name_en_US="bsmtpd Remote Command Injection" name_zh_CN="bsmtpd远程命令注入攻击" name_zh_TW="bsmtpd遠程命令注入攻擊" ruleid="20774" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424047" module="0" name="PHP &quot;php_register_variable_ex()&quot;函数任意代码执行漏洞" name_en_US="PHP &quot;php_register_variable_ex()&quot; Function Execute Arbitrary Programs Vulnerability" name_zh_CN="PHP &quot;php_register_variable_ex()&quot;函数任意代码执行漏洞" name_zh_TW="PHP &quot;php_register_variable_ex()&quot;函數任意代碼執行漏洞" ruleid="21370" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206314" module="0" name="Kerio MailServer远程用户名缓冲区溢出攻击" name_en_US="Kerio MailServer Username Remote Buffer Overflow" name_zh_CN="Kerio MailServer远程用户名缓冲区溢出攻击" name_zh_TW="Kerio MailServer遠程用戶名緩沖區溢出攻擊" ruleid="20776" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Adobe Acrobat和READER内存破坏漏洞" name_en_US="Adobe Acrobat and Reader Memory Corruption Vulnerability" name_zh_CN="Adobe Acrobat和READER内存破坏漏洞" name_zh_TW="Adobe Acrobat和READER內存破壞漏洞" ruleid="21376" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="MetaCart2 intCatalogID参数远程SQL注入攻击" name_en_US="MetaCart2 intCatalogID Parameter Remote SQL Injection" name_zh_CN="MetaCart2 intCatalogID参数远程SQL注入攻击" name_zh_TW="MetaCart2 intCatalogID參數遠程SQL注入攻擊" ruleid="20770" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375343" module="0" name="Apache Struts远程命令执行和任意文件覆盖漏洞" name_en_US="Apache Struts Remote Command Execution and Arbitrary File Overwrite Vulnerability" name_zh_CN="Apache Struts远程命令执行和任意文件覆盖漏洞" name_zh_TW="Apache Struts遠程命令執行和任意文件覆蓋漏洞" ruleid="21374" visible="true" />
			<rule action=" db  screen " enabled="true" group="272631850" module="0" name="Bay Technical Associates RPC3 Telnet访问认证绕过攻击" name_en_US="Bay Technical Associates RPC3 Telnet Authentication Bypass" name_zh_CN="Bay Technical Associates RPC3 Telnet访问认证绕过攻击" name_zh_TW="Bay Technical Associates RPC3 Telnet訪問認證繞過攻擊" ruleid="20772" visible="true" />
			<rule action="" enabled="true" group="138414127" module="0" name="TELNET服务TTYPROMPT环境变量内部事件" name_en_US="Internal Event of Environmental Variable TTYPROMPT for TELNET Service " name_zh_CN="TELNET服务TTYPROMPT环境变量内部事件" name_zh_TW="TELNET服務TTYPROMPT環境變量內部事件" ruleid="70051" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序甲壳虫 Gh0st 屏幕监控" name_en_US="Remote Control Program Beetle Gh0st Screen Monitor" name_zh_CN="远程控制程序甲壳虫 Gh0st 屏幕监控" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 屏幕監控" ruleid="41008" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序甲壳虫 Gh0st 键盘记录" name_en_US="Remote Control Program Beetle Gh0st Keylogger" name_zh_CN="远程控制程序甲壳虫 Gh0st 键盘记录" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 鍵盤記錄" ruleid="41009" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Microsoft Server Message Block Protocol Software 拒绝服务攻击漏洞" name_en_US="Microsoft Server Message Block Protocol Software Denial of Service Vulnerability" name_zh_CN="Microsoft Server Message Block Protocol Software 拒绝服务攻击漏洞" name_zh_TW="Microsoft Server Message Block Protocol Software 拒絕服務攻擊漏洞" ruleid="10288" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Microsoft Distributed File System (DFS) 拒绝服务攻击漏洞" name_en_US="Microsoft Distributed File System (DFS) Denial of Service Vulnerability" name_zh_CN="Microsoft Distributed File System (DFS) 拒绝服务攻击漏洞" name_zh_TW="Microsoft Distributed File System (DFS) 拒絕服務攻擊漏洞" ruleid="10289" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 DRAT （暗组）屏幕监控" name_en_US="Remote Control Program DRAT(AnZu) Screen Monitor" name_zh_CN="远程控制程序 DRAT （暗组）屏幕监控" name_zh_TW="遠程控制程序 DRAT （暗組）屏幕監控" ruleid="41002" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序上兴远控屏幕监控" name_en_US="Remote Control Program ShangXing Remote Control Screen Monitor" name_zh_CN="远程控制程序上兴远控屏幕监控" name_zh_TW="遠程控制程序上興遠控屏幕監控" ruleid="41003" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157599" module="0" name="Apache Tomcat Transfer-Encoding头处理拒绝服务和信息泄露漏洞" name_en_US="Apache Tomcat Remote Denial Of Service and Information Disclosure Vulnerability" name_zh_CN="Apache Tomcat Transfer-Encoding头处理拒绝服务和信息泄露漏洞" name_zh_TW="Apache Tomcat Transfer-Encoding頭處理拒絕服務和信息泄露漏洞" ruleid="10284" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 DRAT （暗组）文件下发" name_en_US="Remote Control Program DRAT(AnZu) Files Issue" name_zh_CN="远程控制程序 DRAT （暗组）文件下发" name_zh_TW="遠程控制程序 DRAT （暗組）文件下發" ruleid="41001" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="DNS Request Flood 拒绝服务攻击" name_en_US="DNS Request Flood Denial of Service" name_zh_CN="DNS Request Flood 拒绝服务攻击" name_zh_TW="DNS Request Flood 拒絕服務攻擊" ruleid="10282" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="DNS Reply Flood 拒绝服务攻击" name_en_US="DNS Reply Flood Denial of Service" name_zh_CN="DNS Reply Flood 拒绝服务攻击" name_zh_TW="DNS Reply Flood 拒絕服務攻擊" ruleid="10283" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Microsoft Active Directory Service Principal Names验证拒绝服务漏洞" name_en_US="Vulnerability in Active Directory Could Allow Denial of Service" name_zh_CN="Microsoft Active Directory Service Principal Names验证拒绝服务漏洞" name_zh_TW="Microsoft Active Directory Service Principal Names驗證拒絕服務漏洞" ruleid="10280" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377242" module="0" name="ICMP 多播地址ping请求伪造攻击" name_en_US="ICMP Multicast Address Ping Request Spoof Attack" name_zh_CN="ICMP 多播地址ping请求伪造攻击" name_zh_TW="ICMP 多播地址ping請求僞造攻擊" ruleid="10281" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve Backup for MS SQL缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup for MS SQL Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup for MS SQL缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup for MS SQL緩沖區溢出攻擊" ruleid="20519" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="MySQL Eventum远程SQL注入攻击" name_en_US="MySQL Eventum Script SQL Injection" name_zh_CN="MySQL Eventum远程SQL注入攻击" name_zh_TW="MySQL Eventum遠程SQL注入攻擊" ruleid="20518" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="UDP畸形数据包PING-PONG拒绝服务攻击" name_en_US="Malformed UDP Packet PING-PONG Denial of Service" name_zh_CN="UDP畸形数据包PING-PONG拒绝服务攻击" name_zh_TW="UDP畸形數據包PING-PONG拒絕服務攻擊" ruleid="10118" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="IGMP畸形包拒绝服务攻击" name_en_US="Malformed IGMP Packet Denial of Service" name_zh_CN="IGMP畸形包拒绝服务攻击" name_zh_TW="IGMP畸形包拒絕服務攻擊" ruleid="10119" visible="true" />
			<rule action=" db  screen " enabled="true" group="98566447" module="0" name="Microsoft Outlook Express NNTP LIST命令响应解析溢出攻击" name_en_US="Microsoft Outlook Express NNTP LIST Command Response Resolution Overflow" name_zh_CN="Microsoft Outlook Express NNTP LIST命令响应解析溢出攻击" name_zh_TW="Microsoft Outlook Express NNTP LIST命令響應解析溢出攻擊" ruleid="20511" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834517" module="0" name="IP畸形分片包拒绝服务攻击" name_en_US="Malformed IP Fragmented Packet Denial of Service" name_zh_CN="IP畸形分片包拒绝服务攻击" name_zh_TW="IP畸形分片包拒絕服務攻擊" ruleid="10117" visible="false" />
			<rule action=" db  screen " enabled="true" group="70256671" module="0" name="Serv-U FTP服务器设备文件名远程拒绝服务攻击" name_en_US="Serv-U FTP Server Device Filename Remote Denial of Service" name_zh_CN="Serv-U FTP服务器设备文件名远程拒绝服务攻击" name_zh_TW="Serv-U FTP服務器設備文件名遠程拒絕服務攻擊" ruleid="10114" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="UDP-Flood淹没拒绝服务攻击" name_en_US="UDP-Flood Denial of Service Attacks" name_zh_CN="UDP-Flood淹没拒绝服务攻击" name_zh_TW="UDP-Flood淹沒拒絕服務攻擊" ruleid="10115" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Microsoft IIS超长畸形请求拒绝服务攻击" name_en_US="Microsoft IIS Over-long Malformed Request Denial of Service" name_zh_CN="Microsoft IIS超长畸形请求拒绝服务攻击" name_zh_TW="Microsoft IIS超長畸形請求拒絕服務攻擊" ruleid="10112" visible="true" />
			<rule action=" db  screen " enabled="true" group="337643547" module="0" name="利用Linksys Gozila.cgi脚本漏洞远程拒绝服务攻击" name_en_US="Remote Denial of Service via Linksys Gozila.cgi Script Vulnerability" name_zh_CN="利用Linksys Gozila.cgi脚本漏洞远程拒绝服务攻击" name_zh_TW="利用Linksys Gozila.cgi腳本漏洞遠程拒絕服務攻擊" ruleid="10113" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832731" module="0" name="ISS RealSecure/BlackICE协议分析模块SMB解析堆溢出攻击" name_en_US="ISS RealSecure/BlackICE Protocol Analysis Module SMB Resolution Heap Overflow" name_zh_CN="ISS RealSecure/BlackICE协议分析模块SMB解析堆溢出攻击" name_zh_TW="ISS RealSecure/BlackICE協議分析模塊SMB解析堆溢出攻擊" ruleid="10110" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="利用Web Portal System wps_shop.cgi脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Web Portal System wps_shop.cgi Script Vulnerability" name_zh_CN="利用Web Portal System wps_shop.cgi脚本漏洞远程执行命令" name_zh_TW="利用Web Portal System wps_shop.cgi腳本漏洞遠程執行命令" ruleid="20516" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="eFiction上传图像文件执行命令攻击" name_en_US="eFiction Image File Upload Code Execution" name_zh_CN="eFiction上传图像文件执行命令攻击" name_zh_TW="eFiction上傳圖像文件執行命令攻擊" ruleid="20689" visible="true" />
			<rule action=" db  screen " enabled="true" group="95453210" module="0" name="SMB srv!SrvVerifyShare()处理Tree Connect报文远程拒绝服务攻击" name_en_US="SMB srv!SrvVerifyShare() Address Tree Connect Packet Remote Dos Attack" name_zh_CN="SMB srv!SrvVerifyShare()处理Tree Connect报文远程拒绝服务攻击" name_zh_TW="SMB srv!SrvVerifyShare()處理Tree Connect報文遠程拒絕服務攻擊" ruleid="10258" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="QnECMS adminfolderpath变量远程文件包含攻击" name_en_US="QnECMS adminfolderpath Variable Remote File Inclusion" name_zh_CN="QnECMS adminfolderpath变量远程文件包含攻击" name_zh_TW="QnECMS adminfolderpath變量遠程文件包含攻擊" ruleid="20681" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="Ipswitch IMail SMTP Server畸形参数缓冲区溢出攻击" name_en_US="Ipswitch IMail SMTP Server Malformed Parameter Buffer Overflow" name_zh_CN="Ipswitch IMail SMTP Server畸形参数缓冲区溢出攻击" name_zh_TW="Ipswitch IMail SMTP Server畸形參數緩沖區溢出攻擊" ruleid="20680" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="HTTP协议请求超长Authorization选项远程缓冲区溢出攻击" name_en_US="HTTP Protocol Request Over-Long Authorization Option Remote Buffer Overflow" name_zh_CN="HTTP协议请求超长Authorization选项远程缓冲区溢出攻击" name_zh_TW="HTTP協議請求超長Authorization選項遠程緩沖區溢出攻擊" ruleid="20683" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Ultimate PHP Board _CONFIG[skin_dir]变量远程文件包含攻击" name_en_US="Ultimate PHP Board _CONFIG[skin_dir] Variable Remote File Inclusion" name_zh_CN="Ultimate PHP Board _CONFIG[skin_dir]变量远程文件包含攻击" name_zh_TW="Ultimate PHP Board _CONFIG[skin_dir]變量遠程文件包含攻擊" ruleid="20682" visible="true" />
			<rule action=" db  screen " enabled="true" group="93323563" module="0" name="HP Node Manager SNMP服务远程缓冲区溢出攻击" name_en_US="HP Node Manager SNMP Service Remote Buffer Overflow" name_zh_CN="HP Node Manager SNMP服务远程缓冲区溢出攻击" name_zh_TW="HP Node Manager SNMP服務遠程緩沖區溢出攻擊" ruleid="20685" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="WordPress functions.php脚本远程文件包含攻击" name_en_US="WordPress functions.php Script Remote File Inclusion" name_zh_CN="WordPress functions.php脚本远程文件包含攻击" name_zh_TW="WordPress functions.php腳本遠程文件包含攻擊" ruleid="20684" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="phpBB viewtopic.php topic_id远程SQL注入攻击" name_en_US="phpBB viewtopic.php topic_id Remote SQL Injection" name_zh_CN="phpBB viewtopic.php topic_id远程SQL注入攻击" name_zh_TW="phpBB viewtopic.php topic_id遠程SQL注入攻擊" ruleid="20687" visible="true" />
			<rule action=" db  screen " enabled="true" group="93323563" module="0" name="NodeManager Professional SNMP Trap处理远程缓冲区溢出攻击" name_en_US="NodeManager Professional SNMP Trap Handling Remote Buffer Overflow" name_zh_CN="NodeManager Professional SNMP Trap处理远程缓冲区溢出攻击" name_zh_TW="NodeManager Professional SNMP Trap處理遠程緩沖區溢出攻擊" ruleid="20686" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Embedded OpenType字体引擎远程代码执行攻击" name_en_US="Embedded OpenType Font Engine Remote Code Execution Attack" name_zh_CN="Embedded OpenType字体引擎远程代码执行攻击" name_zh_TW="Embedded OpenType字體引擎遠程代碼執行攻擊" ruleid="20999" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="微软DirectShow QuickTime解析验证Size Field远程代码执行攻击" name_en_US="Microsoft DirectShow QuickTime Parse Validate Size Field Remote Code Execution Attack" name_zh_CN="微软DirectShow QuickTime解析验证Size Field远程代码执行攻击" name_zh_TW="微軟DirectShow QuickTime解析驗證Size Field遠程代碼執行攻擊" ruleid="20998" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="微软 Office Web 组件Spreadsheet对象远程代码执行攻击" name_en_US="Microsoft Office Web Components Spreadsheet Object Remote Code Execution Attack" name_zh_CN="微软 Office Web 组件Spreadsheet对象远程代码执行攻击" name_zh_TW="微軟 Office Web 組件Spreadsheet對象遠程代碼執行攻擊" ruleid="20995" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="微软DirectShow QuickTime解析验证NumberOfEntries远程代码执行攻击" name_en_US="Microsoft DirectShow QuickTime Parse Validate NumberOfEntries  Remote Code Execution Attack" name_zh_CN="微软DirectShow QuickTime解析验证NumberOfEntries远程代码执行攻击" name_zh_TW="微軟DirectShow QuickTime解析驗證NumberOfEntries遠程代碼執行攻擊" ruleid="20997" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="微软DirectShow解析QuickTime文件格式远程代码执行攻击" name_en_US="Microsoft DirectShow Parse QuickTime Format Remote Code Execution Attack" name_zh_CN="微软DirectShow解析QuickTime文件格式远程代码执行攻击" name_zh_TW="微軟DirectShow解析QuickTime文件格式遠程代碼執行攻擊" ruleid="20996" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Windows后台打印程序允许远程代码执行攻击" name_en_US="Windows Print Spooler Allow Remote Code Execution" name_zh_CN="Windows后台打印程序允许远程代码执行攻击" name_zh_TW="Windows後台打印程序允許遠程代碼執行攻擊" ruleid="20991" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="IIS WebDAV插件特权提升攻击" name_en_US="WebDAV plugin for IIS Elevation Of Privilege" name_zh_CN="IIS WebDAV插件特权提升攻击" name_zh_TW="IIS WebDAV插件特權提升攻擊" ruleid="20990" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft DirectShow MPEG2TuneRequest组件溢出攻击" name_en_US="Microsoft DirectShow MPEG2TuneRequest Component Overflow" name_zh_CN="Microsoft DirectShow MPEG2TuneRequest组件溢出攻击" name_zh_TW="Microsoft DirectShow MPEG2TuneRequest組件溢出攻擊" ruleid="20993" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647530" module="0" name="Windows后台打印程序信息泄露攻击" name_en_US="Windows Print Spooler Information Disclosure " name_zh_CN="Windows后台打印程序信息泄露攻击" name_zh_TW="Windows後台打印程序信息泄露攻擊" ruleid="20992" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware TIBS下载安装程序" name_en_US="Adware TIBS Downloading Installer on Windows" name_zh_CN="Windows系统下Adware TIBS下载安装程序" name_zh_TW="Windows系統下Adware TIBS下載安裝程序" ruleid="40739" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware ExactSearchBar下载安装程序" name_en_US="Adware ExactSearchBar Downloading Installer on Windows" name_zh_CN="Windows系统下Adware ExactSearchBar下载安装程序" name_zh_TW="Windows系統下Adware ExactSearchBar下載安裝程序" ruleid="40738" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware NewDotNet下载安装程序" name_en_US="Adware NewDotNet Downloading Installer on Windows" name_zh_CN="Windows系统下Adware NewDotNet下载安装程序" name_zh_TW="Windows系統下Adware NewDotNet下載安裝程序" ruleid="40733" visible="true" />
			<rule action=" db  screen " enabled="true" group="224657482" module="0" name="BOT僵尸程序远程控制频道通信" name_en_US="BOT Zombies Remote Control of Communication" name_zh_CN="BOT僵尸程序远程控制频道通信" name_zh_TW="BOT僵屍程序遠程控制頻道通信" ruleid="40732" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下黑客之门木马通信" name_en_US="Trojan Hacker&apos;s Door Communication on Windows" name_zh_CN="Windows系统下黑客之门木马通信" name_zh_TW="Windows系統下黑客之門木馬通信" ruleid="40731" visible="true" />
			<rule action=" db  screen " enabled="true" group="69210191" module="0" name="Windows系统下sqlserver管理器ASP后门访问" name_en_US="sqlserver Manager ASP Backdoor on Windows" name_zh_CN="Windows系统下sqlserver管理器ASP后门访问" name_zh_TW="Windows系統下sqlserver管理器ASP後門訪問" ruleid="40730" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware ISTbar下载安装更新程序" name_en_US="Adware ISTbar Downloading Installer on Windows" name_zh_CN="Windows系统下Adware ISTbar下载安装更新程序" name_zh_TW="Windows系統下Adware ISTbar下載安裝更新程序" ruleid="40737" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware FavoriteMan下载安装程序" name_en_US="Adware FavoriteMan Downloading Installer on Windows" name_zh_CN="Windows系统下Adware FavoriteMan下载安装程序" name_zh_TW="Windows系統下Adware FavoriteMan下載安裝程序" ruleid="40736" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware ABetterInternet下载安装程序" name_en_US="Adware ABetterInternet Downloading Installer on Windows" name_zh_CN="Windows系统下Adware ABetterInternet下载安装程序" name_zh_TW="Windows系統下Adware ABetterInternet下載安裝程序" ruleid="40735" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware SecondThought下载安装程序" name_en_US="Adware SecondThought Downloading Installer on Windows" name_zh_CN="Windows系统下Adware SecondThought下载安装程序" name_zh_TW="Windows系統下Adware SecondThought下載安裝程序" ruleid="40734" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="利用VBulletin index.php CGI脚本漏洞远程执行命令" name_en_US="Remote Command Execution via VBulletin index.php CGI Script Vulnerability" name_zh_CN="利用VBulletin index.php CGI脚本漏洞远程执行命令" name_zh_TW="利用VBulletin index.php CGI腳本漏洞遠程執行命令" ruleid="20425" visible="true" />
			<rule action=" db  screen " enabled="true" group="141558054" module="0" name="SSH守护程序缓冲区溢出攻击" name_en_US="SSH Daemon Buffer Overflow" name_zh_CN="SSH守护程序缓冲区溢出攻击" name_zh_TW="SSH守護程序緩沖區溢出攻擊" ruleid="20356" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="利用Logbook logbook.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution Via Logbook logbook.pl Script Vulnerability" name_zh_CN="利用Logbook logbook.pl脚本漏洞远程执行命令" name_zh_TW="利用Logbook logbook.pl腳本漏洞遠程執行命令" ruleid="20354" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764326" module="0" name="IMAP服务暴力猜测口令攻击" name_en_US="IMAP Service Password Brute Force" name_zh_CN="IMAP服务暴力猜测口令攻击" name_zh_TW="IMAP服務暴力猜測口令攻擊" ruleid="20352" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080934" module="0" name="MS-SQL服务用户暴力猜解口令攻击" name_en_US="MS-SQL Service User Password Brute Force" name_zh_CN="MS-SQL服务用户暴力猜解口令攻击" name_zh_TW="MS-SQL服務用戶暴力猜解口令攻擊" ruleid="20351" visible="true" />
			<rule action=" db  screen " enabled="true" group="206570022" module="0" name="POP3服务暴力猜测口令攻击" name_en_US="POP3 Service Password Brute Force" name_zh_CN="POP3服务暴力猜测口令攻击" name_zh_TW="POP3服務暴力猜測口令攻擊" ruleid="20350" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHP Input/Ouput Wrapper远程包含函数执行命令攻击" name_en_US="PHP Input/Ouput Wrapper Remote function Inclusion Command Execution" name_zh_CN="PHP Input/Ouput Wrapper远程包含函数执行命令攻击" name_zh_TW="PHP Input/Ouput Wrapper遠程包含函數執行命令攻擊" ruleid="20429" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Cisco ACS管理CGI程序远程缓冲区溢出攻击" name_en_US="Cisco ACS Management CGI Remote Buffer Overflow" name_zh_CN="Cisco ACS管理CGI程序远程缓冲区溢出攻击" name_zh_TW="Cisco ACS管理CGI程序遠程緩沖區溢出攻擊" ruleid="20359" visible="true" />
			<rule action=" db  screen " enabled="true" group="162529583" module="0" name="Samba服务器call_trans2open远程缓冲区溢出攻击" name_en_US="Samba Server call_trans2open Remote Buffer Overflow" name_zh_CN="Samba服务器call_trans2open远程缓冲区溢出攻击" name_zh_TW="Samba服務器call_trans2open遠程緩沖區溢出攻擊" ruleid="20358" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="John Roy Pi3Web tstisapi.dll远程拒绝服务攻击" name_en_US="John Roy Pi3Web tstisapi.dll Remote Denial of Service" name_zh_CN="John Roy Pi3Web tstisapi.dll远程拒绝服务攻击" name_zh_TW="John Roy Pi3Web tstisapi.dll遠程拒絕服務攻擊" ruleid="20195" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="HIS Auktion脚本漏洞扫描利用" name_en_US="HIS Auktion Script Vulnerability Detection" name_zh_CN="HIS Auktion脚本漏洞扫描利用" name_zh_TW="HIS Auktion腳本漏洞掃描利用" ruleid="20194" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="BizDB bizdb-search.cgi脚本漏洞扫描利用" name_en_US="BizDB bizdb-search.cgi Script Vulnerability Detection" name_zh_CN="BizDB bizdb-search.cgi脚本漏洞扫描利用" name_zh_TW="BizDB bizdb-search.cgi腳本漏洞掃描利用" ruleid="20197" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用search.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via  search.cgi Script Vulnerability" name_zh_CN="利用search.cgi脚本漏洞远程执行命令" name_zh_TW="利用search.cgi腳本漏洞遠程執行命令" ruleid="20196" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Virgil virgil.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Virgil virgil.cgi Script Vulnerability" name_zh_CN="利用Virgil virgil.cgi脚本漏洞远程执行命令" name_zh_TW="利用Virgil virgil.cgi腳本漏洞遠程執行命令" ruleid="20191" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用vpopmail-CGIApps vadddomain脚本漏洞远程执行命令" name_en_US="Remote Code Execution via vpopmail-CGIApps vadddomain Script Vulnerability" name_zh_CN="利用vpopmail-CGIApps vadddomain脚本漏洞远程执行命令" name_zh_TW="利用vpopmail-CGIApps vadddomain腳本漏洞遠程執行命令" ruleid="20190" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Erazer Lite木马通信" name_en_US="Trojan Erazer Lite Communication on Windows" name_zh_CN="Windows系统下Erazer Lite木马通信" name_zh_TW="Windows系統下Erazer Lite木馬通信" ruleid="40715" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用add-subject.php脚本漏洞非法上传文件" name_en_US="Illegal File Upload via add-subject.php Script Vulnerability" name_zh_CN="利用add-subject.php脚本漏洞非法上传文件" name_zh_TW="利用add-subject.php腳本漏洞非法上傳文件" ruleid="20192" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Guestbook wguest.exe程序漏洞扫描探测" name_en_US="Guestbook wguest.exe Vulnerability Detection" name_zh_CN="Guestbook wguest.exe程序漏洞扫描探测" name_zh_TW="Guestbook wguest.exe程序漏洞掃描探測" ruleid="30118" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Internet Explorer Daxctle.OCX KeyFrame Method堆溢出攻击" name_en_US="Internet Explorer Daxctle.OCX KeyFrame Method Heap Overflow" name_zh_CN="Internet Explorer Daxctle.OCX KeyFrame Method堆溢出攻击" name_zh_TW="Internet Explorer Daxctle.OCX KeyFrame Method堆溢出攻擊" ruleid="20876" visible="true" />
			<rule action=" db  screen " enabled="true" group="361766966" module="0" name="Cisco IOS ILMI SNMP共同体串访问" name_en_US="Cisco IOS ILMI SNMP Community String" name_zh_CN="Cisco IOS ILMI SNMP共同体串访问" name_zh_TW="Cisco IOS ILMI SNMP共同體串訪問" ruleid="30448" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497770" module="0" name="SoftiaCom WMailserver 1.0缓冲区溢出攻击" name_en_US="SoftiaCom WMailserver 1.0 Buffer Overflow" name_zh_CN="SoftiaCom WMailserver 1.0缓冲区溢出攻击" name_zh_TW="SoftiaCom WMailserver 1.0緩沖區溢出攻擊" ruleid="20877" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="SysAdmin Magazine man.sh脚本漏洞扫描探测" name_en_US="SysAdmin Magazine man.sh Script Vulnerability Detection" name_zh_CN="SysAdmin Magazine man.sh脚本漏洞扫描探测" name_zh_TW="SysAdmin Magazine man.sh腳本漏洞掃描探測" ruleid="30110" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323130" module="0" name="shop.pl脚本漏洞扫描探测" name_en_US="shop.pl Script Vulnerability Detection" name_zh_CN="shop.pl脚本漏洞扫描探测" name_zh_TW="shop.pl腳本漏洞掃描探測" ruleid="30447" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="arpanet perlshop.cgi脚本漏洞扫描探测" name_en_US="arpanet perlshop.cgi Script Vulnerability Detection" name_zh_CN="arpanet perlshop.cgi脚本漏洞扫描探测" name_zh_TW="arpanet perlshop.cgi腳本漏洞掃描探測" ruleid="30113" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="NCSA phf脚本漏洞扫描探测" name_en_US="NCSA phf Script Vulnerability Detection" name_zh_CN="NCSA phf脚本漏洞扫描探测" name_zh_TW="NCSA phf腳本漏洞掃描探測" ruleid="30114" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HTTP协议Proxy-Authorization字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long Proxy-Authorization Field Buffer Overflow" name_zh_CN="HTTP协议Proxy-Authorization字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議Proxy-Authorization字段超長緩沖區溢出攻擊" ruleid="20874" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="获取QuikStore quikstore.cfg配置文件" name_en_US="QuikStore quikstore.cfg File Disclosure" name_zh_CN="获取QuikStore quikstore.cfg配置文件" name_zh_TW="獲取QuikStore quikstore.cfg配置文件" ruleid="30116" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Guestbook rguest.exe程序漏洞扫描探测" name_en_US="Guestbook rguest.exe Vulnerability Detection" name_zh_CN="Guestbook rguest.exe程序漏洞扫描探测" name_zh_TW="Guestbook rguest.exe程序漏洞掃描探測" ruleid="30117" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157638" module="0" name="Frontpage fpadmin.htm文件扫描探测" name_en_US="Frontpage fpadmin.htm File Detection" name_zh_CN="Frontpage fpadmin.htm文件扫描探测" name_zh_TW="Frontpage fpadmin.htm文件掃描探測" ruleid="40355" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157638" module="0" name="Frontpage fpsrvadm.exe文件扫描探测" name_en_US="Frontpage fpsrvadm.exe File Detection" name_zh_CN="Frontpage fpsrvadm.exe文件扫描探测" name_zh_TW="Frontpage fpsrvadm.exe文件掃描探測" ruleid="40354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下WebServect木马通信" name_en_US="Trojan WebServect Communication on Windows" name_zh_CN="Windows系统下WebServect木马通信" name_zh_TW="Windows系統下WebServect木馬通信" ruleid="40605" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="CA BrightStor Agent for Microsoft SQL缓冲区溢出攻击" name_en_US="CA BrightStor Agent for Microsoft SQL Buffer Overflow" name_zh_CN="CA BrightStor Agent for Microsoft SQL缓冲区溢出攻击" name_zh_TW="CA BrightStor Agent for Microsoft SQL緩沖區溢出攻擊" ruleid="20875" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="PHP/FI mlog.phtml脚本漏洞扫描探测" name_en_US="PHP/FI mlog.phtml Script Vulnerability Detection" name_zh_CN="PHP/FI mlog.phtml脚本漏洞扫描探测" name_zh_TW="PHP/FI mlog.phtml腳本漏洞掃描探測" ruleid="40351" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Voodoo Doll木马通信" name_en_US="Trojan Voodoo Doll Communication on Windows" name_zh_CN="Windows系统下Voodoo Doll木马通信" name_zh_TW="Windows系統下Voodoo Doll木馬通信" ruleid="40602" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157638" module="0" name="Frontpage fpremadm.exe文件扫描探测" name_en_US="Frontpage fpremadm.exe File Detection" name_zh_CN="Frontpage fpremadm.exe文件扫描探测" name_zh_TW="Frontpage fpremadm.exe文件掃描探測" ruleid="40353" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157638" module="0" name="Frontpage fpadmcgi.exe文件扫描探测" name_en_US="Frontpage fpadmcgi.exe File Detection" name_zh_CN="Frontpage fpadmcgi.exe文件扫描探测" name_zh_TW="Frontpage fpadmcgi.exe文件掃描探測" ruleid="40352" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="IASystemInfo.DLL ActiveX控件远程栈溢出攻击" name_en_US="IASystemInfo.DLL ActiveX Control Remote Stack Overflow" name_zh_CN="IASystemInfo.DLL ActiveX控件远程栈溢出攻击" name_zh_TW="IASystemInfo.DLL ActiveX控件遠程棧溢出攻擊" ruleid="20872" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下WinCrash 2.0木马建立连接" name_en_US="Trojan WinCrash 2.0 Connection on Windows" name_zh_CN="Windows系统下WinCrash 2.0木马建立连接" name_zh_TW="Windows系統下WinCrash 2.0木馬建立連接" ruleid="40359" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="通过Web服务执行.bat程序" name_en_US=".bat Program Execution via Web Service" name_zh_CN="通过Web服务执行.bat程序" name_zh_TW="通過Web服務執行.bat程序" ruleid="40358" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Xanadu 1.1木马通信" name_en_US="Trojan Xanadu 1.1 Communication on Windows" name_zh_CN="Windows系统下Xanadu 1.1木马通信" name_zh_TW="Windows系統下Xanadu 1.1木馬通信" ruleid="40609" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Nullsoft Winamp畸形播放列表文件处理远程缓冲区溢出攻击" name_en_US="Nullsoft Winamp Malformed Playlist File Processing Remote Buffer Overflow" name_zh_CN="Nullsoft Winamp畸形播放列表文件处理远程缓冲区溢出攻击" name_zh_TW="Nullsoft Winamp畸形播放列表文件處理遠程緩沖區溢出攻擊" ruleid="20873" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器LIST命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server LIST Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器LIST命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器LIST命令超長參數遠程緩沖區溢出攻擊" ruleid="20870" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="皮皮在线流媒体播放器界面节目及广告信息获取" name_en_US="PiPi Online Streaming Media Player Obtain Programs And Advertisements Information" name_zh_CN="皮皮在线流媒体播放器界面节目及广告信息获取" name_zh_TW="皮皮在線流媒體播放器界面節目及廣告信息獲取" ruleid="50350" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="飞秋聊天软件登陆" name_en_US="Feiqiu IM Login" name_zh_CN="飞秋聊天软件登陆" name_zh_TW="飛秋聊天軟件登陸" ruleid="50352" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MiniBB absolute_path参数远程文件包含攻击" name_en_US="MiniBB absolute_path Variable Remote File Inclusion" name_zh_CN="MiniBB absolute_path参数远程文件包含攻击" name_zh_TW="MiniBB absolute_path參數遠程文件包含攻擊" ruleid="20707" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="飞秋聊天软件消息传送" name_en_US="Feiqiu IM Message Transfer" name_zh_CN="飞秋聊天软件消息传送" name_zh_TW="飛秋聊天軟件消息傳送" ruleid="50354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏征途客户端连接服务器" name_en_US="Connection from Client to Server of Online Game &quot;Zhengtu&quot;" name_zh_CN="网络游戏征途客户端连接服务器" name_zh_TW="網絡遊戲征途客戶端連接服務器" ruleid="50357" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用WebPALS pals-cgi程序漏洞远程执行命令" name_en_US="Remote Code Execution via WebPALS pals-cgi Vulnerability" name_zh_CN="利用WebPALS pals-cgi程序漏洞远程执行命令" name_zh_TW="利用WebPALS pals-cgi程序漏洞遠程執行命令" ruleid="20223" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="NAI PGP Keyserver cs.exe脚本漏洞扫描利用" name_en_US="NAI PGP Keyserver cs.exe Script Vulnerability Detection" name_zh_CN="NAI PGP Keyserver cs.exe脚本漏洞扫描利用" name_zh_TW="NAI PGP Keyserver cs.exe腳本漏洞掃描利用" ruleid="20222" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="NAI PGP Keyserver console.exe脚本漏洞扫描利用" name_en_US="NAI PGP Keyserver console.exe Script Vulnerability Detection" name_zh_CN="NAI PGP Keyserver console.exe脚本漏洞扫描利用" name_zh_TW="NAI PGP Keyserver console.exe腳本漏洞掃描利用" ruleid="20221" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下DeepThroat木马通信" name_en_US="Trojan DeepThroat Communication on Windows" name_zh_CN="Windows系统下DeepThroat木马通信" name_zh_TW="Windows系統下DeepThroat木馬通信" ruleid="40023" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞扫描探测" name_en_US="Trend Micro OfficeScan jdkRqNotify.exe Script Vulnerability Detection" name_zh_CN="Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞扫描探测" name_zh_TW="Trend Micro OfficeScan jdkRqNotify.exe腳本漏洞掃描探測" ruleid="20227" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="JJ CGI例子程序漏洞扫描利用" name_en_US="JJ CGI Sample Vulnerability Detection" name_zh_CN="JJ CGI例子程序漏洞扫描利用" name_zh_TW="JJ CGI例子程序漏洞掃描利用" ruleid="20226" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="DCForum dcboard.cgi脚本漏洞扫描利用" name_en_US="DCForum dcboard.cgi Script Vulnerability Detection" name_zh_CN="DCForum dcboard.cgi脚本漏洞扫描利用" name_zh_TW="DCForum dcboard.cgi腳本漏洞掃描利用" ruleid="20225" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431974" module="0" name="WebPALS pals-cgi CGI程序漏洞扫描探测" name_en_US="WebPALS pals-cgi CGI Vulnerability Detection" name_zh_CN="WebPALS pals-cgi CGI程序漏洞扫描探测" name_zh_TW="WebPALS pals-cgi CGI程序漏洞掃描探測" ruleid="20224" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Informix Webdriver CGI程序漏洞扫描探测" name_en_US="Informix Webdriver CGI Vulnerability Detection" name_zh_CN="Informix Webdriver CGI程序漏洞扫描探测" name_zh_TW="Informix Webdriver CGI程序漏洞掃描探測" ruleid="20229" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Vignette Application Portal远程敏感信息获取攻击" name_en_US="Vignette Application Portal Remote Sensitive Information Disclosure" name_zh_CN="Vignette Application Portal远程敏感信息获取攻击" name_zh_TW="Vignette Application Portal遠程敏感信息獲取攻擊" ruleid="30548" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.bootparamd服务存在性TCP扫描探测" name_en_US="Solaris rpc.bootparamd Service TCP Detection" name_zh_CN="Solaris rpc.bootparamd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.bootparamd服務存在性TCP掃描探測" ruleid="30204" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rusersd服务存在性UDP扫描探测" name_en_US="Solaris rpc.rusersd Service UDP Detection" name_zh_CN="Solaris rpc.rusersd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rusersd服務存在性UDP掃描探測" ruleid="30205" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypserv服务存在性TCP扫描探测" name_en_US="Solaris rpc.ypserv Service TCP Detection" name_zh_CN="Solaris rpc.ypserv服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.ypserv服務存在性TCP掃描探測" ruleid="30206" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.admind服务存在性TCP扫描探测" name_en_US="Solaris rpc.admind Service TCP Detection" name_zh_CN="Solaris rpc.admind服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.admind服務存在性TCP掃描探測" ruleid="30207" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Verity&apos;s Search`97 search97.vts脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via Verity&apos;s Search`97 search97.vts Script Vulnerability" name_zh_CN="利用Verity&apos;s Search`97 search97.vts脚本漏洞远程遍历目录" name_zh_TW="利用Verity&apos;s Search`97 search97.vts腳本漏洞遠程遍曆目錄" ruleid="30200" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypupdated服务存在性TCP扫描探测" name_en_US="Solaris rpc.ypupdated Service TCP Detection" name_zh_CN="Solaris rpc.ypupdated服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.ypupdated服務存在性TCP掃描探測" ruleid="30201" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Linux rpc.mountd服务存在性UDP扫描探测" name_en_US="Linux rpc.mountd Service UDP Detection" name_zh_CN="Linux rpc.mountd服务存在性UDP扫描探测" name_zh_TW="Linux rpc.mountd服務存在性UDP掃描探測" ruleid="30202" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Linux rpc.mountd服务存在性TCP扫描探测" name_en_US="Linux rpc.mountd Service TCP Detection" name_zh_CN="Linux rpc.mountd服务存在性TCP扫描探测" name_zh_TW="Linux rpc.mountd服務存在性TCP掃描探測" ruleid="30203" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="Microsoft IIS 4.0 srch.htm文件扫描探测" name_en_US="Microsoft IIS 4.0 srch.htm File Detection" name_zh_CN="Microsoft IIS 4.0 srch.htm文件扫描探测" name_zh_TW="Microsoft IIS 4.0 srch.htm文件掃描探測" ruleid="40283" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rstatd服务存在性TCP扫描探测" name_en_US="Solaris rpc.rstatd Service TCP Detection" name_zh_CN="Solaris rpc.rstatd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rstatd服務存在性TCP掃描探測" ruleid="30208" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rexd服务存在性TCP扫描探测" name_en_US="Solaris rpc.rexd Service TCP Detection" name_zh_CN="Solaris rpc.rexd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rexd服務存在性TCP掃描探測" ruleid="30209" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Fore木马建立连接" name_en_US="Trojan Fore Connection on Windows" name_zh_CN="Windows系统下Fore木马建立连接" name_zh_TW="Windows系統下Fore木馬建立連接" ruleid="40022" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Ghost木马通信" name_en_US="Trojan Ghost Communication on Windows" name_zh_CN="Windows系统下Ghost木马通信" name_zh_TW="Windows系統下Ghost木馬通信" ruleid="40513" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Frenzy木马连接建立" name_en_US="Trojan Frenzy Trojan Connection on Windows" name_zh_CN="Windows系统下Frenzy木马连接建立" name_zh_TW="Windows系統下Frenzy木馬連接建立" ruleid="40512" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Frenzy木马通信" name_en_US="Trojan Frenzy Communication on Windows" name_zh_CN="Windows系统下Frenzy木马通信" name_zh_TW="Windows系統下Frenzy木馬通信" ruleid="40511" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Forced Entry木马通信" name_en_US="Trojan Forced Entry Communication on Windows" name_zh_CN="Windows系统下Forced Entry木马通信" name_zh_TW="Windows系統下Forced Entry木馬通信" ruleid="40510" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Hell-Driver木马通信" name_en_US="Trojan Hell-Driver Communication on Windows" name_zh_CN="Windows系统下Hell-Driver木马通信" name_zh_TW="Windows系統下Hell-Driver木馬通信" ruleid="40517" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Hackers World木马通信" name_en_US="Trojan Hackers World Communication on Windows" name_zh_CN="Windows系统下Hackers World木马通信" name_zh_TW="Windows系統下Hackers World木馬通信" ruleid="40516" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下G-Spot木马通信" name_en_US="Trojan G-Spot Communication on Windows" name_zh_CN="Windows系统下G-Spot木马通信" name_zh_TW="Windows系統下G-Spot木馬通信" ruleid="40515" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Gift木马通信" name_en_US="Trojan Gift Communication on Windows" name_zh_CN="Windows系统下Gift木马通信" name_zh_TW="Windows系統下Gift木馬通信" ruleid="40514" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Host Control木马通信" name_en_US="Trojan Host Control Communication on Windows" name_zh_CN="Windows系统下Host Control木马通信" name_zh_TW="Windows系統下Host Control木馬通信" ruleid="40519" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Hellz Addiction木马通信" name_en_US="Trojan Hellz Addiction Communication on Windows" name_zh_CN="Windows系统下Hellz Addiction木马通信" name_zh_TW="Windows系統下Hellz Addiction木馬通信" ruleid="40518" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Gatecrasher木马建立连接" name_en_US="Trojan Gatecrasher Connection on Windows" name_zh_CN="Windows系统下Gatecrasher木马建立连接" name_zh_TW="Windows系統下Gatecrasher木馬建立連接" ruleid="40021" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络语音聊天工具Gizmo Project用户登录" name_en_US="Internet Voice Chat Tool for Users to Log on Gizmo Project" name_zh_CN="网络语音聊天工具Gizmo Project用户登录" name_zh_TW="網絡語音聊天工具Gizmo Project用戶登錄" ruleid="50342" visible="true" />
			<rule action=" db  screen " enabled="true" group="211820597" module="0" name="DNS服务获取服务器版本号请求操作" name_en_US="DNS Service Server Version Number Request" name_zh_CN="DNS服务获取服务器版本号请求操作" name_zh_TW="DNS服務獲取服務器版本號請求操作" ruleid="30061" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Apple CUPS Text-to-PostScript texttops Filter Integer 溢出漏洞" name_en_US="HTTP: Apple CUPS Text-to-PostScript texttops Filter Integer Overflow" name_zh_CN="HTTP: Apple CUPS Text-to-PostScript texttops Filter Integer 溢出漏洞" name_zh_TW="HTTP: Apple CUPS Text-to-PostScript texttops Filter Integer 溢出漏洞" ruleid="29154" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480565" module="0" name="漏洞扫描器ISS扫描FTP服务尝试登录" name_en_US="ISS Scanner Scanning FTP Service Login Attempt" name_zh_CN="漏洞扫描器ISS扫描FTP服务尝试登录" name_zh_TW="漏洞掃描器ISS掃描FTP服務嘗試登錄" ruleid="30064" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器Saint扫描FTP服务" name_en_US="Saint Scanner Scanning FTP Service" name_zh_CN="漏洞扫描器Saint扫描FTP服务" name_zh_TW="漏洞掃描器Saint掃描FTP服務" ruleid="30066" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器SATAN扫描FTP服务" name_en_US="SATAN Scanner Scanning FTP Service" name_zh_CN="漏洞扫描器SATAN扫描FTP服务" name_zh_TW="漏洞掃描器SATAN掃描FTP服務" ruleid="30067" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络游戏联众好友客户端连接服务器" name_en_US="Online Game Our Friend Login" name_zh_CN="网络游戏联众好友客户端连接服务器" name_zh_TW="網絡遊戲聯衆好友客戶端連接服務器" ruleid="50283" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件安信同花顺用户登陆" name_en_US="Stock Market Analysis Software Anxin Tonghuashun User Login" name_zh_CN="股票行情分析操作软件安信同花顺用户登陆" name_zh_TW="股票行情分析操作軟件安信同花順用戶登陸" ruleid="50280" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="股票行情分析操作软件和讯股道用户登陆" name_en_US="Stock Market Analysis Software Hexungudao User Login" name_zh_CN="股票行情分析操作软件和讯股道用户登陆" name_zh_TW="股票行情分析操作軟件和訊股道用戶登陸" ruleid="50281" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下CNNSC远程控制木马通信" name_en_US="Trojan CNNSC Remote Control Communication on Windows" name_zh_CN="Windows系统下CNNSC远程控制木马通信" name_zh_TW="Windows系統下CNNSC遠程控制木馬通信" ruleid="40710" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="QVOD网络电视流媒体播放" name_en_US="QVOD Network TV Streaming Media Playing " name_zh_CN="QVOD网络电视流媒体播放" name_zh_TW="QVOD網絡電視流媒體播放" ruleid="50287" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络游戏网易泡泡连接（TCP）服务器" name_en_US="Online Game NETEASE POPO Login" name_zh_CN="网络游戏网易泡泡连接（TCP）服务器" name_zh_TW="網絡遊戲網易泡泡連接（TCP）服務器" ruleid="50284" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Priority木马通信" name_en_US="Trojan Priority Communication on Windows" name_zh_CN="Windows系统下Priority木马通信" name_zh_TW="Windows系統下Priority木馬通信" ruleid="40127" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="Windows系统下Adware GameSpy Arcade下载安装程序" name_en_US="Adware GameSpy Arcade Downloading Installer on Windows" name_zh_CN="Windows系统下Adware GameSpy Arcade下载安装程序" name_zh_TW="Windows系統下Adware GameSpy Arcade下載安裝程序" ruleid="40747" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络聊天软件新浪XChat 2.8.7c用户登录" name_en_US="Web Chat Software XChat 2.8.7c User Login" name_zh_CN="网络聊天软件新浪XChat 2.8.7c用户登录" name_zh_TW="網絡聊天軟件新浪XChat 2.8.7c用戶登錄" ruleid="50341" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="Windows系统下Bandook木马通信" name_en_US="Trojan Bandook Communication on Windows" name_zh_CN="Windows系统下Bandook木马通信" name_zh_TW="Windows系統下Bandook木馬通信" ruleid="40713" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具POCO用户登录" name_en_US="P2P File Sharing Tool POCO User Login" name_zh_CN="P2P文件共享工具POCO用户登录" name_zh_TW="P2P文件共享工具POCO用戶登錄" ruleid="50130" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线播放WMV流媒体内容" name_en_US="WMV Stream Media Content Online Playing" name_zh_CN="在线播放WMV流媒体内容" name_zh_TW="在線播放WMV流媒體內容" ruleid="50131" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线播放RM流媒体内容" name_en_US="RM Stream Media Content Online Playing" name_zh_CN="在线播放RM流媒体内容" name_zh_TW="在線播放RM流媒體內容" ruleid="50132" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P语音聊天工具Skype操作" name_en_US="P2P Voice Chat Tool Skype" name_zh_CN="P2P语音聊天工具Skype操作" name_zh_TW="P2P語音聊天工具Skype操作" ruleid="50133" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏魔兽世界（World of Warcraft）网络对战" name_en_US="Online Game &quot;World of Warcraft&quot;" name_zh_CN="网络游戏魔兽世界（World of Warcraft）网络对战" name_zh_TW="網絡遊戲魔獸世界（World of Warcraft）網絡對戰" ruleid="50134" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Netsky.P@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.P@mm" name_zh_CN="SMTP服务发送W32.Netsky.P@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.P@mm蠕蟲病毒郵件" ruleid="40614" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具Kamun用户登录" name_en_US="P2P File Sharing Tool Kamun User Login" name_zh_CN="P2P文件共享工具Kamun用户登录" name_zh_TW="P2P文件共享工具Kamun用戶登錄" ruleid="50137" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具OPENEXT用户登录" name_en_US="P2P File Sharing Tool OPENEXT User Login" name_zh_CN="P2P文件共享工具OPENEXT用户登录" name_zh_TW="P2P文件共享工具OPENEXT用戶登錄" ruleid="50138" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="网络游戏江湖用户登录" name_en_US="Online Game Jianghu User Login" name_zh_CN="网络游戏江湖用户登录" name_zh_TW="網絡遊戲江湖用戶登錄" ruleid="50139" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通信管理软件Digsby Beta用户登录" name_en_US="Instant Messaging Software Digsby Beta User Login" name_zh_CN="即时通信管理软件Digsby Beta用户登录" name_zh_TW="即時通信管理軟件Digsby Beta用戶登錄" ruleid="50340" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下NCPH远程控制木马通信" name_en_US="Trojan NCPH Remote Control Communication on Windows" name_zh_CN="Windows系统下NCPH远程控制木马通信" name_zh_TW="Windows系統下NCPH遠程控制木馬通信" ruleid="40712" visible="true" />
			<rule action=" db  screen " enabled="true" group="143655206" module="0" name="Wu-imapd部分Mailbox属性远程缓冲区溢出攻击" name_en_US="Wu-imapd Partial Mailbox Attribute Remote Buffer Overflow" name_zh_CN="Wu-imapd部分Mailbox属性远程缓冲区溢出攻击" name_zh_TW="Wu-imapd部分Mailbox屬性遠程緩沖區溢出攻擊" ruleid="20248" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="Microsoft Windows矢量标记语言缓冲区溢出攻击" name_en_US="Microsoft Windows Vector Markup Language Buffer Overflow" name_zh_CN="Microsoft Windows矢量标记语言缓冲区溢出攻击" name_zh_TW="Microsoft Windows矢量標記語言緩沖區溢出攻擊" ruleid="40805" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Shaft分布端和主控端通信" name_en_US="Communication Between DDOS Shaft Distributed End and Console" name_zh_CN="DDOS工具Shaft分布端和主控端通信" name_zh_TW="DDOS工具Shaft分布端和主控端通信" ruleid="40375" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Shaft主控端和分布端通信" name_en_US="Communication Between DDOS Shaft Console and Distributed End" name_zh_CN="DDOS工具Shaft主控端和分布端通信" name_zh_TW="DDOS工具Shaft主控端和分布端通信" ruleid="40374" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223050" module="0" name="Microsoft IE畸形VML文档处理缓冲区溢出攻击" name_en_US="Microsoft IE Malformed VML Document Handling Buffer Overflow" name_zh_CN="Microsoft IE畸形VML文档处理缓冲区溢出攻击" name_zh_TW="Microsoft IE畸形VML文檔處理緩沖區溢出攻擊" ruleid="40804" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具TFN主控端向分布端发送指令" name_en_US="DDOS Tool TFN Console Sending Command to Distributed End" name_zh_CN="DDOS工具TFN主控端向分布端发送指令" name_zh_TW="DDOS工具TFN主控端向分布端發送指令" ruleid="40379" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具TFN服务器端回应" name_en_US="DDOS TFN Server Response" name_zh_CN="DDOS工具TFN服务器端回应" name_zh_TW="DDOS工具TFN服務器端回應" ruleid="40378" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送Plexus蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Plexus" name_zh_CN="SMTP服务发送Plexus蠕虫病毒邮件" name_zh_TW="SMTP服務發送Plexus蠕蟲病毒郵件" ruleid="40618" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下BDoor木马通信" name_en_US="Trojan BDoor Communication on Windows" name_zh_CN="Windows系统下BDoor木马通信" name_zh_TW="Windows系統下BDoor木馬通信" ruleid="40748" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Newmm Webshell检测" name_en_US="Newmm Webshell Detection" name_zh_CN="Newmm Webshell检测" name_zh_TW="Newmm Webshell檢測" ruleid="40963" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务anonymous匿名用户认证" name_en_US="FTP Service Anonymous User Authentication" name_zh_CN="FTP服务anonymous匿名用户认证" name_zh_TW="FTP服務anonymous匿名用戶認證" ruleid="40044" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Lyyshell木马通信" name_en_US="Trojan Lyyshell Communication on Windows" name_zh_CN="Windows系统下Lyyshell木马通信" name_zh_TW="Windows系統下Lyyshell木馬通信" ruleid="40749" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件GTalk用户登陆" name_en_US="Instant Messaging Software GTalk User Login" name_zh_CN="即时通信软件GTalk用户登陆" name_zh_TW="即時通信軟件GTalk用戶登陸" ruleid="50238" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21169" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21168" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Internet Explorer 8 远程代码执行漏洞" name_en_US="Vulnerabilities in Internet Explorer 8 Could Allow for Remote Code Execution" name_zh_CN="Internet Explorer 8 远程代码执行漏洞" name_zh_TW="Internet Explorer 8 遠程代碼執行漏洞" ruleid="21163" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft IE未初始化对象select标签内存破坏漏洞" name_en_US="Microsoft Internet Explorer Uninitialized Object select lable Memory Corruption Vulnerability" name_zh_CN="Microsoft IE未初始化对象select标签内存破坏漏洞" name_zh_TW="Microsoft IE未初始化對象select標簽內存破壞漏洞" ruleid="21162" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft IE未初始化对象ActiveX控件内存破坏漏洞" name_en_US="Microsoft IE Uninitialized ActiveX Control Memory Corruption Vulnerability" name_zh_CN="Microsoft IE未初始化对象ActiveX控件内存破坏漏洞" name_zh_TW="Microsoft IE未初始化對象ActiveX控件內存破壞漏洞" ruleid="21161" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞" name_en_US="Vulnerabilities in the Microsoft Windows OpenType Font (OTF) Format Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Font (OTF) Format Driver遠程代碼執行漏洞" ruleid="21160" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21167" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21166" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21165" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157742" module="0" name="Internet Explorer处理HTML+Time远程代码执行漏洞" name_en_US="Vulnerabilities in Internet Explorer Handling HTML+Time Could Allow for Remote Code Execution" name_zh_CN="Internet Explorer处理HTML+Time远程代码执行漏洞" name_zh_TW="Internet Explorer處理HTML+Time遠程代碼執行漏洞" ruleid="21164" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理页面admin_cat.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Page admin_cat.php" name_zh_CN="Ultimate PHP Board远程管理页面admin_cat.php访问" name_zh_TW="Ultimate PHP Board遠程管理頁面admin_cat.php訪問" ruleid="20178" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680341" module="0" name="连接可疑IP超过预定值" name_en_US="Connect More Than The Scheduled Value Of Suspicious IP" name_zh_CN="连接可疑IP超过预定值" name_zh_TW="連接可疑IP超過預定值" ruleid="50232" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="股票行情分析软件安信证券用户登录" name_en_US="Stock Market Analysis Software ANXIN Securities User Login" name_zh_CN="股票行情分析软件安信证券用户登录" name_zh_TW="股票行情分析軟件安信證券用戶登錄" ruleid="50373" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="phpGB savesettings.php脚本漏洞扫描探测" name_en_US="phpGB savesettings.php Script Vulnerability Detection" name_zh_CN="phpGB savesettings.php脚本漏洞扫描探测" name_zh_TW="phpGB savesettings.php腳本漏洞掃描探測" ruleid="20175" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375339" module="0" name="WEB服务远程SQL注入攻击" name_en_US="WEB Service Remote SQL Injection" name_zh_CN="WEB服务远程SQL注入攻击" name_zh_TW="WEB服務遠程SQL注入攻擊" ruleid="21347" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-4371 Adobe Reader/Acrobat堆破坏漏洞" name_en_US="CVE-2011-4371 Adobe Reader/Acrobat Heap Corruption Vulnerability" name_zh_CN="CVE-2011-4371 Adobe Reader/Acrobat堆破坏漏洞" name_zh_TW="CVE-2011-4371 Adobe Reader/Acrobat堆破壞漏洞" ruleid="21346" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-4373 Adobe Reader/Acrobat内存破坏漏洞" name_en_US="CVE-2011-4373 Adobe Reader/Acrobat Memory Corruption Vulnerability" name_zh_CN="CVE-2011-4373 Adobe Reader/Acrobat内存破坏漏洞" name_zh_TW="CVE-2011-4373 Adobe Reader/Acrobat內存破壞漏洞" ruleid="21345" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="wordtrans-web wordtrans.php脚本漏洞扫描探测" name_en_US="wordtrans-web wordtrans.php Script Vulnerability Detection" name_zh_CN="wordtrans-web wordtrans.php脚本漏洞扫描探测" name_zh_TW="wordtrans-web wordtrans.php腳本漏洞掃描探測" ruleid="20174" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2011-4370 Adobe Reader/Acrobat内存破坏漏洞" name_en_US="CVE-2011-4370 Adobe Reader/Acrobat Memory Corruption Vulnerability" name_zh_CN="CVE-2011-4370 Adobe Reader/Acrobat内存破坏漏洞" name_zh_TW="CVE-2011-4370 Adobe Reader/Acrobat內存破壞漏洞" ruleid="21343" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420715" module="0" name="CVE-2012-0009 Windows Object Packager远程代码执行漏洞(MS12-002)" name_en_US="CVE-2012-0009 Windows Object Packager Remote Code Execution Vulnerability(MS12-002)" name_zh_CN="CVE-2012-0009 Windows Object Packager远程代码执行漏洞(MS12-002)" name_zh_TW="CVE-2012-0009 Windows Object Packager遠程代碼執行漏洞(MS12-002)" ruleid="21342" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157611" module="0" name="CVE-2012-0007 Microsoft AntiXSS Library Sanitization模块安全限制绕过漏洞(MS12-007)" name_en_US="CVE-2012-0007 Microsoft Anti-XSS Library Bypass Vulnerability(MS12-007)" name_zh_CN="CVE-2012-0007 Microsoft AntiXSS Library Sanitization模块安全限制绕过漏洞(MS12-007)" name_zh_TW="CVE-2012-0007 Microsoft AntiXSS Library Sanitization模塊安全限制繞過漏洞(MS12-007)" ruleid="21341" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="ICMP-Flood淹没拒绝服务攻击" name_en_US="ICMP-Flood Denial of Service Attacks" name_zh_CN="ICMP-Flood淹没拒绝服务攻击" name_zh_TW="ICMP-Flood淹沒拒絕服務攻擊" ruleid="10058" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834517" module="0" name="SYN-Flood半开TCP连接淹没拒绝服务攻击" name_en_US="SYN-Flood Half-open TCP Connection Denial of Service Attack" name_zh_CN="SYN-Flood半开TCP连接淹没拒绝服务攻击" name_zh_TW="SYN-Flood半開TCP連接淹沒拒絕服務攻擊" ruleid="10056" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="漏洞扫描器Cybercop Scanner模拟UDP BOMB攻击" name_en_US="Cybercop Scanner UDP BOMB Simulation" name_zh_CN="漏洞扫描器Cybercop Scanner模拟UDP BOMB攻击" name_zh_TW="漏洞掃描器Cybercop Scanner模擬UDP BOMB攻擊" ruleid="10055" visible="true" />
			<rule action=" db  screen " enabled="true" group="72613967" module="0" name="POP3服务接收Worm.SoBig蠕虫病毒邮件" name_en_US="POP3 Service Receiving Mails with Worm.SoBig" name_zh_CN="POP3服务接收Worm.SoBig蠕虫病毒邮件" name_zh_TW="POP3服務接收Worm.SoBig蠕蟲病毒郵件" ruleid="50061" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412326" module="0" name="BSD系统telnetd远程堆溢出漏洞攻击" name_en_US="BSD System telnetd Remote Heap Overflow" name_zh_CN="BSD系统telnetd远程堆溢出漏洞攻击" name_zh_TW="BSD系統telnetd遠程堆溢出漏洞攻擊" ruleid="20165" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412326" module="0" name="BSD系统telnetd远程堆溢出漏洞探测" name_en_US="BSD System telnetd Remote Heap Overflow Detection" name_zh_CN="BSD系统telnetd远程堆溢出漏洞探测" name_zh_TW="BSD系統telnetd遠程堆溢出漏洞探測" ruleid="20166" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="SQL注入枚举数据攻击" name_en_US="Enumerating Data SQL Injection" name_zh_CN="SQL注入枚举数据攻击" name_zh_TW="SQL注入枚舉數據攻擊" ruleid="21348" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="ARP欺骗相关攻击" name_en_US="ARP spoofing related attacks" name_zh_CN="ARP欺骗相关攻击" name_zh_TW="ARP欺騙相關攻擊" ruleid="41038" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务客户端使用空口令登录" name_en_US="Null Password for FTP Service Client" name_zh_CN="FTP服务客户端使用空口令登录" name_zh_TW="FTP服務客戶端使用空口令登錄" ruleid="40041" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Claroline E-Learning应用多个远程SQL注入攻击" name_en_US="Claroline E-Learning Application multiple Remote SQL Injections" name_zh_CN="Claroline E-Learning应用多个远程SQL注入攻击" name_zh_TW="Claroline E-Learning應用多個遠程SQL注入攻擊" ruleid="20768" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Pico Server远程命令注入攻击" name_en_US="Pico Server Remote Command Injection" name_zh_CN="Pico Server远程命令注入攻击" name_zh_TW="Pico Server遠程命令注入攻擊" ruleid="20769" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Neteyes NexusWay Border Gateway远程命令执行攻击" name_en_US="Neteyes NexusWay Border Gateway Remote Code Execution" name_zh_CN="Neteyes NexusWay Border Gateway远程命令执行攻击" name_zh_TW="Neteyes NexusWay Border Gateway遠程命令執行攻擊" ruleid="20766" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MidiCart ASP searchstring参数远程SQL注入攻击" name_en_US="MidiCart ASP searchstring Parameter Remote SQL Injection" name_zh_CN="MidiCart ASP searchstring参数远程SQL注入攻击" name_zh_TW="MidiCart ASP searchstring參數遠程SQL注入攻擊" ruleid="20767" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Contrexx pid变量远程SQL注入攻击" name_en_US="Contrexx pid Variable Remote SQL Injection" name_zh_CN="Contrexx pid变量远程SQL注入攻击" name_zh_TW="Contrexx pid變量遠程SQL注入攻擊" ruleid="20764" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725675" module="0" name="Peercast URL格式串处理攻击" name_en_US="Peercast URL String Handling Vulnerability" name_zh_CN="Peercast URL格式串处理攻击" name_zh_TW="Peercast URL格式串處理攻擊" ruleid="20765" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="RunCMS newtopic.php远程SQL注入攻击" name_en_US="RunCMS newtopic.php Remote SQL Injection" name_zh_CN="RunCMS newtopic.php远程SQL注入攻击" name_zh_TW="RunCMS newtopic.php遠程SQL注入攻擊" ruleid="20762" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="MyBB search.php脚本远程SQL注入攻击" name_en_US="MyBB search.php Script Remote SQL Injection" name_zh_CN="MyBB search.php脚本远程SQL注入攻击" name_zh_TW="MyBB search.php腳本遠程SQL注入攻擊" ruleid="20763" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="man2web CGI脚本远程命令执行攻击" name_en_US="man2web CGI Script Remote Code Execution" name_zh_CN="man2web CGI脚本远程命令执行攻击" name_zh_TW="man2web CGI腳本遠程命令執行攻擊" ruleid="20760" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="phpLDAPadmin welcome.php远程命令执行攻击" name_en_US="phpLDAPadmin welcome.php Remote Code Execution" name_zh_CN="phpLDAPadmin welcome.php远程命令执行攻击" name_zh_TW="phpLDAPadmin welcome.php遠程命令執行攻擊" ruleid="20761" visible="true" />
			<rule action=" db  screen " enabled="true" group="72613967" module="0" name="POP3服务接收Worm.MiMail蠕虫病毒邮件" name_en_US="POP3 Service Sending Mails with Worm.MiMail" name_zh_CN="POP3服务接收Worm.MiMail蠕虫病毒邮件" name_zh_TW="POP3服務接收Worm.MiMail蠕蟲病毒郵件" ruleid="50060" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="HP OpenView NNM ov.dll _OVBuildPath远程代码执行漏洞" name_en_US="Remote Code Execution Vulnerability in HP OpenView NNM ov.dll _OVBuildPath" name_zh_CN="HP OpenView NNM ov.dll _OVBuildPath远程代码执行漏洞" name_zh_TW="HP OpenView NNM ov.dll _OVBuildPath遠程代碼執行漏洞" ruleid="21372" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpBB highlight变量远程任意命令执行攻击" name_en_US="phpBB highlight Variable Remote Arbitrary Command Execution" name_zh_CN="phpBB highlight变量远程任意命令执行攻击" name_zh_TW="phpBB highlight變量遠程任意命令執行攻擊" ruleid="20508" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420719" module="0" name="Microsoft Windows入站SMB报文验证远程溢出攻击" name_en_US="Microsoft Windows Inbound SMB Message Authentication Remote Buffer Overflow" name_zh_CN="Microsoft Windows入站SMB报文验证远程溢出攻击" name_zh_TW="Microsoft Windows入站SMB報文驗證遠程溢出攻擊" ruleid="20509" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="HP OpenView NNM webappmon.exe参数远程代码执行漏洞" name_en_US="Remote Code Execution Vulnerability in HP OpenView NNM webappmon.exe Parameter" name_zh_CN="HP OpenView NNM webappmon.exe参数远程代码执行漏洞" name_zh_TW="HP OpenView NNM webappmon.exe參數遠程代碼執行漏洞" ruleid="21373" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725654" module="0" name="IDENT服务淹没拒绝服务攻击" name_en_US="IDENT Service Flood Denial of Service" name_zh_CN="IDENT服务淹没拒绝服务攻击" name_zh_TW="IDENT服務淹沒拒絕服務攻擊" ruleid="10123" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: mod_ssl mod_proxy 格式字符串漏洞" name_en_US="HTTP: mod_ssl mod_proxy format string vulnerability" name_zh_CN="HTTP: mod_ssl mod_proxy 格式字符串漏洞" name_zh_TW="HTTP: mod_ssl mod_proxy 格式字符串漏洞" ruleid="29236" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="Windows 2000 IKE拒绝服务攻击" name_en_US="Windows 2000 IKE Denial of Service" name_zh_CN="Windows 2000 IKE拒绝服务攻击" name_zh_TW="Windows 2000 IKE拒絕服務攻擊" ruleid="10121" visible="false" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PostNuke pnModFunc函数本地文件包含攻击" name_en_US="PostNuke pnModFunc function Local File Inclusion" name_zh_CN="PostNuke pnModFunc函数本地文件包含攻击" name_zh_TW="PostNuke pnModFunc函數本地文件包含攻擊" ruleid="20501" visible="true" />
			<rule action=" db  screen " enabled="false" group="143655211" module="0" name="GNU Mailutils 0.6 imap4d TAG格式串溢出攻击" name_en_US="GNU Mailutils 0.6 imap4d TAG Format String Buffer Overflow" name_zh_CN="GNU Mailutils 0.6 imap4d TAG格式串溢出攻击" name_zh_TW="GNU Mailutils 0.6 imap4d TAG格式串溢出攻擊" ruleid="20506" visible="false" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Mambo com_content模块user_rating远程SQL注入漏洞" name_en_US="Mambo com_content Module user_rating Remote SQL Injection" name_zh_CN="Mambo com_content模块user_rating远程SQL注入漏洞" name_zh_TW="Mambo com_content模塊user_rating遠程SQL注入漏洞" ruleid="20507" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Qualiteam X-Cart giftcert.php CGI脚本SQL注入攻击" name_en_US="Qualiteam X-Cart giftcert.php CGI Script SQL Injection" name_zh_CN="Qualiteam X-Cart giftcert.php CGI脚本SQL注入攻击" name_zh_TW="Qualiteam X-Cart giftcert.php CGI腳本SQL注入攻擊" ruleid="20504" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Ipswitch IMAP超长LOGIN命令参数缓冲区溢出攻击" name_en_US="Ipswitch IMAP Over-long LOGIN Command Buffer Overflow" name_zh_CN="Ipswitch IMAP超长LOGIN命令参数缓冲区溢出攻击" name_zh_TW="Ipswitch IMAP超長LOGIN命令參數緩沖區溢出攻擊" ruleid="20505" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit间谍" name_en_US="Rootkit Spyware" name_zh_CN="Rootkit间谍" name_zh_TW="Rootkit間諜" ruleid="40975" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="ASPNuke article.asp articleid变量远程SQL注入攻击" name_en_US="ASPNuke article.asp articleid Variable Remote SQL Injection" name_zh_CN="ASPNuke article.asp articleid变量远程SQL注入攻击" name_zh_TW="ASPNuke article.asp articleid變量遠程SQL注入攻擊" ruleid="20698" visible="true" />
			<rule action=" db  screen " enabled="true" group="336593066" module="0" name="Kuwebs企业网站管理系统后门漏洞" name_en_US="Kuwebs Enterprise Web Site Management System Back Door Vulnerability " name_zh_CN="Kuwebs企业网站管理系统后门漏洞" name_zh_TW="Kuwebs企業網站管理系統後門漏洞" ruleid="21371" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit文件操作" name_en_US="Rootkit Files Operation" name_zh_CN="Rootkit文件操作" name_zh_TW="Rootkit文件操作" ruleid="40974" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="phpBB Hacks List模块hack_id远程SQL注入攻击" name_en_US="phpBB Hacks List Module hack_id Remote SQL Injection" name_zh_CN="phpBB Hacks List模块hack_id远程SQL注入攻击" name_zh_TW="phpBB Hacks List模塊hack_id遠程SQL注入攻擊" ruleid="20692" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="GrayCMS error.php远程文件包含攻击" name_en_US="GrayCMS error.php Remote File Inclusion" name_zh_CN="GrayCMS error.php远程文件包含攻击" name_zh_TW="GrayCMS error.php遠程文件包含攻擊" ruleid="20771" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Complete PHP Counter list.php远程SQL注入攻击" name_en_US="Complete PHP Counter list.php Remote SQL Injection" name_zh_CN="Complete PHP Counter list.php远程SQL注入攻击" name_zh_TW="Complete PHP Counter list.php遠程SQL注入攻擊" ruleid="20690" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="SimpleBlog edit.asp远程SQL注入攻击" name_en_US="SimpleBlog edit.asp Remote SQL Injection" name_zh_CN="SimpleBlog edit.asp远程SQL注入攻击" name_zh_TW="SimpleBlog edit.asp遠程SQL注入攻擊" ruleid="20691" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="Zixforum layid变量远程SQL注入攻击" name_en_US="Zixforum layid Variable Remote SQL Injection" name_zh_CN="Zixforum layid变量远程SQL注入攻击" name_zh_TW="Zixforum layid變量遠程SQL注入攻擊" ruleid="20696" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Arki-DB catid变量远程SQL注入攻击" name_en_US="Arki-DB catid Variable Remote SQL Injection" name_zh_CN="Arki-DB catid变量远程SQL注入攻击" name_zh_TW="Arki-DB catid變量遠程SQL注入攻擊" ruleid="20697" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="ActionApps GLOBALS[AA_INC_PATH]变量远程文件包含攻击" name_en_US="ActionApps GLOBALS[AA_INC_PATH] Variable Remote File Inclusion" name_zh_CN="ActionApps GLOBALS[AA_INC_PATH]变量远程文件包含攻击" name_zh_TW="ActionApps GLOBALS[AA_INC_PATH]變量遠程文件包含攻擊" ruleid="20694" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Albinator Config_rootdir变量远程文件包含攻击" name_en_US="Albinator Config_rootdir Variable Remote File Inclusion" name_zh_CN="Albinator Config_rootdir变量远程文件包含攻击" name_zh_TW="Albinator Config_rootdir變量遠程文件包含攻擊" ruleid="20695" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下石破天惊木马通信" name_en_US="Trojan Rock Sky Communication on Windows" name_zh_CN="Windows系统下石破天惊木马通信" name_zh_TW="Windows系統下石破天驚木馬通信" ruleid="40752" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="IceCast XSL远程绕过认证攻击" name_en_US="IceCast XSL Remote Authentication Bypass" name_zh_CN="IceCast XSL远程绕过认证攻击" name_zh_TW="IceCast XSL遠程繞過認證攻擊" ruleid="20773" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="IE浏览器跨域攻击" name_en_US="IE Cross-Domain Attack" name_zh_CN="IE浏览器跨域攻击" name_zh_TW="IE浏覽器跨域攻擊" ruleid="20988" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="IIS服务要求验证特权提升攻击" name_en_US="Internet Information Services  Requires Authentication Elevation Of Privilege" name_zh_CN="IIS服务要求验证特权提升攻击" name_zh_TW="IIS服務要求驗證特權提升攻擊" ruleid="20989" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="微软 IIS 6.0 WebDAV远程绕过认证攻击" name_en_US="Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Attack" name_zh_CN="微软 IIS 6.0 WebDAV远程绕过认证攻击" name_zh_TW="微軟 IIS 6.0 WebDAV遠程繞過認證攻擊" ruleid="20986" visible="true" />
			<rule action=" db  screen " enabled="true" group="82837802" module="0" name="LDAP请求RDN解析远程代码执行攻击" name_en_US="LDAP Request RDN Parse Remote Code Execution" name_zh_CN="LDAP请求RDN解析远程代码执行攻击" name_zh_TW="LDAP請求RDN解析遠程代碼執行攻擊" ruleid="20987" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="微软 Office PowerPoint OutlineTextRefAtom 对象解析内存腐烂攻击" name_en_US="Microsoft Office PowerPoint OutlineTextRefAtom Object Parse Memory Corruption Attack" name_zh_CN="微软 Office PowerPoint OutlineTextRefAtom 对象解析内存腐烂攻击" name_zh_TW="微軟 Office PowerPoint OutlineTextRefAtom 對象解析內存腐爛攻擊" ruleid="20984" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Symantec pcAnywhere awhost32组件远程代码执行漏洞" name_en_US="Symantec pcAnywhere awhost32 Components Remote Code Execution Vulnerability" name_zh_CN="Symantec pcAnywhere awhost32组件远程代码执行漏洞" name_zh_TW="Symantec pcAnywhere awhost32組件遠程代碼執行漏洞" ruleid="21375" visible="true" />
			<rule action=" db  screen " enabled="true" group="68158507" module="0" name="Conficker 蠕虫攻击(HTTP)" name_en_US="Conficker Worm Attack(HTTP)" name_zh_CN="Conficker 蠕虫攻击(HTTP)" name_zh_TW="Conficker 蠕蟲攻擊(HTTP)" ruleid="20982" visible="true" />
			<rule action=" db  screen " enabled="true" group="83887147" module="0" name="Conficker 蠕虫攻击(TCP)" name_en_US="Conficker Worm Attack(TCP)" name_zh_CN="Conficker 蠕虫攻击(TCP)" name_zh_TW="Conficker 蠕蟲攻擊(TCP)" ruleid="20983" visible="true" />
			<rule action=" db  screen " enabled="true" group="77595178" module="0" name="Microsoft Windows DNS Cache Poisoning攻击(ANY Query)" name_en_US="Microsoft Windows DNS Cache Poisoning Attack(ANY Query)" name_zh_CN="Microsoft Windows DNS Cache Poisoning攻击(ANY Query)" name_zh_TW="Microsoft Windows DNS Cache Poisoning攻擊(ANY Query)" ruleid="20980" visible="true" />
			<rule action=" db  screen " enabled="true" group="77595178" module="0" name="Microsoft Windows DNS Cache Poisoning攻击(Case Sensitive Query)" name_en_US="Microsoft Windows DNS Cache Poisoning Attack (Case Sensitive Query)" name_zh_CN="Microsoft Windows DNS Cache Poisoning攻击(Case Sensitive Query)" name_zh_TW="Microsoft Windows DNS Cache Poisoning攻擊(Case Sensitive Query)" ruleid="20981" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Pcshare2005木马通信" name_en_US="Trojan Pcshare2005 Communication on Windows" name_zh_CN="Windows系统下Pcshare2005木马通信" name_zh_TW="Windows系統下Pcshare2005木馬通信" ruleid="40757" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下rmtsvc木马通信" name_en_US="Trojan rmtsvc Communication on Windows" name_zh_CN="Windows系统下rmtsvc木马通信" name_zh_TW="Windows系統下rmtsvc木馬通信" ruleid="40756" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Print Topic Mod printview.php SQL注入攻击" name_en_US="Print Topic Mod printview.php SQL Injection" name_zh_CN="Print Topic Mod printview.php SQL注入攻击" name_zh_TW="Print Topic Mod printview.php SQL注入攻擊" ruleid="20436" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="AntiBoard antiboard.php SQL注入攻击" name_en_US="AntiBoard antiboard.php SQL Injection" name_zh_CN="AntiBoard antiboard.php SQL注入攻击" name_zh_TW="AntiBoard antiboard.php SQL注入攻擊" ruleid="20437" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="利用Extropia WebStore web_store.cgi脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Extropia WebStore web_store.cgi Script Vulnerability" name_zh_CN="利用Extropia WebStore web_store.cgi脚本漏洞远程执行命令" name_zh_TW="利用Extropia WebStore web_store.cgi腳本漏洞遠程執行命令" ruleid="20434" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="PHP-Nuke Search功能SQL注入攻击" name_en_US="PHP-Nuke Search function SQL Injection" name_zh_CN="PHP-Nuke Search功能SQL注入攻击" name_zh_TW="PHP-Nuke Search功能SQL注入攻擊" ruleid="20435" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft IIS 5.0 WebDAV远程缓冲区溢出攻击" name_en_US="Microsoft IIS 5.0 WebDAV Remote Buffer Overflow" name_zh_CN="Microsoft IIS 5.0 WebDAV远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 5.0 WebDAV遠程緩沖區溢出攻擊" ruleid="20344" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpBB viewtopic.php CGI脚本SQL注入攻击" name_en_US="phpBB viewtopic.php CGI Script SQL Injection" name_zh_CN="phpBB viewtopic.php CGI脚本SQL注入攻击" name_zh_TW="phpBB viewtopic.php CGI腳本SQL注入攻擊" ruleid="20433" visible="true" />
			<rule action=" db  screen " enabled="true" group="160464966" module="0" name="Solaris SNMP默认共同体串访问" name_en_US="Solaris SNMP Default Community String" name_zh_CN="Solaris SNMP默认共同体串访问" name_zh_TW="Solaris SNMP默認共同體串訪問" ruleid="20346" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472870" module="0" name="FTP服务暴力猜测用户口令" name_en_US="FTP Service User Password Brute Force" name_zh_CN="FTP服务暴力猜测用户口令" name_zh_TW="FTP服務暴力猜測用戶口令" ruleid="20347" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft IE畸形COM对象实例化代码邮件引用" name_en_US="Microsoft IE Malformed COM Object Instantiation Vulnerability Mail" name_zh_CN="Microsoft IE畸形COM对象实例化代码邮件引用" name_zh_TW="Microsoft IE畸形COM對象實例化代碼郵件引用" ruleid="40787" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365547" module="0" name="OpenFTPD SITE MSG命令远程格式串漏洞攻击" name_en_US="OpenFTPD SITE MSG Command Remote Format String Vulnerability" name_zh_CN="OpenFTPD SITE MSG命令远程格式串漏洞攻击" name_zh_TW="OpenFTPD SITE MSG命令遠程格式串漏洞攻擊" ruleid="20438" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用CSVForm csvform.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CSVForm csvform.pl Script Vulnerability" name_zh_CN="利用CSVForm csvform.pl脚本漏洞远程执行命令" name_zh_TW="利用CSVForm csvform.pl腳本漏洞遠程執行命令" ruleid="20186" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Apache Win32批处理脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Apache Win32 Batch Script Vulnerability" name_zh_CN="利用Apache Win32批处理脚本漏洞远程执行命令" name_zh_TW="利用Apache Win32批處理腳本漏洞遠程執行命令" ruleid="20187" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Abe Timmerman zml.cgi脚本漏洞扫描探测" name_en_US="Abe Timmerman zml.cgi Script Vulnerability Detection" name_zh_CN="Abe Timmerman zml.cgi脚本漏洞扫描探测" name_zh_TW="Abe Timmerman zml.cgi腳本漏洞掃描探測" ruleid="20184" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用IRIX webdist.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via IRIX webdist.cgi Script Vulnerability" name_zh_CN="利用IRIX webdist.cgi脚本漏洞远程执行命令" name_zh_TW="利用IRIX webdist.cgi腳本漏洞遠程執行命令" ruleid="20185" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用Achievo class.atkdateattribute.js.php脚本漏洞执行命令" name_en_US="Code Execution via Achievo class.atkdateattribute.js.php Script Vulnerability" name_zh_CN="利用Achievo class.atkdateattribute.js.php脚本漏洞执行命令" name_zh_TW="利用Achievo class.atkdateattribute.js.php腳本漏洞執行命令" ruleid="20182" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用Mantis summary_graph_functions.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Mantis summary_graph_functions.php Script Vulnerability" name_zh_CN="利用Mantis summary_graph_functions.php脚本漏洞远程执行命令" name_zh_TW="利用Mantis summary_graph_functions.php腳本漏洞遠程執行命令" ruleid="20183" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用site_searcher.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via site_searcher.cgi Script Vulnerability" name_zh_CN="利用site_searcher.cgi脚本漏洞远程执行命令" name_zh_TW="利用site_searcher.cgi腳本漏洞遠程執行命令" ruleid="20180" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用Marcus S. directory.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Marcus S. directory.php Script Vulnerability" name_zh_CN="利用Marcus S. directory.php脚本漏洞远程执行命令" name_zh_TW="利用Marcus S. directory.php腳本漏洞遠程執行命令" ruleid="20188" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Gamethief/PSW.Magania木马网络数据通信" name_en_US="TROJAN Gamethief/PSW.Magania Checkin" name_zh_CN="Gamethief/PSW.Magania木马网络数据通信" name_zh_TW="Gamethief/PSW.Magania木馬網絡數據通信" ruleid="40871" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问.rhosts文件" name_en_US="FTP Service Client Accessing .rhosts File" name_zh_CN="FTP服务客户端访问.rhosts文件" name_zh_TW="FTP服務客戶端訪問.rhosts文件" ruleid="40039" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323133" module="0" name="QuikStore Shopping Cart quikstore.cgi脚本漏洞扫描探测" name_en_US="QuikStore Shopping Cart quikstore.cgi Script Vulnerability Detection" name_zh_CN="QuikStore Shopping Cart quikstore.cgi脚本漏洞扫描探测" name_zh_TW="QuikStore Shopping Cart quikstore.cgi腳本漏洞掃描探測" ruleid="30479" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用phpWebFileManager index.php脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via phpWebFileManager index.php Script Vulnerability" name_zh_CN="利用phpWebFileManager index.php脚本漏洞遍历目录攻击" name_zh_TW="利用phpWebFileManager index.php腳本漏洞遍曆目錄攻擊" ruleid="30478" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618894" module="0" name="Black Hole 木马通信" name_en_US="Black Hole Trojan Communication " name_zh_CN="Black Hole 木马通信" name_zh_TW="Black Hole 木馬通信" ruleid="41033" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Keylogger.ane木马网络数据通信" name_en_US="TROJAN Keylogger.ane Checkin" name_zh_CN="Keylogger.ane木马网络数据通信" name_zh_TW="Keylogger.ane木馬網絡數據通信" ruleid="40872" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412582" module="0" name="TELNET服务暴力猜测用户口令" name_en_US="User Password Brute Force in TELNET Service" name_zh_CN="TELNET服务暴力猜测用户口令" name_zh_TW="TELNET服務暴力猜測用戶口令" ruleid="30473" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898069" module="0" name="ICMP子网掩码应答消息" name_en_US="ICMP Netmask Response Message" name_zh_CN="ICMP子网掩码应答消息" name_zh_TW="ICMP子網掩碼應答消息" ruleid="40031" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="扫描探测MatrikzGB Guestbook脚本漏洞" name_en_US="MatrikzGB Guestbook Script Vulnerability Detection" name_zh_CN="扫描探测MatrikzGB Guestbook脚本漏洞" name_zh_TW="掃描探測MatrikzGB Guestbook腳本漏洞" ruleid="30471" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务代理查询操作" name_en_US="FINGER Service Proxy Query" name_zh_CN="FINGER服务代理查询操作" name_zh_TW="FINGER服務代理查詢操作" ruleid="40033" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="利用CommerceSQL Shopping Cart index.cgi脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via CommerceSQL Shopping Cart index.cgi Script Vulnerability" name_zh_CN="利用CommerceSQL Shopping Cart index.cgi脚本漏洞遍历目录攻击" name_zh_TW="利用CommerceSQL Shopping Cart index.cgi腳本漏洞遍曆目錄攻擊" ruleid="30477" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="PeopleSoft PeopleTools psdoccgi.exe CGI程序漏洞扫描探测" name_en_US="PeopleSoft PeopleTools psdoccgi.exe CGI Program Vulnerability Detection" name_zh_CN="PeopleSoft PeopleTools psdoccgi.exe CGI程序漏洞扫描探测" name_zh_TW="PeopleSoft PeopleTools psdoccgi.exe CGI程序漏洞掃描探測" ruleid="30476" visible="true" />
			<rule action=" db  screen " enabled="true" group="146802742" module="0" name="FINGER服务请求安全敏感文件攻击" name_en_US="FINGER Service Secure Sensitive File Request" name_zh_CN="FINGER服务请求安全敏感文件攻击" name_zh_TW="FINGER服務請求安全敏感文件攻擊" ruleid="30475" visible="true" />
			<rule action=" db  screen " enabled="true" group="83894333" module="0" name="Windows RPC DCOM接口长主机名溢出漏洞扫描" name_en_US="Windows RPC DCOM Interface Long Host Name Buffer Overflow Detection" name_zh_CN="Windows RPC DCOM接口长主机名溢出漏洞扫描" name_zh_TW="Windows RPC DCOM接口長主機名溢出漏洞掃描" ruleid="30474" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Xlog木马通信" name_en_US="Trojan Xlog Communication on Windows" name_zh_CN="Windows系统下Xlog木马通信" name_zh_TW="Windows系統下Xlog木馬通信" ruleid="40610" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="利用.&quot;./字串突破CGI脚本过滤访问上级目录" name_en_US="CGI Script Filter Bypass And Upper Directory Access via .&quot;./ String" name_zh_CN="利用.&quot;./字串突破CGI脚本过滤访问上级目录" name_zh_TW="利用.&quot;./字串突破CGI腳本過濾訪問上級目錄" ruleid="40347" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下YAT木马通信" name_en_US="Trojan YAT Communication on Windows" name_zh_CN="Windows系统下YAT木马通信" name_zh_TW="Windows系統下YAT木馬通信" ruleid="40612" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Sober.F@mm蠕虫病毒邮件" name_en_US="SMTP Service Sendinng Mails with W32.Sober.F@mm" name_zh_CN="SMTP服务发送W32.Sober.F@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.F@mm蠕蟲病毒郵件" ruleid="40613" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="ads.cgi脚本漏洞扫描利用" name_en_US="ads.cgi Script Vulnerability Detection" name_zh_CN="ads.cgi脚本漏洞扫描利用" name_zh_TW="ads.cgi腳本漏洞掃描利用" ruleid="30309" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Netsky.Y@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.Y@mm" name_zh_CN="SMTP服务发送W32.Netsky.Y@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.Y@mm蠕蟲病毒郵件" ruleid="40615" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下GirlFriend木马连接建立" name_en_US="Trojan GirlFriend Communication on Windows" name_zh_CN="Windows系统下GirlFriend木马连接建立" name_zh_TW="Windows系統下GirlFriend木馬連接建立" ruleid="40340" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下BackOrifice 2000木马通信" name_en_US="Trojan BackOrifice 2000 Communication on Windows" name_zh_CN="Windows系统下BackOrifice 2000木马通信" name_zh_TW="Windows系統下BackOrifice 2000木馬通信" ruleid="40341" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="通过Web服务访问JRun默认配置文件jrun.ini" name_en_US="Access to JRun Default Congif File jrun.ini" name_zh_CN="通过Web服务访问JRun默认配置文件jrun.ini" name_zh_TW="通過Web服務訪問JRun默認配置文件jrun.ini" ruleid="30305" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGIScript.NET CSSearch.cgi脚本漏洞扫描利用" name_en_US="CGIScript.NET CSSearch.cgi Script Vulnerability Detection" name_zh_CN="CGIScript.NET CSSearch.cgi脚本漏洞扫描利用" name_zh_TW="CGIScript.NET CSSearch.cgi腳本漏洞掃描利用" ruleid="30304" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Windows NT IIS MSDAC RDS远程命令执行漏洞扫描探测" name_en_US="Windows NT IIS MSDAC RDS Remote Command Execution Detection" name_zh_CN="Windows NT IIS MSDAC RDS远程命令执行漏洞扫描探测" name_zh_TW="Windows NT IIS MSDAC RDS遠程命令執行漏洞掃描探測" ruleid="30307" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Networking_Utils.php脚本漏洞扫描利用" name_en_US="Networking_Utils.php Script Vulnerability Detection" name_zh_CN="Networking_Utils.php脚本漏洞扫描利用" name_zh_TW="Networking_Utils.php腳本漏洞掃描利用" ruleid="30306" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="register.php脚本漏洞扫描利用" name_en_US="register.php Script Vulnerability Detection" name_zh_CN="register.php脚本漏洞扫描利用" name_zh_TW="register.php腳本漏洞掃描利用" ruleid="30301" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="add-subject.php脚本漏洞扫描探测" name_en_US="add-subject.php Script Vulnerability Detection" name_zh_CN="add-subject.php脚本漏洞扫描探测" name_zh_TW="add-subject.php腳本漏洞掃描探測" ruleid="30300" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641654" module="0" name="Nortel Contivity cgiproc脚本漏洞扫描探测" name_en_US="Nortel Contivity cgiproc Script Vulnerability Detection" name_zh_CN="Nortel Contivity cgiproc脚本漏洞扫描探测" name_zh_TW="Nortel Contivity cgiproc腳本漏洞掃描探測" ruleid="30303" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="通过Web服务访问Global.asa文件获取敏感信息" name_en_US="Sensitive Information Disclosure from Global.asa File via Web Service" name_zh_CN="通过Web服务访问Global.asa文件获取敏感信息" name_zh_TW="通過Web服務訪問Global.asa文件獲取敏感信息" ruleid="30302" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下B.F. Evolution木马通信" name_en_US="Trojan B.F. Evolution Communication on Windows" name_zh_CN="Windows系统下B.F. Evolution木马通信" name_zh_TW="Windows系統下B.F. Evolution木馬通信" ruleid="40473" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="LCX Webshell检测" name_en_US="LCX Webshell Detection" name_zh_CN="LCX Webshell检测" name_zh_TW="LCX Webshell檢測" ruleid="40961" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157638" module="0" name="通过Web服务利用&quot;../&quot;串遍历目录攻击" name_en_US="&quot;../&quot; String Directory Traversal via Web Service" name_zh_CN="通过Web服务利用&quot;../&quot;串遍历目录攻击" name_zh_TW="通過Web服務利用&quot;../&quot;串遍曆目錄攻擊" ruleid="40297" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS远东版畸形字符编码获取文件内容攻击" name_en_US="Microsoft IIS Far East Edition Malformed Character Encoding File Content Disclosure" name_zh_CN="Microsoft IIS远东版畸形字符编码获取文件内容攻击" name_zh_TW="Microsoft IIS遠東版畸形字符編碼獲取文件內容攻擊" ruleid="40290" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206214" module="0" name="利用..&quot;/字串突破CGI脚本过滤访问上级目录" name_en_US="CGI Script Filter Bypass And Upper Directory Access via ..&quot;/ String" name_zh_CN="利用..&quot;/字串突破CGI脚本过滤访问上级目录" name_zh_TW="利用..&quot;/字串突破CGI腳本過濾訪問上級目錄" ruleid="40293" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用SquirrelMail left_main.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via SquirrelMail left_main.php Script Vulnerability" name_zh_CN="利用SquirrelMail left_main.php脚本漏洞远程执行命令" name_zh_TW="利用SquirrelMail left_main.php腳本漏洞遠程執行命令" ruleid="20234" visible="true" />
			<rule action=" db  screen " enabled="true" group="141558054" module="0" name="OpenSSH挑战响应机制SKEY/BSD_AUTH验证远程缓冲区溢出攻击" name_en_US="OpenSSH Challenge-Response Mechanism SKEY/BSD_AUTH Authentication Remote Buffer Overflow" name_zh_CN="OpenSSH挑战响应机制SKEY/BSD_AUTH验证远程缓冲区溢出攻击" name_zh_TW="OpenSSH挑戰響應機制SKEY/BSD_AUTH驗證遠程緩沖區溢出攻擊" ruleid="20235" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Basic Hell木马通信" name_en_US="Trojan Basic Hell Communication on Windows" name_zh_CN="Windows系统下Basic Hell木马通信" name_zh_TW="Windows系統下Basic Hell木馬通信" ruleid="40477" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Webspeed wsisa.dll CGI程序漏洞获取管理权" name_en_US="Gaining Admin Privilege via Webspeed wsisa.dll CGI Vulnerability" name_zh_CN="利用Webspeed wsisa.dll CGI程序漏洞获取管理权" name_zh_TW="利用Webspeed wsisa.dll CGI程序漏洞獲取管理權" ruleid="20230" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="利用DNSTools dnstools.php脚本漏洞控制应用程序" name_en_US="Application Control via DNSTools dnstools.php Script Vulnerability" name_zh_CN="利用DNSTools dnstools.php脚本漏洞控制应用程序" name_zh_TW="利用DNSTools dnstools.php腳本漏洞控制應用程序" ruleid="20231" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用Blahz-DNS dostuff.php脚本漏洞控制应用程序" name_en_US="Application Control via Blahz-DNS dostuff.php Script Vulnerability" name_zh_CN="利用Blahz-DNS dostuff.php脚本漏洞控制应用程序" name_zh_TW="利用Blahz-DNS dostuff.php腳本漏洞控制應用程序" ruleid="20232" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="利用SquirrelSpell check_me.mod.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via SquirrelSpell check_me.mod.php Script Vulnerability" name_zh_CN="利用SquirrelSpell check_me.mod.php脚本漏洞远程执行命令" name_zh_TW="利用SquirrelSpell check_me.mod.php腳本漏洞遠程執行命令" ruleid="20233" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Sun i-Runbook none.php脚本漏洞扫描利用" name_en_US="Sun i-Runbook none.php Script Vulnerability Detection" name_zh_CN="Sun i-Runbook none.php脚本漏洞扫描利用" name_zh_TW="Sun i-Runbook none.php腳本漏洞掃描利用" ruleid="30271" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用NULL字节漏洞获取JRun JSP源代码攻击" name_en_US="JRun JSP Source Code Disclosure via NULL Byte Vulnerability" name_zh_CN="利用NULL字节漏洞获取JRun JSP源代码攻击" name_zh_TW="利用NULL字節漏洞獲取JRun JSP源代碼攻擊" ruleid="30270" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Webmin edit_action.cgi脚本漏洞扫描利用" name_en_US="Webmin edit_action.cgi Script Vulnerability Detection" name_zh_CN="Webmin edit_action.cgi脚本漏洞扫描利用" name_zh_TW="Webmin edit_action.cgi腳本漏洞掃描利用" ruleid="30273" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Matrix lastlines.cgi脚本漏洞扫描利用" name_en_US="Matrix lastlines.cgi Script Vulnerability Detection" name_zh_CN="Matrix lastlines.cgi脚本漏洞扫描利用" name_zh_TW="Matrix lastlines.cgi腳本漏洞掃描利用" ruleid="30272" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="利用//WEB-INF/漏洞获取JRun JSP源代码攻击" name_en_US="JRun JSP Source Code Disclosure via //WEB-INF/ Vulnerabilities" name_zh_CN="利用//WEB-INF/漏洞获取JRun JSP源代码攻击" name_zh_TW="利用//WEB-INF/漏洞獲取JRun JSP源代碼攻擊" ruleid="30275" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="IRIX webdist.cgi脚本漏洞扫描探测" name_en_US="IRIX webdist.cgi Script Vulnerability Detection" name_zh_CN="IRIX webdist.cgi脚本漏洞扫描探测" name_zh_TW="IRIX webdist.cgi腳本漏洞掃描探測" ruleid="30274" visible="true" />
			<rule action=" db  screen " enabled="true" group="203456566" module="0" name="通过Web服务访问Trend Micro OfficeScan Virus Buster配置文件攻击" name_en_US="Trend Micro OfficeScan Virus Buster Config File Access via Web Service" name_zh_CN="通过Web服务访问Trend Micro OfficeScan Virus Buster配置文件攻击" name_zh_TW="通過Web服務訪問Trend Micro OfficeScan Virus Buster配置文件攻擊" ruleid="30277" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="CSVForm csvform.pl脚本漏洞扫描探测" name_en_US="CSVForm csvform.pl Script Vulnerability Detection" name_zh_CN="CSVForm csvform.pl脚本漏洞扫描探测" name_zh_TW="CSVForm csvform.pl腳本漏洞掃描探測" ruleid="30276" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Richard Lawrence faqmanager.cgi脚本漏洞读取文件攻击" name_en_US="Reading File via Richard Lawrence faqmanager.cgi Script Vulnerability" name_zh_CN="利用Richard Lawrence faqmanager.cgi脚本漏洞读取文件攻击" name_zh_TW="利用Richard Lawrence faqmanager.cgi腳本漏洞讀取文件攻擊" ruleid="30279" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Richard Lawrence faqmanager.cgi脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via Richard Lawrence faqmanager.cgi Script Vulnerability" name_zh_CN="利用Richard Lawrence faqmanager.cgi脚本漏洞遍历目录攻击" name_zh_TW="利用Richard Lawrence faqmanager.cgi腳本漏洞遍曆目錄攻擊" ruleid="30278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下AngelShell木马通信" name_en_US="Trojan AngelShell Communication on Windows" name_zh_CN="Windows系统下AngelShell木马通信" name_zh_TW="Windows系統下AngelShell木馬通信" ruleid="40728" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下黑暗天使木马通信" name_en_US="Trojan Dark Angel Communication on Windows" name_zh_CN="Windows系统下黑暗天使木马通信" name_zh_TW="Windows系統下黑暗天使木馬通信" ruleid="40729" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具Mstream主分布端连接主控端" name_en_US="Connection Between DDOS Tool Mstream Mian Distributed End and the Console" name_zh_CN="DDOS工具Mstream主分布端连接主控端" name_zh_TW="DDOS工具Mstream主分布端連接主控端" ruleid="40380" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下F-Backdoor木马通信" name_en_US="Trojan F-Backdoor Communication on Windows" name_zh_CN="Windows系统下F-Backdoor木马通信" name_zh_TW="Windows系統下F-Backdoor木馬通信" ruleid="40508" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下File Nail木马通信" name_en_US="Trojan File Nail Communication on Windows" name_zh_CN="Windows系统下File Nail木马通信" name_zh_TW="Windows系統下File Nail木馬通信" ruleid="40509" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Duddie木马通信" name_en_US="Trojan Duddie Communication on Windows" name_zh_CN="Windows系统下Duddie木马通信" name_zh_TW="Windows系統下Duddie木馬通信" ruleid="40504" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Eclypse木马通信" name_en_US="Trojan Eclypse Communication on Windows" name_zh_CN="Windows系统下Eclypse木马通信" name_zh_TW="Windows系統下Eclypse木馬通信" ruleid="40505" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Event Horizon木马通信" name_en_US="Trojan Event Horizon Communication on Windows" name_zh_CN="Windows系统下Event Horizon木马通信" name_zh_TW="Windows系統下Event Horizon木馬通信" ruleid="40506" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Exploiter木马通信" name_en_US="Trojan Exploiter Communication on Windows" name_zh_CN="Windows系统下Exploiter木马通信" name_zh_TW="Windows系統下Exploiter木馬通信" ruleid="40507" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Digital Rootbeer木马通信" name_en_US="Trojan Digital Rootbeer Communication on Windows" name_zh_CN="Windows系统下Digital Rootbeer木马通信" name_zh_TW="Windows系統下Digital Rootbeer木馬通信" ruleid="40500" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Doly木马通信" name_en_US="Trojan Doly Communication on Windows" name_zh_CN="Windows系统下Doly木马通信" name_zh_TW="Windows系統下Doly木馬通信" ruleid="40501" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Drat木马通信" name_en_US="Trojan Drat Communication on Windows" name_zh_CN="Windows系统下Drat木马通信" name_zh_TW="Windows系統下Drat木馬通信" ruleid="40502" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下dtr木马通信" name_en_US="Trojan dtr Communication on Windows" name_zh_CN="Windows系统下dtr木马通信" name_zh_TW="Windows系統下dtr木馬通信" ruleid="40503" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGISCRIPT.NET csNews.cgi脚本漏洞扫描探测" name_en_US="CGISCRIPT.NET csNews.cgi Script Vulnerability Detection" name_zh_CN="CGISCRIPT.NET csNews.cgi脚本漏洞扫描探测" name_zh_TW="CGISCRIPT.NET csNews.cgi腳本漏洞掃描探測" ruleid="30099" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGISCRIPT.NET csLiveSupport.cgi脚本漏洞扫描探测" name_en_US="CGISCRIPT.NET csLiveSupport.cgi Script Vulnerability Detection" name_zh_CN="CGISCRIPT.NET csLiveSupport.cgi脚本漏洞扫描探测" name_zh_TW="CGISCRIPT.NET csLiveSupport.cgi腳本漏洞掃描探測" ruleid="30098" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用Big Brother bb-hostsvc.sh脚本漏洞遍历主机目录" name_en_US="Remote Host Directory Traversal via Big Brother bb-hostsvc.sh Script Vulnerability" name_zh_CN="利用Big Brother bb-hostsvc.sh脚本漏洞遍历主机目录" name_zh_TW="利用Big Brother bb-hostsvc.sh腳本漏洞遍曆主機目錄" ruleid="30095" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="NCSA nph-test-cgi脚本漏洞扫描探测" name_en_US="NCSA nph-test-cgi Script Vulnerability Detection" name_zh_CN="NCSA nph-test-cgi脚本漏洞扫描探测" name_zh_TW="NCSA nph-test-cgi腳本漏洞掃描探測" ruleid="30094" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGISCRIPT.NET csChatRBox.cgi脚本漏洞扫描探测" name_en_US="CGISCRIPT.NET csChatRBox.cgi Script Vulnerability Detection" name_zh_CN="CGISCRIPT.NET csChatRBox.cgi脚本漏洞扫描探测" name_zh_TW="CGISCRIPT.NET csChatRBox.cgi腳本漏洞掃描探測" ruleid="30097" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="BigIP bigconf.cgi脚本漏洞扫描探测" name_en_US="BigIP bigconf.cgi Script Vulnerability Detection" name_zh_CN="BigIP bigconf.cgi脚本漏洞扫描探测" name_zh_TW="BigIP bigconf.cgi腳本漏洞掃描探測" ruleid="30096" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="获取PHP-Survey Global.INC文件攻击" name_en_US="PHP-Survey Global.INC File Disclosure" name_zh_CN="获取PHP-Survey Global.INC文件攻击" name_zh_TW="獲取PHP-Survey Global.INC文件攻擊" ruleid="30090" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Big Brother bb-hostsvc.sh脚本漏洞扫描探测" name_en_US="Big Brother bb-hostsvc.sh Script Vulnerability Detection" name_zh_CN="Big Brother bb-hostsvc.sh脚本漏洞扫描探测" name_zh_TW="Big Brother bb-hostsvc.sh腳本漏洞掃描探測" ruleid="30093" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="Caucho Resin WEB-INF目录遍历攻击" name_en_US="Caucho Resin WEB-INF Directory Traversal" name_zh_CN="Caucho Resin WEB-INF目录遍历攻击" name_zh_TW="Caucho Resin WEB-INF目錄遍曆攻擊" ruleid="20906" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="WordPress插件远程文件包含攻击" name_en_US="WordPress Plugin Remote File Inclusion" name_zh_CN="WordPress插件远程文件包含攻击" name_zh_TW="WordPress插件遠程文件包含攻擊" ruleid="20907" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="MyBB calendar.php脚本远程SQL注入攻击" name_en_US="MyBB calendar.php Script Remote SQL Injection" name_zh_CN="MyBB calendar.php脚本远程SQL注入攻击" name_zh_TW="MyBB calendar.php腳本遠程SQL注入攻擊" ruleid="20904" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Psychward木马通信" name_en_US="Trojan Psychward Communication on Windows" name_zh_CN="Windows系统下Psychward木马通信" name_zh_TW="Windows系統下Psychward木馬通信" ruleid="40571" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="WEBinsta FM login.php远程文件包含攻击" name_en_US="WEBinsta FM login.php Remote File Inclusion" name_zh_CN="WEBinsta FM login.php远程文件包含攻击" name_zh_TW="WEBinsta FM login.php遠程文件包含攻擊" ruleid="20905" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Project Next木马通信" name_en_US="Trojan Project Next Communication on Windows" name_zh_CN="Windows系统下Project Next木马通信" name_zh_TW="Windows系統下Project Next木馬通信" ruleid="40570" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="雅虎通Webcam Viewer ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Messenger Webcam Viewer ActiveX Control Remote Stack Overflow" name_zh_CN="雅虎通Webcam Viewer ActiveX控件远程栈溢出攻击" name_zh_TW="雅虎通Webcam Viewer ActiveX控件遠程棧溢出攻擊" ruleid="20902" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995238" module="0" name="Solaris rpc.ttdbserverd远程栈缓冲区溢出攻击" name_en_US="Solaris rpc.ttdbserverd Remote Stack Buffer Overflow" name_zh_CN="Solaris rpc.ttdbserverd远程栈缓冲区溢出攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程棧緩沖區溢出攻擊" ruleid="20455" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="SonicWALL SSL-VPN ActiveX控件远程缓冲区溢出攻击" name_en_US="SonicWALL SSL-VPN ActiveX Control Remote Buffer Overflow" name_zh_CN="SonicWALL SSL-VPN ActiveX控件远程缓冲区溢出攻击" name_zh_TW="SonicWALL SSL-VPN ActiveX控件遠程緩沖區溢出攻擊" ruleid="20901" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Intersil (Boa) HTTPd基本认证密码重置漏洞" name_en_US="Intersil (Boa) HTTPd Basic Authentication Password Reset Vulnerability" name_zh_CN="Intersil (Boa) HTTPd基本认证密码重置漏洞" name_zh_TW="Intersil (Boa) HTTPd基本認證密碼重置漏洞" ruleid="22328" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="联众游戏登陆" name_en_US="Lian Zhong Game Login" name_zh_CN="联众游戏登陆" name_zh_TW="聯衆遊戲登陸" ruleid="50387" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="神仙online游戏登陆" name_en_US="ShenXian online Game Login" name_zh_CN="神仙online游戏登陆" name_zh_TW="神仙online遊戲登陸" ruleid="50386" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="东兴证券股票行情交易软件登陆" name_en_US="Dongxing Securities
Stock market trading software login" name_zh_CN="东兴证券股票行情交易软件登陆" name_zh_TW="東興證券股票行情交易軟件登陸" ruleid="50385" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下网络笨猪木马通信" name_en_US="Trojan NetPig Communication on Windows" name_zh_CN="Windows系统下网络笨猪木马通信" name_zh_TW="Windows系統下網絡笨豬木馬通信" ruleid="40754" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 申银万国神网E通" name_en_US="Stock Market Analtsis Software Shenyin Wanguo Shenwang Etong" name_zh_CN="股票行情分析软件 申银万国神网E通" name_zh_TW="股票行情分析軟件 申銀萬國神網E通" ruleid="50435" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 和讯股道黄金版" name_en_US="Stock Trading Operating Software Hexungudao Gold Edition" name_zh_CN="股票交易操作软件 和讯股道黄金版" name_zh_TW="股票交易操作軟件 和訊股道黃金版" ruleid="50434" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 中投证券卓越版" name_en_US="Stock Market Analtsis Software China Investment Securities Zhuoyue Edition" name_zh_CN="股票行情分析软件 中投证券卓越版" name_zh_TW="股票行情分析軟件 中投證券卓越版" ruleid="50437" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Remote Boot木马通信" name_en_US="Trojan Remote Boot Communication on Windows" name_zh_CN="Windows系统下Remote Boot木马通信" name_zh_TW="Windows系統下Remote Boot木馬通信" ruleid="40576" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 益盟操盘手软件" name_en_US="Stock Market Analtsis Software Yimeng Caopanshou" name_zh_CN="股票行情分析软件 益盟操盘手软件" name_zh_TW="股票行情分析軟件 益盟操盤手軟件" ruleid="50431" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 DRAT （暗组）设备注册" name_en_US="Remote Control Program DRAT(AnZu) Device Registration" name_zh_CN="远程控制程序 DRAT （暗组）设备注册" name_zh_TW="遠程控制程序 DRAT （暗組）設備注冊" ruleid="41000" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 和讯股道黄金版" name_en_US="Stock Market Analtsis Software Hexungudao Gold Edition" name_zh_CN="股票行情分析软件 和讯股道黄金版" name_zh_TW="股票行情分析軟件 和訊股道黃金版" ruleid="50433" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 益盟操盘手软件" name_en_US="Stock Trading Operating Software Yimeng Caopanshou" name_zh_CN="股票交易操作软件 益盟操盘手软件" name_zh_TW="股票交易操作軟件 益盟操盤手軟件" ruleid="50432" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序上兴远控视频监控" name_en_US="Remote Control Program ShangXing Remote Control Video Monitor" name_zh_CN="远程控制程序上兴远控视频监控" name_zh_TW="遠程控制程序上興遠控視頻監控" ruleid="41006" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序甲壳虫 Gh0st 文件操作" name_en_US="Remote Control Program Beetle Gh0st Files Operation" name_zh_CN="远程控制程序甲壳虫 Gh0st 文件操作" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 文件操作" ruleid="41007" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序上兴远控文件操作" name_en_US="Remote Control Program ShangXing Remote Control Files Operation" name_zh_CN="远程控制程序上兴远控文件操作" name_zh_TW="遠程控制程序上興遠控文件操作" ruleid="41004" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序上兴远控终端操作" name_en_US="Remote Control Program ShangXing Remote Control Terminal Operation" name_zh_CN="远程控制程序上兴远控终端操作" name_zh_TW="遠程控制程序上興遠控終端操作" ruleid="41005" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="NETLOGON域用户登录检测" name_en_US="NETLOGON Domain User Login Detection" name_zh_CN="NETLOGON域用户登录检测" name_zh_TW="NETLOGON域用戶登錄檢測" ruleid="50401" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Publisher远程代码执行攻击" name_en_US="Microsoft Publisher Remote Code Execution Attack" name_zh_CN="Microsoft Publisher远程代码执行攻击" name_zh_TW="Microsoft Publisher遠程代碼執行攻擊" ruleid="21000" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Video ActiveX控件远程代码执行攻击" name_en_US="Microsoft Video ActiveX Control Remote Code Execution Attack" name_zh_CN="Microsoft Video ActiveX控件远程代码执行攻击" name_zh_TW="Microsoft Video ActiveX控件遠程代碼執行攻擊" ruleid="21001" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="HTTP: Microsoft FrontPage Server Extensions 跨站脚本攻击漏洞" name_en_US="HTTP: Microsoft FrontPage Server Extensions Cross Site Scripting Vulnerability" name_zh_CN="HTTP: Microsoft FrontPage Server Extensions 跨站脚本攻击漏洞" name_zh_TW="HTTP: Microsoft FrontPage Server Extensions 跨站腳本攻擊漏洞" ruleid="29205" visible="true" />
			<rule action=" db  screen " enabled="true" group="73402389" module="0" name="Windows NT services.exe拒绝服务攻击" name_en_US="Windows NT services.exe Denial of Service" name_zh_CN="Windows NT services.exe拒绝服务攻击" name_zh_TW="Windows NT services.exe拒絕服務攻擊" ruleid="10116" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="Microsoft Windows消息队列服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Message Queuing Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows消息队列服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows消息隊列服務遠程緩沖區溢出攻擊" ruleid="20510" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHPAuction adsearch.php/viewnews.php远程SQL注入攻击" name_en_US="PHPAuction adsearch.php/viewnews.php Remote SQL Injection" name_zh_CN="PHPAuction adsearch.php/viewnews.php远程SQL注入攻击" name_zh_TW="PHPAuction adsearch.php/viewnews.php遠程SQL注入攻擊" ruleid="20513" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="UBBThreads download.php远程SQL注入攻击" name_en_US="UBBThreads download.php Remote SQL Injection" name_zh_CN="UBBThreads download.php远程SQL注入攻击" name_zh_TW="UBBThreads download.php遠程SQL注入攻擊" ruleid="20512" visible="true" />
			<rule action="" enabled="true" group="368115781" module="0" name="FTP服务root用户" name_en_US="FTP Service root Account" name_zh_CN="FTP服务root用户" name_zh_TW="FTP服務root用戶" ruleid="78999" visible="false" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMAP服务程序CREATE命令远程缓冲区溢出攻击" name_en_US="IMAP Server CREATE Command Remote Buffer Overflow" name_zh_CN="IMAP服务程序CREATE命令远程缓冲区溢出攻击" name_zh_TW="IMAP服務程序CREATE命令遠程緩沖區溢出攻擊" ruleid="20515" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Schneckenkorn木马通信" name_en_US="Trojan Schneckenkorn Communication on Windows" name_zh_CN="Windows系统下Schneckenkorn木马通信" name_zh_TW="Windows系統下Schneckenkorn木馬通信" ruleid="40586" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PunBB profile.php temp变量远程SQL注入攻击" name_en_US="PunBB profile.php temp Variable Remote SQL Injection" name_zh_CN="PunBB profile.php temp变量远程SQL注入攻击" name_zh_TW="PunBB profile.php temp變量遠程SQL注入攻擊" ruleid="20514" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206191" module="0" name="Product Cart viewPrd.asp远程SQL注入攻击" name_en_US="Product Cart viewPrd.asp Remote SQL Injection" name_zh_CN="Product Cart viewPrd.asp远程SQL注入攻击" name_zh_TW="Product Cart viewPrd.asp遠程SQL注入攻擊" ruleid="20517" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信软件MSN Messenger用户登录" name_en_US="Instant Messaging Software MSN Messenger User Login" name_zh_CN="即时通信软件MSN Messenger用户登录" name_zh_TW="即時通信軟件MSN Messenger用戶登錄" ruleid="50075" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="微软IE畸形CSS内存破坏0day漏洞" name_en_US="Memory corruption vulnerability in IE handling a self-referencing cascading style sheet(CSS)" name_zh_CN="微软IE畸形CSS内存破坏0day漏洞" name_zh_TW="微軟IE畸形CSS內存破壞0day漏洞" ruleid="21174" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Windows “CreateSizedDIBSECTION()”缩略视图栈缓冲区溢出漏洞" name_en_US="Microsoft Windows &apos;CreateSizedDIBSECTION()&apos; Thumbnail View Stack Buffer Overflow Vulnerability" name_zh_CN="Microsoft Windows “CreateSizedDIBSECTION()”缩略视图栈缓冲区溢出漏洞" name_zh_TW="Microsoft Windows “CreateSizedDIBSECTION()”縮略視圖棧緩沖區溢出漏洞" ruleid="21175" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375343" module="0" name="Microsoft Windows MHTML脚本代码注入漏洞" name_en_US="Vulnerability in Microsoft Windows MHTML Could Allow Information Disclosure" name_zh_CN="Microsoft Windows MHTML脚本代码注入漏洞" name_zh_TW="Microsoft Windows MHTML腳本代碼注入漏洞" ruleid="21176" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Internet Explorer未初始化内存远程代码执行漏洞" name_en_US="Microsoft Internet Explorer Uninitialized Memory Remote Code Execution Vulnerability" name_zh_CN="Microsoft Internet Explorer未初始化内存远程代码执行漏洞" name_zh_TW="Microsoft Internet Explorer未初始化內存遠程代碼執行漏洞" ruleid="21177" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="Symantec IM Manager sql注入漏洞" name_en_US="Symantec IM Manager SQL Injection" name_zh_CN="Symantec IM Manager sql注入漏洞" name_zh_TW="Symantec IM Manager sql注入漏洞" ruleid="21170" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="www.openssl.cn代码注入" name_en_US="www.openssl.cn Code Injection" name_zh_CN="www.openssl.cn代码注入" name_zh_TW="www.openssl.cn代碼注入" ruleid="21171" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157615" module="0" name="PhpMyAdmin的客户端0Day重定向链接代码注入" name_en_US="PhpMyAdmin Client Side Oday Code Injection and Redirect Link Falsification" name_zh_CN="PhpMyAdmin的客户端0Day重定向链接代码注入" name_zh_TW="PhpMyAdmin的客戶端0Day重定向鏈接代碼注入" ruleid="21172" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Internet Explorer HtmlDlgHelper内存破坏攻击" name_en_US="Microsoft Internet Explorer HtmlDlgHelper Memory Corruption" name_zh_CN="Microsoft Internet Explorer HtmlDlgHelper内存破坏攻击" name_zh_TW="Microsoft Internet Explorer HtmlDlgHelper內存破壞攻擊" ruleid="21173" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Internet Explorer &apos;mshtml.dll&apos;内存远程代码执行漏洞" name_en_US="Microsoft Internet Explorer &apos;mshtml.dll&apos; Dangling Pointer Vulnerability" name_zh_CN="Microsoft Internet Explorer &apos;mshtml.dll&apos;内存远程代码执行漏洞" name_zh_TW="Microsoft Internet Explorer &apos;mshtml.dll&apos;內存遠程代碼執行漏洞" ruleid="21178" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Internet Information Services (IIS) FTP Service 远程代码执行漏洞" name_en_US="Vulnerability in Internet Information Services (IIS) FTP Service Could Allow Remote Code Execution" name_zh_CN="Internet Information Services (IIS) FTP Service 远程代码执行漏洞" name_zh_TW="Internet Information Services (IIS) FTP Service 遠程代碼執行漏洞" ruleid="21179" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="IRIX rpc.espd服务存在性UDP扫描探测" name_en_US="IRIX rpc.espd Service UDP Detection" name_zh_CN="IRIX rpc.espd服务存在性UDP扫描探测" name_zh_TW="IRIX rpc.espd服務存在性UDP掃描探測" ruleid="30085" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitTorrent获取文件信息" name_en_US="P2P File Sharing Tool BitTorrent Obtainning File Information" name_zh_CN="P2P文件共享工具BitTorrent获取文件信息" name_zh_TW="P2P文件共享工具BitTorrent獲取文件信息" ruleid="50077" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="SQL注入通过DNS析取数据攻击" name_en_US="SQL Injection Extraction Data By DNS" name_zh_CN="SQL注入通过DNS析取数据攻击" name_zh_TW="SQL注入通過DNS析取數據攻擊" ruleid="21350" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="SQL注入通过HTTP析取数据攻击" name_en_US="SQL Injection Extraction Data By HTTP" name_zh_CN="SQL注入通过HTTP析取数据攻击" name_zh_TW="SQL注入通過HTTP析取數據攻擊" ruleid="21351" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375339" module="0" name="WEB服务远程SQL注入查询数据库信息" name_en_US="WEB Service Remote SQL Injection Query The Database Information" name_zh_CN="WEB服务远程SQL注入查询数据库信息" name_zh_TW="WEB服務遠程SQL注入查詢數據庫信息" ruleid="21352" visible="true" />
			<rule action=" db  screen " enabled="true" group="208666799" module="0" name="Putty中文版被植入后门回传登录帐号信息" name_en_US="Chinese Version Putty Backdoor Returning User Login Account Information" name_zh_CN="Putty中文版被植入后门回传登录帐号信息" name_zh_TW="Putty中文版被植入後門回傳登錄帳號信息" ruleid="21353" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412331" module="0" name="FreeBSD telnetd密钥处理缓冲区溢出漏洞" name_en_US="FreeBSD&quot;telnetd&quot; Daemon Remote Buffer Overflow Vulnerability" name_zh_CN="FreeBSD telnetd密钥处理缓冲区溢出漏洞" name_zh_TW="FreeBSD telnetd密鑰處理緩沖區溢出漏洞" ruleid="21354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2010-3138 Indeo Audio Codec不安全库加载远程代码执行漏洞(MS12-014)" name_en_US="CVE-2010-3138 Indeo Audio Codec Insecure Library Loading Remote Code Vulnerability(MS12-014)" name_zh_CN="CVE-2010-3138 Indeo Audio Codec不安全库加载远程代码执行漏洞(MS12-014)" name_zh_TW="CVE-2010-3138 Indeo Audio Codec不安全庫加載遠程代碼執行漏洞(MS12-014)" ruleid="21355" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CVE-2010-5082 Color Control Panel(colorui.dll)不安全库加载远程代码执行漏洞(MS12-012)" name_en_US="CVE-2010-5082 Color Control Panel(colorui.dll) Insecure Library Loading Remote Code Execution Vulnerability(MS12-012)" name_zh_CN="CVE-2010-5082 Color Control Panel(colorui.dll)不安全库加载远程代码执行漏洞(MS12-012)" name_zh_TW="CVE-2010-5082 Color Control Panel(colorui.dll)不安全庫加載遠程代碼執行漏洞(MS12-012)" ruleid="21356" visible="true" />
			<rule action=" db  screen " enabled="true" group="99614891" module="0" name="CVE-2011-5046 GDI访问违规远程代码执行漏洞(MS12-008)" name_en_US="CVE-2011-5046 GDI Access Violation Remote Code Execution Vulnerability(MS12-008)" name_zh_CN="CVE-2011-5046 GDI访问违规远程代码执行漏洞(MS12-008)" name_zh_TW="CVE-2011-5046 GDI訪問違規遠程代碼執行漏洞(MS12-008)" ruleid="21357" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="CVE-2012-0011 Internet Explorer HtmlLayout远程代码执行漏洞(MS12-010)" name_en_US="CVE-2012-0011 Internet Explorer HtmlLayout Remote Code Execution Vulnerability(MS12-010)" name_zh_CN="CVE-2012-0011 Internet Explorer HtmlLayout远程代码执行漏洞(MS12-010)" name_zh_TW="CVE-2012-0011 Internet Explorer HtmlLayout遠程代碼執行漏洞(MS12-010)" ruleid="21358" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834517" module="0" name="IP/UDP畸形分片包Jolt2拒绝服务攻击" name_en_US="IP/UDP Malformed Fragmented Packet Jolt2 Denial of Service" name_zh_CN="IP/UDP畸形分片包Jolt2拒绝服务攻击" name_zh_TW="IP/UDP畸形分片包Jolt2拒絕服務攻擊" ruleid="10041" visible="false" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="Microsoft FrontPage shtml.exe恶意访问攻击" name_en_US="Microsoft FrontPage shtml.exe Malicious Access" name_zh_CN="Microsoft FrontPage shtml.exe恶意访问攻击" name_zh_TW="Microsoft FrontPage shtml.exe惡意訪問攻擊" ruleid="10044" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="Microsoft FrontPage shtml.dll恶意访问攻击" name_en_US="Microsoft FrontPage shtml.dll Malicious Access" name_zh_CN="Microsoft FrontPage shtml.dll恶意访问攻击" name_zh_TW="Microsoft FrontPage shtml.dll惡意訪問攻擊" ruleid="10045" visible="true" />
			<rule action=" db  screen " enabled="false" group="73402390" module="0" name="Microsoft网络共享器SMB请求远程拒绝服务攻击" name_en_US="Microsoft Share Provider SMB Request Remote Denial of Service" name_zh_CN="Microsoft网络共享器SMB请求远程拒绝服务攻击" name_zh_TW="Microsoft網絡共享器SMB請求遠程拒絕服務攻擊" ruleid="10046" visible="false" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Stylemotion WEB//NEWS多个远程SQL注入攻击" name_en_US="Stylemotion WEB//NEWS multiple Remote SQL Injections" name_zh_CN="Stylemotion WEB//NEWS多个远程SQL注入攻击" name_zh_TW="Stylemotion WEB//NEWS多個遠程SQL注入攻擊" ruleid="20759" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="PHP-Nuke多个模块远程SQL注入攻击" name_en_US="PHP-Nuke multiple Modules Remote SQL Injection" name_zh_CN="PHP-Nuke多个模块远程SQL注入攻击" name_zh_TW="PHP-Nuke多個模塊遠程SQL注入攻擊" ruleid="20758" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Revize CMS query_results.jsp远程SQL注入攻击" name_en_US="Revize CMS query_results.jsp Remote SQL Injection" name_zh_CN="Revize CMS query_results.jsp远程SQL注入攻击" name_zh_TW="Revize CMS query_results.jsp遠程SQL注入攻擊" ruleid="20753" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Google搜索工具ProxyStyleSheet远程文件包含攻击" name_en_US="Google Search Appliance ProxyStyleSheet Remote File Inclusion" name_zh_CN="Google搜索工具ProxyStyleSheet远程文件包含攻击" name_zh_TW="Google搜索工具ProxyStyleSheet遠程文件包含攻擊" ruleid="20752" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="PluggedOut Blog index.php远程SQL注入攻击" name_en_US="PluggedOut Blog index.php Remote SQL Injection" name_zh_CN="PluggedOut Blog index.php远程SQL注入攻击" name_zh_TW="PluggedOut Blog index.php遠程SQL注入攻擊" ruleid="20751" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Cars Portal index.php远程SQL注入攻击" name_en_US="Cars Portal index.php Remote SQL Injection" name_zh_CN="Cars Portal index.php远程SQL注入攻击" name_zh_TW="Cars Portal index.php遠程SQL注入攻擊" ruleid="20750" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器USER命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server USER Command Over-long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器USER命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器USER命令超長參數遠程緩沖區溢出攻擊" ruleid="20757" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Xoops多个脚本远程SQL注入攻击" name_en_US="Xoops multiple Scripts Remote SQL Injection" name_zh_CN="Xoops多个脚本远程SQL注入攻击" name_zh_TW="Xoops多個腳本遠程SQL注入攻擊" ruleid="20756" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Wizz Forum多个脚本远程SQL注入攻击" name_en_US="Wizz Forum multiple Scripts Remote SQL Injection" name_zh_CN="Wizz Forum多个脚本远程SQL注入攻击" name_zh_TW="Wizz Forum多個腳本遠程SQL注入攻擊" ruleid="20755" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Unclassified NewsBoard forum.php远程SQL注入攻击" name_en_US="Unclassified NewsBoard forum.php Remote SQL Injection" name_zh_CN="Unclassified NewsBoard forum.php远程SQL注入攻击" name_zh_TW="Unclassified NewsBoard forum.php遠程SQL注入攻擊" ruleid="20754" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA Unicenter CAM log_security()远程缓冲区溢出攻击" name_en_US="CA Unicenter CAM log_security() Remote Buffer Overflow" name_zh_CN="CA Unicenter CAM log_security()远程缓冲区溢出攻击" name_zh_TW="CA Unicenter CAM log_security()遠程緩沖區溢出攻擊" ruleid="20537" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMAP服务器STATUS命令超长参数远程缓冲区溢出攻击" name_en_US="IMAP Server STATUS Command Over-long Parameter Remote Buffer Overflow" name_zh_CN="IMAP服务器STATUS命令超长参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務器STATUS命令超長參數遠程緩沖區溢出攻擊" ruleid="20536" visible="true" />
			<rule action=" db  screen " enabled="true" group="156238119" module="0" name="HP-UX LPD远程命令执行攻击" name_en_US="HP-UX LPD Remote Command Execution" name_zh_CN="HP-UX LPD远程命令执行攻击" name_zh_TW="HP-UX LPD遠程命令執行攻擊" ruleid="20535" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546343" module="0" name="Mercury/32 IMAP RENAME命令远程缓冲区溢出攻击" name_en_US="Mercury/32 IMAP RENAME Command Remote Buffer Overflow" name_zh_CN="Mercury/32 IMAP RENAME命令远程缓冲区溢出攻击" name_zh_TW="Mercury/32 IMAP RENAME命令遠程緩沖區溢出攻擊" ruleid="20534" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="My Little Forum search.php CGI脚本SQL注入攻击" name_en_US="My Little Forum search.php CGI Script SQL Injection" name_zh_CN="My Little Forum search.php CGI脚本SQL注入攻击" name_zh_TW="My Little Forum search.php CGI腳本SQL注入攻擊" ruleid="20533" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="TWiki rev参数远程执行命令攻击" name_en_US="TWiki rev Parameter Remote Command Execution" name_zh_CN="TWiki rev参数远程执行命令攻击" name_zh_TW="TWiki rev參數遠程執行命令攻擊" ruleid="20532" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="DameWare Mini Remote Control Server预认证用户名溢出攻击" name_en_US="DameWare Mini Remote Control Server Pre-authentication Username Overflow" name_zh_CN="DameWare Mini Remote Control Server预认证用户名溢出攻击" name_zh_TW="DameWare Mini Remote Control Server預認證用戶名溢出攻擊" ruleid="20531" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="MyBulletinBoard 多个CGI脚本SQL注入攻击" name_en_US="MyBulletinBoard multiple CGI Scripts SQL Injection" name_zh_CN="MyBulletinBoard 多个CGI脚本SQL注入攻击" name_zh_TW="MyBulletinBoard 多個CGI腳本SQL注入攻擊" ruleid="20530" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725659" module="0" name="FreeBSD nfsd畸形mount请求远程拒绝服务攻击" name_en_US="FreeBSD nfsd Malformed mount Request Remote Denial of Service" name_zh_CN="FreeBSD nfsd畸形mount请求远程拒绝服务攻击" name_zh_TW="FreeBSD nfsd畸形mount請求遠程拒絕服務攻擊" ruleid="10138" visible="true" />
			<rule action=" db  screen " enabled="true" group="160434203" module="0" name="Linux Kernel SNMP NAT Helper远程拒绝服务攻击" name_en_US="Linux Kernel SNMP NAT Helper Remote Denial of Service" name_zh_CN="Linux Kernel SNMP NAT Helper远程拒绝服务攻击" name_zh_TW="Linux Kernel SNMP NAT Helper遠程拒絕服務攻擊" ruleid="10139" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206311" module="0" name="RSA SecurID Web Agent for IIS ISAPI远程缓冲区溢出攻击" name_en_US="RSA SecurID Web Agent for IIS ISAPI Remote Buffer Overflow" name_zh_CN="RSA SecurID Web Agent for IIS ISAPI远程缓冲区溢出攻击" name_zh_TW="RSA SecurID Web Agent for IIS ISAPI遠程緩沖區溢出攻擊" ruleid="20538" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157642" module="0" name="HTTP: Oracle Application Server Portal 跨站脚本攻击" name_en_US="HTTP: Oracle Application Server Portal Cross Site Scripting" name_zh_CN="HTTP: Oracle Application Server Portal 跨站脚本攻击" name_zh_TW="HTTP: Oracle Application Server Portal 跨站腳本攻擊" ruleid="29228" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare 终端操作" name_en_US="Remote Control Program PCShare Terminal Operation" name_zh_CN="远程控制程序 PCShare 终端操作" name_zh_TW="遠程控制程序 PCShare 終端操作" ruleid="40999" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare 桌面监控" name_en_US="Remote Control Program PCShare Desktop Monitor" name_zh_CN="远程控制程序 PCShare 桌面监控" name_zh_TW="遠程控制程序 PCShare 桌面監控" ruleid="40998" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="HTTP: IE 绕过安全限制和地址欺骗" name_en_US="HTTP: IE Security Zone Bypass and Address Spoofing" name_zh_CN="HTTP: IE 绕过安全限制和地址欺骗" name_zh_TW="HTTP: IE 繞過安全限制和地址欺騙" ruleid="29220" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare 终端更新" name_en_US="Remote Control Program PCShare Update Terminal" name_zh_CN="远程控制程序 PCShare 终端更新" name_zh_TW="遠程控制程序 PCShare 終端更新" ruleid="40996" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare URL下发" name_en_US="Remote Control Program PCShare URL Issue" name_zh_CN="远程控制程序 PCShare URL下发" name_zh_TW="遠程控制程序 PCShare URL下發" ruleid="40995" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare 文件下发" name_en_US="Remote Control Program PCShare Files Issue" name_zh_CN="远程控制程序 PCShare 文件下发" name_zh_TW="遠程控制程序 PCShare 文件下發" ruleid="40994" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="远程控制程序 PCShare 终端注册" name_en_US="Remote Control Program PCShare Terminal Register" name_zh_CN="远程控制程序 PCShare 终端注册" name_zh_TW="遠程控制程序 PCShare 終端注冊" ruleid="40993" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618889" module="0" name="木马程序 Srizbi 请求垃圾邮件" name_en_US="TROJAN Srizbi Request Spam" name_zh_CN="木马程序 Srizbi 请求垃圾邮件" name_zh_TW="木馬程序 Srizbi 請求垃圾郵件" ruleid="40992" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Darksk asp木马下载文件" name_en_US="Darksk asp Trojan Download Files" name_zh_CN="Darksk asp木马下载文件" name_zh_TW="Darksk asp木馬下載文件" ruleid="40991" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Darksk asp木马上传文件" name_en_US="Darksk asp Trojan Upload Files" name_zh_CN="Darksk asp木马上传文件" name_zh_TW="Darksk asp木馬上傳文件" ruleid="40990" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Fake Identd远程缓冲区溢出攻击" name_en_US="Fake Identd Remote Buffer Overflow" name_zh_CN="Fake Identd远程缓冲区溢出攻击" name_zh_TW="Fake Identd遠程緩沖區溢出攻擊" ruleid="20777" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="WORM SDBot 木马网络数据通信" name_en_US="WORM SDBot HTTP Checkin" name_zh_CN="WORM SDBot 木马网络数据通信" name_zh_TW="WORM SDBot 木馬網絡數據通信" ruleid="40945" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k请求文件片断(TCP)" name_en_US="P2P File Sharing Tool eDonkey/ed2k File Request Fragment (TCP)" name_zh_CN="P2P文件共享工具eDonkey/ed2k请求文件片断(TCP)" name_zh_TW="P2P文件共享工具eDonkey/ed2k請求文件片斷(TCP)" ruleid="50073" visible="true" />
			<rule action=" db  screen " enabled="true" group="70262838" module="0" name="通过Web服务访问ws_ftp.ini文件" name_en_US="Access to ws_ftp.ini File via Web Service" name_zh_CN="通过Web服务访问ws_ftp.ini文件" name_zh_TW="通過Web服務訪問ws_ftp.ini文件" ruleid="40191" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="中国工商银行网上银行用户登录" name_en_US="Industrial and Commercial Bank of China Internet Banking User Login" name_zh_CN="中国工商银行网上银行用户登录" name_zh_TW="中國工商銀行網上銀行用戶登錄" ruleid="50311" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k搜索文件" name_en_US="P2P File Sharing Tool eDonkey/ed2k Searching Files" name_zh_CN="P2P文件共享工具eDonkey/ed2k搜索文件" name_zh_TW="P2P文件共享工具eDonkey/ed2k搜索文件" ruleid="50072" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Cart32 cart32.exe CGI漏洞获取口令" name_en_US="Password Disclosure via Cart32 cart32.exe CGI Vulnerability" name_zh_CN="利用Cart32 cart32.exe CGI漏洞获取口令" name_zh_TW="利用Cart32 cart32.exe CGI漏洞獲取口令" ruleid="20403" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315045" module="0" name="利用Squid cachemgr.cgi脚本漏洞非授权连接主机" name_en_US="Unauthorized Host Connection via Squid cachemgr.cgi Script Vulnerability" name_zh_CN="利用Squid cachemgr.cgi脚本漏洞非授权连接主机" name_zh_TW="利用Squid cachemgr.cgi腳本漏洞非授權連接主機" ruleid="20402" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157606" module="0" name="利用Web服务器处理请求文件名漏洞执行命令攻击" name_en_US="Requested Filename Handling via web Server Command Execution" name_zh_CN="利用Web服务器处理请求文件名漏洞执行命令攻击" name_zh_TW="利用Web服務器處理請求文件名漏洞執行命令攻擊" ruleid="20401" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206319" module="0" name="Windows Media服务NSIISlog.DLL超长MX_STATS_LogLine参数远程缓冲区溢出攻击" name_en_US="Windows Media Service NSIISlog.DLL Over-long MX_STATS_LogLine Parameter Remote Buffer Overflow" name_zh_CN="Windows Media服务NSIISlog.DLL超长MX_STATS_LogLine参数远程缓冲区溢出攻击" name_zh_TW="Windows Media服務NSIISlog.DLL超長MX_STATS_LogLine參數遠程緩沖區溢出攻擊" ruleid="20400" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266598" module="0" name="Apache Web Server分块编码传输方式远程溢出攻击" name_en_US="Apache Web Server Chunked Encoding Transmission Remote Buffer Overflow" name_zh_CN="Apache Web Server分块编码传输方式远程溢出攻击" name_zh_TW="Apache Web Server分塊編碼傳輸方式遠程溢出攻擊" ruleid="20407" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206310" module="0" name="Allaire JRun超长JSP文件名溢出攻击" name_en_US="Allaire JRun Over-long JSP Filename Buffer Overflow" name_zh_CN="Allaire JRun超长JSP文件名溢出攻击" name_zh_TW="Allaire JRun超長JSP文件名溢出攻擊" ruleid="20406" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206310" module="0" name="Allaire Forums超长CFM文件名溢出攻击" name_en_US="Allaire Forums Over-long CFM Filename Buffer Overflow" name_zh_CN="Allaire Forums超长CFM文件名溢出攻击" name_zh_TW="Allaire Forums超長CFM文件名溢出攻擊" ruleid="20405" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Cart32 cart32.exe CGI漏洞收集系统信息" name_en_US="System Information Disclosure via Cart32 cart32.exe CGI Vulnerability" name_zh_CN="利用Cart32 cart32.exe CGI漏洞收集系统信息" name_zh_TW="利用Cart32 cart32.exe CGI漏洞收集系統信息" ruleid="20404" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472614" module="0" name="FTP服务LIST命令超长参数溢出攻击" name_en_US="FTP Service LIST Command Over-long Parameter Buffer Overflow" name_zh_CN="FTP服务LIST命令超长参数溢出攻击" name_zh_TW="FTP服務LIST命令超長參數溢出攻擊" ruleid="20409" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472614" module="0" name="FTP服务DELE命令超长参数溢出攻击" name_en_US="FTP Service DELE Command Over-long Parameter Buffer Overflow" name_zh_CN="FTP服务DELE命令超长参数溢出攻击" name_zh_TW="FTP服務DELE命令超長參數溢出攻擊" ruleid="20408" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323129" module="0" name="Geeklog users.php脚本漏洞扫描探测" name_en_US="Geeklog users.php Script Vulnerability Detection" name_zh_CN="Geeklog users.php脚本漏洞扫描探测" name_zh_TW="Geeklog users.php腳本漏洞掃描探測" ruleid="30464" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Philboard philboard_admin.asp脚本漏洞扫描探测" name_en_US="Philboard philboard_admin.asp Script Vulnerability Detection" name_zh_CN="Philboard philboard_admin.asp脚本漏洞扫描探测" name_zh_TW="Philboard philboard_admin.asp腳本漏洞掃描探測" ruleid="30465" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="phpBB admin_styles.php脚本漏洞扫描探测" name_en_US="phpBB admin_styles.php Script Vulnerability Detection" name_zh_CN="phpBB admin_styles.php脚本漏洞扫描探测" name_zh_TW="phpBB admin_styles.php腳本漏洞掃描探測" ruleid="30466" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="HappyMall E-Commerce normal_html.cgi脚本漏洞扫描探测" name_en_US="HappyMall E-Commerce normal_html.cgi Script Vulnerability Detection" name_zh_CN="HappyMall E-Commerce normal_html.cgi脚本漏洞扫描探测" name_zh_TW="HappyMall E-Commerce normal_html.cgi腳本漏洞掃描探測" ruleid="30460" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="BLNews objects.inc.php4脚本漏洞扫描探测" name_en_US="BLNews objects.inc.php4 Script Vulnerability Detection" name_zh_CN="BLNews objects.inc.php4脚本漏洞扫描探测" name_zh_TW="BLNews objects.inc.php4腳本漏洞掃描探測" ruleid="30461" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="Ultimate PHP Board admin_iplog.php脚本漏洞扫描探测" name_en_US="Ultimate PHP Board admin_iplog.php Script Vulnerability Detection" name_zh_CN="Ultimate PHP Board admin_iplog.php脚本漏洞扫描探测" name_zh_TW="Ultimate PHP Board admin_iplog.php腳本漏洞掃描探測" ruleid="30462" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="shoutbox脚本漏洞扫描探测" name_en_US="shoutbox Script Vulnerability Detection" name_zh_CN="shoutbox脚本漏洞扫描探测" name_zh_TW="shoutbox腳本漏洞掃描探測" ruleid="30463" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="P2P_Iroffer_IRC_Bot文件广播木马网络数据通信" name_en_US="P2P iroffer IRC Bot offered files advertisement" name_zh_CN="P2P_Iroffer_IRC_Bot文件广播木马网络数据通信" name_zh_TW="P2P_Iroffer_IRC_Bot文件廣播木馬網絡數據通信" ruleid="40862" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Routing Header 检测" name_en_US="Routing Header Check" name_zh_CN="Routing Header 检测" name_zh_TW="Routing Header 檢測" ruleid="41020" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Fragment Header 检测" name_en_US="Fragment Header Check" name_zh_CN="Fragment Header 检测" name_zh_TW="Fragment Header 檢測" ruleid="41021" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="ESP header 检测" name_en_US="ESP header Check" name_zh_CN="ESP header 检测" name_zh_TW="ESP header 檢測" ruleid="41022" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Authentication header 检测" name_en_US="Authentication header Check" name_zh_CN="Authentication header 检测" name_zh_TW="Authentication header 檢測" ruleid="41023" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="No Next Header 检测" name_en_US="No Next Header Check" name_zh_CN="No Next Header 检测" name_zh_TW="No Next Header 檢測" ruleid="41024" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="Destination Options Header 检测" name_en_US="Destination Options Header Check" name_zh_CN="Destination Options Header 检测" name_zh_TW="Destination Options Header 檢測" ruleid="41025" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="qqspy 间谍软件检测" name_en_US="qqspy Spyware Check" name_zh_CN="qqspy 间谍软件检测" name_zh_TW="qqspy 間諜軟件檢測" ruleid="41026" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159562" module="0" name="HTTP 协议异常头部攻击" name_en_US="HTTP Protocol Abnormal Header Attack" name_zh_CN="HTTP 协议异常头部攻击" name_zh_TW="HTTP 協議異常頭部攻擊" ruleid="41027" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="PcRat远程管理软件" name_en_US="PcRat Remote Management Software" name_zh_CN="PcRat远程管理软件" name_zh_TW="PcRat遠程管理軟件" ruleid="41028" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="天启远控木马通信" name_en_US="Trojan Apocalypse Remote Control" name_zh_CN="天启远控木马通信" name_zh_TW="天啓遠控木馬通信" ruleid="41029" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问.forward文件" name_en_US="FTP Service Client Accessing .forward File" name_zh_CN="FTP服务客户端访问.forward文件" name_zh_TW="FTP服務客戶端訪問.forward文件" ruleid="40372" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问UNIX口令文件" name_en_US="FTP Service Client Accessing UNIX Password File" name_zh_CN="FTP服务客户端访问UNIX口令文件" name_zh_TW="FTP服務客戶端訪問UNIX口令文件" ruleid="40371" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问.shosts文件" name_en_US="FTP Service Client Accessing .shosts File" name_zh_CN="FTP服务客户端访问.shosts文件" name_zh_TW="FTP服務客戶端訪問.shosts文件" ruleid="40370" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具TFN主控端向分布端发送指令" name_en_US="DDOS Tool TFN Console Sending Command to Distributed End" name_zh_CN="DDOS工具TFN主控端向分布端发送指令" name_zh_TW="DDOS工具TFN主控端向分布端發送指令" ruleid="40377" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727750" module="0" name="DDOS工具TFN2K主控端向分布端发送指令" name_en_US="DDOS Tool TFN2K Console Sending Command to Distributed End" name_zh_CN="DDOS工具TFN2K主控端向分布端发送指令" name_zh_TW="DDOS工具TFN2K主控端向分布端發送指令" ruleid="40376" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="利用web_store.cgi脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via web_store.cgi Script Vulnerability" name_zh_CN="利用web_store.cgi脚本漏洞遍历目录攻击" name_zh_TW="利用web_store.cgi腳本漏洞遍曆目錄攻擊" ruleid="30318" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="cgiforum.pl脚本漏洞扫描利用" name_en_US="cgiforum.pl Script Vulnerability Detection" name_zh_CN="cgiforum.pl脚本漏洞扫描利用" name_zh_TW="cgiforum.pl腳本漏洞掃描利用" ruleid="30319" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="IRIX windmail.exe程序漏洞扫描利用" name_en_US="IRIX windmail.exe Vulnerability Detection" name_zh_CN="IRIX windmail.exe程序漏洞扫描利用" name_zh_TW="IRIX windmail.exe程序漏洞掃描利用" ruleid="30316" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="web_store.cgi脚本漏洞扫描探测" name_en_US="web_store.cgi Script Vulnerability Detection" name_zh_CN="web_store.cgi脚本漏洞扫描探测" name_zh_TW="web_store.cgi腳本漏洞掃描探測" ruleid="30317" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Tomcat 3.0远程目录遍历攻击" name_en_US="Tomcat 3.0 Remote Directory Traversal" name_zh_CN="Tomcat 3.0远程目录遍历攻击" name_zh_TW="Tomcat 3.0遠程目錄遍曆攻擊" ruleid="30314" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="IRIX infosrch.cgi脚本漏洞扫描利用" name_en_US="IRIX infosrch.cgi Script Vulnerability Detection" name_zh_CN="IRIX infosrch.cgi脚本漏洞扫描利用" name_zh_TW="IRIX infosrch.cgi腳本漏洞掃描利用" ruleid="30315" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377270" module="0" name="利用weblogic漏洞获取JSP脚本源码攻击" name_en_US="JSP Script Source Code Disclosure via weblogic Vulnerability" name_zh_CN="利用weblogic漏洞获取JSP脚本源码攻击" name_zh_TW="利用weblogic漏洞獲取JSP腳本源碼攻擊" ruleid="30312" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="利用Tomcat漏洞获取JSP脚本源码攻击" name_en_US="JSP Source Code Disclosure via Tomcat Vulnerabilities" name_zh_CN="利用Tomcat漏洞获取JSP脚本源码攻击" name_zh_TW="利用Tomcat漏洞獲取JSP腳本源碼攻擊" ruleid="30313" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="main.cgi脚本漏洞扫描利用" name_en_US="main.cgi Script Vulnerability Detection" name_zh_CN="main.cgi脚本漏洞扫描利用" name_zh_TW="main.cgi腳本漏洞掃描利用" ruleid="30310" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="TroDjan木马网络数据通信" name_en_US="TROJAN TroDjan 2.0 FTP Channel Open Command" name_zh_CN="TroDjan木马网络数据通信" name_zh_TW="TroDjan木馬網絡數據通信" ruleid="40941" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375339" module="0" name="WEB服务远程SQL注入攻击可疑行为" name_en_US="WEB Service Remote SQL Injection Suspicious Behavior" name_zh_CN="WEB服务远程SQL注入攻击可疑行为" name_zh_TW="WEB服務遠程SQL注入攻擊可疑行爲" ruleid="29001" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="WEB服务远程跨站脚本执行攻击" name_en_US="WEB Service Remote Cross-Site Scripting" name_zh_CN="WEB服务远程跨站脚本执行攻击" name_zh_TW="WEB服務遠程跨站腳本執行攻擊" ruleid="29002" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615791" module="0" name="Sasser（震荡波）蠕虫FTP后门缓冲区溢出攻击" name_en_US="Worm Sasser FTP Backdoor Buffer Overflow" name_zh_CN="Sasser（震荡波）蠕虫FTP后门缓冲区溢出攻击" name_zh_TW="Sasser（震蕩波）蠕蟲FTP後門緩沖區溢出攻擊" ruleid="20424" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="RedHat Piranha passwd.php3 CGI漏洞扫描利用" name_en_US="RedHat Piranha passwd.php3 CGI Vulnerability Detection" name_zh_CN="RedHat Piranha passwd.php3 CGI漏洞扫描利用" name_zh_TW="RedHat Piranha passwd.php3 CGI漏洞掃描利用" ruleid="20241" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="count.cgi脚本漏洞扫描探测" name_en_US="count.cgi Script Vulnerability Detection" name_zh_CN="count.cgi脚本漏洞扫描探测" name_zh_TW="count.cgi腳本漏洞掃描探測" ruleid="20240" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="VirusWall FtpSave.dll脚本漏洞扫描探测" name_en_US="VirusWall FtpSave.dll Script Vulnerability Detection" name_zh_CN="VirusWall FtpSave.dll脚本漏洞扫描探测" name_zh_TW="VirusWall FtpSave.dll腳本漏洞掃描探測" ruleid="20243" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Cart32 c32web.exe CGI漏洞更改应用口令" name_en_US="Password Modification via Cart32 c32web.exe CGI Vulnerability" name_zh_CN="利用Cart32 c32web.exe CGI漏洞更改应用口令" name_zh_TW="利用Cart32 c32web.exe CGI漏洞更改應用口令" ruleid="20242" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="利用Cart32 c32web.exe CGI漏洞执行命令" name_en_US="Remote Code Execution via Cart32 c32web.exe CGI Vulnerability" name_zh_CN="利用Cart32 c32web.exe CGI漏洞执行命令" name_zh_TW="利用Cart32 c32web.exe CGI漏洞執行命令" ruleid="20245" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="VirusWall catinfo脚本漏洞扫描探测" name_en_US="VirusWall catinfo Script Vulnerability Detection" name_zh_CN="VirusWall catinfo脚本漏洞扫描探测" name_zh_TW="VirusWall catinfo腳本漏洞掃描探測" ruleid="20244" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="IBM Net.Commerce orderdspc.d2w脚本漏洞扫描探测" name_en_US="IBM Net.Commerce orderdspc.d2w Script Vulnerability Detection" name_zh_CN="IBM Net.Commerce orderdspc.d2w脚本漏洞扫描探测" name_zh_TW="IBM Net.Commerce orderdspc.d2w腳本漏洞掃描探測" ruleid="20246" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Psyrat木马通信" name_en_US="Trojan Psyrat Communication on Windows" name_zh_CN="Windows系统下Psyrat木马通信" name_zh_TW="Windows系統下Psyrat木馬通信" ruleid="40751" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Bnlite木马通信" name_en_US="Trojan Bnlite Communication on Windows" name_zh_CN="Windows系统下Bnlite木马通信" name_zh_TW="Windows系統下Bnlite木馬通信" ruleid="40750" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Only1木马通信" name_en_US="Trojan Only1 Communication on Windows" name_zh_CN="Windows系统下Only1木马通信" name_zh_TW="Windows系統下Only1木馬通信" ruleid="40753" visible="true" />
			<rule action=" db  screen " enabled="true" group="163578159" module="0" name="CVS多次Entry已被修改或未被修改标记插入操作堆溢出攻击" name_en_US="CVS Multiple Entry Modified or Unmodified Mark Insert Operation Heap Overflow" name_zh_CN="CVS多次Entry已被修改或未被修改标记插入操作堆溢出攻击" name_zh_TW="CVS多次Entry已被修改或未被修改標記插入操作堆溢出攻擊" ruleid="20426" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="Achievo class.atkdateattribute.js.php脚本漏洞扫描探测" name_en_US="Achievo class.atkdateattribute.js.php Script Vulnerability Detection" name_zh_CN="Achievo class.atkdateattribute.js.php脚本漏洞扫描探测" name_zh_TW="Achievo class.atkdateattribute.js.php腳本漏洞掃描探測" ruleid="30266" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431990" module="0" name="Mantis summary_graph_functions.php脚本漏洞扫描探测" name_en_US="Mantis summary_graph_functions.php Script Vulnerability Detection" name_zh_CN="Mantis summary_graph_functions.php脚本漏洞扫描探测" name_zh_TW="Mantis summary_graph_functions.php腳本漏洞掃描探測" ruleid="30267" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="服务器端口扫描－UDP端口扫描" name_en_US="Server Port Scan - UDP Scan" name_zh_CN="服务器端口扫描－UDP端口扫描" name_zh_TW="服務器端口掃描－UDP端口掃描" ruleid="30264" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157622" module="0" name="获取Apache 2.0 for Windows绝对安装路径攻击" name_en_US="Apache 2.0 for Windows Absolute Installation Path Disclosure" name_zh_CN="获取Apache 2.0 for Windows绝对安装路径攻击" name_zh_TW="獲取Apache 2.0 for Windows絕對安裝路徑攻擊" ruleid="30265" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下uprun木马通信" name_en_US="Trojan uprun Communication on Windows" name_zh_CN="Windows系统下uprun木马通信" name_zh_TW="Windows系統下uprun木馬通信" ruleid="40759" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Pcshare2006木马通信" name_en_US="Trojan Pcshare2006 Communication on Windows" name_zh_CN="Windows系统下Pcshare2006木马通信" name_zh_TW="Windows系統下Pcshare2006木馬通信" ruleid="40758" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="获取Midicart ASP客户信息数据库文件攻击" name_en_US="Midicart ASP Client Information Database File Disclosure" name_zh_CN="获取Midicart ASP客户信息数据库文件攻击" name_zh_TW="獲取Midicart ASP客戶信息數據庫文件攻擊" ruleid="30268" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="利用iPlanet Web服务程序搜索组件漏洞遍历目录攻击" name_en_US="Directory Traversal via iPlanet Web Server" name_zh_CN="利用iPlanet Web服务程序搜索组件漏洞遍历目录攻击" name_zh_TW="利用iPlanet Web服務程序搜索組件漏洞遍曆目錄攻擊" ruleid="30269" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit数据库信息" name_en_US="Rootkit Database Information" name_zh_CN="Rootkit数据库信息" name_zh_TW="Rootkit數據庫信息" ruleid="40979" visible="true" />
			<rule action=" db  screen " enabled="true" group="68161610" module="0" name="Rootkit用户管理" name_en_US="Rootkit User Management" name_zh_CN="Rootkit用户管理" name_zh_TW="Rootkit用戶管理" ruleid="40978" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615791" module="0" name="Windows系统下Sasser（震荡波）蠕虫传播" name_en_US="Worm Sasser on Windows" name_zh_CN="Windows系统下Sasser（震荡波）蠕虫传播" name_zh_TW="Windows系統下Sasser（震蕩波）蠕蟲傳播" ruleid="20422" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288586" module="1" name="安信证券交易II" name_en_US="Essence Securities transaction II" name_zh_CN="安信证券交易II" name_zh_TW="安信證券交易II" ruleid="51015" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Remote Process Monitor木马通信" name_en_US="Trojan Remote Process Monitor Communication on Windows" name_zh_CN="Windows系统下Remote Process Monitor木马通信" name_zh_TW="Windows系統下Remote Process Monitor木馬通信" ruleid="40579" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Remote Hack木马通信" name_en_US="Trojan Remote Hack Communication on Windows" name_zh_CN="Windows系统下Remote Hack木马通信" name_zh_TW="Windows系統下Remote Hack木馬通信" ruleid="40578" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="Share(P2P)文件下载" name_en_US="Share(P2P) File DownLoading" name_zh_CN="Share(P2P)文件下载" name_zh_TW="Share(P2P)文件下載" ruleid="50368" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Netsky.D@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.D@mm" name_zh_CN="SMTP服务发送W32.Netsky.D@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.D@mm蠕蟲病毒郵件" ruleid="40459" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="paFileDB pafiledb_constants.php远程文件包含攻击" name_en_US="paFileDB pafiledb_constants.php Remote File Inclusion" name_zh_CN="paFileDB pafiledb_constants.php远程文件包含攻击" name_zh_TW="paFileDB pafiledb_constants.php遠程文件包含攻擊" ruleid="20726" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下R0xr4t木马通信" name_en_US="Trojan R0xr4t Communication on Windows" name_zh_CN="Windows系统下R0xr4t木马通信" name_zh_TW="Windows系統下R0xr4t木馬通信" ruleid="40573" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Qwertos木马通信" name_en_US="Trojan Qwertos Communication on Windows" name_zh_CN="Windows系统下Qwertos木马通信" name_zh_TW="Windows系統下Qwertos木馬通信" ruleid="40572" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下RatHeaD木马通信" name_en_US="Trojan RatHeaD Communication on Windows" name_zh_CN="Windows系统下RatHeaD木马通信" name_zh_TW="Windows系統下RatHeaD木馬通信" ruleid="40575" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下R3C木马通信" name_en_US="Trojan R3C Communication on Windows" name_zh_CN="Windows系统下R3C木马通信" name_zh_TW="Windows系統下R3C木馬通信" ruleid="40574" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618886" module="0" name="Windows系统下Remote Explorer木马通信" name_en_US="Trojan Remote Explorer Communication on Windows" name_zh_CN="Windows系统下Remote Explorer木马通信" name_zh_TW="Windows系統下Remote Explorer木馬通信" ruleid="40577" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Ask Toolbar ToolbarSettings ActiveX控件远程栈溢出攻击" name_en_US="Ask Toolbar ToolbarSettings ActiveX Control Remote Stack Overflow" name_zh_CN="Ask Toolbar ToolbarSettings ActiveX控件远程栈溢出攻击" name_zh_TW="Ask Toolbar ToolbarSettings ActiveX控件遠程棧溢出攻擊" ruleid="20895" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="迅雷ActiveX控件DownURL2方式远程缓冲区溢出攻击" name_en_US="Xunlei ActiveX Control DownURL2 Method Remote Buffer Overflow" name_zh_CN="迅雷ActiveX控件DownURL2方式远程缓冲区溢出攻击" name_zh_TW="迅雷ActiveX控件DownURL2方式遠程緩沖區溢出攻擊" ruleid="20896" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="联众世界游戏大厅GLItemCom.DLL ActiveX控件堆溢出攻击" name_en_US="Ourgame World Game Hall GLItemCom.DLL ActiveX Control Heap Overflow" name_zh_CN="联众世界游戏大厅GLItemCom.DLL ActiveX控件堆溢出攻击" name_zh_TW="聯衆世界遊戲大廳GLItemCom.DLL ActiveX控件堆溢出攻擊" ruleid="20897" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下魏玮刀木马通信" name_en_US="Trojan Weihuidao Communication on Windows" name_zh_CN="Windows系统下魏玮刀木马通信" name_zh_TW="Windows系統下魏玮刀木馬通信" ruleid="40725" visible="true" />
			<rule action=" db  screen " enabled="true" group="99622965" module="0" name="Check Point Firewall-1 SecureRemote获得网络信息攻击" name_en_US="Check Point Firewall-1 SecureRemote Network Information Disclosure" name_zh_CN="Check Point Firewall-1 SecureRemote获得网络信息攻击" name_zh_TW="Check Point Firewall-1 SecureRemote獲得網絡信息攻擊" ruleid="30087" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows 2000 SMB建立连接" name_en_US="Windows 2000 SMB Connection Establishment" name_zh_CN="Windows 2000 SMB建立连接" name_zh_TW="Windows 2000 SMB建立連接" ruleid="30084" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="HTTP: HP Openview Network Node Manager 代码执行漏洞" name_en_US="HTTP: HP Openview Network Node Manager Code Execution" name_zh_CN="HTTP: HP Openview Network Node Manager 代码执行漏洞" name_zh_TW="HTTP: HP Openview Network Node Manager 代碼執行漏洞" ruleid="29177" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="利用Microsoft IIS .ida ISAPI扩展获取绝对路径攻击" name_en_US="Absolute Path Disclosure via Microsoft IIS .ida ISAPI Extension" name_zh_CN="利用Microsoft IIS .ida ISAPI扩展获取绝对路径攻击" name_zh_TW="利用Microsoft IIS .ida ISAPI擴展獲取絕對路徑攻擊" ruleid="30082" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="Netscape Enterprise Server Web Publisher泄露目录列表攻击" name_en_US="Netscape Enterprise Server Web Publisher Directory List Disclosure Attacks" name_zh_CN="Netscape Enterprise Server Web Publisher泄露目录列表攻击" name_zh_TW="Netscape Enterprise Server Web Publisher泄露目錄列表攻擊" ruleid="30081" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="Windows系统下Love66木马通信" name_en_US="Trojan Love66 Communication on Windows" name_zh_CN="Windows系统下Love66木马通信" name_zh_TW="Windows系統下Love66木馬通信" ruleid="40726" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问默认共享" name_en_US="Windows SMB Accessing the Default Share" name_zh_CN="Windows SMB访问默认共享" name_zh_TW="Windows SMB訪問默認共享" ruleid="40407" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080966" module="0" name="MS-SQL数据库用户登录SQL服务器 失败" name_en_US="MS-SQL Database User Login to the SQL Server Failed" name_zh_CN="MS-SQL数据库用户登录SQL服务器 失败" name_zh_TW="MS-SQL數據庫用戶登錄SQL服務器 失敗" ruleid="40401" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="FreeStats edit.pl脚本漏洞扫描利用" name_en_US="FreeStats edit.pl Script Vulnerability Detection" name_zh_CN="FreeStats edit.pl脚本漏洞扫描利用" name_zh_TW="FreeStats edit.pl腳本漏洞掃描利用" ruleid="40400" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315078" module="0" name="通过Web服务访问/etc/passwd文件" name_en_US="Access to File /etc/passwd via Web Service" name_zh_CN="通过Web服务访问/etc/passwd文件" name_zh_TW="通過Web服務訪問/etc/passwd文件" ruleid="40402" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 财富证券" name_en_US="Stock Market Analtsis Software Fortune Securities" name_zh_CN="股票行情分析软件 财富证券" name_zh_TW="股票行情分析軟件 財富證券" ruleid="50424" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Banker.OT木马网络数据通信" name_en_US="TROJAN Banker.OT Checkin 2 packet" name_zh_CN="Banker.OT木马网络数据通信" name_zh_TW="Banker.OT木馬網絡數據通信" ruleid="40864" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 财富证券" name_en_US="Stock Trading Operating Software Fortune Securities" name_zh_CN="股票交易操作软件 财富证券" name_zh_TW="股票交易操作軟件 財富證券" ruleid="50425" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="互动快报软件用户登陆" name_en_US="Hudong Kuaibao Software Users Login" name_zh_CN="互动快报软件用户登陆" name_zh_TW="互動快報軟件用戶登陸" ruleid="50399" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 华融证券" name_en_US="Stock Market Analtsis Software Huarong Securities" name_zh_CN="股票行情分析软件 华融证券" name_zh_TW="股票行情分析軟件 華融證券" ruleid="50428" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 华融证券" name_en_US="Stock Trading Operating Software Huarong Securities" name_zh_CN="股票交易操作软件 华融证券" name_zh_TW="股票交易操作軟件 華融證券" ruleid="50429" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 宏源证券" name_en_US="Stock Market Analtsis Software Hongyuan Securities" name_zh_CN="股票行情分析软件 宏源证券" name_zh_TW="股票行情分析軟件 宏源證券" ruleid="50426" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="暴风影音在线视频播放" name_en_US="Storm Video Online Streaming Media Playing" name_zh_CN="暴风影音在线视频播放" name_zh_TW="暴風影音在線視頻播放" ruleid="50395" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="JJ比赛游戏" name_en_US="JJ Match Games " name_zh_CN="JJ比赛游戏" name_zh_TW="JJ比賽遊戲" ruleid="50396" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 渤海证券" name_en_US="Stock Trading Operating Software Bohai Securities" name_zh_CN="股票交易操作软件 渤海证券" name_zh_TW="股票交易操作軟件 渤海證券" ruleid="50421" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 华泰证券" name_en_US="Stock Market Analtsis Software Huotai Securities" name_zh_CN="股票行情分析软件 华泰证券" name_zh_TW="股票行情分析軟件 華泰證券" ruleid="50422" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票交易操作软件 华泰证券" name_en_US="Stock Trading Operating Software Huotai Securities" name_zh_CN="股票交易操作软件 华泰证券" name_zh_TW="股票交易操作軟件 華泰證券" ruleid="50423" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="股票行情分析软件 渤海证券" name_en_US="Stock Market Analtsis Software Bohai Securities" name_zh_CN="股票行情分析软件 渤海证券" name_zh_TW="股票行情分析軟件 渤海證券" ruleid="50420" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="芒果TV" name_en_US="imgo.tv" name_zh_CN="芒果TV" name_zh_TW="芒果TV" ruleid="50393" visible="true" />
		</rules>
	</sysruledesc>
	<sysruletext></sysruletext>
	<tsysruletext>
		<rules />
	</tsysruletext>
	<sysruletext2></sysruletext2>
<sysruletextcrypt2 rules="Uev7gbOw3WYdY+CFgT6gw3DNOjYP4JdMY+fO/kbCqgDRfcOplS3hxcHbe0SkVm/riVBuJJt5hX1Iw/wpjUY9PnGmQOn6lMRBMpE6SQneE89dBcb9gxWPsBO8aJ3xv+PtQfqkHVcAjHiVGUx3D+6t81V88afpT8CAgqP3RL7vkOAcqnn0q1pZVvP+gXAJexn+6xaVU2G11CNRZp9sMM5DJtb2UzEBjh5UmlPetfi/MrvUcy1F7UEIARxUuxZPaoVmUwhXO2sjdyitbHOfbGGjczsdZyu2quREuBuHUwaqllnSI15ORCFzC/wty5p67sUc5iY4sk0LyhrVGa6K9PcVUuZQMJFQWDanz8Fn1ZY9DDVEhZuNcPrIvFJJmBFyWcsvGl0VtPOS1K5C637mQnZBWJG2ZkXywQl6LpCEu+R8xfluWJvzUaIWX3e74kgTA28ionPX/LDauEzUs6o7PWnC3SUFGKKgDKfPXxhxVEY96sDJFFbQYxaskPuE9vdIfVn6bqR6pJXUBCMq3Jq2KyZOes1ZOZV8c/2wSoiMGY5XqvKaOQT27VDj+iTgd+KJY95zsbTt7uIxi+tyPaKhRLXYvQgOiKwaHeNUuTCEdzJMd8IwFGtYEi/Y31vjWLBG1rDBG5KAgZZRwsKsuy/oftp9nLnmTY2QddQOvmXQTav/mWcOrrEAhfRSLM0GUzn1jvj0yfGMJaD99pSGt6za6NKlq8yU0+glnPOxUOTYBkdx8vYWN8l7PjR+jUjShLv+4AAFeL2awTjJJbBe9AwGNpattIk17SX0smpThs1iH/8pt/KD8pVH7jkS9sHPIBd6SfRQRd4Px8w7U0oQdyQ4jvoj1hNBNlK0kfxJRojI/QN9IZYcuVZkkj05pNZXNch3oivRVscnnRLc5JbPdLzDQkNcnB9Gtyy+jXtmpm7LzCRTkE4eHXkLaT+KprmTVM5n9fwlrPnnWhZrjW/3KFj9CUmkO0QVZk11tnDPJOUyu7QBr5exeaKUTCpJKR3rut+x2EAyuLte1CkIbNlsO5uw9b0JvUJHMMOiDJ3SxYmf659z17yVhutA2/RXVHqfcIMS6pfPP1OqXQ++Ykf8SYixthHo29QJI0DjPQMelcUh9OITsczKy8lCJF3heqAmgKgl6/aCW60Zk9jGFFElYU9iYYS0bbMLxRN8FS2VwxtZmptBsAI6oxk52wVdmvYOf62Zh5CtoPRuBIo+KNFP4kLs3c3Quf4+XAlC9FE6lntH5aEdGJDy1YJHBlR8ZCXGIfvpPz/rCU8BMTHj6SdJsYJLMosW2tvs/9Dnej7Y8RVemiksnjkCMzua1hr5KmEzBf0Q5ECA1ca+/lcA1MzQMNTlPe+UY3Jv5bpJ7ceX5+z9fN9HBpuKb9bnwQ7Y2WOql4D2Q9gntNp9GIKdWEvJ869ZvPyob9mwfPZRh238MZfLmIJDdj+qnkRf4uKJnaUmpSp0mAqREmH+enPdGtb1KSjaYuB0rrwLSWBjz+1rPNY2Q638MSPJ/uTQ1MGQO7+2MdslQj/9pyfS5guD4n0oVMSCEzdmkRDtUK3pUvb1o7NWtst2Er4lC0kmazQPoZWDG/0wFREyHvHG6IaFmBq6xbnO9Dm+BFWyUwnGLwB3DRQWeKP5OyPMvoSqR868hjmf3nxC54e6W3onx5mCQgHcj0TduNUqfk/+5nmmy6eMmUwMO9yYFz0HqO1HyQtTwe131/QroTsLjVhrCiM3VaPabp/PcX5R8HGLm8LFkNds5GpbLDAs0qHqFwGGQ+Pm+qjKhtliqlryYxvBoptatKIKvpt7jcBegBb/XHEvOvc3ji9zRGcFFdohZpkczUePMoas4DTjb1S8jXKr96UrrWxAMgbx1eqrp3zNIqyBEXm9Ag9YIPMG4vJbO3eEEfj9WGjyfOOuN+UhiXNcVQ3Oh9JlVefNtT2BMYNkXQwUq/OCXr4MWM6U+GTT2vMWGYsS5vKtmCmTYCyx25mGDkk8YF5D4P7FLolmLuuFmGJwwFmweCXByeGpk8eIqFrGytQtrqrCOhiUsDyEBx1KwFnzUQP2OuUbHtIEzp7Qm0Gj+KSR55Y/g7d5pQlLoS44y6x6QaurFGST87vVa1DZON4fjlpblR9YJdqKxOUxqkO7XaDRuWB/WZtetVT+ednKnBZsgIbMTDRY+Xyrs+k6FJYNQL+4zxi/L9RM0KKpwVBMDx6/nZDMIeDI7aKdWHCn67QxgXn5Ckg2OYZnTC57+iGHmTCysvFJd5yL8eG6vxnVByWroqQf/Vmppwo4oY3u80iw1Nvf9aDyOZM/wVk1GLWc6dEFLHnIkjN8VFHCTETOuVjRstpLgPccHQSNBllgXqtHj1+ljzlMkwOdqOxnflRuhUHv0sPfeDFX2TEStheTAxuKbS5sSGnzHFVnId0UK8bUDjtyeYxVQxZ/wE9j8D2c6fPdENOqTAqQ/DGu3E2hbBNDVPkLuUCnFxVoc4weKuWItLz4NcN6ir+SmgSmwpCgFJQMdhzR5PuAvG5P/sZqFQEkllqRlf4uhV+Qsd7WkljUP8g+VfB+j39M4Pej3UgDBelBEs52mWY5RWayoeAP+QyUlIB7wnQ6NDwe2XOgeQ0XvECN16SXbXZ/d2iQn+58GkMEGo5RgEVlnGyFNF6O7G39VBMz6x6LiFAqln/He+wbGN9U55eGbQsKYJSwunKiZFETMZMjz+ktpnYXlrf7SA9W3CbNjek0xzsTPFBofZXqAlJ2GJfTsGvNRrqxkvRqs3yylMrt5rAdUiUEqJjuqSHGitaEbX8tmSNxXN6ykj9tfbjvLV4EKaNV6ktq2G+BrRbDhe0+69RHDAww1+963ro9ecjex4k+2GCeAAR9w+2qYpxS0hToPW+twDL1e6nGt+uas+ycU0h0B8B0v1mokGOUK030G7MVkgqjc49LyEymgeC7I9L8kOJtwaB/m6cuNLbHFrMdW5KCaYELwP+qq20yH17FtNL92EUfTIwZ6r1bu7S79F7hnEGzNMrbOhyg7CX833k7CtyrNPXxkcO5IloJaIemDXbmhViVDlWFHPG3Kc68lVCoRsuYcKxIoHayMv12JBkOYj6PeE83TJ2Vn41ykn7VlmV6vmFptfZBcco98uUT2kT5WldlFx7WqjmCV+DYPiOetM1+YWzeSrqcukUdrKP9gSgB99R27FgZLzNyeUcmXKJwoNJvlkJHFWXEKq3uPHPkTX/06sbKLO2GDMz64iuD3n1lQDczmfebNIlbmetMN6GVbfPjB+CND9hAGoAJgaAxqxXM51RnBYErQocNS3TxkQadcOxSMtvYXaZpEfosnqbnKFN+rGIpJ09eQhak7YQeVe3WtHwIf5dNu9LmGXqr9IykqQO2ZO6Y2buSgdDdeuBbKZwNe15Fuq/m/w5ovRp1kiDUF2zPXAL4gcZ1FQzyi0D93KFnIJKBmcJGevx5Ml08ocBSsRlP8j9VRfQ/z9qso58Bkhu2/0uJ98GBkICX46NSg/ei/dOjWRc9trqub98T5tNb4g77lamdZN9AgnC/luQ69lW56W6KWy0A4Y5FRgaHOkpLH6hhKOGIiAWOPgt0hB9vleC5/g7RiMseSp3WAASpCcQwdQxuu9YtMoPka6P0cdEh69sIwpti5RkAGHi/Eqx/F04CKybNb+63uxijqdxP/I6ya0FCXwp+K1wZgspo8lonIK5AM9zpKPOXMWhrhuTlv0h4o5qp5x6k3qtsV633w+o/DZ6d+6D0YgNYsAIMt+Ca2sGhZmnIv/aEYthHygcz2Ocupfn5Z0PV9GlTAaa9AiRFt+hsEBk7DIe32zIesQDhzGGuyXPYUZR3SHNWebjG0FKxK8JgaWCSAodZlc0pLC2cBPkoisbZVEaZwhUDYVRFQIiRYR9vs1DPzaPOeDF8fLg7MiBFCOgNR5dARb1Mu01ru61m/TwdNl0T76JpWWpbseBF4pMjbrFs7t5lx2TQLBRkYz031X6frbCur+Sx3QZ230JqVJ1nrIGdmASZWKfbqRSDpV318C9cVw7e/i5OVLCaHnnpv93p/sy78CIuDDM6ZJDiL2H2FOfTLGZWItXfCBlqgcwXLtyBJAzzqL62V/6LdlV5995Lo7xx4OciyHmSktmvtAO0TIUZvAeSUgjzau0m6TYysL4WaUD1H06jj3dvVPtw7Cq7NN+KRWq1XDEoOmc5/Byn7h/jqtLqQSZlJFmETgn6JXQVeqyjVFCrkXWRzCFUd0CnuLTpBv0L55122WlcdyrAESTOLC696kvPM+lG5O9gXpZqwpVT1DBX/51rntddk3g54OUdONRn7AlWNzTH9hoyb+8hzSYrLRB4zWPC472Zms+eNjjV1vYxZ1E1yHfObFPBX/UhXvEjQpbiwqNgO8CFtS87HF7UUOk6qfcmQhBuKrvaHE7tn5VHcKUuNuvGdxyCQkNujtYDuNtRTTrqhH64nIavgFPP2ulLV6TWa7byZuCdISLqxgDR8b6TmXOU/fJ3r/ims7VGBsgKIKqv57GcE2wtlfxsJ1YfrRchViNcoWvCwEfzUu8XQbQVa2pRwH/Ks8kl0eiamiHoGdYzsDIqD+tKZ9/3L8NWL0g0jWOYI5seVJ5OYCJ0W7efQIxJZ3+VVx7s7+NUoXKiPUOhK5XiGmEyDN8XJHa5G8gMC2qwYa1qfeoNa5tT1GcBuX37OUs/LnoRarmIerXHagDL56PqKGaOg6RJo2u8EO/MlEq0idDOnocMoIeRMDqgZr7fuquEv46/vhyvfKx1t6eJS4JJc5FgYodZ5AzJKZBI5PQGlsv7vtyKVN+oB50tU5QpE9R0+CYaASFlvMkyq5Wd3N3gbw+b6G/3AKMNdhFE1VC7HpdqSiFR7S+lg2wf40jetCMNWdy3xb+zCAkIdK0lXR89G6BHTzSZ6Izzf4aqmRHbyYSFAeXQFk9/Nqk1gtVs5IiE/bJrwZK252M2JDUIE1MCDugYsuIh1PkxvCiHEX3DqQQOgvWKYUsDufRgE4XIu9SkRCrdTXvL4ZTwvpWCz2IL594PQ8eusdIWBA8aHBdWW9q67Dx+F8k2Og1qmQf4e8L7nj86t0Bg5d/j/ShMJQbc53jl7EFOOYE3PUi2No/KjGrP1fgWxqMXbKH3v8tFRZkAd4NW2lXJJIpB7S/NmUJ15JKUwmdYZBhAKUJLu2tlzXEKjiYnc503VPy7jvuPW8M3/wiAkUcLhOeDBG30VtbLHmq1KCt/5ZwZBTa4qafnFm0Y11xWvlwP1i9EDSd9UI/s0ZsvIMTDQ9VJaj0qaZRx/W+ygYQDmbZEQDRAkz3hzHOSNoZG/Wtzx2uXKYgtlUWvhk7u+JaMnnpnKsovS0whdeHwQkRKkHQsfxwyvMRG5DLoFcsJMx2nhOe9h5QRxndJhoqnyGd/XbHgiLRrgfaayDrXUVHLOJ5RoafRsKJeOfqYg7WEkayZuKqhGw7LCDUFdqCCLSHKBYuzqMPrZw10E3EmfiWz9cIyWpGfh2wxNTaV/mTQuXWt2WLljm3y33yHa0xQYFHVIJNDLXv5aLkd1eBGjX4aQJIcBRxy0/sLjMxRKWqDWn1guc9cBywIb0C5Buq4YpKnP7O3w/02t0VndryoCWQxT10A4R9COJbpt7avuhElWTVO0ObIhiuEebvyoHYvx02tXzBxuR/9PMIWBRhm8jndqRCLdBb8IbXczRmg3nv6hwriQhh1nRW8GrKs7pQMkRGxfBcoO4jQvdc84jKacJxBr7U+g5/sv4oNYXvc/83b8zbQ+nQ2LoHMfrhjDeSkQReD1pHg0FUruShCSh0tUxgyLSHH0VVfe8zVgvXi4FDaYn0dXPCtpckXgHNP69VvNgJkRiugBNZPdq75c27CRo857HUcC2CaTwu/uSktq1FP0ZGhwlCex4uaezNLOUbyXRnDTkouGrB5bP9fbl2D6iI5NduNAyuuxvvWaz9riyP5m+x4MVzb+NVYIxqHEhRdOKVaUuzj2HaBoh1gDkH7eVgB/8yTvPsOHm6GfUG4QDNa7hs8ZR9H1ZQ9Eov4MhL+z/BegLlUszdKOGG9mlb4ojK7fkKOHUlqBBGRiiZB87zQd0e3SgKTA80ul6yme3sLxEBoi8TeZjJmJv9VJEkoVhjr44u0qKMJk2toOjyUJftiwTujr1o8BDGs8RasHWNZK/Nl3oWaTZOW+m2jjZGvjI095QCOd99lIz5yILz7g+NuPUgJ0sWNwf6vp2E85Cvqn8KaI/pF9oPS2EDYNRih8eMoUH8U9cHZ+9UOwqi1tLO66CR4QFGzehvP4FrN9BNYR44jhHJKy6r/Q+MO/ao8BACLoB9V+4ZzGHtfuazY+zSWs4dj38O4eo9i/VrzTFEpTScXlPjOPTbmHCbZ8ABb3XTK1dlSnDzo0lB7WLNXfXDOgBOC4emnm2NWIOR6eW7nsCmvvgSfKI/S0hxmbSkXBmo7m01W91F8l+RFtRo7XXLwM+JPQefMTIIMlBh9ktV04CHtANrYeVsRDthIzMGwHjzrGasBojV+srfcrzQmmcj+pqxeJWb31A5BlRsmUY/xXmXyKSzI/IR81vyp3LlGgoa4SNsjKzpVlY8S0faz4WiOIOFH28UW/zSNxsiVZCLI6Pzg5XTHuigFHebggO/0Wn2OkTCMX6kzf60NtnGbNuWE5eX+nefl14CQwXaxM8WBRKzyOfZUFItkf+MA0LeSM1YAUni2lD/a1aPFQI8PZMVtbMQE+L8yhxkJGE5+nz8Y2tt3xMWrpDTSWyQSuoSQW51FBDmMg5A1EHXS5bkWUOIsIO/dtpngLrfSZ1MZ5Eb6UlHx3V+y+ITiR7JSdJyxxcwIljddp2gcmRNh6bFcuKMTFPCKT1tlfB6634Sz6yOPCg7XeehbdLxhQ9hxPuQy1dovUsrlAK5151nuLrAxLPj77uZ95dc8gf41nIFT4lEd4fAFNRYT1NyimyY20B/aYB3bhzpnsauSjczAzvmTiAfHeqP5NUnNKozlSh5ENnsaabcg5ujkC/89JGRsAGjAYbARXTfC7v717zquWceY5qTj0Lhse+ldsMLoTTyK2CRcvK81/NV+y8sLZhiVhkLvOG7pTsUh7MEZfnLhTFo+HFF2HlqqeCLDGiV+TmTALDqmSwlAsdjdU5NcruUSm3aON4z7py7zgRMrBPOxWUx59b2iGhghNYZ1neJFeNqEXBYlBtZhN3Th5iCT8zIb9J7mJJ+Jjbpp2ULN+WFZcsvj+LYWc9Ug0H5cdL2BP8MTGMuSnBSxXKS04TGM5p9WwrEsuMx3+IwXPR4i36Op1+k5vOib0fazBs9KmskHA4Pl7gYRjhJD/uEA983w+BGzJBIyN643Z8+AgkkbysD+gYv5zPbp7gkFOufjygMMEfVAqzM3HTsCAPJ9+J3WSBMdFVs/j+iXwe0LAEF/jGXIsyw0r3NRTGXdWhjj8Fkcmf+KFakwz1t0FhtguUKK9NR5dr/QCAmxzZSReWKnpRr+xN34/apfMlE4gJAXKVs0QIWtey7Yvv6mxUokIGB5M/3qjlX7iWzmc6NA2hSReTZVbF/KkQ6C0VUKdtKbF1+FXvBx8QghMVdKu/tR4OhIH1tN1zy1EQTW9w845KiSarB7YbanztCmGpfIQNqbQdbx/11zwKttiS2I38JYxj/Ha3fNRkwAK/pdT3flGChwBYP8nqE09I0iIgg1xTYDrhDAlRHP1U8EJokRc6Dh05Y5gde4u43Iuu3R6X3H0H5KF+bq3h+SWhhxthaNNqh9SF2EUrokKJVqBpgMb6F6OQBht9f9Xb2wHTQWrJx1qOzvXxvDRGH2Jlfjs+KuKxpxnjx9jL0smp5RskScrf7H5TOZmvdkO0JP0sjuBx0syJs5uVyrISuOr07U8jSiTnLNdVnbfZPjOjazBXf9BeeV/M6c+wVoyGScXXsLULQ7XWTo3gXlWXVyL5Ga4L0piHbR7UH5kO00dMzXmwGOk2feD/+nPiq4HUQhiiK23mJlm21Ppa/jjsrlIwO1tpoDLMBAmK2yoBUszQUI2L9nUDMpR+oQF970qxv4S7FK5pg7NKiu32dJwNZUNwG9VsSgpG85nKDG09Qq8zdBlmE6kBPTwIWkXOIqLanXyrszCmRkbEtNwIvPU5gi3zzRo/5qbhZJcuDVEQON7iTpAy9AH+0f1VReRWyga0yhFRjQ6VyNhPdfF38R7YjIzdnkmfIVe3XzMgl0mqmKdnKHhIJgeSsFK1WolNESwEvxoYb7fqCdV9n08zAaqs7JyffLUU2uSlOwJrUmkv9Zyjp/YmuPKdDRcq3Zt+JZcSepq0LASUGK26+Az6WnxDticfWK+opJuCImkIZ0M5Rx+tZcMlq047bKrSAS7jdmqI+Fp1gJDukzTKFcOtDh8KhXPWJg5XYifg9JR/uBaEMVR5fBfisTYDCy/yUUlSPX53GhwAZsA8Hx7o7tcqrUJezVXt0xXD1reibtFfCSPWm1eef4nJXfGVlnr2xYGUqARzdJVmWuN5cU31yiB15xMQTRByDY+VsclBosBMDzcjQH8ZgleQ9cMZIXU7/er4iaVoURXXeCQbEI67DliQSJoOB+BHZ5oP1IRO2H7X9iIeTIAVjV20JBAu17MWKk81Tp/98L9etp5f++wjGCrNCiM1TmpAi3rJlRBeS5guq5Sp+vV+O8T0n25/yUjLkW1xkZ8MFwSmD+LK87Ii9LrmPe+t+E2AlNApu6mdaknIX3Typw0UuvXHaOh/jSrbMlQWj3VjoCNVdudoeNr2rrgk9VglaMrKI1miIZP3qmjiwcwY/mMLwN5Dh3ac+12un2zDPLZQQot51pj6/p+j8liAznf56rCjnvuD9kjo4LG2y9s9a6k9vpvcy0Yj+R0+lTvbKHcrR3/VtvvXCcggeg/WfXk8SK+hoyTgBgSCCwpBzn4AK/gnV3wS1VsKha3zEAgC+LeEmLkavwLEC+LFpfvfihVvJCvBa8082/gS/lZSiB1g0xo2oDQdEwgUWhtotxcsWvnidWsLBnLxDwShWsi3q0U0gI1jWQ+iHjFzpjWWHWJXYlLzWtvCZEH05I0EtNLbrXC/M5zw1tt4kfEeO5knwbsGh7YM6edDd5tLe8JarQj5awpML8tOfw2v53KekGtuicCcO9rxrP1l5gggJ82muz2jdzpLOz4CzSTLAi2ssbxrr5Pi5ZRSu90WFt99FQo+ddLLDprP++EqYjW0CcG38AjH2xtEQCW++s29osPud58J/W+UKE8kIh2xHk4u7IGxeheJd49g72NsS8lmyNsmKa6rIV9r6Uh9G7AzkTbuQvwYBo6NYuLbNCMObts0C6gdf5mKG0h9DN6r9eIoyTsicp1w3+kXxpkQcJANLdoQUYUWx5bSnPfk65rp0qvhiIpIXjVaXMrVpyLRpQFZi/cq9VVTVPoF+QmWe0872jOtODK7h1p1V70ebHZRgYwfW8+KffSGNQT56wyovYB8FerVr4fsO4gM+tYe18/QKAcQlT7r5NX+2fp9dJTx7Wf0XoZI2+tDvKEsilrvxjQDDVtuvJU61z37xQMCoIleGnrGpY1IECrtU01jTwnIo8lgjbXmvhPhiZeOayk/Jdv0urNKBvzvw/OgZ6kGykqT8xiqrABi1+RtSaYbblwqD9Dp4xY5pLCxfBwZhp6O0RSQlZLFe5c37YEQzdqgYne8zxNWHMeMkf2R9pCOh2dQBL3Tef44HGlDU8NpF3otZ8tusIWgGa6C4K6RON4+bJFFCznSxiZsV/LFZ2FCssa/y4mP7lhtqJ+Ars0ZzQn6AQLEhjmUT5ZnvsydcH7Sjgis/JZIpzMmdpS02voYmP9aLT4jclXi9RFGul2xAhbrb27uc4sr4o4zrxxx/6ANbVtjFjqC3UO4dnlJDsTqtyp8L/g2LYlx9eEnkn8M2wjaKZ7NE6lFYncKpPGmtjOlPzGdhbiEUZ04vJMsigJiUpAVhoAaPCaPVQfj3S81NrX9R6z441jQxM0Rz2X+pjeeFHrmwR83EAG+YiOoM6xKViP49chxryc+G/iTCqPdVAzQIj9p9xTC/yhDVr5B8JRZHjpSdKzYSofwJAu/cL+l7JYb8X4qziMqeWLFD6vmza//1rGKcWOkBayHCi/yrVWfIpURUSPakFRaIc5FK7G0SNrQvQOC5cfGBzksdonce1bAIFjbpoIW62U7BS2M5cHSsbKa0we/qNNDQlSOXh7sFNj+p3oCcGjak4xna+inHmlSE7ZdcsBj9zKaL2Pxcf5UYOM+s59zeKoiShsCsQvIcTZoCBqVUTqI6C8mGDe3vX9aKW4dQArQiR6uhwkyq0Ofi4vaBSdwMewCidzUn5oCvZNL8kOS6qOu2noRitIVr1muRudOUljW+S4cYDqsSHI6Zu5lOpauii2cg/yv2bODfkN1fdVHA1Bf6PINGram+2hNmfqHZ4B/P5yOdB45lkOpTVjX/Hhpzt2TENQU5UkexZkn1gNzow5DCM9MdNryf63w2uzwTkVca/QtxO0Q4VI5poHfeAwja2qzNEdboHemftIrPKX+SBVNiTpZcC8oDGoYj/eO1fHzXboJd5VuQjtbYWZEKVwH0j6QD9Fe34dzt3Pgk8ALr7f00FN0FUhhfl2IFFuYzb/7fO4vpFBKBP23zc7K/YtpMbthq/gNgDgcDiPpwCpdEqzBTtADi324omJ8QEy73CrmbXY61fdBZm1PrxHsBAyJwOY5iHIZmkaAezwQGGxhZFExYUr/2zMsKIUqut/h6Vg6wLi2j05C6Z1Zs3GT2PJ5sZFuXwf+Hvne5iYXNDM3A2uDQwpTqFSGBrzj4qNnihzFjL9/tovTr1auXDk5tygMF5BD3vKFTfG9EyLvQLwFWpUT5Q04mJhH2mkmkzO+Qt/iRMpc1NU0AHwtSFt1Ev2LbsD+0Xr0t4SgezJexdBkN9zdfLdxgFy9cyJEfgv9OINK/vNIy4llIDy+EWuhU19Twxz/eIY7Hb7OhhH5RcE7qe2ZhhXm7wYmA6O+XFN2RMkUXzQgI9m3rZWYJHQOiOkjbr3Ea4WGOsVyfLft5yoo0VsE4WbFYgqtTSbPo+22bx8mLxZ5KyrLrxhJASXmP+6YluDpqULNO4N8AeNfxGEPqluBwh+YtAlQG9l9M9qm7sHuKqYcT8MEz13fh6YKMCeEb9GJjInfHN2lbP6bb+ffEfF+U3/jhX0xRh+d/IkjsMuHiX0K/BTP12E8nLemg9k/9383vnki6/bImHjSeZ0QmfLdB4gUCnnY4c8HcagjkdrlXtufAg3et9M59GLk9Gc8G+GaQmdXm7TaGaUJ4rvJJuqrK8dH/EM0ohRb31bmrpMO1CH+lv2HTR57+hWcXxUjg61htqu/fO+S6fH8By3mMHiqYW3mHHeSlZspiRXgo7yjUJrGIb1u9bRKSszx0FGg4UV72PTznITlorXzqjPszIBvto7KrGYDpDNqBgdui7D69h7ncPiQWEh2r9ayaJVblL33HoMHjJh0ThF3eQlmAp8+OgolOHU7FZBbsThKrsnyJiBOWESLVKdkC7gKe2OBJmoWoBn7t6PE9v8zVCcIaqbS7x7rbAEW1ZbvInHmbWmzi77aVqSmYYr1IrARP/WHPLEJ8K87qc8KBz5SeePJg/Zd16EcoPLI/kf9jaMjNwkVIe5U10lbED7x9oKDLYDwNe0+mb7TMb7BKVE2v56XLxIM/GxGMP1rPSDhVcaaGvxmswnjvDK3Ltj1rbmG8LypiwKjXYvrKBvQNK8RdBxVykT2Rlo+lnLmoYEQ1CVzBBcQL4ETwOQY12RvM+SG6OISHjDvv+USGy2fxnRDtxKIypN6V0wu7ZNFgwKo5gMN+7YuOeLtJ90MdcR6lUdOUmywFf/BW1dVAYMFR7cTm92RN8nz2X9o8B1MlwlxQxgtwr3Y+bNX2+1KkidsfZ1ijcYsV9pvl0E4JWPj1fs+q0OcVdEF0MFlWTNeBfI0rbJO9yPQl/DACqwUkC3VARvdycCd5HG3aAif2iFkFWezQrcngtSbS+6m0LMp2awTX8fRr7lGzHM0rTA9QNhpwQ+L2Nfxf2pLkwVQdGJDHRrG8b1riaboooQ077oyb6f9jkcaYx80ckssJlDjcmYWUSpAV0ra/oSo8TNom69JA9FQBZgb0g0113vkP4ly4tYwu7erElNVe/kZSF85Wzo+6uzggmZlEV7+S42OpDZHQCxvA3Rgioi2NIwqGFS+oJESY/pNsp+m7AtDh1vKji/X2s9+6oiJTdRah8VnvlchuVIokqOSg0P4talBOiRTGbnaDlXGy2nRlekJfQiAXhQ+knvPIu1NIM52iT9l17DjTlqC3jKX9ZDojxyn9b+cIk9DND46Hi2wo/mdzQnSGMQXrgxsCMJS+8hXcd472yrBaCSyK8FTN/tHXTSEEXv9Xj5qpnNi8DH/dW2UKg5n3daIy1DdWREvFlo79jOf6ewKP8ZZiyvfk1PSroYqxwLb8JsjJaksuq2WQrvkbfDQ4ygIcDV428hPdK/6zBje6kpbjo5DMATdEwr9ebbbzDiTa93SgFZoJ8iLDI65AVi2h7o7w3MBnwxnIFTvL059Ur0NZGSKwp+gqqB+X0qJ/5sG0xKXbdqNvpQtXsa4WFynXX7oR1ObCt+ACjvraWZrKHnUzxnVIIaSzSF5qzJVdRN5UuK0tUwfz5mbIqugzC3UK6GZSzI4VNedB9CKYV8ymW6scnNQNiu7TpvfjYTtAGvHaz2BISUl9PDnWRkGLi0BDmGZMldHuHBZNzV6LdTzJjJihUHocHk2IX42/U+1z1K0ZhRwGQoICdk2OnLDrf3Dn5O/lNsu7AVKrT+aYTdpc4x1uHYUF+QBK24LiBtzAePx/M0d+JC8MBEP9vLLLsmxGxxrdWyZGaQuiStL/SVw1a3nmAa3/Z8xVG7oyK3wUGj8oIsVb4jAu1Rk6DsVW9g5Mc7Rj7o+pMzJC2C+g91pwtsxW7m65AJNLIZq+tHO8sjA4NrZHZHqpxNY2X5yaL5MFhNI14f0bdHtyx1fb8m10CPlJBpqETiUH3jfM0GGTURu3+MBWNaHsWB9irVCxHcxd6TrUCcUWtnPVlqKoXNrFknxMBxWwxTgrDqqXoX8r4A9fN//Ps9o2af5cXJNKElnlJTUjvB76DzG6grAFNCdv985wQkCmlR7r52/b3jRpSNX3ZJd+IF0BgEbJTwnxdflEL/wE/r5fkjnODoJqoHDOlwx1sAJVwibFShaNjN8CV9bphxE85JAYUdpEs/Nn60LgdWfadko7M65SWBaWddDWnAbL+d/90McbrCPEWp8ZeCev6D0gAdDLqu4NV+Z5fjIfgIqcrfUepYURLVe66pCWjUJvNfmj8bNasDBSiLmtLm9YB95kgi1kcySGslC5BQAqo0YWfpi37O5IiCHSLXj2ka5NlLQ5eZ2fkSXN7G00ZcjrYqwD80JAv9SWIAtBJlod8GxfluubuaF/QFlKnhN/4ntei/zJ1g7bxQScXWJFr/qkuBwxsxnAaZioWJ2Do9BHVqxsNOzMRFHvcJEJhpMczG5eWVdLQyt1GbJwtnpsqz/DtAFxmrjRrlAJwIl34N+xuBXBiKPEG8GSdkUJ9P9WTgxv4+fMhe2BhEkt/y521+LXftz6JkG81T4YbmwWyZwHPp/dQ+PgFUs8B4TVDoUMiz5aBzh/d1tAAY/IiAL6JGadC85fqsLSZjJ7KqxJE/a4iSo/A6TM9E6vku2z2Sh0suPFFYRNkDghQHTqTaY/OdpETsMzIKiP2VGsEO1V/HCK8/N20EIZqdvxa4DdBx8/2sIuSkq6DYUEvz9VlQsAiWonrTUerNS2HxS2juLF8gl7tZZJZJ9MIkkhaCHTRpCG/N7e/If3LQZcL07UVo1SQpgVUpZkrJbSUf9n0Q76yjqXmES3MNJ35G1bQHe4RaL9lzkX0AmWHMjGBqMUOK+lgywOP64rbDgS+QM6qO27WVFu0xwKb9kB0b5sY3MpZ83Ovanvba3JiseqJ3PNMvfHn+9M4UeIMKqcpghcKh/6GZUGg2z4wwQcLWQsrrB1iaJsY1W76UtvDFiwXB1jp/WZKk/eB0SVrS6Ib+WNIUV0vHl5+8KOwRJ7oBPCb3RRMuLD0XG7VyX8g7tJQCCFNNCtL1fqr5iJ+HEoLDqKhMPrVH8VCRgVLaLll9uKqt7Cj8iTU9l2ekKNO8DXV9Bm85IcYj8+qZ6xbrhRPwZt0Ym9MqzlDYuX6Hq3eNCtEjfbKMWotS2EWiAtNRoqqRseDryCArECyv5OsZtyo8PXAyQT655f3HoOkpw77eDvCBX+fwoUzanPqwnM1VsijtPCC45l72i0/XAg6Jv05DcnzhPEOSDK0T0HVPjiZqa4wSjMzKuQ5G4Mgoqmy1Q240G35CXtro5PhfexIvWk5AY5LVMe24XDXbqRhyA9A5CEFgVD3boVxJrnCW9YgxwyqoyFrrkRULpXv2coK4VE3DiGlwbbw+8+30Kh1bJ9+JMpZRfmDglN8VUT/FqDOTFImqI/t+YWxJ+a3wBOhPOjmy9Gf5uhyxPQKmyNz6nxOqjrKCT4MMLKO6iPDIB2CU0bYOcizKl/hq1zMtC/tXQ8my1o+nssKVD5fUGFYC5532Q3ExOiaW/xE4GHhOqO7L0z6uH2EHlKRbMAdvLBaqS5BwrAlXxFTm5RRd1V4jJvGylL5ckMyPOuG3za308vajUDLr0Vcjgqvn+jKHqETjzsBjeGn1Fwel8nBq79MftTYkBYs+WRxMADmAv8ZC4mijK3Ve+T2+ns4QgqPlVP/xWrFTdZPcFFIwS3O2g6y+JXQfIRvgxUSTnZWMQABgwWpjKTO0Wyp9wZpTWyAcySUjcda3kOhnrJfCN/zE+YRlEKFZR47njFH2lCREOlGrTfPbcp/f4D0kAEsO0bCOLjcZgoJD+479yKNfx0uhSQ+1XsiZRD+jILRdanJch3u6/5eddAY15ywMGux2jtgDX2FKLbkYGMRYsHW2Ro0pa/UBoAQtTz9tbpO3YerlJYQUg2WPwrvq3iRNAHDUsgSuiCL22sY2FFawhJUKJ14IoZO9j4EH8nMA0ztjjUA8IYsvLgDjpsZO+6sfc4layVnkQzYEL2sjKfLewQCbjBUwQQ+3YIUYOfVUvVj7ZZtAhK6TUd3Sky3pk7r/WnCMkyY74oQGNLfL5tU0H2mk8F8mSEP0/Da8kJ8IKI0GesixREKXxk3vNr6NkjTRM5hVzJlM9t/3HrSrELbXna16VG3VJlegz+gAXv0EBrSLECBatFXmu0in/dpkIgAe2xKVyWSSzugQ7KcvvcRxYSmcJarNc+wcR6nnA9DCJjKlCmZ4Q8/JPNpBXlu26+SnlEEMGuM51KdzzLfP18B1XLMyVQJBaE8cX+HQwcIM3Hu+oPMx2m9UKmugoYvGkQn+wqIbrGnu00QCUffrX2VNkYBsiD1+IQQI76JHM/Tz0ihS8dn6e+JMJgPRMZXbEvvwqjeizC0lAD2NppyS7hpWauU6kq01MWI+NIjd4OPJZ7BNDAy5XF5qU+1foxgq8fFiT+G6XftV1QQjAqgf3x5o7MmXKakjtlcAOjj4D7RY/tuXTm7w/Z7ynago4SjDvo7Ft9ESYgnibt/JA9U/WWio3Pf8dRcdpir2cVJdQ717JdByJJJ6voC9r3qMbjIbJSmVHwWi2OPPEYZ8s+o/xnsXsYmfaW9YPTglNRh06E3dqcwRH/JJENvEOTQHwDtLI5fRYR28yobXaLEl7UMhR2mZiN5UOBS8NsWrJ2xYU8L3MZ6xb6APv3/lQWH5koFANkz+Ek6na4V9Wds9SZ41FjcPF+XgW2N1XyAcZPReO90WWrFQF6Qwtbs8Vu2Uk2u1sBbPf084OdYwOOtejW4q/r1lbIU1Yk+yXUf+xshBjCwH4N3RGW5QqlrgBmFH4UXl3gr0/SNeUSDbOqhbE8UecLeozIOlXTlOGvWckfrbjhzDgkXTqzCVVa+0o3+ttzraSTVBBfdtP3nAma5ZOyNvADhcLT2Bhq1TnGnsXZpcOjFp9xXuSrZ1COz0UYOTMjMCKqhKYDH1jXkdT8iknjO7yTCJ22GrrcE61YXv8wYQuK9FMrj67ljydSLffBrHU9aQbpyJgy8/ayjPecwqTK3jNHSnALTKgv2llARrt0y0GqH9ZmUcd2QERGzI+z0S/GlU/hAYo0DJW4M/uJU26uSwH8XPgyyye7LErgI2ZazG1QasaBpKCOf7TnG3ThmhybdfIIyILblduAV+npGKnKwQEH0kuPVATebYRIJpU9AANhApDpypr6mV5Lilx2k2tXu6oAdwgoC8tED7DlEn58x1ci6+gZxUHDEdnrAW2XKlojokdEVBbeAlCHMXZhHzl9XVvTDN83nuHwiOhWDO5Yf2zg3FQ509U60Tkw7Jnwzoz1cSFLasB71JS7S0T/22Qf0YCOggthRvPl4S52RmnBbVn6Y0R7U8xByJdnukgvDN9fG+QR4tDRTM8H4EaOdDo6AsrO4T8WOkuFi0nEB1IybQIZxludsg3ZfzAWvqgylI9GVISNsOhVYXIwISwAuOpczSxI1WbYj5jHuovVenVAL3VqNG+pcl/iBZaMu7VxNGUd5IlhNzuoGG1KsvGKgqjG2kcK8yOkqlOr3E6Uj4VL6Y4W4G1Jpe24w9BOK/AQMTi6hcrsvoz2ucVzaZXbxHBXTqDN4UsSaDn60EFY/f56sGoYECDtGgQKIZMlX05f4flUj8BGHu4Li9yZHpSn6qA4jmEUL9MN2MLJ9BLlfeuS8rYraDdixwloOGIhYqC79i2GJg+mnf5OS7RnLmjJNJyNKY2Vc9e1l85d9cWdqbvw2CVtOOEPSgVR9Sywp0jVacm0FPIW8wUYmJ6pTOyFr3Kv0xvv7XmGWFp+fqaWcaINFVTQwyO2nU9/8UZI66+RfqgKucJc7sB+zcHGdgJw3R4x8whtO+VIn18IFiGufBu8BCBdFU/yOjTTZjmAyG9uXNObUG9m0m8OsXM+NhD7fHuWsEmOYWQ2XVOR9dZyYDSh5rhIE0EWlLuqBkZ/8dToSPKxE2Dkp7Kn6DyAfejkRNc6BKLYzJAvYWjEJNGwetAcgnYm5TfQQKkspHt33xFCGfzFH1m5SDaGaS8KTKwkHPF4ckgegxlc67vL7JMlHxgq/l3m8sHNVt7se7+SV4rw3OGYbczKvGTgRoqv4TJmYW7RZC+Tv74RRtybqKFPJQKMVhuu4hZgicQpSwL+4WAq22xIzAkDePLdgs7JEAGB7ix1rlHqlthfsmXNwSkA6V7tfKUOfqyUTMd15hDULkAg+iEUAM0IjAnm4PnYjV3se7+pzmstKMeJUWbemtOyrxKOaydQwZg+lFfkY34BcHRwfWIy7IbaGj61YbIzVjiu+5D+Kvd6c6pklnZAATY+y7R04iJPT580TcRiJcN5kJozXA3X/JS68FOTOEfCgWq+qfxgL8WY8vvXLUJfVZT+OLDxzog5xP+lEfBXhsgybbutBg4Y8Kg+M2G0jxAW9+GVRATHiZdK0SpieKLCyJRqBOg6RJn4VibSVA3w33xBqDw9hxalFUUyUwQXkszvLQMF6tEJTuLrQKqz7wHAJCkaqHuhIvnCeo2XMAumr7qsLDlcl/ED5f4Tn/s0QM5OFswYepO384Y8DSrg1lhS6Kj5ntrIpLc84TauxFELc+s99jSu8tFZ2s/Hqyvr9eogOgw0PMqSDkLc7hwQzYyLTTLZP+wxA8GxVjA01Y9h4aVnI3XjWjl1aVDezb49U0iVGEeG2tUd5HSvhgxOMiu5SAdPxEQ7/DvmW+22UELycTZv+WhJWwu95AW9R0lmAjZHtapa+BUjCsHapEk/BSNSIWV3hUlnefUTNDOXxLynRLrTKTI7EIt2JXTA4auvwEM+TbSEH0+76fEL/c501g7bd8VeDcgDiTQvNB/0Gz5G/1HJMHxllTaSNeM0nGwh7+Cd7M+msN59d/Pao+ibeOToFexVel8y6ekTwNNztQKgLub6rtjFFE/6nWmczlgVZZY7Wk0T4OUhpj+S4KG46kaInKZyfU80dJ5GpK2ZpV0lF/OriK+lTZSMkdcFcJN0RimnsmosWL1oVpiQHe++nfc7AhFJR5fAkNGL56JwOlpsrXVx4E1H8+PT1NSj36RRYQkH35ANcComsQ+5X825t45zG6R6NmSJ/IULaVUFofvC/dUyK21KuQX1fHyTuNENpH6KVysqZx5E/TxcO2oJGEQhr1d0XlY7SvOeU3aKJ0xRoinMsDWuIoTPj3k1Kd1LrbJWCt/vZOktPcYgcX9NRnsscPV4hCOHCyDXRkAo8QWx6BASRZs2D3ziLlDvBx1zB9vcMZxFnX9YQnTI/ytQ+2I7ed7kmXncLqiHNrpBshRFF9T3QN71tYCzUyncmI1bBP8dJh3zUETGGVxJh5r9uwQQowP+AGipORdbymItXCATvqm6F5flBptvACg3g3Q5rrgqZXckj15qWQOjh/9w1ZSFv6zpTQjHbidleSq28FF86IcGFDdkB1o4wewhXp4v52bxbi0xJ/mJnp1roB4oyz1UElXFxap5GBJXGKSvvgr0YTu7p5LC/aO7vro6kas7WL+fpi9DYnbGZPSffBtl9HSP4GnkhS6p2tGAB21C7yQwfVuwI7CRHydJptkX5lh44HNyFJ3tDIFZDXbZlCFUxMzScYd5mrUDCkEJpedqfwd/C62KDgIp0n06GugfSCJjga6BVl7+pZZk8dng3zKNmLRb6iwXkL1FJRxbb/Qe+txWNnUxurqfnXxHEo9uOG7u/QSR2/dPLDYrJZ1RjU5RZDy5DxkhAhRNYI4zkK9gUbhKd7iLY1n8/66CcMnWuE4GZHR7XJ7yyGZePKt/tP170cp/aw+sFkdQYU3EHy6RLKhhtjYUv51SRZ2HWMNDHvsDUcwlfeqU+i67ir39HfWx1eUgNxgF7epO/CVWcRuuWaPi0TJon7NB+JdQeZcqrZ0ckm7Guj9YjmEzpJPH1Xhs6Augod4pjBgFKul3UobwuTqc1RvrHk3yi9/js41yJiG+uwvdqNIUidBZ6D6Lx33VV6gUXLr/ecHYDJe4fXqYoFOgRiRp5M/r7gUkhcces9PFuhxUpYTi5cqupV0Oec5t9e1FizJ8f8SJzB0IWwsxjel8pC/Zzk3UZzV3SEiz5sIb/yPGtsay/TcnVryVtBfTmD24/Q69GIHyF0lroTQ1wmEAOsv80IKB2olXGXHXhmGjlxbnS+EV7iJYBpY+LnMzxsJ3AepFVLnwllrDrU2UdavhUr1/0I8SB1dLydHh8cKcylBSIZjDGF6P/79kVN/GOU1p1xfRJDvDwSF93TQdbM5eCNb+LQIM2YTwLO5dNdIEXTUbd+zAA6pUuxn1TYxnYQHQKMfRxt6R+S2VKVVmnw7/9Z6TL+LemK8K2M8ySjvKvY9Agz+hZXKj3Uh9P0hijukAL56oFwdL1r5HT9wYyI7lLX/0VTjegjW6XAaELqsPQIqxjm+MpTrJ1Cc8Dsz9/98N9PY9sO+FfjWU6mCEAKWWRMqeHJe92dLOYOdmMiMx4AjdVacqTZiOIhTMrMY4qD1zhJFAQRFZKwGzjcAHAHRXCda+0TcbjxOn/boWxazqZcNbIEp5g79l+ER8BB2vZhks1tl3RSomEGFTzrl0Q8Is562E3vy0p+WfDvN3kfIeAE00ATFfgRFxg2/zoDKfPbq0W+MKqlZeJfg7rp+Rt6ZICeucAJGFQfOmxoPogLwxEv2cVjmA+imfvAk5rNgf4fD1HIaXPVVUWto16eMY8I72hZQoDmP3R/xz8DZ6aeaaGFdkG7XEdeIhhLVKdEiTPp2tHz1BarbQKCFFJXA0Ww0+pban9GouHLveu6ASiY7dBZHAgU+th+fNLjfATjTLd72aJ5LURjlMI1h4D4XvIHa/Y0CWyCiP5RmUyn+HrRv4QzwmALEHJVepOd793V/ei7y9UnhNS88WCgPXM9uMC0qWw27xF49o55UxlCWZvdQyjlTR0yznu9QZIN7m4H3bxiRtZrXdj0opqLxW23k7mkge+kqrU4bMmYpBhQc9rALRwZxTus76KY9WjreSLGph//gwpVBX3rlGsFX9GbT1lQw19BivEJtq93lKC3UInPayrZror1PWTT8mM26jkE4OP8JK5yjkhDJz8O8TM0CR8pOitKR0OlD+hY7O9WXBpBAFNeB1pfOn1wVJlkRMS789f4wH7eZqpkrclITqt21Y+2J8Qif7j/u52xNq4sw+IE4pzOrvfqcSDD7wRDs2a/z8kkEx0S93r9vMMR+o+jlrnKL6PTxl4543wB06I98WMUZa8CAynbhsPCnvbkJ/pOqtz2jnM5jC0IrCOTgc3m65i5WJ1U1KazTpCyO2G/DZGOjMRe3K1M8ZZcV9YfXJ8+5QT3ItF13NIj3almTVgDJvaP9/squZZw9ckTDLRKOXQ3leuZyo8gPPKHDsmmk8nPTqNd0NQ+sO7gftiL+pVKMGDw8ZejdgH6OUNCfgdH3tkgJO4IQO9cH5Cp7MQOgBsJLhUCfAFHWatF7ZwGLeXYy88pYEqfZSbeU3zldRaCyJ9LyJLmv1Jt/2m+8zrTPsqkrH6RJeUJp2Zhd5iYx+MPtrF9CInPfTQeDHT3JP3mkG6IC3TvfoQOmCLUBWObYoMU2TIGhJObBLcyfwfX87jlBknWBM8vipDdWHLFw9X+eoM5XHE/s7yq+FmALTxS6AiCu12dn2m2R/C+u01Lhefy262ESbIRI9LEdt0xDxBpy+mXLeGK9ColTjAgqg1ADxysvk97oQSFRAJvAPvLTRvayi+FaAH3GRWwoM5ZsKP9b3VnGqH3y88yx2u8tXfN47NV2yVSBHSJfiTqX/AeE4QIKqUfcmfca29808IaWGsMRV5dq0zFPZSy2+9fz3MeioIOO+I1Yu+TaGy+obVFc/i2FdbxZndboxLue4RjroPS78OtH+RRZ0nALn2U3kGxSiv0HhgjzrjlUUD8RWERANtY56fSLfPmniRj3In4QYQih0phbe0vN+GuKJTtZ2FO52owMo6im9MJ3ujt3qXuLenvWCjAmylbg9lqeolZtBd7TO/mFc3Njy2E14FlGW/G/3Ii4zpNHshhla4rmBy/qCUJvnfVgoaPLfQKnu7UL1hwb3/DKTcnF9z/sQM3/C6lfO3K4tNYziwoBD9RGkiBUIlKAtqYjJIKmvJ7GEvyIYZuLIXOSmafGeLCo78UGhNOttPYIB7OcL53SL3LFV1pOmcc8kA7rBy6+NTmjVbZIC7yrJVZcA518UkZ6P/jk8TrEn0AEfSmUViXaWxbCArpQ58f6Hym/0xlvKFcZI8HC40zKBCCanuQlJt7G1OkhoICteuJT2xZg+fEALs5zUJaL55OvA4KJ6a9i/IMTRioF0EMUFV6IdBcICwX+TmQWOCUj1k66GYVsckV8XKUvLRKG/94vEtD4XlKGCBm8MJUtTx3v2hfTDguIwAy70vV7ISZ2/osQStp2ECFivu1BH8fUlYsrBrbz6ySq2KJpjMAngpLGPeVUkk+Eru39sEjeVB7b5CXNMc3oP3aXITg6k6VtvBmCAubc73ugF9+xZ3CIYUx8w8pKZNH9nsrjlwxHeHHWjyeA2aECOQDe5wYz0j4kJ190TBc2MW9fyKMKTDvdpc5H3deIDM5Sy8C/XSMWJoMEuETOAIT+46a4ZoQVpJXMChXNqMLvRX3Q5ZbtwPrzukw47UvFuvZDPPakRH7arkw8Ykdn/iOyToMyh0wQPbhdlf8MClbzajLdWXSCxc2vKNJdLdctg7XUh0BFwWVk70edeIx1QIG/gngvazivSHLRrFtdUQYZQ82XqJIGKMFwayBNgRRbE0ea6/1gYJNT3G+jo6f6QrVuppx00qQelZ4D2VJYIYFKXtC99N6dCUkeKj9MpGiU4rc8oPTFulzKhLnaFttObTDB3vyGBOn3TxALx4k8pA6WKT4oSI8xcUKMeWBm9k/j8nZhhNL4ECqNrXB68VQ+sAFiyvS5FYaYLLbgD3U31Q9bEtcH6evxt06ZrJsBvxHAKilZhacLsib8+BvQG8j7W8zsPH6nQa/vsMsNT25BKp0cb/OzTQ1yoct0aUFSsIlyKzzUe1Krl+OiMc5nivKopvZ+0atUW4G3TsCLC4BElOHpmjhQWZsGyMK8cNYfSRKiv1PoD6pdKMlKtvhveHNO64u8L7OHCcEcKEQx1tiwJsUwci79Rbx2HXZdH0Sb2GgDw4mZDmIJm57xxLB2J0MHqaKNNxjVTDttTo5gy13aLr21U9gcjPlYYfVDqcqeniOf+riviSPI+XZbYJmJmJfhjlaJ5hwKXkPwrw5QnekpBMR9Co8s/yKNcpAgv4kBsWCuA/qIewK1CUn2+UBOjz9rYN122X3Jhl5fWWg66dRtQYWVMNhbvG1T875Z/AH72JNyU6xgT4bLZ/4ACzfoNcCPYUYgX8T634vyuQfnKCx4wReL0ClO8BwZkm+QnW4Xy7wbuxG5SmfclxBfwmNuyYUaVMjuVISJC6iTIfP3mNnoScrvtF3XGkmYSvTIca9kQLl6+1S2wXDNTo6IIqOPeB8W2bb5x9FUy5rBmd6dXYWQsdakqs4sYkCqNaU1/IPOOxaWI2Qcd9Pyakr++0EMxBvcsn2liTNR7xjUlGxQYA4KJM7DXJLGJ8RxvJ0fGauHLYlTb0KMtt+PcjiDe2+mllT9I/lUAMQA8F8uq8QLplk3bQ5+ROmKYGVkk2awqTdxoh1v2yiqT/8cDLHW+dsQvrt0TgAhl+MnaLNg0/W/fam04e2uAbZV/RPHbdV5WTyW9Q6E11uTa+8qlSgaolIKTupYmH116vVXEA8OnoSyW4HKj9iIrnxm8TvpC68MAqROyyA9ybwEhxWm4OdLMYiUfBsUASvggsik7oJ4ti3goW+zz2HsvxdhqLuQL1DPILpXMLTaTeCFXM5uYox/WwKrnLK2hdZHRT81Nn+njKAPWuNtOe5i9bHCYiG1/kdnXQLvJXX3YTWJuT9yimq5swaUz+ReukFAcdSMtVl5MmNjq34HNgiw2qqVOQQ04PhaR1AV/lVXVz9ULqCUUnneadk5+pdkLoaO35cjG1PdFe7jv3hKVQSw9bU1FkdSdPdr09snr/blcCxXuVSb2OVoCqn7rjcNZ+q9FeCwJhquRAFEMeCwE3P+nWPgFJrULIKsd8Rcup0pz9HVq2rSRqRFw0fLWSvzcEzpn20v6ZCCEHWVxaOPEtWciAVatGtJzjQn6RQEnHlOagtfmhG7gtZE5+KY8NMNtqxlCQl4s6AI58IgnAqj5yKSih4/KIJ0srTcl18BbW+S2gSyk125Qdx2NAyVj+ApvDfXuJAD2oMI8XpIwnSQzZ7EMW1G71oHnKbFzPY2dsv/9eHhLVc+7gpq3V0RuM5shVsFNS+JG1RAD+ny8TOwnsZjbmIROQYYlAkFep7yUgt8Xz4xYbH0MsByr9tAweijpjnn17scw5ONPrRDqignvu0S1AgamRe4LnHLWFZAnXO4kR9VIRg4ujjJAAUz75Gbrp2HAULVSEg6sFybQ0Sf0zecEz067SZAcSJeBM7DeyufZxSEeUdhdt+1IDK6nuNJvJQ4j20+e57pci+3/zdC+C3B6gZ7N4yjMfeydVAycApHl1zeWJ/j5rFuXqMhKyMAi/2VtI7iTCpqDJywaQV3zp4vucqXmr3GjYHe4RNL4CTTeNOsq5+NhzowlzVTllwtFkIOt0Mf8aERQP7GgBbWN9CE57eZIMUQwpNfs3MO3O7QUdXHlPcTJlSZIzcYWdRuJv1Co5bGh47hlpzeP5t3LNND0bLn1YLAXoKRO/pnfvET8mi2aVRMU/btNnuLWLwQoe+13zefgjx1h2ovMBpSNCRzUd8ck1R5sUm8A15ySt1spTTCy0ziPSjXhTAh3l0ojeyDEwc83BwqdPAlgarHRIRZs2KVVmuWhA4vxlVpVo6f7kY8XJkltIqrY1vIA0AH/i81pkyUQ2LIw6jNFrXISHVvEWs6IzE+aGOurHXvXsCHU3376btkJzHBKUyiLqA5H3LDg4VfQia53a/u78WaeFe/Jg4PQFVP/rdspJTMu0GXIQCgSjU0K7cuwZt72e2UkBozFY43/U5PDm7DNU6Uvr/Ws03Vo7j1Iav789O1iwO8HkvGFnCTtXU/hoqzD8zyw3R2tAFiIbQ4LTjlKKMy59Us0XFPrkQTU0pBzuGrabp+RvlCL8t+V84O6qbwqpSQG88X7ERlet6qYXCsr5ei3vXeWY0G0RVCGKsRJ5nmHKpxzLmxudWiSbpjKj7bqAq+8zPhmRnp4r11acmATYucc89bma+gPvvQZWk2BAXPtFY+CwtTE+EWbNulxgIqZDxwvxIDACXlUAgVsGnt4SH9wo61vYPiL1GDKGWf3+6IoOzHs+qRXRym5CHrgrDs03t/bKh46y/iXbC+94W85Z6YT46DLwgUDUhpCREVBxpmYW9G2vPm9jzOstuzIgxUscABLAM0sty/tWrjK68zH6UPTY4flWmF5ddpnI0OnXYC09V1dlSgKV3Lzer6L8OsUxAMTJVNDMRCRf9jq+J2gWeXgw7+S4HxGr7X2K34Kkn8OpDtHIFpA3Q4azcunnFvCLQOicBVTCgfNVPZYr6+9i70UVclIoQ1G7NAHKeUadaEX4OHvZ4xPosjxTN24RIZgnHvh+Dx5LCuttOPK8GlawJKFoge3kpXRhQ3x/IYBojZm1nL8MmpZyyQ15jvrjHqK9pCAYT54niAYvse/1B/zxv4vdJFb2L4tH6yCAoLYIn6kEWfqYV2OcZ230cXPZDBT6t1HvbrCs2VYkEcaHdhcFi/hcpADanUs0FG9ZejWEEHUZUeDwsAji56bckU8oDzDqWHHEtC0XNdO2XDlzuBWFuwurJAgzZgvqMMMnXv9HcFHPNWFFP+PJAJfTj86uz+ENSoZ9RFMFu366OdoNKPYQDb7C42/Tu3HUCfDbX1kjbFUCCBTdrEl5ArFMeRvRCr5Qvw9jjvex5YIqvaRinIYn1Ld8hAwlAblQPtEhGQWNmWgK3rJUlgDm8H3QqfUa20FkvKTEIQFzFOEEUNrVdg/1FUna2PTydsCoOyDNJtyRJ6kDY8tN7XQFQItd2qhJ0T8EuNVfVsxaLMB3mlvTR3tx8XwRPd37w5NMGRMVyvpfwirjFafjQcDJBMfM4arhSR/dND4itB72Kr+RzBbuLwtKwh4t/f7zZ4p1GVpdEjG80Jw2bSQ46Zwvd0arsITcaE1HuQeI12qS6Y73+dgm2Jbu9lkZwMyOAoGb7giFlWuxmbnh5BA8hAWixn2TXdQS2BH3mAjxAV7jbR+HWYIME2GF3MgP2bt+7M6eh7zEa7B/KDvE0xz8KgM1+RTWOn4/xUa26QLeO49D/fs8dSX4Oi5EjBFTosLKhkTmgwyDOCY6OGPBx4SahwDiqBoaDnUCq1KcVE51Xb9yORBkdRyKEYu5XOQfRlqmLDz4R0rOnCc/8aLWMb+O3dc4+vE6YyiMTiMNgI4A/xo5l+u3jOQt+JYh2npx9G51SNsv683tM2ynA0nJsqM25eVAHEc/PrNICTiMM7mHeC1Rwq3dAOVklrtA5CJqq6CP6AuUNJqd+bKXOjmoiXv2Sk/WmQJlXSie3i4A7jSxnAuMvDbz8NUIZW+38pw2f+I0vp0qSTGIrRGpF1AIKDyHusW1W8jGwirgW1E0+heJ+ACz+Pw5cShEZNQOLfn/Lox2N94llWCVrRRPvL45a1mbQ0iXdwYKZd8Q3aLhADswAuGhIOhoWWTOO54+Vc/hTi2cNXUuhhTzpFpC//imGli3QC+RX4NH65tSPhbSPqIEY7HiP3bm2buuLcxvaVzCvB/GTVmBsDLokIPw6zUXhWspVQ6lpzeXBiWFA3q4Y3fZS5KSfCnKM1j4BS2rpLokW7D7rE/i0u2CCShMd/TxshOZN18CYYVAsX8Bef98Q7I5GI7mKcf7+yHg0BYtDWEDQH9XsGIs0yzVkGOiKN5RdUrQClqfOpGbXqkllHBOWTFTT+wZl7FpDzaV7q7Id8BotCXU+p2tB2sWV8T9L3RnVvYxxG3CqVr/HfjtDZaOJL2qBEGKk6iHHlqe15DpzCOD2yJfZ+I2T3SibpwJV3tIn67HWkEA3x9vF2Xy+QoxMm9It8o4jrqnLieyRwr0b2SXqVhe8GWv/36SNqqhh1GXazFnaMsbveQBoWAvRkmrDqUtMwPHDEw302vzm/OeQTBolYeAPvG31pNARuOc1TR7Jj48ECsxVgrTWhUEZx5VVrKZDztZKjHCrnTojexQBdTExBa9pyUkoaQX9HoDjcI3Hv2rrYkDgagZMnQzdF/dvMVUFargmLu8P4AOnei58cihB9kzmsoKP76RntYhAlFTLC8R3HzThdDUK7lBKBH6kiDLNJk25hbwPxsEQsrbDDpWXYXLxbG8EpOPHSxjiwvKTELpEa6q0nEZ8ovZ2Xfitz6pcc5U0hjCELoh/QPKRlP1ef4Dqf8z89DwdKM1Y0Ch2R5Ttkbe+UKQXxy+v2l/GCV8Riv9LkrYSwtTiy+feYEbjqyy+0m9wvHweebmdbOHmnWcDG78kGVxTsIV0dcvnJlqW9mBGHJf1uLHdeQPWctt9q7aDRChHbOtXDSHW3BymMZXoM9Hb2VXWLkcY248NhdzUVUh0EDiudWjfWQL6xtuEoP+5CaMbT5fptCffsDF4pzvhoWZ1HUpfXcCVaxg5hxBqOVe9yZTAxMTAVYTS3NCvWuWVR6STT0LxLuF/4qDhNLZFqHOY33cTPGxpdTX36L5AFCiQWfqmJD7+whwwtahgro0kuFXgtyWFtVgvMgRb74p6HNiDyMjnwy1Sr+kR0Qc87A7+E66E2UpjKFXRVS+RGc5qhzpVQKtv3Bwnf6XUk4Xe87llMahaxv/UAYuKqjB6+8g+FlLuhjfMVRA/bFeFEwKLzi55nFnAwNYWd0l1iWccmNeS7afE3+h8+nswu9LcCsKutg6pCp1Ce5HGfd4ZyEgepcKbZ0ciHbdQa5UYU2hwwGI1RS4SfRsxfX3GjENsGge50r3Mq0ByTIC5vMq3z9beXTZSUMoQ92ZvMAjKQHskpm46SA95oVN7hujVXZFZVVo7w9aEINW6FIALNArJ6vdwxL3IZzPSuWaHrNnWX4MhDcjtKI6vP646aWLwe31b992ueUKWqzuyrPqMt9BmFEsY7kY+QZJ6bj0a8T/E3pdDJXQ8nINd3YIf/Z4V/IoA0GnLl78pZYKh95OMgXjWKV45k3DousC7Z8zASek04RonDbvQajCuROPFujwG+3dtNxXHYKAI3KRb1klEe6ZdiEd9RGRX+E0hRo6bKmeuZRK7k6DOYNVfCvWssqeA7u7srFnDXsGF3qhDL6m15Or78JHScigGfLhLXCkNBWhOaVchY9eS6mo7+NCNZEWRzY1aSUAAZMquXy5T99N4ye0191/il3jWWbbhEulcpGAZekubsc0NscMSPVO48+QN6ST9T3/Z66s2nZody0kLjPqz1Z/9oUKq591ZZCoS5b/lMzdxmPldHAGCKZsSSmN/LBJq5NCoFJkyOv5LsHo+fX/m5FMcQX113C8Xy8Wcqhkhq+zB5iozEYjzj1eXRROlFIgFOGadfmBajaRJMw6hLPt7RbOFYQn0Ez/L58jiLQj/DDUTOrD62pnilEkLGc39aH7iT8yFQm0aBPGsF+G4cAkoEKROWhLxl5ZdFxdIfPG8iDxrGLp/eOK6zftWunDNJVZLUCnYrPNoc1qbHLc6ZYOyghBBZB12N/COhlL2myFQkEPUdSCKiVxVboIQk7AGOnqJHiWaXZPrAckBt6/LOgwScG6zuCs8LG7oMCmPb6z7ZDt0T5PF5v7aEctlxI1orrxwB7sH+0FpVNoKNRhKgULilGIze5pK1sRSlB9zMaWeMk5CevuqUuoTSbXGaR3GKtv36R4PweaQe3wS4XG9aMTmtoAoDneOvVP5wI/m33/EDLXuDJVIcvxtjGZ7Dr3bpih3N+jlGpjd4AD7UMIF5pFsvxpFEHvdJ/AmJasULEWAF4I19m2xy6mPfOFW53BpQc79J8TG7LYheffOG9F0gpmsA6f9RmmNAxEze1BakPyJtQk5Lyxjiy6ewYpMKTgV0hsL99kSJlNT7HCo76fZGR3viZ9jold3Kz8bIgGXxXl3ce5m3IdHt67MAAMqBHtMq/eJ5CW/XizO3pB6VqATH1rngiMXkokIXxUJ26EpfIoQsNJlcOY9j6MW1kRe0ACmm/JSAXi2bO+xaD6xawdBPRo7UNW8WjLbnp4/qJ8UKljgmMhaFajbkL5+1N3hY67jC83WlSYn06q1AMjX+AXV4iEdKtiDmXpWWtw561UySd1FMj+PbcaIjfyq+C9wHC98Vy+th3ckgfZxcrI6ynu0u7J8xgM9JHoJH6h5L2tClb23tREv3C2G6XD+6lK6fmjQ1b0jSERisYhg/vkW4saEn4LonmKsYJ/xix4b8/vV94WpaYUEGQ3EANuRk5dvUcdfeVnghnlyrlaIjfUhorI5gYy+NP5gQTgwmUE61ytPAwm6AlxQ8FD4bBGXrNFXv1rEDtbtu/CZLYt+0FXtUDtO0793CxUHPQOxYh6HSK5pDh4K8QuRaZE085CbRkjoYiSbl8rM7SsX3igt+Tt56IThFdkzDoNHAU22iNrAnoN8gO2dXxA6VVUv2YUiIRgN8SdZL9E7vmaVZEhZlHkq9mx7WVdBgD/bRVfTsBJvj7GRxmSoqkqZiVMKBCAqudR1yTJJ4OC9pvqEFsjkLeorImLMI3I//OFscnRlx1GsBy9pPo+ya2KVWtXAPK118SACcXUgCZRX5UIGh719tA5tOWAtrqg7DiI02Di6QaihiE39vQDIF1qCnxhEfI2jkIQVmpIsl1NpjkSMOiAmsXlX8kCYjximbfhUYFRS4KM2l7ww/KvxZUDDc4vXAihKql2ogOnDvBAiRd7GG2hwSYfHE37VrygAHEWGnJBRA6Y6X/yjEwfakpnTtKCEHgKe0FER0bScLgVydGJsL4GHCiJ4wkjsQwgkr+DeyKb0Yx46ZtXkQAyvMF9GInVVNBU3L1QGbP5sKEtlF0M6ppaMgLZDlvqx+LP4WwuFK3LHpiVahkqaB2fJKvH8+dp17xoQRz1uInQpCG1/NXvxrnrxCXn55UkC5qIPjdlmtiiMqz2roFK58KcZzfMkZoaBfQOzhkLl9hwzrYIG6HMtDV6ms3eq7WDLvB6NTln9uljvRUL8s3mliOelP0gz4fSs1pLNRVYngTSOf7aLi7lyJEPqZ52/ATmZz+8uZaPmFlp7yaDtjQnHWZmqzTr9zZoYzQHdLUBJ4F48Ur5g01HfZCWg0+EtINGhAhDE7CqaumMpv6SnndUWr9nTXbuMeBq1guuY36qthbN2tOQ0TU/pf5NGz+j7puACCNsBrLnDSzLnuNrAhUvsnWUS3SiiNeVgS8devtpyLpX291NQPK6CYo+7DTK5/9ovTcunL9v9q8VJZ9hV6Z0vVau+TdMtfYqb++PnPB0kaKAu7Fp0KvK8HpAwhZ7f4HtnnSSktCoO5dQcM1uIIF0nJU3tCbV9UBHL14a30pMAEH5QKU6RWWoJEpZ0wdC5NUhDDghxsnsB2MBBCmeKUxsYspnDTOpunTtO1IgN/h2Aoq6YtPFgdNtVCb5K70X1gWoXASDC1dgOfPfFSQFwHo+uDzaGC4IHf5yP8uDnp2zDtYbZGXxLAcYsovFUGTWMDL+kCqg8MceZhvaeE9EwAraZ96Ty0mA8YnBJ1A794qYDWq6DvctCITXzHUXNpbriCqcS7vrMNtQSVeiuLJGSmV5bIYRMN86En85WtEKrgP+YBWMxJO+2UOch0psKcKBzghvSPDLaz60uOpBxJFN7v8S/clWX7H/BuVAoCrMnn4ZCoa0kD52T/Qr2d8Va+tdQIwEVvK/I2truk4Nna74yXTB2ZSLk/TM4QXmulFgiikuJx6BezwR/ijeOq1j2fale7h2SRgFpuL4nLLYRgJ5lsmt08XG49IsdXpzut4dnEsVH3Zqigt9tK9FJSEKaj1Qv4T3dPAdtgF54pvzA72gIKX4ZkR16hPGxckv+On6disR1i/cnCgutjsbtmqBVFcEZXtpoqzuZ98tl3gys/yv1GMpG4yzQ4DgXySgpcWTXI6kw4nP04EEk7w02+lM7EGLJrvWx/jU70vI5j/WpSvjB+7uRIQtQLXnmtFPUDLuu8aG1QwuWFIveoIWjDY1taxjpOsoN4o2sFEDA9ibcleADxbiRjwfEvn5dR58SgaNOmquzn8lTNm8t/HTBHGHlAwXYF7C0NM61XcrtdHUs4vTTt0uNN4K1xD8YrhmuAL5dknAEExmCtJEgBcIOJvT/ME+SExggpurZq+mwv8q4SzK8OkE0mhffOsufqtHHDmsI3Z7ZN4H7Q/0O+WLo+p0OvnCU1o8emdq1YfKp+nOUBxrMfT4p82ZYRAuLua9Hj+a67t0d1oVq/Zz4yOsY+/dZZjqpaGq3qPJC50nQiPeBWhQ+NTCGgXGdk5ddJkJIS66wVhvviPam0Sk4CBnRRQwsKyiEtRphhn1da1s4nnRb5ktx6nlc+lWOulgyvnZn/AJK+ozJGG12k8tz0Re4jzdkWU8iW7r098yvL8kEct37/If4Ypwlg1qL24PHsXSe3BQrxEmNwNs1BWEAfWzVXI4zGl7YNbMNgSfzAFKdGgg9eH26mBHibdeDUSisvLFOpPBtdT2vO2hmLsExY+2oM1htJgINIDyM2inK5pE5aEuje3F2g6LFbdxRv3e2F8ez7s5N9evzse7l41rFqhjhnkpyKrYNbtmTZfweo96jYKsx7lNSBcP9krqG2lRQ9dET+RuGU1JzCZBAyr5pcPlnkBiG7P+E+PojRdqu/Je5pcmHTdEQXN78iOLDKBJcxuNJgc+hP11SP4Pq+jKQVvoiJPvTd4+OGCTC0XxREDbAjhKncFRR/8kieRNKgFJvOBeYBBWYNmgOe9Ge95Odr9ON/LV5u2KodrinNaRcn3IvTGqscTyyfuPpK8eUa0l46RxQw00ArUXlyQGeRMKzWtW0GX3i+rbre4am5nOrg1xkGyTB1EPIzbbJ80kT0lRxApQWvTvIQHX2uOkhyCfZDS4Q6Qm2WPuqjgemKOJk6/6FHD/e6i0sHbmvwFxSoSJIWD8l1pPtOIH38y+drtK888Zpa4GulAE5VmEAOQrWrPTWKLe9WicCBtcxQU7vgC3y4aI6JL5zw4xmigEuI3CxS8/Zahv2qQtUT4fiZpQWwVawyRQ9fnj1k+AlCxGN2GalCedhXwZ7mdVCJPTwy0pzIS8VHhvSzLiMWPaebW0Xf7LB4jJBx2jhhNRvdihz64S5h1BZtw9mNaxf3z1ZeeRyxrS2V4GcykuZiEymg4og7N+CJtqxdGhaB3avGoaxBXA0ydsQ+IBx+jkp4nBKPZ4NUVX0b3dw8uHYwh5ch3+KmTz7ouZZVDDqN8cP465fGX0wMj8gxksqsIw5TfkkallkN4yt0ccTC8mkhot4RiRpiQXKC6vNhm9Ypg1h0272gszhcyQg2OZ5ED99OlkAFwtaUkAJebQzS+dHI3UYenBibqRCDmoiVuNykxv04gWyGP9dS6NEhQRifPL279zCCazzcww8MThg9B09YLzzh1jzm/ck2ykEvLDIcYgY9vN8YUXxZLI/3WRAfV3ST1cg07oiI7RinHGmcGmUqHoDgD8U6Bu9hs5tgeV9/nlncLaBCbbEiBWIzLGz0iQcTATzpCkXbhASBZt9Nste+S4atiyJIwqdSE8YLonFNXOxGb2LFvGXmn7Bv+HYSep3ILcqRjCHYnY2W4EQ2H6w7Yoi9A0MFoq0fmEMSl781RpLJjgWc+R6raxPTs0bye3XfSSnoNISdDkPSwplj5qGSad5/bYWZMj66hRy+HCPrDNXIH07JVOrUI/nrHDk9o6WnUwjbv+vCsm6H9dj8GHM6/KAaMt+WlXIz43oMJuxmEsqNxAEm9MEkyyftGB4Nn7W6B7ArE5nXKpx2Qno/yLh5qNPR19ELfDMz22oMyrvVGS+w77Pbsjw86cgkMMbBuut0eCgVKZpw2a7r8p6mSwdln7okpLtUMqYN/0NBvSvKZeD4gs1wGuvQDLow5w1Y/WDbY1cPEmYqATWxFczZO3xlWpKT3sa/D6FBAWR8tm5bd7SnTyixYAc4wL6wnStyLzARM5TMx3xpwNda5wYeCWE5tbJ8AQMH4VWcJyPjg9Ruvf0lTCaCGqLWxrlSNMMnsDQ9zio6Hpzg5qz3P/M1vVZ4jeW4qFtj0Xzj9yxZfqDaSvLFWNht+qQUEPr+f+cg7vaEFUmONXFHcbFHVrM67TaC1erhr+wTs5ONnzt+uIJjjf2/ZqjuPswWcH7uTXbtia0UrCveiTBvr+Ra1yTnkCVoAo0YALI7MiMBT0qekoGTTNOH5daIOFDJAVbzjMOlElbv78BiWRiPrUr/4EmdEoduR7gZFvSesG5VsJ7HBcoTidIsOC2S4qZ2CGN0Y8ti73HaUESHWvst3w0PlMEHv3NDumoUDhdlvlL8LarzDA499OlqW3yGRzUdonsbnKOyH1mlKBeeyRYmnTakdUkAaPjG7yoB9ssm3a9WV6K7fa5BVnwm/C1ueXlhuqMHSXDfSeI53q6jDTlZCQ7QNJlJVr2VHlC/3fJ532KjZgFqLMzWp8Qdl/uKj9KYzOOedgzkYIJ2lX2qCbYE2xxjqqaHr7ZeX3HBIfnsIJ3gW3f0zK8yEhc6Iuyc1JhXqHhwMuPIx4ssokvjOmC2OggXS02r3h4zbNjvb9XJOjYffb7UjYumN876d+l7RgLJhLct+FAdzaXCToRiNt7DcoCNoDzu4iTCvgdWplYSVfOOhQaNIkSExP2m9AgsREQRCL+VsQ2egIjscWPEe4lQZMs596RsBl3HT/LHbZTzPXP3YaYzmo7Aui+L/M7BChqeIRKJU/1/xoF6v0fVr9KMuMbDOpr/IlYdUvK7wGMkuQDot1NVrgoywwPDNmJCkssKNFO2gxdYL1LK5sKJJVWgqv7z4kOW1iyFfex7FgKSfvnU5t3ZUzpxf45tQ0qbDUMB9bTNilNUbyh5Qmd3cjySf1Jbz+LtWVRUVKwapfxB6qUuYg3iHnpoT7R5o8eqTrDK45SAyMPwM0w9vj2nrouPJLcVmCxAdOStkvKdbsfeowZs//vTg3SnQAQmAmGXtkBXwJkKWnvWqRinz80p/MU1OlG7Fn0IuyRAjDCmHX8sQIs9Bn6KPWvgWQcLWptJZFT/6N2BkIbOEVfA52ye4ukD/uULLNDbgZ5N1rJeepOM1mPMzJUD4V3dVseqfK/j+NBBjCYP+HuHNNnroDhgKiDZapyzo3TO3tjH6hGI4kQbHg0MSPiAwIyk0RggxkScbtPyJ1SMNG0JkmV/G53zih3z7A8gv8g7Ar84y1VXZp9aBON8BAdj8TzjUqAWnnQEMZ+uL11ikh3up74tbu5rIpZqzdKT8eok2X9iPczOIr6BkO/oEMwEjdO7TfdTouop74XAQQ1jxe5QBTXTi46ZPtz0X8zSar80rS0ARGxx/WI0BVN/Pje3h43qmm7PYBhA3673zUknijFFxQkaB/DIHOo+FJbrdjT6Bf/x1G0NxzSZcC6zl2sLChqlP+QxNBTII26HSp6jTGqGf47/WtBuG6kQKJK8ImDTL/GBID3bEGVg+ccfSAazPSFtdN7YrXXVtuAGERwUVk9UmPgJ2azhysF9PV4QUKzCAlWMQSPuHBwYeO+ggoQi+b851mYbvqg7oRAf479GJdnJiQvwb8O5hv2l42eAmiXfQY2IQ+7kxrAQCg3+WVXBdPZns7QaHMAeENRzEXgvG4eKh/AuGLolvCTJalN/iFFmNr11Kb9gYxwgoYwZ5bEkm1Cd7aF/eXSb7s8pKJ2p1sMd0oTCo5V9qxQscXYs4f9N3JTp02D0n1kzP/MM5VS6lbifkVnu1SaBA+sTEWAQqNj1/Q6KoshUqh9QGwE0yq7qoT5r8CaCJSAnJ9JQNP+Tj+FbzfoJX/ngJU9gXWrXdkDv9N8hNNyw8epREzEyKDr8gAyjhKqLvpmAEo+k+VF8ro/LtHrwV+YaVqmo5ol0L8EaRtiGWPO6IXGwp7Ql+887acGjOcT0PtZXk0nzUECYZuSg1tuKPOTIyupsmfzMuozYNAdt8FCgRwY7NFjr7M3m91JoXssDM5zOP/dfRCGGt6xqsPEg1j4uCYvokpRbAvXWivpQu+tl5qKN58sF5Qh2C75O1f0to5W3Hl3syf6qP04Yp9pt2JIJk2h6TymC2CXOcJXzD62Ed1jv7c4zuoONsk+Y0UG8HmFB+8UyhyuOlUhl0UC+KDRJC2jWr1RwwCa8VEwy8cicd7tpPFDTRbCdD3SWe/dqORnbpzxVWSypMM90CGK9Z1WEb8GoAFD1FRLbaAYLHb1rnTketIr1dZOx9uIuWossI8rcrqtMehcopc1P8CWCWRADvC3+beJoDRLw/Bsz0auefW9Jzxajycn8Kt+31MoYJTw1gajqa09aKgg6tBHhTRQ/PDZCPwLNEkcx5ggXLexnQ9OD5M+PKfAP2WMoiJagdKLWE/PRfMcHv2xih5xtTS7y3WKgICn/qCMOaf0iWbNrbAQsOct+PsWsBfLTPVCNuIUtuysC8AZYx/iCrBLDv8WWEWrWP1aS+xhIXdwY8JWJjeipyRanKtF9X3+90PEGySn5s6ZmItbHKR9/GyD5HR3afmaZqJ2OiiwCMfwDWPWQM+KUDKL7nkJNEmbtaNQKOzRE8veWwVmO/CVSmwIiRazM69aIUZ0IxgrgWbS2j4h7LEJsT5UiLX0zhiD1kjPl/6HkBUcCjNtW26Qj0HBADOJQbBHls1yb1zYt7UzeJrNUph9ovQWv4KawZjZ0be1muXOHpeUh3dL5Rwt+u8ihwxAdsbCTxnsHtJIWcI5t0JiP3BhnT4wxOds1N5xP6ZfD4CTgKWoMqGzFe3/DgoBf2V7wiCaQvoDM+o/kjrifFN73CsYDj3e3KNfszvbDZl+ZhbnXrPP8F2I4FJJ3JwBFR6l6McIDFXnvU7MyVgg+fxCXwedmHelXaOkvDK0rAQbYOd/ju9l8S69m0qawauPQtK1Vm/haPxU/MiuQ9YCQ6JUv4EdJBb7mp+YQzP+7NFnGlGVXL8nApycWwE3Utm9KtSdfFlLzRZc2lVAn47XCuGegmG5zzgw1UEvwucQOZuUGdQEETzrzmVEEfRvn8i4ZLNjKUG2Z5E+hoNEeU6chnq5H2eTz6wETXpPRwuGk+Y3m+cBw1qxB3XBbthifMNkzy0/pMM6A5L23qbjguj/dNzZ7/DJYxwMpDYf8+GRAnL4Vr6b2RjexRJBI+zdZzO0d9Gg91jUt/e9hntULL5o6tvCVBByGnkBzYCETskSL182Mq6MaGbFtuxIi7WGewGIOLJ1x2KomcPfmTeDJzuQA+Tdk3iyaY7MY5HmFV1fuQRDeYe5CtDK1g9+8GkGYcdE9LaXlIRd320H9RKKZrfX9lQtYw3Ii48Q7Hd/i0K089f22wamMPkh8/nc4jKVL0kHCFjjfM0sJ+BRBQGhflCKT2d0eOaYhP/UUja2z/4eahiQamgBt/pvM7U/hFwJVV2qnGss4XZoP304MBQxynId4bi93w8jT3ZkKzZjb7tfZt6KR+yXVa81B807v3+My+oRnnbnKMBCRRXWCxv8mYFRhoIo74EqEQS+Q1Y/OzmDzjRkghtFBSWQhDmvj2BtiWF+DCmSLY/mfIcFdC+X+LPuQcNN8nOwHpWXJ6IcEssNu+9p2v35O7xkRLUQQ4XrL71WsF3e4Nneg2xSeJJIAeN/KphovzHtXGbeLUb9uBCj9rRAW1HfVvFteGBINcGHhAF6MqXXtUUQzCu/PwXKvmLf6JXuTpV3FYOgW8fL7LQAlD7iLWbBXVE7lWvOSIvo2PVUwX0tmZWacoouxVW0QN4HskSqRthXieTT7m78caVHw/F/vCg14WcvIdL+i/MShTjP9WmyCtyNAzTJBBNHKRC+Z58EdRlocI9PEYdJMUCmH1xM3Hz/gjLpeivGF/AnfcDySq4g+jniQdYGJ3Glqz85JTmyJLZN99b5cMLxclu0W/l6OaG7Mu0hHORDurJE4KZOfAlQYZIqh7EbtdLo1frZhDa9EXYG7+HeGHJMjsYpjMSr7a9uVJe/XTya2dqsVK6eE8VPwnnYE+tltH7zmEaJyQcs2c0Xz0PKKBH4AZz2SCOqwx+IFbGrlcn0oYivgE7MSZLpFq84EeApUL9nTy4WasponyQ1Zpd4TO2JL/BTNwSfkZB/NtKXDppE8tysKAWFWd7XZ9/x06J5H7CEd6Yb6PjMbLQAC7RNfH+qfHPSHHrerSc82LITCJAo2qalmlZa0T+4k849076nQo44dsKlttoG7xKBlPdn+KRDEL3FORIUJO8bxnYedulELDevQh6t8oEeA8yHeILQGRnizRB8muQ/h3BkcKiJ5FZgOwelTHMUTmjKoCZ0aU4kb3OjFaZlJfi5Rn7HSyChrq73WQuAuL5+TMle2uN8YqgOxDDG9itnllRLJIrhddUurSWGWVjm3gKSy1epeyamaCdh21m/53MSFiyFa9ojpMfS5x97198QzaGBbaCG0sFeCgLTBTArzhij5p5x5gGj7MxFKF0xGnxkgbhQaywR8dI1teGHW5ucXlHfJ1IR4KLH9a5f4GtMX28NgeyTubJMiLLTMIkFJzxPbPU8ncrgG7wNdRAG4leF5KqwDQ/ee6U2Y59sYpCuiCcJTF0h0Xorij09iqXwQBVGRQlQTVavgLq8DEnHr6kc0cU6VggMHEO+0JYSFgPr2VCwI3avSHcfDoDeDSb8HgqFiFGsJ9md4I5i13stuwOQfUsYtLF7Q14dZSIfB0SjTuuh/6Tn9IgyxE+lq1h8t3zHBRb7XYJw23pAYNTl/qG0xZXwi1isypDFrSdlILcfCQmukx7F9DbodwzoMQmCNqlRkWpYk++69v/n9VX2f6FCTxp71lka/ONdno6WpZ2l1NsfV179sIrPBMYsWahKSWmjRs/qpCL84zoJnFhxjHB+GH37VoMyG+NokWJ0Ns5dWfJxw7ZwMUPX0AKw0UXiE+WSBgVWe/HaCbWMn1bTbLwXa2mJ1pCzuCjVVo9YJRFRHh6L7O8nTPhjLbziB2Ws+XFYCJb6bsE18LCPbqWPnNq6/oUWqaFfItqLX3i1JXDunU+GMezuKGgjF2SUZmbwXlhRCLezpUtJA8B9+h9C/L/eiFkxTmB4QKKX158uCiwbzehA4RQDRpTfwHF5Qd2zMivOrgeDBvBTmtlavfpHTY2pH8eLPC2BjfNDVymvIbDC35/FJli2DdxhPvDIb83xmeYi5mZBRWmd13fQsNXpFFOECuhfiYHF27IYLk0cQq/KKlBDCnz29zVnyzVY1XfWK8EoWJuvsieuffDZ4IhFY3yXpxylGOLBV4pKw9YyOmmmgZJVvkS5iNqIYAwpU8HIwcUL7XxatQFGzx5rqtCGqeA6JuKkb/ilfzoWcvWJFP3Cy3NLSjHx91xcMSi01yw3G/JwV407I+66t2M9Ll3i40dI9K+aShhpGZct8DmtYW1oVjuZTfxC5YbhoeXu12o62CMF241pDKaPOqSWRyLbb+J3p7SwpTHFzx7lQkh+9177QC8ifDyqsJLNTJgx/fNGnKDyzdiPdNt+m27E74shcZMH4ugK0DFwifi77hvIJh75xCGuyxdITl3eGqB2U9Ab2k+xu55Ymyqw76+D/Y8zyz1e6+9C8Hr1SaLIEECZZvVSCDqKAf9q+ZNUIKePLkFJnkmn1ovC6Rzdplkli/wosZvX+U/mJY1LNj2jqdwje3rE9itfjmRCzkfu/SC9WWBvHmcb1PZL0E87S0/TJNOXp4xFQrTcJdZRFYazgGa7e5nr4GRX8BlVkz8o5xYtXFL/GctL5FLyObXqAwEjw6VsxSsugv6LIHZ/u0pUsi4FFOKxMcYCYFskXM/ad0aLitSfqLTTpcpsI92vG247PlxCW488NclJV6DlMDyWF8PhyOFLDLLTMMlptHKFsXI9sFxkd65vCM7SFDhggjabYvduQ8pYpGNc4/AZnAhioab8cUwGyI5jZkeIiQzY6o+cbUiS/lmxLQbg7qtQ9+c0YqK35Xr8XBeJsUEpaRTfL2mXvUKmkqAf68phL7Z8RI6es4XYB60WY1KyxyB/C5gzn2Ea1FkQRY2OKDyaxLTGlHYEhlCNW9t914d7ldL+H61BG2VnCFyJkULBnaJZVm4SPmsRIc/6Y4u+TwtIHFY2kgg72K5cqaJGxxiRwYrT6OAego2NZiEGwW1dZpeYVPl97rhm86Gw7o6wopI3zZ1dEdJgdqL3AGlFYEGQceO/DrjTAjuAITT8uOdWEIjUmREMINtUxdRyyJVFHyT90Mzkdn3Sm81AcCA/VsDuQN7ZTncCEaAvkiDmmwPn3yMLPwRvEjtlrbR1+WWacxvN0dMOMzJ96Q4TgWye59jnmPIfDSvWowd3bXP3mq5bSxKOel7nKhYc1Q7XfB6P6i5QhPNfvI5sovOLcQlhKGBMcviHWM77KJ6OTrZSH9UcOxuPF5r+6qHPmOssRoyHGG7vRODTYy2ZeA1M0lO+kkhiwJcCaB81rlNvUlscw/TqLQrdH08eoIhtQiz9CZi9lqzoEncbZbYUeZuoT1T20Juq8rf/XiC48dxUNDKFws1dS7xaneyWRm1p7qzBiaCWdxPpK2PY/0Zx5tRQS60vkzv5GHVvlO9m1Cq0x/uL7VbCOmcK3A6xSiEpMdqpJAKdGILiIt28JHhcP5tSqOacaa/klXi7j6NFfX9Uq9BaaE4sCm/7mrRvz0cJsOOcrro/4u3dI/SMKilEP2FxDTHeotqhl5Y7zm7ZT1YSUg8Pdtl3eYVfI6U6YykmsVeol9B7OOBwMjz3Il1P+KqCxECqsYz+AwjXDB1HlAu+INZjhG/4GCx1L2R89WPy2eEW72SG5fqAStyICC0on0toQ5RZr8FmVCxDUeg0MFKQ1y3g7S4a71eGwPUralTm6ISNCI0/UHTWFPLl9CDXpQrqb8fmOzi509Zmo2qT/BQ3vZEt9hUJpmDDPvUG072je6wxNN5qmca1ZWx4lllcmWFVemYhoFWkCcYxun6HG8VRJT4x2NYvknX20rbL1EKqA0NxwlRzezx5qNs1psJfcxmBFfM21ajJ6t2K92qD/Yd1zv0EeN4yTS9COrIx9Gb5GpgKiaWe0k7ZWuac00q6hKhoHs1mPfUYnKc0Oi5O9VE/tx/YbzHxQl+0FqU6X+8+t+j+/8rTlr58lpDiIeEHVMrpezHBVqyl00czdHXxuEB3cuDcXSUxwcNA9VX9p6G01/bKNKFxzNzbISnS413fIPgyA3NG4TVC4YewnpCrKZ+ka12uJYswCswtoe7uo+S8UaUPk8bVRlgIsb7ep+gYM7R5gDl2G+kYNmc11Mgby+Dud59YQBYk8RWV0lQCks1ePnSvtUmp9oKxAVhglAfIk3Qs2tenXo7cXWh67Oxx/5uaEpfTcxJXUBAazSnWPLbDnc7Z7DsExEwl7EKsauiZ0KXnIDb7wrKRqw/Otb5VY3WQhVTyu69EXRbS3OWfdCDzcdimYU23FUaGv67/u61hQeEdkskuVIsQ+Q/QCAKUrkblH5qFOMh71UaFBeHDnh4eZXUzcfvtmTMunJcAI4YmnuxvKE5KmeJNfS9EX7cGNLTuR3snNXJPlwknvpfxUd2sjAOdsPWuKd7pwzrD65pgeFhqgEqA8IqIxrPouU3PaOoqp480D6YNgtxTDfsKyYY0boZvWZ6mwkHVXI+qrvfC6RawG5mGVvy3VCW6DgVmws2ij9K5jIpEopSUJvguZGKS8zbyISPWkcMmxuvcP/KyP98d9nR6pMe/W40wiP3QtLe70lDGME7CFa2+Skaq3p6yVO5JqFozxfkrgqQCnAJjT9eObcwd+GgymCPhNtaJNgtuXAtsqf1i0dIQVKln0mtB8dNDXvpERdoLRy7+BVsqMEO7Tq8KThHt6e7eJEE22KvZWBDSm/BQRDwtfa1/R99/Kjuh2bFmGmFnPrUHpVm0OaOqan879aF7k47sQv1Mzzlz+Q1zxhYXxWGWGx2PF+fJibyRIx0LPuWKu1H56p++Jx7XnCbkphwq8jte618U1cifJMEwaeEc2O2vPrgpcujTHZDsJDRxd/pHkA17nu0yEcXD/xsOIxMG4lPno9GdS7C3NrNGbfFRZo0J4REsrTvTXxfPWSq8fxjJoUgPkOtJqTGUShb3kGaSCZ8QE1yCgYuzaZglVvLpXvgXaUHqzdCdrjwBhpcb+Thb6ogH5J7+TFEzsjONwDlnnM+NBhE6rv+w4lV8Xmw5QcSlVxYbO/B1dNaU8QYkLfdN9wOctgoceirHfFJSc+wcm9wn30l80AeTvdi8/+Zsr4a91uHCIjMgjao8FA0lbh72m+OIPhhtXyiuUHAz5BZVcD2U+dJJ2H3xMfS7VlMDbLbXLy1PUD7yoF0wLARmpGvxcgKtC+zei+ijq7P8A/+ZGJxdYNpw0GrVSF6pgfopfA6YNxK4m62N/kVTzgeMPX0ISms5wz6+2iQuFuTvR1GhUYv/uw5YIk5GmblbaFHUDWbQo9uT60lvAoE1RcweU6IdofNuMjOwvwwsNsKw4EiHsgP/ouK2/g36Lg+6zleTxaB0+My9tn56ZzvIIK4dcJ4/dUfVsMuHNvSCDzhN8NQtqbOFhb5KhNN4RNV2VexrSqHx7BwSHOw8fzt12e+p2A5zAhXdwv8H9sIBEkkIencWkbBrKqmb7eBTBCPyyBJna2CrX462Tp2XkEoYDsdyQGW81hP5QQqVa8sCrQr/9wTFQ4iLYAMDRFAgs7iLwVR2oavakBsPAafglNMAwXsbg3MrUDycxc3xBbk+/8cf63/bwLPwNl1AHJP17NhQaJ3EHp6k7/5gjY/imf6BaKdvOAA+cSjW5T/WblrSUka8cWsMH8p/weC19LcnrXJRNMkfhFNubzb43WBNibrFqhX5MFZwbSgnl1tjOHfRRuJWIGARSuRwElzYYCRL3lrOYZ4NPsDlPpAwJ8g4zGhjbMydp7463LWPVbP7oosmj/YFw9bLhcsB+hcYuHym35XmHobP/+T4pxHZLFgz8pyTBtH7ba2nSdgWpT9qo3pVQD2F9AZQrW5iW01y4ZJUUStYlzNkWkaTmxtE+FWeSUmUFLLZCYxyydPq3yTIvqQY0qxpzV+B68gr2dMkZERt2RuFwlZr0a11dkTuIGh17bsE3bXryCF9oMLN971PE42Yo4sd0qBYfaPH/uEXZPoDUyghG8/51cMWSWJHubsLD4pXIGcRF9S6QhQBylM6ZHPnMkLiTk5O7om88NJT+MIiqtVOLKxtCaoex21FY0sSQVNc/iUMHkdJsI3GXCi+W6PGZ7YRPM/9bcuYHtpLhdJqS8iuEbFyEXYw7hW9SNt2J+tE22vYQyK4JKArzeNy48Ko20TFKdwX91BUwKkNqfyamT7cp22Fv3FO9fSpWuGxHnhFURbOO7DLLX3nscGtTrGV68QaXEicqrDkOvEFDVjBn0snRWYMjOzgDe2BSfXVdjhbqKnj/r6vc6sQuf69B05pKi0KBpT1HHYPzSQdYwXrh/U45V3JLud9LykoxJCuNY2KVryGLpJKOFeQiK6ZkT8cYiD/S7CpCrlfJpR8Km+pvjjER0bPh7uEvAz0CzxbOxe0BUgDyN3VtsnrOKhK2nH9I5ABFK7o2Ftyq3m/t8Ptbs2TmkVikRlw3cZcoig1TkTTtyRkhQyjK55iwtjjBwfDq8lJ+Ef0wZAkzKSz0+sBLu8BHAugLBgRnultmb7Ct1n+3uxwqMJXqmQF+d/bdNTSoYwDmpSfgmMbi0fHVmUCeyMU5dbo8hF3/jkvCSW1IUtUU3uQx/4a7L6fFgq74+jkDiSoP+KQwrO92jseGqEKhclOmeIk/GF9uKuS8M8ta7GfT2BEvrJtL49PVSFm7AvBIW+3GjGogpfT1ByX5oguxAxqaZjgIPiaTq7FloKzJIr6J7qCyXgbGRuT1yLiMrTcqN9slx+Y/yBYMMVXzAnqQELN+KNTSikDZlaKETUejbyB+ll76QSMw8sbLuTggM2lYRqrooMFk8VNAcqHc7Oxwf/wqaDGb7ZuIvgNKRJzqwTbce/v6P7PD5oJL5RAYp00OUTv53AEh3p4NTEnxRCD2M34TCJ/1+IW+wdlL0VmmB8ZF11XekgikPqeYy3dVZruurFlJm3Rb9n5CTZQEV6aG8/CA7yokas7oIaXT9rW6PTQ+wxMvaNGT5suO4/gquQntTC9BEH6Gu/t1bTXpFLzM0Sw+S93EzQiUiGhcOiCOhAh6NW0PAx2LCAWMgDwYREG7do35JGKhVjaDTI/Kup+fWgJc4eE+M+di9f3kyhXq4f7++VIKCIrfex0s2NYHeuFCvaAix65UmXi4QEGnaOx8uKFA988EvLZRVFmP0MsHu93vHUZ1Ev9Yhx6+3iYaLykD1r7PV/1kDDTk+9VwyOKkhOaBdGIdJaVakYKSxA0vqIYyumFFCSt+fVNZVuo/bCGIkilopuAynd0FA4JXtkOBQuxNyfw7kTCLn+62Qbvu1ugoWgjLpUJ16WpVq9msmFEQrZJvRVufSDUvAJZLJBEwkTEivCFNfT7Uh8I7NVqm1fEgJoJRzlYLpECRMuxjgu/nuuao7Xb1Y/kJMF0YXc4nqEZgnfV18EVvIATPmjus/n/l6ouvPcgLts4LXjPpFh0hTEnJHZKUZ/sbQWYeRuk7ZziJDG9O8/cQmnYL+I19O9JLNR1cIc0QBn+NcFB5bcpbIONsn18jvlxh/Gsxf/ZHGKNaq7NEj5l79spEkNwcDrb66GrdNRZSKYRL5ZiP2KPBhowa5JJ+ZNv0e4mIT5GXFdFIbgSK6EeuSONaePRHJ3oprqpo9hwqao7UQWpNpo3IW6+J49jrJqi6A2UFEpcLiyGJgip5LFpcUYHAEqLDn/O6PnGzl3iIfUQ/uhlz61qeiwkt99Axwj+WQEK/EWX7KX8DscJ5vAtqGYqRQ6VeeWXaYpM5INqTAL67CKkj/957bnYN/vFuHB4+5lrnUR3H27IeB5LqEWsdwrxCq28A8eu7maOoEtPm4zpuIZp4WL9NTtAbizk5/hp0o8vkaPERvO42Oqkr+xtwY7UsxbWpHY6nV3V1R3LDn4r7xdjvUMTE6HyaGjXeujS767zLvGA8M6QGyazNVxFT/3NubeggtaOsULD8VKQiSTwoYoECDTo0KOmbDqr5ttcE8/3LFmyR0bvH3moixUagd+KZ/UB8xXz3qIzpoJst3g34UZXcrW0lU3DHgQ3Vba47AHik+7jo6bdAtDmv4XXdY3BIHr0xIwNi/AcHid3hypSoqPW0M2OjmoTW+rHrwj1GPt2XLsTZiDPylpUhShYi/R39Bavyt2RISThKm4YPVy8Ws5VGvesKnAuwrIyEC8jkr/irYpwfJppZUAGT/1A9AkSOGZIVAcoWC4aS+LCai15148Zq9FOsm6i1IL9FOupz4x5FbIPfc3i86WuydaSm4VVyh9Xj4PUWSfBTmjKCQqRjYlo75+w0n7AcNAUcJNs8w97Z72VsmRfoTt1jgMZdxTfhrEUojOgke6Rmp+kZrQRkVFe0B7BZn9u4fUlq7rM1DgL7iVpCRNYjulRazD17tzuHpGz208iuu2oViPkEI2Ruw/+wWlxVpHnMNu329YRQIvRHgQBdRhln40WiqNWBqUjeELmn52i+WI1OjysktWWxgDhs8lCpWKqB6dgwnjn26uDKPVSIjbrTR1qtByABMz4ieV6rPowzXGi1lij9kTXQOrvsxzZn3RLVSJ6O9dVhKVmdVLzIBNlfZzG4lvvif6JcGIed2XNoTu7YB5MMW/1kHJyehH2vOn2LAwB+T/2S0GBngDbkovpImqA+/3HCATsE/izJykpNwGH3J4WdSpEkLxtFusYV6mT3dNZBMBcq17QRu2JG6c7CIM3L6uQrGxWweEcbiiZV0bYXAboyakPH4ViZVhiiKSH+DuiPIINSaLEAPRPSDvU4XCrl+Ej5wAjJx6k3gapOwaa27fMCfZcsfgy8LZea+Q8I6hOK58KnjboPFfmgIolVQ0GzxWwEdVVEzVFwEV9t7ljKqRFqEU6wZMWb3bxgW0CrpA2lfelAfvghWEf7uLGqRJesziUmlKSarUVJeEBmjGmNrlKwoQTTrFR1q7ti1i9pa/0q7zQZx2uz7TixJM6fKD1ys2bpyVCPBHVeAdBLQooUd3grb/xO1coFxnHd3OrHq6fEcjQbeptYTjZ42GFZLmFE2kCZq7Vv3SkD57yrtOPn8g8Akbz72KvFacmAf0OP7n3OOpv273Pw3b02V4Uy75iVBKUiup8QoIW8owcWWnv1Jzft3Y45sJ9y+435r/L9I3q+lvsW7lpXwkJmUeMHNhAkfW55gUarRsLV2mEYVLfW2igCYeBqV1E1FtMi7m3FELGf0YIbbHO56bev4QESeU9E4gd1w6CH+UITMhLWDs+jMFZUm14KYHckW+H84Imv/JyE+ucJQkiarUSpYSov9ClNvVZVHcwzOYHl9eYlJHb7AJQ1PWYifNiujCL3ElHYYYugPZ0m4S3I4GBENUA4qR/ehCzyG8FRqIWSgdV3fBFN/tPJK2fIy9ZwN4JWMEDT+cbkmyUshaFJsImmg+j7fDHFymX4xNW4VmxDRCtBMaIM3cp0Gtq2ewbYJjBxC3rZKICflzs0NFuxyxvClXMPJA7gzRf3ilZi0CZIEAAs+zH0UdhckKJUFm6EYifM433ZkA3jvnyTYa1Jv8V1Thek6UZWM0LbqXfJgyWEgxm0xFAs8vj4xCGFCh3tSNyUkl603Afak97nmnDf2Dh2zwIT0oYuAZCDKgpVa7bJAB7BdFbh4W2mkQh0nRqZOZa4wHuI1snkJWspsQvEN7ol4C3/J2v9okzVNvfT1BzQzO/sRxrh+6C0izeZA+Cg6RiLkrDW8/MbyyPCnHJG/wosGEJ1sXtCvd0I/MCuGDwCDvvGTzUVtbp1fa5SWrxuGQ91DK2dG6jjV3Qi7Vpc8C04mgOaGThNzkl3V9cbKiiE623dElbi8zRmbxgDycALKzRdEnIXBu1lm0vsrwjjfAi5z9nR6/uKIt4zzDUDqoAOaejD1LbmpSlx3BtFVy60ZQMmU4QpYvdlisVdGliGbiLl9cTEEsqrRnVRUJn4dG35Br8gE2uz57G8B3HG8Kbgiswi3fSdawKw5y1Rmvyi6TaA4KNVtMTQcgXnYSHRGv9gDL4LZpRAaiWvBDArNBvCGN9ireyxSiRme9/AH5gSU6BzAk4JIqUE1v9cM2kPlj+0UeXzRC6IKuGsTDPucwrYOjq4Dw0F5TaaGxz6lQf4MZ4iVddfABleVeDgnBlB261iQF5PNzSIQxrPB2hD2JPKeuYd2okpuuDnSpaVnw8EYQT2R42jXrJn7sXvba4fh+AGCrshwmz1A7lElfN/aOIdCNQjXJKSYO7rs020zjSo+2Huat7Gns4URhZJPbpu4YARDCn6hXeC6UhHa91VFbHxJ32qY7uOav/5vftEdRsb6kpbSW37Cj0wP3PJZI5kGkfoUXTAcdwjf2h2FtkS12RCUpZD7Tavem/wQDlK5q4eWqxV8U/3rqb9x0NyWNseZFQ3L9SPluF0QNxbhHJsnjDOaNdT5lFWrzQPycKQWVDgNqOkV82qXj+WuSX9g/wvHEomJpSZsMBKo1avVM5RGmx4AAOGghiso7DzuObsmVOIQJDQH6h8vWEeSnEK0M+r+fbAiA/RQVmg0AiZtOwKXn6UxxO2qo2fITzKnIUZyMf0jJXdlpjfim8mgAGk8rVTy19M9mdyJugA5P061OP2mXcLnqrnZfKvUlqtQ74IoKpZGCiBSlWaau0BDy8hlleABayOaNabS2umdJ+tWOYiOIidfw1X96Qc3HNVasf0N+vt0B9/1WX+qZtLuMH79u1QW+E+gA67Kdex3Xt1yvT7cZu2RXv8MiOq3Eq4t8/6k+Jnu2UERfJVdQ0nM4UMLnvALcWyZ2q83KWLVMi39IvhGmnjxqnmewPZULdVMQM5MkRKEK4n3EP6EbsJ+AilFia1pHa927N3zMa0lYLfJRhwp9pRLWCgKLTwfDR7+CspeFvf4hGzFWoDNc6u1PjbjTT39p8nc1ocLC8xJxeGlOAqFWmEw0rwRu2ITpeQvPrn9dMTd3KtbA6En7BdW4Fd83BFbgQ/A85wIkI5lqpLF/jBvCOGdy8O7bh9dlGFkb020hwBicP0tikUSZLT8eHv5/Te9uRgKumdW5icbPTnOPL23OMRAexUOgpvJBVoRhdx1ndEP2fgE4K4LotB9Isp3axYEJrgn/KgnKYVRWm0aIU91h2aH462OVFBxuWm2o9SyS2KmeKDClZe0MjsIHkw7ij0JOujBk6gjuUisNSmWK21uXGQG9lfAjsN7hoydr94ft8qvS4jLkEjfdUcEx1eJ3NTRKM6Jb4FmYZurwghVQEYtLHu8oIt0SMVI5VnznYRgCXalgoyj9/T6WSHaBRHXC10f39NROm0laPB8PK4KMZqGvuDqSmySlDyM8/ZXpbWzTjE/A0koXR+3Lv2Z1ARJ1v0x/3MVvlj1/qUXOLkZ3E4CG6GmLJ95g1IswVc1zeIwTvMugRQGwDUdQaeobnxAlsWhF5fBD0UpDVJStwAeqBaV6zP+NBVWxZRm++NxrNiIVmS/zL7I/UDrv6mZMSuC9mFcXZ/1Qv7z1g9mbXBmcY//jxq6F6OBdujDeBC+jZWzWiJV7e0Ab8Ahdb7cmChp0eIwQs0AbtyuRjNuBoTdjUYSmA6FO9AdHAcRbayOYCjZ2btod29zOxhTtfzyHtxAnCh1BboCBkX+xYX7Z0h2/U6wRnwgVtghY3sxMiymKlrwHoRb8Gobe8QTTIUdnu+ijQxGO65wI0fOYspdz4jIbnqhQLU12vXHgd0fGIAEk976PuNUswKd1g4rCSrqqi33xDpBlClkV3S+X58BAvvKduAkDRIg2i4HUrvgVSuSz4CBTJN/chyBdbdYFLBbwznbZND9WeGm71np0fCcMd+fb7MGRXqp5WNYIxB325fj60QepGCsaYJ+NECkEFQ6tWHV7Ej9N6LjYqoZaNNT0LVcdOCnp+U4xC0xvElkz0WYzaR98JH+dtVg3lImbgJhIpbA/J/Oas82oE2lKmQ4/L06jLEYeaKV9KB4DsIDIah4kYagOlsueCvqRUHqX5KGLvLaiFOKvsfJOWdMDt0H9OelQ18pw+UOGP6mpQ1PWlSxBcfRAcCLToNwQdNzUtRStyU8t02XPZTOm74pGX1Ez2qhTdQFLTT8QWDFUDaOTA2Xqqi9Z7i3wJHF2wqPu5sAUpRLatws9oLYNzJ+8uImF4bswE70AHfwCd6NFiaKdF+4PZl+NQHmGnvtoCVCFIhpqEAq47D8FPYDYZGeJ9mEpDM2mdeY5JOH6RK4ShIrQpl6JGf4kL6rvyGv/GbN9Nu4nGX6luCPj2pGC1n7+f8Wtj6xolKK/mZCj4Hcv2i1ZAQVm4PujVJMMb2SSJBtEgpda0ohYQvA7z9V5mdSemk24OBScudtBDOKlC+6AOlRE+vDx5+leMBOcrPNBVKOtaKjr91dn2o7yB2u+eS4TOZJKbzTxfFDTkb4ePWgTx2BT711419IVwv5DAcAbs/hAhDBJXveUbweZaBk9oxkLMOcZAXUsMImHoR/eot6Tg8ee22t9HaHAMUO3UnPQm3XSMT44Dj4HpuACVCMjqmrcvmobNSXxBv4asFfPwd0wX0LmhgtM6WQCNdOn4+sWAHOea0f4Yy4yc1pmEpQeI5h0eXnBEpTQDpKotnBbTsQoTD84L6jL97lf3J4QsLn3l6JJUEeEYPKZgWXIVwvjU8pT/BU5KkjDlpsMtlaPGe2S2yRAwATLDt/NK9jLdDxFYq7QcXnC/0FFlLt4oLGGJoNO+V9T5R+GMeBtMweFjG/tTcl6+9mVjlNyg+yi4nOigbbKBUlwLHP23wSUV149ZlixsEDWStzG5fPWPryXL448G4k2PtsuVzkrw7yQ0rI7P7eHt6+9xHYIi9+2vkpUQckWJ5UZrAWljcULoBY59hXHrnnG8kPxSzpBe5hLWPSL0wEGETp+UzHMDf43lb8vhUa5ncnouBwWhm4VbctEI0iIH+Yd3s/N8TjQemww3cwkdVHf66emR+mJ04XQXgBlpm8iGjmt+4ZpDQ11ec5WZcBkVgZcW0VVFLMYgwFCq8ZxFqTSx09LCYayINmZee2jGyaTJz6qfKwe121ZB8zjQ53b7FJG/vxfReahmfcp4/BTxncSLOKgtmitBZYX90Dax/iVCeWKVuFrWs/L3UQfDZ+4QBesa12zDZP8jPOjI0yAN0GLsIS95Uqd8S9vUWRT/5pWjyuFOQ0mtcP8XUc8Qn9WLGzud1vgMrQSgMnhbseHGAcTDS2oXEVJP9iQTclh9rdll4AZSOHKapm2fqb2IoHCYFDr0WNTJBWoyJE4P7RUGk3M5CeITPDvXjrLwaBgGgK3iTLU6kgpdU+lZ0tav20shI9JY7UnTfMwHJ4YjIqO1Kofogddm90ZxXJoSof77Hzd0kCGTbOZhAjPmVdjAzs0SlEyEdahCAsD0pgRP2YQF+FC4ZLUNrwLHSFruENVdcNOkQ9puimg7o7p5rr0I0VDJ0FYrnUHx1R2NqEa/xxVZOKZEFPc5ZprMN3O0nfS7Kgg/Rp9elpgekIWy5ZCYPapz4ByDdUCjbDUx1yMtcDIUBp0fFZSFA/RR05HFlsUaKCJUX23kEcam1ydqEjZait98UpdZFZrHPqu8IBK884Vv0nv9INs/Dr5VdfAe37E6rskR4XSXj3IWqHuOd6P4/0SywzEKLU48NAqYRLKhEsa6oOdt/zpguc261wWUQc+/yEsIXnxcSNStwIY4Yz2g7VdHGyS9ACvoirBcr7I8zT3UbJfr9dCwOc+MkLdwTMUQQ3/H/yfgdauhc3i0SlRz/xx6dbTS6mBVgxS9In9VZt/Uln5Jequ0C5a4gohEDXX+6Qi1/vR3ueZqpvH8iggwQwEB7hJ9J6kdnBtCbLznTVn+wGcBsiiipiwKdWNvgO6t4WIniOWS3K4BHcRpcwl0Cn4LSYiW5w5wmryHFwcoazxuTZCrzYPng3iIK2Whd9gMCiIYTsKgfJzMDaTLi6HXZqCXII5yPrJlnE9vkcFvTozVS9n5rWu8D5H6iwsLjHY9Lwd0hlBcuRDVIOo71IALQdgmuA1krZwzhbWDuWOJuM+kRBOm3ymNGkjDdX98q2bUjJKnJNWZrkcb+4C8zTIn8/FoEqzk0wh3sJ1UEEgG9eMllyxwfl5zEOyiMRv6qVCA5yj6V2TJD48UDwF4SB4vHASSBSntv02Zgk8Fulmmzfo1jQj4giC32ji6gkMN2ztEnPxux5rjvJieW3qV17VCoZs1lpWVaBza3qW23S0J3Ylrd2YjQUjtSyuRNVLmkF/0ALKAEd9rLfaL42SVNOSIn4lLsuOHNoViT6GnbaxlPZvTijih1W3qcepPFTuQ4KUMFqxHaR/aRVuf7JyRdd2ug1tMdU8vrrR1HEZ9Q4yiaqavtJxf5Z6YIN56a4I8Ed6hoM6Fq5ba5e7ZZGd8fctxEJ0aY237C32vDJSBt+0ynmrF1GWrMVYn0dvgZQR4y3ByApWQrTKdJrwLDb2TWwfjWFmIRpl6V0/kqdO31UqF7Nv2OYU/CRak0Sr7uXaq9LRpsGHrVIanqm8bC4SeLHGpFntoLNYCPx7YHnOPZafnDRZgiueHChsRB8IHUYEQ3VE7HEes4T3gGXvg8gLiURKSiGJeBuVBkgQBMfeln56PgrjNHX61V64hevDtY0+5NfRcQVwThAOI4E+c4c/JyT1yNEeTlgn9LKsskLb58pnVqRD2mE44rkuNOH6badoUGLPGQ4ZMlJd1iBXIqJyaBJ8ROkDQySE9s7jwr1dC2KdkmonKpSRrpEFw5dICRN6qqCgaLC9hAyDJg6IP4voElo6MvPd85tgP0tmyLqpXRzojMyVQ0UP79hTqnCYBhKh/zk1yP/9lQcTLYj4FNQYPhLVW8iHKDIYeqQ351PC69p8PVbtMemeiuNvt7WAuvnmZ/FKuFQWpWGle7ZVErSsfr1EO8Sv3LeuKaOI8rgjnZz7W5QYIhXaAQpviMHjfl3qHIGAFQpPXL4UsXaWXYlxV5F/rhFlEzD5QLvoQJ8W3B3WvvsmsAoUXH4IWzufB+Vg4x4M1p6XuygxnUOmlSN+wl/z6t3RgmsunjJCsfNSks/uwRHK1EPZz2P2O3QpRFu0yycHAdXSCDzUOG4WoKyDDHID4t0SH1NM8VfIK+6wOwiLJ18w6XSF/aaAbvaVf96RD3ijD5QwdAKD/25p1YvVcOiRroUjNvTOEqaeSsy8Esg5crhtcHTCOefI73O0ZpiD1JAhz3fZAZbYKwz+jkJCmi4RZlJ9m1Zj+UEk4oefiLL0tBePF50KfsOPh3IDHOOYMXhi3MUfI7Y5oF+hZsDl5twCK2ROdLGsy/YkyZGw3qP2p/MZklM6/qIiCIfN5kqtOaL+xBXDI07rySEWvCRnrpFPYV5qVVu9mfIVafYltjgCrOBbbOINuFfiZ+eVjxVgnFRu4E7qSp4qCoT0eUnGGmLEbf9rL2WUeyC25y1vBFqKSpM1Hz+HQC79UisZvvYBDFKBs+PF8Ygzh3IQvm+VmsbCdmNNs+5IXtrw0AsN+uGpb7UX6GVflMc6atlrLYkM9+5pTyFoEBVG9RdGYXiEq2air8FhWPa0ebj7iSIJfizuA9XfxnxTuAQFDH/lZGwFAg2fsxYeAgkLvxUVucQEi4lO00EFEkn2z6t7gg++br2ZYKRyMqdFwQIhbiSBqMMfnyLwcM3ne0C8r76gRxAma9sd1C2aUerk/aAAjzXKbM8n0nzJKRotINqScmKGF5XRJxJAa90jwxLd9HHvrqq+SnUGL2BXTadY4LkO8uENCO45CQ5vdf7ueZygDzpBgz8kev6Le/u4RqVn88gNu7dw3PsWmpEEkUbEAdQYBZkQxlVqlm6B8Ert1GewCdT8L51DYj7iybRgHkEaqnoovdvDGVLJh3Jor60hcp1sTcDisgq0R0lcpoQ5Zem+MnQd4lGevMDgH67424HM3DAODUTtW44ZkyEdw8CXihOhP+W2+VwETJxsV/D2EIhOUQ8jquxtbng972y7q4iV0bEHvyN6FOGRQymAFhs84s4CILoVHrIi1JO69h8o3sRGdxZqqDBJz6Mi11iRGtqMdT+TMCA/dedUEAxqfjX7xkXYrAvhI6c+rgQICSGriDjO79DbmPiTlHJ2q2STu+tIWKNV78uflxbCGLYS93doD8Zl2R27CukQWKKDJxrM4duJfTD7UfQXX54KKpdvRnO1W+m0XPWKJVhCq7U8QvT1Lv/QTXPYJ+Hi3Rja/a4LC8wSw7USAIXSV0zkklm4GzfrwlQC1YDHnzMA9/CDwy+gbfvGa0Hb/9Szq72PplT1uOyKFsi7hDStgwAe95Mgqeh2h6cb3L0f1HTvkK9t54DekdMNDB0ExjCk5z248JzOgPoJJw1KSHpJsELLJX/qDbsxr+TFkPdVKCAXTaF3/qSZkSxapw1Mi7D2mNLiBhAW11CvZ80AWqwiqMnSG46ahNnLLDXDaWPXxErwapl3tNJEeKAW1C8pYdPLR5uXOphhAOJfVEk0eYyz10mM1A8vQKuACjR+OzYIaSoKnPTDEtqn7QeUBkT9CJlXwi+oh+nJUpzAHpoXHABzVEZpugjC/WSkUKNMHL8DewQo03/JyIjEsOefwWF/HKd1oIgdzeq4Hk7DtHWnP3UgfcNusPx90GDL2OmpCt+A+9Vl4bBuKuuXBuAyMAJt4SFjXHUO+y2M3kv1bOMEMXZ2774/Fz4a4s/q06uGt8yCAYo+OLyI8//x9umo4csr3l1gTa25dR8Kk1uVu5Wr2svT1g/AukdviY/pzE7x8OLL34pfHVOq+uyrWxjfdoqeTjh+IT1xvxiD6vwFT7qFcLnCIUIp9l+ba6z7iTu1gX8YbLL7zSGVwTxexrWxzlQfynHHiCHf1D6iBRpFYIjH5T28MsrCfCul8VNHbtpqAwOVv/s7xpUiG1VcQsfH3ozL44neeBI63NsyF0rHcSH2+ExyBvkkzn4ewPd5UmxnSC+UE3MvKqFtX877oFMKvePYR7wUQ7yxiQFx+Np1vfdomvEYVcDTD3Ee281MwJaAFxXZ/xmbuCES0J7WMWrBrnAqEPLi6Q119nOMx4lQ4MP1XxVmsrqlvgzI/NOXd36CMc8Ox09PlMyuAsmpSImgT881ExqQkgBhdd4P+uG+vsxGoB/eEax6/XLg5Zq87IWAfxD9j3RugJHUk+Y5Nym6SZic6gqXwNKnZxpEoKj2NtUQw6XpLkiM1UZT5lB9FSfnLMJaeJhBXeMR4ZkA8fyqCBJ7YMAYxaCamg40nKsuAxa6+JSvGRMgDPErJ35uo2/TrqHMqoIbb2LZcoSZHS2Ldu38/du1YqM3YW152g59c8Gh/wQevjvtLwVI4KIRLZRLTJtkBSEPrWYpHzZZoku86j3bdb0vg1GLdq9F4ICGO1GQu4zeW9h0x+zViPRalc1rJ+KcYmWTdrmubIu3bq2up+qBHUZtwpn8uLmKz2D1cFuvorfOOyTr8tO75Czh6dmafr7p7gI4g2F8SD8HMnJck2k35ZdduxTP36FTeRO672JFrRo0jDOf3ygq920ZYxNTKIp2V9U3dvAaDHFP2mU11GqxJd3a42uxSRmUc3pILbGgKmEyygQoJrhK4AIEmeqb/Q7PoxoUOPJWOiZM2GxpPwv9jz08WNYS1SutW/wJxaGKyBRptUzctuwMva6c2jeM1SC44do+pJX5n24S4XK18DgDPkbwRTEkCXjgeRhX9rs1GJg6f/+STDoqhqdu8X7s6JCQb7yBojxrGC6/DZtdBIa0iXGp1Hl7dVLJ7sn8uA6Nhl5khxye76V7DvHxfLn7fj17XT1fyGPCk10xkWQyrbydmS+bBvnW2Ujd47WeYKftiYlTo7afPMiSh9Uh53CraDWZHXb4biKNh+eyzt0oW4Hi0DQYEI/PUQ0IoLT9BECopyVcpQKnOrmJ8/n7Aa5fgkAW61C04XDhvYHGuKlqqurAfdiXE2jaVPIu5Nsr53/5IohAaZj7FTVdM0dt7ojret04BMN9CD5YOqS+iaE7jRonAQOCICQSKrZuE+o0qgaV5A+hGqmGZyQuE4LPgF0BwYwVfEgxGC5AnDsb8fsp4g89xCre2auWZDyQrq//eQnq5Hpd0CU1yqsbQtr6xrZl0sKjhh1Z9ZD2JHIQW54guqyktwQDIIC+ltkXodvRTAQpAteQTWPXNzDVynsnV3dGdJMV4tFKjCkUVjpUsW4n4CFKVzq2YdI5f0jjZ+QBppUWjEU62BUE4we/CV8Tjuw9eRpeD+QBnMqkEI7TNSMz8I2hA/JUD7aQzsjBkyISkngwJbgpx2MhPlc1oJFvlHi/dxH32Nne978WwShK7uF3rCyyUNZaKUBkx3qzeKWZ9ndDVolg5H/3khMNgS1wct6SECeoLKTwNvZvfN6t1UIYuVDRfyrjtB61yG5lWMGPfg66xhtdkaaAH2Gd4Uo0XNmkxqHHQyWaF+ETXv3idyAVG4bDu13lf72mowCMkY0pvOnlzgAYtSIm7TSKAn4OVcKXYgCFK1Q2k6EXvA21ixhdImjiQh5SSORyvk3Xe+88sMwKZsxH3Ls369fEHLurBDgh09+Ar82PvvIPZtoF2oVOQIK1H3Dq93MQvIQLtplxEVBQH1EvDzJxt6KkGxSGQ3V3FNRbIDvn+zlPgTOEcwkH/y1TMVA8N9JekTooqwk3ZVdCG5rX/LdjZdtjPdXmIsWI8rAgGpTJErJguOJPy/z7ejMUW3D/8c1qZRpRb0qYpHr8bewE8MZCpZpWJ+d9a0FD+g+qCypekhrH1UXHM7l4VEgZ5uRlfQ6Z0zFOUQtZS52c90jwxldLX0MtO1FWaBxp/SZ81ilUOh0n2wFZeF9pw29THJbfBmB+3Xsij6AJC3e/uQtzpaDbBa2xhiz5OdqkICuD8IkfGLR4f9aIj45qgoh5PIJGGp1e9xS12G88a1vdzhiiu1tZgMYmYyGAasn/CCai7pbMIwjTu+roGYlW6qPIIJsgqRVcsGwDPmWtdBqfuTiwUtXQ9rI5WUw22vaVCl27qhlLy2SehtXdFVYWOzGGzfaqvLGmhnGBeBoHQIcdTcVdg2rDys/+lEIpT9JEZRl0+kgM0HXHeigwUqb5MGHEHtNxl8eyCdj4k5T0EUyyA/kNoEP3cPwF24AziM4Dp48DaUh8R0Rt5EEtXjfMoYLLDvJ+7YAyb2zSm8fPs0URmhXfNxWZNBqi5QYpsN803Cjj1N8sy0Zz2j6nKjR4i0hf4eZVTtF+OGjzjAcWMEPUJIwHjQRV25sKDljferddF8Swii0ILpNY2SVotGdESGhctmu/H/i3TmYCtV9wup46xO7WTxZ+SOdisEjaqJ9+NoVijM6AGTssSnOIF/Kgy4U7flQrEPnOBs4gJ3a8Oi0f7RkSqlPtZbBCF50Z1Q2oX0dA6fRJATW+dlsLAo89OivjsdeTYJmkQSjeEbpDtuLAk8ArEit/Yxs0Azd1zSbr4LPM/PyQCUATiLAbhkWHkSPOvmwYBh1HyRNHNRq9AqcoHcAyC2kw41nKw+eohqv2T/R7a8NbMgDdztJro5vw21JZzURkWXQhh94qe+aG2NrgKtzYjkdh6WSrTb52erLX9P+JtTOIWgCp3qeeqjez6OwyUsSzNdJHXAaKXnCrZ5B4Wutsp/mHa8y4ykZJP9ApIzmCzfnWBJILB3NQFX5jpfn8MNslNYS0I6zz+93srpkHxJXVycP6EMBbc9nzNvMNhPaYb0t5geTwVaiKQhBMKBRUMfjpBe3/bBGaValdSDs0zMeCznC1xMtBJ7edyWqPSGLs+gI6HsTw2HUiOhBeT7xkpMX0ZhqkA4y/Y/YrQdQFAugxkbLlEV8K65jV4qfngefk+f35C2R9cO7bkbHuQMVrvCoBs03UQ9zfPkhJHgvMKZQuDjNK/aYXMEQ9HWRwKsd+N91xmHjEIDXuG1R21QPIzRTvhXex5YaOonMp6A9uYN9f86ZmN1m0uUaX0fFkrb+Uu04I01wnnBCsBihSDClTQFC3y6pKBmnLnDNg4m9q210N771LY1CW70oz3LEYMxwRYm4zZAYGEWF+H9pQ3uqAbT+AODR+hAx2oVMSW+Yo60TQdtUzRBESX2V3Jn7DB6/5Vtpg+S4O0bJb/zQM50YpoMoLiUbMzZnAAqzJcrBIAJR5AMuZNfY9v8EUpenSn7qpu0yyjxGqbFg8wXrM6AJkD32RcivzTdCysmES9851EObyT0mV17IboTxgSRaNg5ahSyQOuojqW+sMy/pQNZBNTuW2SRcIbl9vDIAVpfQsNmvBpE+Hu0DaifXMKoGhXD1E+nbyo5WKlvoCUzKu9ZDZ2MznESOcRVmxul6CnXWWZ2iTwdjnPWBU/hgBemn6qBmjtB/SyX9tC9dp/7qV88v7FXbIHPENXI+URrqDaiB6kIEYSSSslEtxOYcVfXEua1eg8kW8B8AYYKAsVvBSTphLsWefggejzQP1a/URPhx6Qm83w3OLpOr2D0TxKfE20W4LdpjUIRUP0O7R/j+AWgmGmbWWTtdgZmapQUJ2iuGiJZsbDkyLf0BERdL4DMOUJMwqPLXGqVB8jWbMdiH18SBZIrP5D+rUwNNORyEtznMzm45j63kFVvu73UkDF1U8CuHsbf++GJwUNr5odObfgnFIAdhzy9L+rTAUAsc0KeQHEO/aUFNxBg86OGTqcT1WgQGakPQ7ZRvNYKQVEEQ1VsmOGO0nxtaGUHxJxy1xDvWhy6hzG2dyqU5ZRW4YUDxFtBd+xqvjD6c/ZNlqdJc9SX1/2lxASwtvWScQclmMwP+8cigHy0xMPbL4E6ng/N+WqPCY404vRx3kMSQVNRdunVUhEsLUEQptO6whgOdGSpia0tutVTOC1XNi4N6qq91rvSxLR0Ez7RSN/Mu1X5MCted24vgPKHlHtiyuMvGYER3nIgzqc/dH2iku5VjNFSLpHmBntorMBqPW0snf/HKhUzUadNoUju1CZMseZs3HN8EaaLE6iBwz38CdaRkC81LzlNY2MSdaseYeQ+IDRkfEGZShAbHbNtGjm0P/NBumMPfycIj3RgqspLIOn0Gun21/6fugnUDdgfTEEqaFFL++b9sTMzAos5LvQNxhg+JsV8AeDXwiQdZ//Rx5zG2lQmPyTu5gFb7OmQTzEtvVAgirwyfKsaJPESXDZslpa6HOMoRmUmiKM/K62YSQCz+UDiVh5NoF9XRbo6kt06ajv1qTuZThqN09AcRC+fLJTqHguPmJiOp/hbuGYRrG9pDM1u5fpS1cj2uyIPUHybf6O/xt9RWYHP6bQVkWxD0GRq1yKS1yKats1wZTEgOpyYM/hdQ+ESRSea2I8bKDdG2XV2qHtAG15emaL8wAy4vjQ3L9O7XRsyLGN1wHBdRuj7xJgNt/rNo8nepHakLwzzrGBQTzjex/E1anwL2SYKL3jf0EDqYGFwv9LuE7QMeORHj7meBGD7OCXw2aki0UKBgHJZbDCDttcUG/L1Cj2N5fiKX76iu5xUEJkqPwVatlGpU21nXR5p7wJDJHLhYrK58oNMkWDcplRPnpfS3++EHpfUFe3JuFjqJNRVNC0slj1W5x+N+A8AGtksL2UYz3cFANXu12djOEBuE3dFg2ZIDSb3HdcEO2PwZ7M2BY8awA9BRk3IcOYK9Y7PXHBdCrgWxTYZIPcraBdwa926tftP2yR3lYxmdaV63Vrq8nD4HB1Pk4vk/2nHKzxIC+wVYpfNfLXprS3KJQnJ2F8l1CUWGx5OPQvoWCJiwWIPZSpsb+5d5YmpRpGURVVreJDK8QGGrO4W2jFLujd0/VrKwRxV/YZ6chGk2oB1E8RN/ctQCtsCzsimUw5PfUhlf/JpdweyBDD1s8xb51XpAC9MDZ9xMmXoe1QgdqaW3VNMeObBAhRr2XabhFxdHE8I5WEoK6WCvi+2ndlp3TAfXOgZYWnBmX2xvug/W/Sp4ekXbAhTNNBPk8JrTa+q1bWZ/wzDNvWGDUkFs5551IYhqBzqvXS1bOYrV8M/I3AfRUsGxKqqoMLmXdGfJFmG1BDBkGhKqncu27FICrm3UZctCF76ywRqGYTZQh6o7PGj0ifGeJoyvzkx+ys8OUPVf2DhEl3MPfYV9EGBBDGPNuQaotcaya4CRn3Kj23DZReQHv1Pud40ZeFXcTxZrblUlevjqcDGbn6RiNeBEqY/UjoS+sBI07aB9T6+T9BbYGHQwo1Qw0zsiH2hnBHG7Bqx7i9DGx/mxRYJVVpwzlp+5PUYmyQkkNKhYPpgcfmpRiUUqg1DfThs7FUj5wlaJzkdEuSrPsDu80Id1oGALdtBpYMHcluWW8+V/AUZfjchIRkJ2LIF/im4oX5vSsJQJRJd9jGyVyf1qhjUdZE5/XHPIfBdhLM82ICmC3RrmHeFod8z84aas/MuFvaxga9XTxvBfyNJQiJHzBzjP+iDW1ZzblKytn9LATo562tkru9rB4lTPPHF1dDsuDB3Turaktci6TpJ6Nw5DNYgt2Jur4Kb/vUP83hZPTn7N57whSjJZnGb6hv605IjsscGer5q1VMDQa2YqIxKL6QzM5bISYj/KhO5VuCgA9id4HjAX2ke7JOHlTYCXwGSBhjnCQTpzEEeO5LrOr/sbuku/b1m87PP6GyIIEG5lYCkPjosrQbNddlG7TVo/NqbTXzY8ryyqDUTEdjNTJBhCLRQ0/SGu1U9iHcNtBTO/DxnWKBo+GqHf1QFqIr4GYZeDlmIgRdBUDbHuiaiYait1uA20I0ZpLj9VKW/5XavgS2GTrgTRdsgAYUN/IeNV05fhyC3UDMWgoPhVPo30LlysrrhAUtihxEnsuOfkOHY4BhQ75iSJ8cUX61KXKlMCU1wVryVWtbyQ1NmmLe5b+zVCPJW5PPIkcWkYxzhifq9tMdjuBofalPfwWeT/TbQMfTpYF98d9VgrDGGXnHffp81W2QLy9bFNSBinay9tSsxSLfk2/iORMeVyhxvfUzvOpBM+yZwN/4BluCN89dFwTLZDCh/tl4qoNefRfDvPGM55+9s9r/8afSkAK0y57sxM9QTjv26ojioLXsWKSApUME0m8aFW0abbY4mgmaMfxXPyWIMaIVtidMaHDm4Xr78jUUDY0jO6sAL2wGMQyDN9k2JluIhPtVAct234x76sCNs4pDNANma9EJMn/M6RWDEhdiR4t+ipzo1+wnoMPDs5je47pPMDjS7rscrm+iRjNIwpgEfo6b68WkVpZ3ywDvKarlDyaAR2LL3jKEBj206XwCua2eLgXQ2kXBg3yef2HDUX6zMtvFQyi3VpQddslc2lst6uvIdcPUSw6H6ndySZqS44Sc+pboTLgBfiYjLwaTNf7LpekbjEpXPgx4nHaOBV2OZpK5E0nZTo2BxZzFQtwhza5w3FQlvFfbyaNy9jy5f5vUC7m0Hq6JqFL2l1bBw8w5ji2OW7LF8ril8vaV8BC3k+CxYYkBD09PHon7KvLw1KpeBdcnkNh2XVKrVzPM+fVPBE/KWmpha7JpYkYlqSgU43xtTxCdQlGfSYlcIThQd6VGLhcGhBY2XCt4A2/DKGUbgWMI/KlMqnj5kWy93/wyXjfl8f3kZ61onFKNj3Ax6Jtri7oUbNCvtaTgyFFcPSiQ2RifOry3HIWA3aLz6jl6m0BhrOPa7MPYZXpL5YqYnb43yyWgHaj0Gb+jmLJL5+4pXrVjz4A5t5BF2UZ9HAMFFHSmXoqCrG+iNjT9kjDDX2/rTvpENpx99rv+v3pd0nftYYnv6nt1GSpCCYCTlGO3aZBtS6B9JmWFLaWyRCc6eLc5TQYwtdU96AbEAEebh4Q3D4b6feIREH5+Ot1WmbMwREW0SlZRHNU2xuNoI6THi7nNOxdipZcqEqKN+NHgdNQPAdo/OOIHQGzb02j0PCEbuDV1kPUEMd1NTX0ZOwi5ZIT78cq/bhtaGFlvaBPcVecwRXon4ieTTW7n1thSu98bxKRlaKNFkMnSfK8G9tn8K+yfABuKlcnDfyg8Dk77r3L7d9XKX9U0WZmDfVxCv1Yugvsv1mEF0SvfWifD3ys0nMEO4ORCemEyW44aZfCx1jogewbARKIIzv8yHSH22wG1f10NfeDt5gF7Xd87m1kVQrm/uYTyTd96sxor1G7wz/ilX1iVgiC+uxkZrkcn+Fc9itL69fXioxCn6mhQ3bWkvf620kWM2xBcP3E9yaW/ZdSZX9SgItbacL5QpZOjRGC3iKegXDoAT/bWwKNg0efNbP3f4a/sk1a0u0ZuzrbxErj2bD7AfgwdUyzJ37bsqRmltSpFhEDljPq0wHhCDGOVyCoxufqZ0BiHp9OVnZQvjY5iA7Ai/WXMWC/oa7ldBg/94zD7dRT+oBK6YonHnm5cb8/6bZeq9mxSdkNWQLDIDxroXZD0agfF6ZvMfAmXMG0o6IgsWgeO2/o3q3eDRGxS1YLqLEXPkOWwtcwA0D+Ed76ghIfraDofnEi7YX5oW44qEa8l/bPWGhol3RpkAugOWUxWjRihUipK0e9gwe+YSVr4oESLmusKJn+Y4wZ2V45nH2hwVrVY5ZHbotNZ7qon7r6QhZmfaLCyFY4PlskVpwvs06/56lfzg33wOEFCc/vXbLL5/lSOkycIPsgfgAuxSN/fg0d/GC47Szr3s2eUQrDIJbX5HS+TwoHIYqt5tVe7pVrM6mqwE/9OoYbsbeyWLaE6haPOrVIHRkCeWEME0KVpA6RaYD839hfmWrsn2iQNmIKZN15kMax17Tsp2MkvZ7ueLs3wX21msk9KgdOxHtJ4Mz+h3A/KVCPaReDuoqAZL8wJMBLgcxhcIQ9e7f5KQu1noqrcu6uzMhkBpwrlWPZXqEzHNQ2/YDYMJZYX5s7XPW4jP480HKOhdBOCKC380WQRLqBKm8ml9igd5tvj7cpnOsCHQmSIMfOQnqRxgedUhF/YUaIHOKZjlkNbDCToItQ1vXTyE0cqCgavjrirEPc0uVlK6ljTbeR1czD1oqaTx0c9PvPLxjAVUT4O5fz6u42AnDce8ouoEW2vAtN/9N9dTRQp8gqzOG6q0ofr5ecg1Bii03PATK0Tggc0ncp8kX59T3v02xYTRyHExbDndGe1+v/cqboykEHi9ZRNB9lcYPWHLY9xiXtsfUcIkkQ5/uu/YZHF8Jiv8tHKlKmspF/KbpD6A72x97HnayXnqnZVvuYGCdJh/P1E8b51u9yoexy8e3evWkavLVXDCU6WHWGICWtJDxiiYRqGnuUNWgb/0qj2UeeffcHlfjYqNrBYK7wkKCqcVS/2H5OACDwxKf2bMLaXJVNIivlagcvBHlxlUX4uuIGy6AxugBuXF0iiA/lKEpQfHT/0jJrsNhTbtbreT3XwwnN9ZktHsWZXgWC9UzoZgO+s0hChNifZeYluQ21Z5MnKCk9gTVioT3OK9Exc3Ojulb59Myocwu5HHNyfJ7c3fXPgPukolaTS7xIUEOnIpA/+OwMMTrJZGABpr/OaXG8yf0Q3lKe8ePfYZ1gVohoazogCDzjsLszcoS1PMChUXaRo8mGYcISHaJ8y70CgI3rhzEPY97ZbPB2JFvnwCTvc7EaRZsIAK6VWRbaCFlyWZG/otMt9Y1WpTPPaRETEL+lu15+eiodtHldNFYb7hzDOjZIZqs8dQsq1kgh6gSgv+59awu7T9N8MVtT1/h3c4Qhf34y2XL3RX6sbqfyEZnkUQHrviIhzI/g85CHeZKw/APRRnG5vN9ElapHOh5Os6JiBdcEvV6spnaXD5d8e4Vzkj1yHVzHtK87YPBVKBkUS2hBPdYtuqjOKQ2A3pu/rXgI6YMjh+LjkpaGYjWnydVq5SxDUYz5n1XuH1Co2nv3hNwtrqbneS6DhJGTPqskniQSnKeKTs81q6huuWxDbOFqdYhukppoLDSLfqnSbHPur1H0eIVnike74d7Ph9LTRkV5oKnSCbNcphu+P8ncsfmLeEIn9A0qnmlfeJJkQ1bjFAJfZgXjezd6pgBK6pL2J5GxR9RIqRXkJa09pdtZNzgR2uNbNYSlwNMkWQp94kCfjiOv1ex2pKePF9sg3ST0J6SbmlMbrFAY85myS2eaTYHAvMCybJoWeoz78AnTb3V69F4zlA6X4LNchHWYmSPlAH3ozaAN3PQlH9VwuOXjEVLQk/WIYhuDen0036AmRpC2pyfkGFrq0AxosmIDiRwHxHmoH5bSD//bwXJ1ttUiR1zooV+V7WdKUjrHg/JyLS2ubkDdyztsGnkq5b198NlEh3WyLhab80RdKOP3817zB/fCalV9B3B8QXwHCOtGdBYEywlJdTpyZV4DkSZ42dqucGG6p0qx9V8DDXPbGWxWaIWL102d3uCBDvsuhB7yj2AKpO5Mi+b6EQ8ORsqs4ltpM8Tygt7At0rOPV8NFAU/DdSDF7RTbujINyjDZIJerFtKUwVu6+MIqAGVLdzG8+Z30e1OFzGY9irdf9+8T4VYujmQ0/8bV1YMQrou9zJieArywMNDuZ5JaKAe/TeborWV8eRCPfW18uoF/4Ex/TNoJfMR5Gx4r7MEI5YcrDzcCupb7d9m52cQ3pENFFb+5e1w9HnSbWzZMVl1ZsauZXu4MDYHjtFClj09/lHV/sJ3A/tW1ZJIfO3+3cybeuji7JHmU7GGRgZXcFvJNyKsRjHC629NlbKvOu0aACm4C4yJjSZqTcVCvnhyX188ZGjEovj9FEYiebitiv1CO8b8kGb2tILSucPaK8nW18s3BTPMlsSnfS2JduyFCe+qmJdJFYcRgPr5lss2wID6Spal0efHBYqU/V03xvyUnUeSIt3Dp4dwPL6aj6eTG8dSbR1C8kwb921kGk/R9ktFwwDDut8FDvMQEGQ+dhT/h1cwlCjBUTbppFou1dQyI5p986wAt0Ol+T5yazLb7nhxK4G0EMLeFizCckOAJxlkYYLjiD/LwQoDHYAki+SX8lVc+vtdSzFy7Fr7LcRJNVRHYwFDNdBSMKop2/nNlhFqN9aaG77NP23kip5i+pjALXcKm32VwwHTyd6sKJkVn5IItgLjZKkDRhdwyElLRIsfmtgxHyQmO0+RU4KZjKEjeDUif8PIoEEaxqPeGqax5zC6OLncdP/Rl7hNezvhKfDm2La+n5HLL+pSgRNfOMmH26VhtpvOOtu6LfK4xVOU3DFguKHquh1AqbELT/B75p26exT1dqyXg6BTYFtZ96rFHfAlurbHEoguhh26cjoHfNCC0m3Lvdbq/Oar/OA/N4ORpmNzHY4PlxPZG742bdOjAvi6l2boqOL/4c+Sj/xvn7ULLTWd8UfTdwQLYCal85gz5sX5Iq0dp2JzITSDHA+MGBloCHDVxH81YCBa73btmFkEm09q6x5YQ6SSG49PdjlN2k7hDtyKjGLL9+OAmoUMi2PH2IOa3uL3kpi9vx8qmpYIxq328bk7opN8bOkRl0Q7nQ8ctATIsJu38FG12grqQTvG5bbMOLrIf82xMAYo3Xpj9GaMvV+1TwasyyM0otheuYH8Vi/dpWxHd2G9hP2NLp6g704eo7du1fAgDMjaAwjzfKQcm7K5CQI1j6zRtnjvhctBbjirEuD8oVZcH46LoufeVfL706h0CQylsFbNEuea//yNCsNNLLola4Bm6LBbP1D03bVEKE0+j5LGeYLN5tGzH35mEfLJcar0y9NlPQMrfmlXfsuXn99p2RAi6I7Klscs1KZkwa1FrrD5P8DFeJ1iCgAAT+42rCEC+LmVXGogthC8Fvm+r80jcuN9XGZKlTX5W2k1hcrVv67nfIGSUKyVs82sPP5WiDBidJJ+zspxFXV8HoTyuXw0Rb3iMlu24chRElUtMv7u37fcexVY++0TeZY6GnKQKB1u3aQzTMR3EGyXKR2f6ilTG7TAnD3EbOPqr5r8gOK2VNlOwiSAVlA6L0xr8P0P/pWYlz8Bscomlx2F2utyW2/qvJTKGYi4uY2ZoTBKoXs2DmD2Ee4nRPYcFpiZICyvt/ilMwzpLdH0oqP9CyRCpp31LdWPVlQo2b//2UrHUrCDsfeWwhGExbBLlUACbO9ltN8IQ9HzIhzHb8koydQ9HHmgMwE8tGXSd7yujj3Vcx0LEdsMUPv5dtjYrrj4YyFD0OfHrnNvTwVcmPau0cGbxc1g1g6U+Sym+nOu319BucEUv2Sj5AP2BqlvGCnl2MjxR6auOrAOro+R3w0r8mOnJhzo18RSxdo+QCkaZZhxNnVT+U8ZSZ1lWI40q/Z5ygsRLAB7/ECWzyXk9W7lWVIW0WmKc1cGPYQHuUTL2gvkyZF118qFeYtTIBjYY92QP+UL//mSsRuLXFQvA8wgMEFecryYRk8DiMaRH1elUBwegzk4674N+Rrnlyqd5ZKEJxNmZx9v/a+e+L/r7doQkViGQgwEiPP19itGhDxMkmqNyGJPA8AT9zOZNttIY58OmXi0nbKeNQfbpfq3xGB9bkwhfh5Kq+jkAijjd1/13rcOGJL62ZF7vkaYhvb47C0maRiAPsSWJxoOaP3eGZeTd8q6Ppwu5PvCXykzZW1DKob/IUTe6lFJuCbTd48gwDsCe3i7lSCmvs4+J/paq3plMk6S8SFhhQHNHVto+lGnscWgNGi4gSCc2nMGAlpTWArvhnpZsLgTV86vFZ5TRxyblOyWP9LrJ/ss29ghWU95U2l+xgCL7iKtRWbaANaJfHKX0pd3OlDVQOPh96pOCCbKQAMUvO8tIIjr5U+yRAvyNwKAphc/9AAO0FKqaAAwkRQb+5zPSi7MxMXfx5RkFGZ8kB8b9qxcGobG34aEclvdWQJK08oG7d6V7B7u9KP7KQGzFPaUzm5vewyW0BkoPgz4g2OZ9kLcGaT0ZvOwHWT42M76s7WrwpOQQXtICjYjpw71bM8CA7Ka9w2+nlzd3oAtA1H6q8k1zcBEFAgC20iLO8BKMv133GJpCoaUW8HZYxzy7qKGlem4Hi+rDfXXHIJsP5BGYTHFRgT4//1HeDWGngUKryVUNFPLmZZqHm6vOR6QtYHVFU2jxPzlkF6pY+O4UczRyYnwHV8asn2p4M2GZahznSYYXYdJtcw/zYg8BmE28zVF1YccX/vkLxYrPthXELlZ0eIwm7tAHGJe2gy32Mtoz26acSvkXgKoC3qR3JfPTVO31EPpn5FQ5yD9GSWCqiKB5ib7yiE8wu4sev9qsxYkuOEYl3ZAAtc27OH0jlZlnbyxfX1lv1oWlMtQbr5MqYl882kIyw7b9GAmzn7OleU9yD8KEdzG498uBKy0zveCqY8Id/btUkmMsPA99XV+VdgcwkS8S5PQOOWji6NBujIlzCzZk64MlvxHlqSnqhCJwgmEeB5mC81tQp4PIRUbmpF3M6Hley7BtITy36XegIa7RIngghXskw1MgwrHe25gIXiAqZuoX4h23SBVLpdadHq1zaK0JNPlNUD0lRyNa8VG/m+QVdAt11gs+oz9aLnBMxY8DqoBG4bXv9BKYRsY4eUD1NI2DJghvkd5HYESIGHq+mm5XIr981kmJs7ZRItZ4aA4wNfM0E1bJhHgAR+DZM7+meB0w6IQgg+HyE+NiOze2nFqJ1RO7JT34npOpo6qlm42/BbSfL8oHDTXGOhkBwCh3M1MY7YzvFvhDwrIQ5+2xMc5QYqorv6dU7QNjZAh0E6hLpP23eeXYIw4NWkbYsA9z0T5nYh9G6zPRpdMNJxJG9Gfo2rNZPy7+D3W9TwYhmXvOooMrhwurS5kewNrV5/CQVoXqtP9YaU4+m2xNBeLPQDn9eT19zc42cgkPC3udefVasaYyertATK8RV5iezvX7KZFIzqkeuiJif6Ky5uaaWuMdNSn5v8GMBVq1JE0kbqyTtmf8UBCzKJbzs/bqt2GS2/JyxXE9qqoLvaNfgMO+A0EtlIQxk1D5b548eCKmwUJqdcl+YJc8qFmzbEk7r/zf6RNeCHfUyfW+Fw3B9Tq1EIfslgiRj/GBZyMyO4j6Z7SL1LzXcHygDFXnwmERos17xG/bY6BRll/eaD/vZlyswePB5RsixysrGiWJuNhfreXkttstgmbGjIB6YkJQGtltUzePmdnWi06JWpJZd+6no9RV4JisfHBJpIbREEYx16qH9HNdCuoK+2YK4p2E1VAyxSQejY6l736FO7HxRgS5Gp/08rXpps/eao3lrYgzU83S6PHTQk0g6hLqANZ1EQs9pMgyE4QVvIYwIhnw+3k4AtBV3hTwkndckgmkiCxXQK1IVG68zwT312XD4KCSE7QbZoDjQCbz7BBqhL59/rRMs859bUEVBRN/LmGSS3Ej6ArM7ZmnulTk5w4Y4bEuAy6pkhLDQgj+H98sKtaJrXb1e5Q1Ahy+Ma09QoyS2KNLZuXDCeh75yP/XLOf5GyR+2VYkG55UaD89J/ij0pxxr0R2R3rDR5qQiJLUZV6VT6wV6hC4+0RYqJ2svwCTNWA/1LkgTCzntEnHaVtSgEAPtUY+rIVseS7uNilrTxvyVSSc72RU7VpxlVCBRUEilWsfDB0trGNX3/8lglEiWKNSB8XK47H5f2JJRTxc+iYgvTXaVYRm6QQmSX94/pAGbkq95sI86IedoHHiBSq/utOIGYAu2p+gIM6j8WlD2cWIsoMJ72ZOcQtfGdrRcu34PJO2f+RYA/wwiku5/nB2c5rw0wZTFSUqBhMYRQUnXsYvoH33BpIsPn6+jqDN78xaURYk+o12lZMC9U3H7JYSorXQnbDvcqziXEYlawwASTZvvPCVfkzwWNdRvi6fzofZSmeYzIBh5zkNnfJnnSwc+1O8GbCjWSaqtqjbtcgca4Bt7RLlv/CO2WC4M2FE6uvVyqEtL+91AH5Q7K9EmTZnnfr0iqHazEGIgoKnVvW7OL8ovWSlsK5TOxE0JydzB6zu5fHiwI5FrrjVjNNwwfqJDf0BSASjm5oyHr+HIwf+AdwjZwTMUrAu6cyNRq285N8TqkFPVL8g1efWfXDhn8r4UfNsznJJU8WXTynsrMuRZJO5yMThSE1V2syMe3P74IV99PfO16ud4PfqhiqD4Agk+KoOD6Jm0J0k+zZvfLW8Jf27ff0wPRHhJmQOb4z57AN0noiizp7ej4JpKXuLQZ7x6TZn282bnIqZO2IJ5Lwlu8i5O4PjFxFeujogxw+XYlcSEZ4ZvHg1h4O1yoe4a5koOdSKV+hy1mdZja/8uJTc6nQRHp893bnePPdzmmeUxCOQp4RGA+glQvEBjtw7T8/VdL0GLEWtU3Uypf9rD+xO8lKFWJxSEc/9FtFYWrF0G96xRpIKHHlAN8E6DATITICKQLfbwnVdYg40n9EOETCVf2YZXVPnz4ft3Eh+kqT5HUm0V5kSqx+6v6DP2u09vzWCm5EHexGMYQjLFGIJlRoLrMzu3AVLTnxGMG2DiI+SHAGiKC3++jeb1nZ2jZh6Ic4L1K6IzlH/fx2NjKWFEmS+f2p586tj3s+q792AESumX3PEzuMHf/sfd0jDnMZeHPN0PZbaAkX+ArhqECVwc/WrUNqVHtDUW5CPnwkGud4v2v99QcxkAyxbv1IiP9rDOo2bq+l3LnTEE2HLtRfl15KhGfeGen9s7j7dHbHKx/erVpn88ZoB+tsFVI+teNYSYkAL1EPjyfHRGEYOp5zhUzcnyh9jGm0FNKSDoNkHsg/PRKLmwYylx1eOZn3+InAcWcg34KIPSqNR9RbkoFwY6/vows4RhWmswCeSLZ6XqP/8ttSf+54GETg1dBdVLh+twFJrdu5WCWugEI5mfU6ERTrR05rDI3pl+nofxYNyAPQhF/JPN32EUi3VEiMRLprr34SaZq9Yq25IYQTP9o7ahwnUO5AQW3F/x4yryRQQDHXdP+6SDBenkSg+EmGlS5mjQva1p4ng2o9StJHSI+Ku62esNQfgy1uegPGEjDfDa2ToTsW/8S46ipMeaTPVmhu70qNsm9P1ub6ln10HsHZMctdJ5+fbhnyv8I1lQBB7BKSgKUswimqm6N+SjyC0W6vxXs/MTVRwSXLtl8OdGagsEuOQAYF9F7PgLf/EpPy9EUQ/7+0ZblVLLhxTS2q8/xmXM7Ckh+lFYCApstLsrLJ6Q4b+lVWiCAHUlF+A9bim14j6qgypG0a84qDhZPfhHqDv7g2dPelYVZnxYqRBXF2Vix3ezZ4y0I1Z4JrXFW/zYZ4RqtWo23JQc3ir/Xwn5lMZuryoojjgXCBfsoiI6a5SstIX499xECRI+iOXSLWn2prABoOEBKLqQorduDvPHYlH/CAYEpdY4VumzjEj6o53bbWewi649BHTp+EOnsUpxOrZ3THHQ/bkIOlyfjViMt4xcbWekVkBivQHcYiyFPJkvoWMWT+HCCrQGr8s/AAIsScsfyV1imWGw83oueIKDaoDgXMw52wlnK8sqsOypPmj3br/Zoy/idEyxDGfof65jCc6VrhqTpJtaMnCTIpPe0hzrqpA4RmMgLqoQWX+xILfHIsg2J/7KgXXiYMqNoBoVxEYttKWoMtOD5xqK+VJ0+2OS08Baenoxf18ZYJXDqlNsQ5Bk+XoXUjsQEFAFQX9zyg7gCnWI2IUROqcwFDSnZYkQCWb0ph58hwGSmJcC4ACC1VWnOQgIX0CGsQZhgBDMkuRU7E1l6DfLkuHeeYA2CktS6m5EcTMEmhwse/wF7FwM/4WEjdoXdKHSGLsdroC/2GD6BYDxEMVNN4ng6TOd/D5gW+iZC/sV7vYWN0/cc01r/TdpQfF3Pb8zRvWrwb6eS0SsYHQa6m0ngJIlCcFfmE2QYCvcF7HVMGHa+zx3XVvskphIOZE+FuhEGvNxgUTafTMWUNscfci6Dd6kxxyW4WTItyncPlvMy9MTIJTbHY5wcs+yKBmeIF8RU6R9HETZfWux7230DRd8jFwC9MLnenIJHmrhScQpXRkYNV+k8J751XqaWDDSLs0bxPZise7BrKv44ovPbwYZj7XfP543Rb+mXl/B0gfV4ntq2uIW/pfJTXI2bTmojm+uy/uXtcD46kq49Kt4zinAwmUt9XLHF4KUalf4TSoptp7xjj6rVpq5pYOVVCBuvv4yUysj/PETbplJ3vtf+hSIoxlfSJaydT1rP7A2D2StkjSmQZDcJ9+164JDusCQEUzove82PGBHuLC7kwx1rZjMCHK6vD+VIHPoStx24QRkmdpDQZHDiH1AN1pPgmvKmS6ggtSvH16PtoOa4ZWPquoUHWlNPaN0vn3068CjCm2mnsD0CxMP7L47n/AjIwSUsOdc23+cdGzijQWJ8pVYTyrWRAKYG37WibhtoWYS/qTTdS++IfuaK9A7jvgAZubTUpd6DveHfbTqrlqDPbnFbBDMkkjLgTez5OkRz65Ee0GA5Dq6O5btMD2G6Iu9w4N8hneOyApPjAdH6Ye2YiLGA0WUsTuHhtqE/vz01x7gm/NanmK61hw2EUAwAnSz2zIgX1HiTXq2e4tWuzvPr4og69n4NvDwG7LD/67HACzwArBpRSPN0lsVZ7xpAeZiDDt/Q5ZA/q7dLAVN7AV2by5fklu7W1wGyP1I28NTVo94iExhVNdDxVeW90JbPyTqddjh33ytJe1bmMBo7aCp8HATsZrAx1s6Yz1MLT5wPSWpGOx5NZwLyEjlgVXUvvJjlq6YD/1tSu0Dn2Ab1SHwZ07I2cbNsmFd56nt+HEbzbdfKxpAe5z4s3LaOeAcUzPetKJHWNL0MUlgKLEvAlyA0iWHzSLAiyZ2p9DK80d5GSPcImC9auFokOPmVh4m2YtCsbqyOQWMkdsV4N5rwcREJUiIGMCfpTdVG+uEMEd4/nPCHiQbw8mGiyN/Y2Y5a4r362XXnlD7I9z0GHzXl19JmXzdT/tavKfoO94opRuthAzgzDmuLWr6kBejsWn41MV8TxO0SGnsF/3ADZZRPvnWM4F+unkwu50eInXXxdDjXsPqVBjTFRs8+FgxnjoLpGoWpzjaKWzwwDoeWpPxZZ2qgIe8N7fbZNt/vAuaohuqjn95bDyP2oknNh1oRR3erfXVxDtTtlD4V3vYP6+cHtVTivtH9CWx/BqUX6KJxdaYfDDIbSGudgCc1WRBzbmpU0MFpzEsZZ8Vh7jb3fS+jtTgcI+T/C6hVubenPYjWpHRjIeNiAlhT3OpY761XRUJyGZJB2WBDY52vQoTqnOk+3cSVmHVb7y/8wVxgLksPvmLKFCbpMKAQpgYDsv8wrSv54DVUTv3h/LF1+Ci8ZFplFiaryFsbaNaEUkv/dhbAczn1UnJopFYOH79GoR9c6ERA9vnGPPO8WRi33Xjcoa9UVNkRZF/qHtx0nLu+ltTGnepRrqGKvbBO81j3+Lets/nAh7LJUOS0OSGrOtqTFwxeOcJHgiUvxZXTjAxu9QDiz7NlJ5wGtAar66oZFhv0wSR1mBdYbY54Vz5QzAXlzQ9X4WxiBsoIwT884Bw3e4RJs3mJlspmBdjwHCWvLRKt8YNc9BOxQ+SdStMeqVkDhwfcvbBq7mSB6lgeSnXqfmlJYhpLLmLvfoV/FsJ0G700hBR44LCNa6oxSIqosnGha5gJIDrSu3juNz1nfrjhBtiZi816oiKFB0N3IwwCJqHvfbuADgVa5oe/mg5joL/qDtMmKPCRPGxJRh0/OcF2Wqqvw3bjfs/CUKGX3TKMES3vG4NIT3C8C1JUv0Iq+zewD3clyYWLrSPx3k197VFxgNJNiwdZzZgSPfLc93h+30ObZZhQdgcS2l9ZvDQDAxOMZdy/rXLpo1+mlHcJfo0wwDAhWWMZ1qmDdOPuKqAMca2EJumOr7xK5j2tEgigCV0frmf0fZ5Oy4tRmg4q6nvN1ZLlF4qnHCUrkBf4UfqZ9qjcym7TFAeYZYnjQXY4h564P5kmSoZkAi4KJ0dOmauxlO7InA9JWAEsKamxSKDq0eQa6pYkWWpMGqrCmysCxjXplCN/BElBMpgw31BrPJK2fdPfJ7ivBfE4vsAL+KnOFgp7r+yNVQLQ6BPXYX4V6aZJKCOmJzDDuv1e6CdCeBzZ0llEpsh0O2X0w6rQpJgdI2bF14eUAgUVterwMRPis5stdUPF+VmRgWJwG00jw2+jqX/4DOaDKWL/pNCNoNC69X77TcLLWCEbwuCOLcLk9/n0Y8einSsTHSpYX+2MJuT3uEFQ304h8BTc3YOgHPGZ7R9FqJrdDfLr2gvq7OeSEbqz2D9jTvcjqRlGHoMEYojidxTsr9mZO43gMf3ImukmHe484eRohTIw8NJl2x2AybZtDvLGeUzUnnKqk95xtvrjYw7smXf25OAajdsic/r0mF2Yn6N4RwYYVFqu9J7F81J5Kn27XKfeUNin2wf8YhmDSfgimXhfl7ukm5IEsQ7OQnVvlFhjWBfCks381e4kBYumXnLE4di9NxHfnUI0xwKtoaFYddFLFIXObgDjcSaZT7r+uB5ppGhfNT5z7090tnfk/0OXsASIEgyPvroSacL/D4kTgbSl9ThVXigKPP/MN83phuBkwzOapOJRHB+bjehwW4SsGnFhsA5n9wDUszkBT6bh7Yy6iOm47ieldoQ6QYtu/jNmFCVCw7UOu0zX9HiK2DY9hpunBV38JyjY30f+rDXXOC0BzQCQPLtw2gdEfnWuvAg55lL7+ZK6RflcWpK51RMRGPOvqC+AoPxIW9Pi6qIDXSaqeXvwgfGdFxy7A35oMTP56rFudv6T++lDgNjTCe07+7xi9T3pvUi8OXhg2UNgWfk44Gu0rzaYagTKMAufhoBL132hWeLTSe34OjGhw9o5wXWpp0v9VSGLUNpQ+QlPKSZIpSn10tNQG6rcRs597eXXbiNkS5Rjr5o40lfsbqUxcY37P3hy6W24shtLmVf73Z5YIKPx06xeWFG5o6unW8m5/2CMPNagmG830TrkE+C2W1W2Yrj+1NwHaJD4x/pltoezRNYnTQCpqDuNCfOqye+VVvaeby9htoUXqAuhSWpxmSDIJ9fb0PAqcs/zs2m5KCLy4AcHWoJ73ZqAx231FIAfXqom0ShZi1uKNu4qoYQypIQM7Nla1p7Y/FNRWSo5Fv09Jf5M2ObSwsRoLNs8YXXMQRvt3tdLfLPJZQzyHUEb5DH5RGoHOF4aqhNi0n+OxM+lNl2cAP2RyExqPptLqSxXuHeDNn05V/R4BQGfpo6ybCllnBebgyzmx9n6XEKMBy9t3TUHqNDj9zGfaK9wp/Z9xgzW4+g5xU6omoL2pst0p1o30xQqD3cyp5tc0KH+k8mTEH3aavFkTCjM+sL8VpDQrg/ZR8Pv+wt1HD9vpssVgkUjvLsUYpCb5wQvPLiJi4dTQWHV05xeXWvc24OUePq4wCkbspb5DE5rX1jiprTeIXxcCtn1GTz4W8MvVnkGMJqBmttH3NWglIGVybyZ6oWHHrMz7afcvZcw/bVx00NHGJFx6Y89d52Om2s79M3Mq9AkYFxMeWyzTEO94Q4lf47paILifcST3g+HjrG6NOkz4ZATawYAvlPlXMKMSi2AFpX0NMQPEJuQ680Cgf8CSW+5rglE6Yc+N9ervxmQ4uujC7SKjqPMjK6M3ducxRyG0P8trYDgniiI2diis7tcQtKrtrOWvk19pJF4lEwE5NUaQ1Gva7Cm2JEE1KAepNC5l7sNc/mHYuqy4tHT8G6iRe0miaaXhZjN9w+QMcXCJrtpUqaQhKhQuURuQjApiKeyZvgkqQhDKIb6B4n62+HhrFfH634oTLs5S8j0FHc1i7mvwocB+EePthvmJDomqVJj9tYZJthVno1lZMis+DRg0zpxrd3i4czmlkEObWC2s786bSnjHOV+6nEIl1WivYzutAP9RQ6eicXWEyyZVP9cHsI00RMCsYe+a66NUA/zGKuDt/mf0ksvNgVQCxYb4PAfOG02LL4tvRnomE0limMz0MSCAi3whNku1iKFrqZNCIoBJBBsig5Gz6ANHO1xuoxKBKpB1az+6EgEzavXaevd3pliAT668N9IlCCe4J33wpS2XqLIr/e/2PkYe8qk2+0MoAT7yptgx0KHcOgfIv9a55x/5Ie/iwRNBjjqLZnY5nrpexW3LhRbD71Gt9UYGjV8zF7VclwcenSJvx5ZCcpOqMwZy+GqvGd3rYvZXbwUoDwPgrX05fheXY7qUSgYQBSLFmBWS191P8xOLWhbNxWZjCvIvT3Wjz/UO45xzfTOzD4AmEnjpG2rHU5SZLjV6jBaSWVltQfRHaVUgUdZyzlDEuIYe2lD9yctesbIXFt8pYXEcdZrk4ccgnYfVOBoC8pDOOAKhviarUV02XnmQlVPhIoTw/aK8V0N2ZpnTmBmmCXEYIE7glqMXpvmUHJGu3z1o9FScFq7PV0noRij6YsqmrfVs41M3LHmvFfNXLncnYEkqavbyIchT+mJulc3iaEiTD9s4wijCFYsS1P1jQksqA5rhbB5bf8yGiVF81dnfeBGxBuj+G8QyqVpWUlPEuK5modhPQm5Pmx6VOrPXyHrPvcdrBCscjuQmiZaslb1d+fcLVrcUEFjTnx1JW42fe/5654vkUcvaeZwUfs5Y49GbB/t6owehQFzK0hLGe1oZOO8iU5zIvrovf8qrBLsBvigHJtSI+TUGwO1QpKCg8iTIO5e/LCJu/xW1Bep4tkOdBKkpeoEnKAe4VdbxddRO6paxP8MkQDupcefAjFJAH6q79wgVOmVmjXzzpN72wNEklWDgK6nLCUduhpRirlOwnFytxLre5uqyN2DHLQ4N/RpGyRn8hv16faQx+C/9xcNcZSOh/XkC88ifxNFRNs0bwYcJ8HkQLwxiRfJB76fm3XCoGK70KSnKIN5eFi23Pfnkq7hgTQltDJ5MarBzoWwuWfM52QkGBlCGcGWhQxoU9MG4F+4nuo4cwCJ7UZ2+bZaMik9ezpNtE9Cho4ZrtmUs6Yw5GXMYXBLi8Kowm1tqR1n0Tyfl6gZEVXaThVRUPBKu3Xe7Fi2xroM46+MZIMqUS223pExuCuU5iluL7zd12pZw9PF2c801vCrtJHd69kOIs7tYg9I60dhw8rdZOYZM6py9pS8rkQCccNt+Ydp1YMhGFYQBJK5NeA8AlQWijcujdrtda4KHMoeK1cdkS/qFuJ6xItHOd2VaPyFRJppyviK1hjovjIsjmwr5t4s5GSg8iU9iynjTg4GSqpBf7RowNkM+cWTJIBewIrOGFz2zR2Ez8i0VRhZBhz1jXhwYaR5fqFFWlW7s0+QbWI5rvLNwdI9hyx56x+ZU0onHRKCmFteWcO9X2u1BCr+WQ4gdobb2YEFCPJEWWD+XBR9VIIsky40EABes9LY1eFuT5TUIoZVVgTHfVHPz8CusF3dshzUtDUeJn8ughviD/xj3PpwCJYZj5tqA+oS1SslqJrDwPBz8ZSQ4swpVd8fcWt0mPbdtoznquSglM7jXdeMP9C+CVbD27oDDbdierf/NxnmPp8gRqLoBKfZ72YHqrba4G9g1+VACBqsve7rFulro3yIy3fvXCzCGIoBh3poSpWGD+6YUaYPQK8EdkZ/3JT7QzPGzImONwhJkfG1QG6eQtvxc+qQyW6lQq7Ey5FSAehNDSsPtlr+1TE2IBWn6th3ekAqtm2WUfRYdaQRsShs/Lf6mEPw5+Pu3/Cv31miyVCIQe+2+Ab49yQ3YyPTsD43UPmsRJUkJ1GrS3mGZyWBiXxEFTHr3lMl2Jdp2dxkXnifMl0Q6LFmBzanI2o2YK5vRAivnenQH45ZpikNxZLuuMJmBxNrFKOxp+1SroQVsgVHj6OenZzb8fcdOUWYzbfzBxUyymTu8mk+Mu4cWGNuooqpij9IYmU9hYh3JTl0FaYmkdfpIjBoPg1SDKleFc9RZgEV+C0zdrzTYO/Fuab9r+moJ1oarfh7du9wEUlS0e6FGfYdS6mUp0B5LAmCpQGQHLKNyHTJW1nJoZlX2MKUIoeaGmqTXLoC9ftTve05kblS+c9fuQy5ymzb50o4aiuKpud+O7S84vm/6ehrvArGuubzYsvGvu18DaVCECkA/xts3GbCjHcHXV+oKGcq7w7RY22ymszoTuUMTGCgALsuvbpVd0zbU2pyQXcYVYUwsfy/v0IPY4hrLhia+xHWk7gTugQZ2bKOxLHtcy1UiIwnKz90M3UR5sbVqR0HJtlcPSGxWTNW" />
<sysruletextcrypt rules="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" />
</root>