<?xml version="1.0" encoding="UTF-8"?><root>
	<information>
		<iceyefiletype>rulesystem</iceyefiletype>
		<version>5.6.0.313</version>
		<date>2013-06-07</date>
		<name>系统规则</name>
		<copyright>(c)1999-2009 NSFocus</copyright>
	</information>
	<sysruledesc>
		<rules>
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN用户下线通信" name_en_US="Instant Messaging Tool MSN User Offline Attempt" name_zh_CN="即时通信工具MSN用户下线通信" name_zh_TW="即時通信工具MSN用戶下線通信" ruleid="50088" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE cloneNode 8和9释放后重用远程代码执行漏洞" name_en_US="Microsoft Internet Explorer 8 and 9  cloneNode Use After Free Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE cloneNode 8和9释放后重用远程代码执行漏洞" name_zh_TW="Microsoft IE cloneNode 8和9釋放後重用遠程代碼執行漏洞" ruleid="22469" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE 8和9布局释放后重用远程代码执行漏洞" name_en_US="Microsoft IE 8 and 9  Layout Use After Free Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE 8和9布局释放后重用远程代码执行漏洞" name_zh_TW="Microsoft IE 8和9布局釋放後重用遠程代碼執行漏洞" ruleid="22468" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE 8和9事件监听器释放后重用远程代码执行漏洞" name_en_US="Microsoft IE 8 and 9 Event Listener Use After Free  Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE 8和9事件监听器释放后重用远程代码执行漏洞" name_zh_TW="Microsoft IE 8和9事件監聽器釋放後重用遠程代碼執行漏洞" ruleid="22467" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616815" module="0" name="Microsoft IE 8和9 OnMove释放后重用远程代码执行漏洞" name_en_US="Microsoft IE 8 and 9 OnMove Use After Free Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE 8和9 OnMove释放后重用远程代码执行漏洞" name_zh_TW="Microsoft IE 8和9 OnMove釋放後重用遠程代碼執行漏洞" ruleid="22466" visible="false" />
			<rule action=" db  screen " enabled="true" group="203425849" module="0" name="SQL注入远程转移数据攻击" name_en_US="Remote Data Transfer SQL Injection" name_zh_CN="SQL注入远程转移数据攻击" name_zh_TW="SQL注入遠程轉移數據攻擊" ruleid="21349" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE CElement 释放后重用远程代码执行漏洞(CVE-2013-0091)(MS13-021)" name_en_US="Microsoft Internet Explorer CElement Use After Free(CVE-2013-0091)(MS13-021)" name_zh_CN="Microsoft IE CElement 释放后重用远程代码执行漏洞(CVE-2013-0091)(MS13-021)" name_zh_TW="Microsoft IE CElement 釋放後重用遠程代碼執行漏洞(CVE-2013-0091)(MS13-021)" ruleid="22669" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE CCaret 释放后重用远程代码执行漏洞(CVE-2013-0090)(MS13-021)" name_en_US="Microsoft Internet Explorer CCaret Use After Free Remote Code Execution(CVE-2013-0090)(MS13-021)" name_zh_CN="Microsoft IE CCaret 释放后重用远程代码执行漏洞(CVE-2013-0090)(MS13-021)" name_zh_TW="Microsoft IE CCaret 釋放後重用遠程代碼執行漏洞(CVE-2013-0090)(MS13-021)" ruleid="22668" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE OnResize 释放后重用远程代码执行漏洞(CVE-2013-0087)(MS13-021)" name_en_US="Microsoft IE OnResize Use After Free Remote Code Execution(CVE-2013-0087)(MS13-021)" name_zh_CN="Microsoft IE OnResize 释放后重用远程代码执行漏洞(CVE-2013-0087)(MS13-021)" name_zh_TW="Microsoft IE OnResize 釋放後重用遠程代碼執行漏洞(CVE-2013-0087)(MS13-021)" ruleid="22665" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint OSSSearchResults.aspx 跨站脚本漏洞(CVE-2013-0083)(MS13-024)" name_en_US="Microsoft SharePoint OSSSearchResults.aspx XSS Vulnerability(CVE-2013-0083)(MS13-024)" name_zh_CN="Microsoft SharePoint OSSSearchResults.aspx 跨站脚本漏洞(CVE-2013-0083)(MS13-024)" name_zh_TW="Microsoft SharePoint OSSSearchResults.aspx 跨站腳本漏洞(CVE-2013-0083)(MS13-024)" ruleid="22664" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE CMarkupBehavio释放后重用远程代码执行漏洞(CVE-2013-0089)(MS13-021)" name_en_US="Microsoft Internet Explorer CMarkupBehavio Use After Free Remote Code Execution(CVE-2013-0089)(MS13-021)" name_zh_CN="Microsoft IE CMarkupBehavio释放后重用远程代码执行漏洞(CVE-2013-0089)(MS13-021)" name_zh_TW="Microsoft IE CMarkupBehavio釋放後重用遠程代碼執行漏洞(CVE-2013-0089)(MS13-021)" ruleid="22667" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE saveHistory 释放后重用远程代码执行漏洞(CVE-2013-0088)(MS13-021)" name_en_US="Microsoft Internet Explorer saveHistory Use After Free Remote Code Execution(CVE-2013-0088)(MS13-021)" name_zh_CN="Microsoft IE saveHistory 释放后重用远程代码执行漏洞(CVE-2013-0088)(MS13-021)" name_zh_TW="Microsoft IE saveHistory 釋放後重用遠程代碼執行漏洞(CVE-2013-0088)(MS13-021)" ruleid="22666" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206187" module="0" name="Microsoft SharePoint 回调函数权限提升漏洞(CVE-2013-0080)(MS13-024)" name_en_US="Microsoft SharePoint Callback Function Elevation of Privilege (CVE-2013-0080)(MS13-024)" name_zh_CN="Microsoft SharePoint 回调函数权限提升漏洞(CVE-2013-0080)(MS13-024)" name_zh_TW="Microsoft SharePoint 回調函數權限提升漏洞(CVE-2013-0080)(MS13-024)" ruleid="22663" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer VSD文件格式远程代码执行漏洞(CVE-2013-0079)(MS13-023)" name_en_US="Microsoft Visio Viewer VSD File Format Remote Code Execution(CVE-2013-0079)(MS13-023)" name_zh_CN="Microsoft Visio Viewer VSD文件格式远程代码执行漏洞(CVE-2013-0079)(MS13-023)" name_zh_TW="Microsoft Visio Viewer VSD文件格式遠程代碼執行漏洞(CVE-2013-0079)(MS13-023)" ruleid="22662" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Guestbook rguest.exe程序漏洞读取文件" name_en_US="File Reading via Guestbook rguest.exe Vulnerability" name_zh_CN="Guestbook rguest.exe程序漏洞读取文件" name_zh_TW="Guestbook rguest.exe程序漏洞讀取文件" ruleid="30119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft .NET Framework输入序列化远程代码执行漏洞(MS12-035,CVE-2012-0160)" name_en_US="CVE-2012-0160 Microsoft .NET Framework Serialization Remote Code Execution Vulnerability(MS12-035,CVE-2012-0160)" name_zh_CN="Microsoft .NET Framework输入序列化远程代码执行漏洞(MS12-035,CVE-2012-0160)" name_zh_TW="Microsoft .NET Framework輸入序列化遠程代碼執行漏洞(MS12-035,CVE-2012-0160)" ruleid="22261" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft GDI+堆溢出漏洞(MS12-034,CVE-2012-0167)" name_en_US="Microsoft GDI+ Heap Overflow Vulnerability(MS12-034,CVE-2012-0167)" name_zh_CN="Microsoft GDI+堆溢出漏洞(MS12-034,CVE-2012-0167)" name_zh_TW="Microsoft GDI+堆溢出漏洞(MS12-034,CVE-2012-0167)" ruleid="22260" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft .NET Framework缓冲区分配漏洞(MS12-035,CVE-2012-0162)" name_en_US="Microsoft .NET Framework Buffer Allocation Vulnerability(MS12-035,CVE-2012-0162)" name_zh_CN="Microsoft .NET Framework缓冲区分配漏洞(MS12-035,CVE-2012-0162)" name_zh_TW="Microsoft .NET Framework緩沖區分配漏洞(MS12-035,CVE-2012-0162)" ruleid="22263" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft .NET Framework序列化远程代码执行漏洞(MS12-035,CVE-2012-0161)" name_en_US="Microsoft .NET Framework Serialization Remote Code Execution Vulnerability(MS12-035,CVE-2012-0161)" name_zh_CN="Microsoft .NET Framework序列化远程代码执行漏洞(MS12-035,CVE-2012-0161)" name_zh_TW="Microsoft .NET Framework序列化遠程代碼執行漏洞(MS12-035,CVE-2012-0161)" ruleid="22262" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="Symantec Web Gateway远程shell命令执行攻击" name_en_US="Symantec Web Gateway Remote Shell Command Execution Attack" name_zh_CN="Symantec Web Gateway远程shell命令执行攻击" name_zh_TW="Symantec Web Gateway遠程shell命令執行攻擊" ruleid="22265" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Apache Struts2 XWork绕过安全限制执行任意命令攻击" name_en_US="Apache Struts2 XWork Bypass Security Restrictions To Execute Arbitrary Commands Attack" name_zh_CN="Apache Struts2 XWork绕过安全限制执行任意命令攻击" name_zh_TW="Apache Struts2 XWork繞過安全限制執行任意命令攻擊" ruleid="22264" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE中心元素远程代码执行漏洞(MS12-037)(CVE-2012-1523)" name_en_US="Microsoft Internet Explorer Center Element Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1523)" name_zh_CN="Microsoft IE中心元素远程代码执行漏洞(MS12-037)(CVE-2012-1523)" name_zh_TW="Microsoft IE中心元素遠程代碼執行漏洞(MS12-037)(CVE-2012-1523)" ruleid="22269" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft XML Core Services远程代码执行漏洞(CVE-2012-1889)" name_en_US="Microsoft XML Core Services Remote Code Execution Vulnerability(CVE-2012-1889)" name_zh_CN="Microsoft XML Core Services远程代码执行漏洞(CVE-2012-1889)" name_zh_TW="Microsoft XML Core Services遠程代碼執行漏洞(CVE-2012-1889)" ruleid="22268" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Cashpoint.com网络数据通信" name_en_US="Backdoor/Trojan Cashpoint.com Related checkin User-Agent okcpmgr" name_zh_CN="木马后门程序Cashpoint.com网络数据通信" name_zh_TW="木馬後門程序Cashpoint.com網絡數據通信" ruleid="40869" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序TeleCommando木马建立连接" name_en_US="Backdoor/Trojan TeleCommando Connection " name_zh_CN="木马后门程序TeleCommando木马建立连接" name_zh_TW="木馬後門程序TeleCommando木馬建立連接" ruleid="40029" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE 6/7/8/9 execCommand函数远程代码执行漏洞" name_en_US="Microsoft IE 6/7/8/9 execCommand Function Remote Execution" name_zh_CN="Microsoft IE 6/7/8/9 execCommand函数远程代码执行漏洞" name_zh_TW="Microsoft IE 6/7/8/9 execCommand函數遠程代碼執行漏洞" ruleid="22463" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare 文件操作" name_en_US="Remote Control Program PCShare Files Operation" name_zh_CN="远程控制程序 PCShare 文件操作" name_zh_TW="遠程控制程序 PCShare 文件操作" ruleid="40997" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft Excel SerAuxErrBar堆溢出漏洞(MS12-076)(CVE-2012-1885)" name_en_US="Microsoft Excel SerAuxErrBar Heap Overflow Vulnerability(MS12-076)(CVE-2012-1885)" name_zh_CN="Microsoft Excel SerAuxErrBar堆溢出漏洞(MS12-076)(CVE-2012-1885)" name_zh_TW="Microsoft Excel SerAuxErrBar堆溢出漏洞(MS12-076)(CVE-2012-1885)" ruleid="22509" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序TheThing木马连接通信" name_en_US="Backdoor/Trojan TheThing Connection " name_zh_CN="木马后门程序TheThing木马连接通信" name_zh_TW="木馬後門程序TheThing木馬連接通信" ruleid="40027" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898063" module="0" name="协议命令参数超长" name_en_US="Over-long Protocol Command Argument" name_zh_CN="协议命令参数超长" name_zh_TW="協議命令參數超長" ruleid="70001" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Unexplained木马建立连接" name_en_US="Backdoor/Trojan Unexplained Trojan Connection" name_zh_CN="木马后门程序Unexplained木马建立连接" name_zh_TW="木馬後門程序Unexplained木馬建立連接" ruleid="40026" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Cashpoint.com网络数据通信" name_en_US="Backdoor/Trojan Cashpoint.com Related checkin User-Agent inetinst" name_zh_CN="木马后门程序Cashpoint.com网络数据通信" name_zh_TW="木馬後門程序Cashpoint.com網絡數據通信" ruleid="40868" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Tabdim通信" name_en_US="Backdoor/Trojan Tabdim Communication " name_zh_CN="木马后门程序Tabdim通信" name_zh_TW="木馬後門程序Tabdim通信" ruleid="40723" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Delta Source木马通信" name_en_US="Backdoor/Trojan Delta Source Communication " name_zh_CN="木马后门程序Delta Source木马通信" name_zh_TW="木馬後門程序Delta Source木馬通信" ruleid="40024" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PHP-Nuke opendir.php脚本漏洞扫描探测" name_en_US="PHP-Nuke opendir.php Script Vulnerability Detection" name_zh_CN="PHP-Nuke opendir.php脚本漏洞扫描探测" name_zh_TW="PHP-Nuke opendir.php腳本漏洞掃描探測" ruleid="30442" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PHP/FI php.cgi脚本漏洞扫描探测" name_en_US="PHP/FI php.cgi Script Vulnerability Detection" name_zh_CN="PHP/FI php.cgi脚本漏洞扫描探测" name_zh_TW="PHP/FI php.cgi腳本漏洞掃描探測" ruleid="30115" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="VPOPMail vpopmail.php脚本漏洞扫描探测" name_en_US="VPOPMail vpopmail.php Script Vulnerability Detection" name_zh_CN="VPOPMail vpopmail.php脚本漏洞扫描探测" name_zh_TW="VPOPMail vpopmail.php腳本漏洞掃描探測" ruleid="30440" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft IIS 5.0 .printer ISAPI扩展映射远程缓冲区溢出攻击" name_en_US="Microsoft IIS 5.0 .printer ISAPI Extension Mapping Remote Buffer Overflow" name_zh_CN="Microsoft IIS 5.0 .printer ISAPI扩展映射远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 5.0 .printer ISAPI擴展映射遠程緩沖區溢出攻擊" ruleid="30441" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows远程安装服务远程任意指令执行漏洞" name_en_US="Microsoft Windows Remote Installation Service Remote Arbitrary Code Execution" name_zh_CN="Microsoft Windows远程安装服务远程任意指令执行漏洞" name_zh_TW="Microsoft Windows遠程安裝服務遠程任意指令執行漏洞" ruleid="60822" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel远程代码执行漏洞" name_zh_TW="Microsoft Excel遠程代碼執行漏洞" ruleid="21101" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel文件格式解析漏洞" name_en_US="Microsoft Excel File Format Parsing Vulnerability" name_zh_CN="Microsoft Excel文件格式解析漏洞" name_zh_TW="Microsoft Excel文件格式解析漏洞" ruleid="21100" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE CSS特殊字符信息泄露漏洞" name_en_US="Microsoft Internet Explorer CSS Special Character Information Disclosure Vulnerability" name_zh_CN="Microsoft IE CSS特殊字符信息泄露漏洞" name_zh_TW="Microsoft IE CSS特殊字符信息泄露漏洞" ruleid="21103" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel数组越界远程代码执行漏洞" name_en_US="Microsoft Excel Out of Bounds Array Remote Code Execution Vulnerability" name_zh_CN="Microsoft Excel数组越界远程代码执行漏洞" name_zh_TW="Microsoft Excel數組越界遠程代碼執行漏洞" ruleid="21102" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425838" module="0" name="Microsoft IE toStaticHTML远程跨站脚本漏洞" name_en_US="Microsoft Internet Explorer 'toStaticHTML' HTML Sanitizing Information Disclosure Vulnerability" name_zh_CN="Microsoft IE toStaticHTML远程跨站脚本漏洞" name_zh_TW="Microsoft IE toStaticHTML遠程跨站腳本漏洞" ruleid="21105" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE 未初始化内存破坏漏洞" name_en_US="Microsoft IE Uninitialized Memory Corruption Vulnerability" name_zh_CN="Microsoft IE 未初始化内存破坏漏洞" name_zh_TW="Microsoft IE 未初始化內存破壞漏洞" ruleid="21104" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208127" module="0" name="Microsoft IE跨域信息泄露漏洞" name_en_US="Microsoft Internet Explorer Cross-Domain Information Disclosure Vulnerability" name_zh_CN="Microsoft IE跨域信息泄露漏洞" name_zh_TW="Microsoft IE跨域信息泄露漏洞" ruleid="21106" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Media Player 内存破坏漏洞" name_en_US="Windows Media Player Memory Corruption Vulnerability " name_zh_CN="Windows Media Player 内存破坏漏洞" name_zh_TW="Windows Media Player 內存破壞漏洞" ruleid="21109" visible="true" />
			<rule action=" db  screen " enabled="true" group="68190254" module="0" name="Microsoft Internet Explorer JSON 数组信息泄露漏洞(CVE-2013-1297)(MS13-037)" name_en_US="Microsoft Internet Explorer JSON Array  Information Disclosure Vulnerability  (CVE-2013-1297)" name_zh_CN="Microsoft Internet Explorer JSON 数组信息泄露漏洞(CVE-2013-1297)(MS13-037)" name_zh_TW="Microsoft Internet Explorer JSON 數組信息泄露漏洞(CVE-2013-1297)(MS13-037)" ruleid="22716" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN传送文件企图通信" name_en_US="Instant Messaging Tool MSN Sending File  Attempt" name_zh_CN="即时通信工具MSN传送文件企图通信" name_zh_TW="即時通信工具MSN傳送文件企圖通信" ruleid="50089" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377263" module="0" name="nginx ngx_http_parse.c chunk处理栈溢出漏洞" name_en_US="nginx 'ngx_http_parse.c' Stack Buffer Overflow Vulnerability" name_zh_CN="nginx ngx_http_parse.c chunk处理栈溢出漏洞" name_zh_TW="nginx ngx_http_parse.c chunk處理棧溢出漏洞" ruleid="22712" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序WanRemote木马通信" name_en_US="Backdoor/Trojan WanRemote Communication " name_zh_CN="木马后门程序WanRemote木马通信" name_zh_TW="木馬後門程序WanRemote木馬通信" ruleid="40603" visible="true" />
			<rule action=" db  screen " enabled="false" group="222300207" module="0" name="Oracle Database身份验证协议离线口令破解漏洞" name_en_US="Oracle Database Authentication ProtocolSecurity Bypass Vulnerability" name_zh_CN="Oracle Database身份验证协议离线口令破解漏洞" name_zh_TW="Oracle Database身份驗證協議離線口令破解漏洞" ruleid="22487" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Vampire木马通信" name_en_US="Backdoor/Trojan Vampire Communication " name_zh_CN="木马后门程序Vampire木马通信" name_zh_TW="木馬後門程序Vampire木馬通信" ruleid="40601" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Vagrnocker木马通信" name_en_US="Backdoor/Trojan Vagrnocker Communication " name_zh_CN="木马后门程序Vagrnocker木马通信" name_zh_TW="木馬後門程序Vagrnocker木馬通信" ruleid="40600" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="HiveMail远程PHP代码注入攻击" name_en_US="HiveMail Remote PHP Code Injection" name_zh_CN="HiveMail远程PHP代码注入攻击" name_zh_TW="HiveMail遠程PHP代碼注入攻擊" ruleid="20744" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Clever Copy ID参数远程SQL注入攻击" name_en_US="Clever Copy ID Parameter Remote SQL Injection" name_zh_CN="Clever Copy ID参数远程SQL注入攻击" name_zh_TW="Clever Copy ID參數遠程SQL注入攻擊" ruleid="20745" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="WebspotBlogging login.php远程SQL注入攻击" name_en_US="WebspotBlogging login.php Remote SQL Injection" name_zh_CN="WebspotBlogging login.php远程SQL注入攻击" name_zh_TW="WebspotBlogging login.php遠程SQL注入攻擊" ruleid="20746" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="eFiction远程SQL注入攻击" name_en_US="eFiction Remote SQL Injection" name_zh_CN="eFiction远程SQL注入攻击" name_zh_TW="eFiction遠程SQL注入攻擊" ruleid="20747" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="TotalCalendar多个远程文件包含攻击" name_en_US="TotalCalendar multiple Remote File Inclusions" name_zh_CN="TotalCalendar多个远程文件包含攻击" name_zh_TW="TotalCalendar多個遠程文件包含攻擊" ruleid="20740" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Blursoft Blur6ex多个远程SQL注入攻击" name_en_US="Blursoft Blur6ex multiple Remote SQL Injections" name_zh_CN="Blursoft Blur6ex多个远程SQL注入攻击" name_zh_TW="Blursoft Blur6ex多個遠程SQL注入攻擊" ruleid="20741" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Owl Intranet Engine远程文件包含攻击" name_en_US="Owl Intranet Engine Remote File Inclusion" name_zh_CN="Owl Intranet Engine远程文件包含攻击" name_zh_TW="Owl Intranet Engine遠程文件包含攻擊" ruleid="20742" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHPKit UNC路径远程文件包含攻击" name_en_US="PHPKit UNC Path Remote File Inclusion" name_zh_CN="PHPKit UNC路径远程文件包含攻击" name_zh_TW="PHPKit UNC路徑遠程文件包含攻擊" ruleid="20743" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Website Baker远程SQL注入攻击" name_en_US="Website Baker Remote SQL Injection" name_zh_CN="Website Baker远程SQL注入攻击" name_zh_TW="Website Baker遠程SQL注入攻擊" ruleid="20748" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Edgewall Software Trac Search模块远程SQL注入攻击" name_en_US="Edgewall Software Trac Search Module Remote SQL Injection" name_zh_CN="Edgewall Software Trac Search模块远程SQL注入攻击" name_zh_TW="Edgewall Software Trac Search模塊遠程SQL注入攻擊" ruleid="20749" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Xanadu 1.0木马通信" name_en_US="Backdoor/Trojan Xanadu 1.0 Communication " name_zh_CN="木马后门程序Xanadu 1.0木马通信" name_zh_TW="木馬後門程序Xanadu 1.0木馬通信" ruleid="40608" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具恒生通用版I" name_en_US="Stock Analyzing/Trading Software Hong Sheng General Edition I" name_zh_CN="证券分析交易工具恒生通用版I" name_zh_TW="證券分析交易工具恒生通用版I" ruleid="51002" visible="true" />
			<rule action="" enabled="true" group="209780829" module="0" name="SMTP服务返回码535" name_en_US="SMTP Service Returning 535" name_zh_CN="SMTP服务返回码535" name_zh_TW="SMTP服務返回碼535" ruleid="70061" visible="false" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Mercur v5.0 IMAP SP3 SELECT命令缓冲区溢出漏洞" name_en_US="Mercur v5.0 IMAP SP3 SELECT Command Buffer Overflow Vulnerability" name_zh_CN="Mercur v5.0 IMAP SP3 SELECT命令缓冲区溢出漏洞" name_zh_TW="Mercur v5.0 IMAP SP3 SELECT命令緩沖區溢出漏洞" ruleid="21925" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE OLEAuto32.dll 远程代码执行漏洞(CVE-2011-1995)" name_en_US="Microsoft IE OLEAuto32.dll Remote Code Execution Vulnerability(CVE-2011-1995)" name_zh_CN="Microsoft IE OLEAuto32.dll 远程代码执行漏洞(CVE-2011-1995)" name_zh_TW="Microsoft IE OLEAuto32.dll 遠程代碼執行漏洞(CVE-2011-1995)" ruleid="21295" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546346" module="0" name="Mercur Messaging 2005 IMAP LOGIN命令缓冲区溢出漏洞" name_en_US="Mercur Messaging 2005 IMAP LOGIN Command Buffer Overflow Vulnerability" name_zh_CN="Mercur Messaging 2005 IMAP LOGIN命令缓冲区溢出漏洞" name_zh_TW="Mercur Messaging 2005 IMAP LOGIN命令緩沖區溢出漏洞" ruleid="21922" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="OnLoad Event 远程代码执行漏洞(CVE-2011-1997)" name_en_US="OnLoad Event Remote Code Execution Vulnerability(CVE-2011-1997)" name_zh_CN="OnLoad Event 远程代码执行漏洞(CVE-2011-1997)" name_zh_TW="OnLoad Event 遠程代碼執行漏洞(CVE-2011-1997)" ruleid="21297" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Option Element 远程代码执行漏洞(CVE-2011-1996)" name_en_US="Microsoft IE Option Element Remote Code Execution Vulnerability(CVE-2011-1996)" name_zh_CN="Microsoft IE Option Element 远程代码执行漏洞(CVE-2011-1996)" name_zh_TW="Microsoft IE Option Element 遠程代碼執行漏洞(CVE-2011-1996)" ruleid="21296" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="SelectElement 远程代码执行漏洞(cve-2011-1999)" name_en_US="SelectElement Remote Code Execution Vulnerability(cve-2011-1999)" name_zh_CN="SelectElement 远程代码执行漏洞(cve-2011-1999)" name_zh_TW="SelectElement 遠程代碼執行漏洞(cve-2011-1999)" ruleid="21299" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Jscript9.dll 远程代码执行漏洞(cve-2011-1998)" name_en_US="Jscript9.dll Remote Code Execution Vulnerability(cve-2011-1998)" name_zh_CN="Jscript9.dll 远程代码执行漏洞(cve-2011-1998)" name_zh_TW="Jscript9.dll 遠程代碼執行漏洞(cve-2011-1998)" ruleid="21298" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sunway Forcecontrol SNMP NetDBServer.exe Opcode 0x57缓冲区溢出漏洞" name_en_US="Sunway Forcecontrol SNMP NetDBServer.exe Opcode 0x57 Vulnerability" name_zh_CN="Sunway Forcecontrol SNMP NetDBServer.exe Opcode 0x57缓冲区溢出漏洞" name_zh_TW="Sunway Forcecontrol SNMP NetDBServer.exe Opcode 0x57緩沖區溢出漏洞" ruleid="21929" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834522" module="0" name="IBM DB2 Discovery服务UDP远程拒绝服务攻击" name_en_US="IBM DB2 Discovery Service UDP Remote Denial of Service" name_zh_CN="IBM DB2 Discovery服务UDP远程拒绝服务攻击" name_zh_TW="IBM DB2 Discovery服務UDP遠程拒絕服務攻擊" ruleid="10141" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425818" module="0" name="Oracle9iAS Web Cache远程拒绝服务攻击" name_en_US="Oracle9iAS Web Cache Remote Denial of Service" name_zh_CN="Oracle9iAS Web Cache远程拒绝服务攻击" name_zh_TW="Oracle9iAS Web Cache遠程拒絕服務攻擊" ruleid="10140" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="Microsoft Windows即插即用功能远程缓冲区溢出攻击(CVE-2005-1983)" name_en_US="Microsoft Windows Plug and Play Function Remote Buffer Overflow(CVE-2005-1983)" name_zh_CN="Microsoft Windows即插即用功能远程缓冲区溢出攻击(CVE-2005-1983)" name_zh_TW="Microsoft Windows即插即用功能遠程緩沖區溢出攻擊(CVE-2005-1983)" ruleid="20522" visible="true" />
			<rule action=" db  screen " enabled="true" group="272631834" module="0" name="Cisco IOS TELNET环境变量处理拒绝服务攻击" name_en_US="Cisco IOS TELNET Environment Variable Handling Denial of Service" name_zh_CN="Cisco IOS TELNET环境变量处理拒绝服务攻击" name_zh_TW="Cisco IOS TELNET環境變量處理拒絕服務攻擊" ruleid="10145" visible="true" />
			<rule action=" db  screen " enabled="true" group="275777562" module="0" name="Cisco VPN 3000系列畸形SSH初始化包拒绝服务攻击" name_en_US="Cisco VPN 3000 Series Malformed SSH Initialization Packet Denial of Service" name_zh_CN="Cisco VPN 3000系列畸形SSH初始化包拒绝服务攻击" name_zh_TW="Cisco VPN 3000系列畸形SSH初始化包拒絕服務攻擊" ruleid="10144" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Zorum prod.php远程执行命令攻击" name_en_US="Zorum prod.php Remote Command Execution" name_zh_CN="Zorum prod.php远程执行命令攻击" name_zh_TW="Zorum prod.php遠程執行命令攻擊" ruleid="20526" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886407" module="0" name="网络蠕虫ZoTob利用MS05-039漏洞传播" name_en_US="Network Worm ZoTob Propagation via MS05-039 Vulnerability" name_zh_CN="网络蠕虫ZoTob利用MS05-039漏洞传播" name_zh_TW="網絡蠕蟲ZoTob利用MS05-039漏洞傳播" ruleid="20527" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="WebCalendar send_reminders.php远程执行命令攻击" name_en_US="WebCalendar send_reminders.php Remote Command Execution" name_zh_CN="WebCalendar send_reminders.php远程执行命令攻击" name_zh_TW="WebCalendar send_reminders.php遠程執行命令攻擊" ruleid="20528" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.323协议Called Party Number数据畸形" name_en_US="H.323 Protocol Called Party Number Malformed Data" name_zh_CN="H.323协议Called Party Number数据畸形" name_zh_TW="H.323協議Called Party Number數據畸形" ruleid="10148" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell插入后门" name_en_US="Backdoor/Trojan Haiyang Dingduan Net ASP Trojan 2006 Official Version Insert Backdoor" name_zh_CN="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell插入后门" name_zh_TW="木馬後門程序海陽頂端網ASP木馬2006官方正式版Webshell插入後門" ruleid="40988" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Darksk ASP木马登录" name_en_US="Backdoor/Trojan Darksk ASP Trojan Login" name_zh_CN="木马后门程序Darksk ASP木马登录" name_zh_TW="木馬後門程序Darksk ASP木馬登錄" ruleid="40989" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPAdmin Webshell检测" name_en_US="Backdoor/Trojan ASPAdmin Webshell Detection" name_zh_CN="木马后门程序ASPAdmin Webshell检测" name_zh_TW="木馬後門程序ASPAdmin Webshell檢測" ruleid="40954" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="木马后门程序Rootkit系统操作" name_en_US="Backdoor/Trojan Rootkit System Operation" name_zh_CN="木马后门程序Rootkit系统操作" name_zh_TW="木馬後門程序Rootkit系統操作" ruleid="40980" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="木马后门程序黑基ASP大马v2009 Webshell 打开目录" name_en_US="Backdoor/Trojan Heiji ASP Dama v2009 Webshell Open Directory" name_zh_CN="木马后门程序黑基ASP大马v2009 Webshell 打开目录" name_zh_TW="木馬後門程序黑基ASP大馬v2009 Webshell 打開目錄" ruleid="40981" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="木马后门程序黑基ASP大马v2009 Webshell编辑操作" name_en_US="Backdoor/Trojan Heiji ASP Dama v2009 Webshell Editing Operation" name_zh_CN="木马后门程序黑基ASP大马v2009 Webshell编辑操作" name_zh_TW="木馬後門程序黑基ASP大馬v2009 Webshell編輯操作" ruleid="40982" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="木马后门程序黑基ASP大马v2009 Webshell下载文件" name_en_US="Backdoor/Trojan Heiji ASP Dama v2009 Webshell Download Files" name_zh_CN="木马后门程序黑基ASP大马v2009 Webshell下载文件" name_zh_TW="木馬後門程序黑基ASP大馬v2009 Webshell下載文件" ruleid="40983" visible="true" />
			<rule action=" db  screen " enabled="true" group="143655215" module="0" name="GNU Mailutils 0.6 imap4d SEARCH命令远程格式串溢出攻击" name_en_US="GNU Mailutils 0.6 imap4d SEARCH Command Remote Format String Buffer Overflow" name_zh_CN="GNU Mailutils 0.6 imap4d SEARCH命令远程格式串溢出攻击" name_zh_TW="GNU Mailutils 0.6 imap4d SEARCH命令遠程格式串溢出攻擊" ruleid="20529" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell登录" name_en_US="Backdoor/Trojan Haiyang Dingduan Net ASP Trojan 2006 Official Version Webshell Login" name_zh_CN="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell登录" name_zh_TW="木馬後門程序海陽頂端網ASP木馬2006官方正式版Webshell登錄" ruleid="40985" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell下载文件" name_en_US="Backdoor/Trojan Haiyang Dingduan Net ASP Trojan 2006 Official Version Download Files" name_zh_CN="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell下载文件" name_zh_TW="木馬後門程序海陽頂端網ASP木馬2006官方正式版Webshell下載文件" ruleid="40986" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell上传文件" name_en_US="Backdoor/Trojan Haiyang Dingduan Net ASP Trojan 2006 Official Version Upload Files" name_zh_CN="木马后门程序海阳顶端网ASP木马2006官方正式版Webshell上传文件" name_zh_TW="木馬後門程序海陽頂端網ASP木馬2006官方正式版Webshell上傳文件" ruleid="40987" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通讯工具飞秋聊天软件文件传输" name_en_US="Insant Messaging Tool Feiqiu IM File Transfer" name_zh_CN="即时通讯工具飞秋聊天软件文件传输" name_zh_TW="即時通訊工具飛秋聊天軟件文件傳輸" ruleid="50353" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Zeroboard _head.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Zeroboard _head.php Script Vulnerability" name_zh_CN="Zeroboard _head.php脚本漏洞远程执行命令" name_zh_TW="Zeroboard _head.php腳本漏洞遠程執行命令" ruleid="20090" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序VIRUS Worm.Pyks B类木马网络数据通信" name_en_US="Backdoor/Trojan VIRUS Worm.Pyks HTTP C&amp;C Post Traffic User-Agent h9tslbw0" name_zh_CN="木马后门程序VIRUS Worm.Pyks B类木马网络数据通信" name_zh_TW="木馬後門程序VIRUS Worm.Pyks B類木馬網絡數據通信" ruleid="40943" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703783" module="0" name="BIND iquery远程缓冲区溢出攻击(UDP)" name_en_US="BIND iquery Remote Buffer Overflow(UDP)" name_zh_CN="BIND iquery远程缓冲区溢出攻击(UDP)" name_zh_TW="BIND iquery遠程緩沖區溢出攻擊(UDP)" ruleid="20091" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Solaris CDE dtspcd远程缓冲区溢出攻击" name_en_US="Solaris CDE dtspcd Remote Buffer Overflow" name_zh_CN="Solaris CDE dtspcd远程缓冲区溢出攻击" name_zh_TW="Solaris CDE dtspcd遠程緩沖區溢出攻擊" ruleid="20093" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序CDK木马建立连接" name_en_US="Backdoor/Trojan CDK Connection " name_zh_CN="木马后门程序CDK木马建立连接" name_zh_TW="木馬後門程序CDK木馬建立連接" ruleid="40184" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="WebGlimpse aglimpse脚本漏洞" name_en_US="WebGlimpse aglimpse Script Vulnerability" name_zh_CN="WebGlimpse aglimpse脚本漏洞" name_zh_TW="WebGlimpse aglimpse腳本漏洞" ruleid="20094" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="B2 b2edit.showposts.php脚本漏洞" name_en_US="B2 b2edit.showposts.php Script Vulnerability" name_zh_CN="B2 b2edit.showposts.php脚本漏洞" name_zh_TW="B2 b2edit.showposts.php腳本漏洞" ruleid="20095" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft PCT协议远程缓冲区溢出攻击" name_en_US="Microsoft PCT Protocol Remote Buffer Overflow" name_zh_CN="Microsoft PCT协议远程缓冲区溢出攻击" name_zh_TW="Microsoft PCT協議遠程緩沖區溢出攻擊" ruleid="20418" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="psinclude.cgi脚本漏洞远程执行命令" name_en_US="Remote Command Execution via psinclude.cgi Script Vulnerability" name_zh_CN="psinclude.cgi脚本漏洞远程执行命令" name_zh_TW="psinclude.cgi腳本漏洞遠程執行命令" ruleid="20419" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315179" module="0" name="PHP Post文件上传缓冲区溢出攻击" name_en_US="PHP Post File Upload Buffer Overflow" name_zh_CN="PHP Post文件上传缓冲区溢出攻击" name_zh_TW="PHP Post文件上傳緩沖區溢出攻擊" ruleid="20416" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256670" module="0" name="Serv-U FTP服务器LIST命令超长-l参数远程拒绝服务攻击" name_en_US="Serv-U FTP Server LIST Command Over-long Parameter &quot;-1&quot; Remote Denial of Service" name_zh_CN="Serv-U FTP服务器LIST命令超长-l参数远程拒绝服务攻击" name_zh_TW="Serv-U FTP服務器LIST命令超長-l參數遠程拒絕服務攻擊" ruleid="20417" visible="true" />
			<rule action=" db  screen " enabled="false" group="204472619" module="0" name="FTP服务NLST命令超长参数溢出攻击" name_en_US="FTP Service NLST Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务NLST命令超长参数溢出攻击" name_zh_TW="FTP服務NLST命令超長參數溢出攻擊" ruleid="20410" visible="false" />
			<rule action=" db  screen " enabled="false" group="99615023" module="0" name="Windows 95/98 UNC远程溢出攻击" name_en_US="Windows 95/98 UNC Remote Buffer Overflow" name_zh_CN="Windows 95/98 UNC远程溢出攻击" name_zh_TW="Windows 95/98 UNC遠程溢出攻擊" ruleid="20411" visible="false" />
			<rule action=" db  screen " enabled="true" group="135268390" module="0" name="Apache Web Server分块畸形编码传输" name_en_US="Apache Web Server Malicious Chunked-Encoding Transmission" name_zh_CN="Apache Web Server分块畸形编码传输" name_zh_TW="Apache Web Server分塊畸形編碼傳輸" ruleid="20412" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows LSA服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows LSA Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows LSA服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows LSA服務遠程緩沖區溢出攻擊" ruleid="20413" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="chetcpasswd.cgi脚本漏洞扫描探测" name_en_US="chetcpasswd.cgi Script Vulnerability Detection" name_zh_CN="chetcpasswd.cgi脚本漏洞扫描探测" name_zh_TW="chetcpasswd.cgi腳本漏洞掃描探測" ruleid="30411" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="CSM Mailserver HELO命令远程缓冲区溢出攻击" name_en_US="CSM Mailserver HELO Command Remote Buffer Overflow" name_zh_CN="CSM Mailserver HELO命令远程缓冲区溢出攻击" name_zh_TW="CSM Mailserver HELO命令遠程緩沖區溢出攻擊" ruleid="10092" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Oracle 9i应用服务程序示例脚本扫描探测" name_en_US="Oracle 9i Application Server Sample Script Detection" name_zh_CN="Oracle 9i应用服务程序示例脚本扫描探测" name_zh_TW="Oracle 9i應用服務程序示例腳本掃描探測" ruleid="30413" visible="true" />
			<rule action=" db  screen " enabled="true" group="99614998" module="0" name="Artisoft XtraMail远程拒绝服务攻击" name_en_US="Artisoft XtraMail Remote Denial of Service" name_zh_CN="Artisoft XtraMail远程拒绝服务攻击" name_zh_TW="Artisoft XtraMail遠程拒絕服務攻擊" ruleid="10090" visible="true" />
			<rule action=" db  screen " enabled="true" group="88081487" module="0" name="网络蠕虫MSSQL Slammer攻击" name_en_US="Network Worm MSSQL Slammer Attack" name_zh_CN="网络蠕虫MSSQL Slammer攻击" name_zh_TW="網絡蠕蟲MSSQL Slammer攻擊" ruleid="10097" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256662" module="0" name="Platinum FTP Server远程拒绝服务攻击" name_en_US="Platinum FTP Server Remote Denial of Service" name_zh_CN="Platinum FTP Server远程拒绝服务攻击" name_zh_TW="Platinum FTP Server遠程拒絕服務攻擊" ruleid="10096" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316955" module="0" name="PHP-Nuke modules.php脚本漏洞拒绝服务攻击" name_en_US="Denial of Service via PHP-Nuke modules.php Script Vulnerability" name_zh_CN="PHP-Nuke modules.php脚本漏洞拒绝服务攻击" name_zh_TW="PHP-Nuke modules.php腳本漏洞拒絕服務攻擊" ruleid="10095" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="myPHPNuke system_footer.php脚本漏洞扫描探测" name_en_US="myPHPNuke system_footer.php Script Vulnerability Detection" name_zh_CN="myPHPNuke system_footer.php脚本漏洞扫描探测" name_zh_TW="myPHPNuke system_footer.php腳本漏洞掃描探測" ruleid="30416" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="EditTag edittag.cgi脚本漏洞远程读取任意文件" name_en_US="Remote Arbitrary File Reading via EditTag edittag.cgi Script Vulnerability" name_zh_CN="EditTag edittag.cgi脚本漏洞远程读取任意文件" name_zh_TW="EditTag edittag.cgi腳本漏洞遠程讀取任意文件" ruleid="30419" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="psunami.cgi脚本漏洞扫描探测" name_en_US="psunami.cgi Script Vulnerability Detection" name_zh_CN="psunami.cgi脚本漏洞扫描探测" name_zh_TW="psunami.cgi腳本漏洞掃描探測" ruleid="30418" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256666" module="0" name="Windows NT IIS/4.0 FTP NLST命令远程拒绝服务攻击" name_en_US="Windows NT IIS/4.0 FTP NLST Command Remote Denial of Service" name_zh_CN="Windows NT IIS/4.0 FTP NLST命令远程拒绝服务攻击" name_zh_TW="Windows NT IIS/4.0 FTP NLST命令遠程拒絕服務攻擊" ruleid="10098" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行中国建设银行用户登录" name_en_US="Internet Banking China Construction Bank User Login" name_zh_CN="网上银行中国建设银行用户登录" name_zh_TW="網上銀行中國建設銀行用戶登錄" ruleid="50310" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序CMDASP Webshell检测" name_en_US="Backdoor/Trojan CMDASP Webshell Detection" name_zh_CN="木马后门程序CMDASP Webshell检测" name_zh_TW="木馬後門程序CMDASP Webshell檢測" ruleid="40959" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Nabopoll survey.inc.php远程文件包含攻击" name_en_US="Nabopoll survey.inc.php Remote File Inclusion" name_zh_CN="Nabopoll survey.inc.php远程文件包含攻击" name_zh_TW="Nabopoll survey.inc.php遠程文件包含攻擊" ruleid="20793" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2453)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2453)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2453)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2453)" ruleid="21319" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="YaBB YaBB.pl脚本漏洞攻击" name_en_US="YaBB YaBB.pl Script Vulnerability" name_zh_CN="YaBB YaBB.pl脚本漏洞攻击" name_zh_TW="YaBB YaBB.pl腳本漏洞攻擊" ruleid="30329" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="SIX-webboard generate.cgi脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via SIX-webboard generate.cgi Script Vulnerability" name_zh_CN="SIX-webboard generate.cgi脚本漏洞远程遍历目录" name_zh_TW="SIX-webboard generate.cgi腳本漏洞遠程遍曆目錄" ruleid="30328" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft Certification Service 跨站脚本攻击" name_en_US="Microsoft Certification Service XSS Vulnerability" name_zh_CN="Microsoft Certification Service 跨站脚本攻击" name_zh_TW="Microsoft Certification Service 跨站腳本攻擊" ruleid="21253" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="ans.pl脚本漏洞扫描探测" name_en_US="ans.pl Script Vulnerability Detection" name_zh_CN="ans.pl脚本漏洞扫描探测" name_zh_TW="ans.pl腳本漏洞掃描探測" ruleid="30323" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="store.cgi脚本漏洞扫描利用" name_en_US="store.cgi Script Vulnerability Detection" name_zh_CN="store.cgi脚本漏洞扫描利用" name_zh_TW="store.cgi腳本漏洞掃描利用" ruleid="30322" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="Lotus Domino Server远程目录遍历攻击" name_en_US="Lotus Domino Server Remote Directory Traversal" name_zh_CN="Lotus Domino Server远程目录遍历攻击" name_zh_TW="Lotus Domino Server遠程目錄遍曆攻擊" ruleid="30321" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206186" module="0" name="Business Objects Crystal Reports Web表单查看器目录遍历攻击" name_en_US="Business Objects Crystal Reports Web Form Viewer Directory Traversal" name_zh_CN="Business Objects Crystal Reports Web表单查看器目录遍历攻击" name_zh_TW="Business Objects Crystal Reports Web表單查看器目錄遍曆攻擊" ruleid="20659" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="SIX-webboard generate.cgi脚本漏洞扫描探测" name_en_US="SIX-webboard generate.cgi Script Vulnerability Detection" name_zh_CN="SIX-webboard generate.cgi脚本漏洞扫描探测" name_zh_TW="SIX-webboard generate.cgi腳本漏洞掃描探測" ruleid="30327" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="agora.cgi脚本漏洞扫描利用" name_en_US="agora.cgi Script Vulnerability Detection" name_zh_CN="agora.cgi脚本漏洞扫描利用" name_zh_TW="agora.cgi腳本漏洞掃描利用" ruleid="30326" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="AHG search.cgi脚本漏洞扫描探测" name_en_US="AHG search.cgi Script Vulnerability Detection" name_zh_CN="AHG search.cgi脚本漏洞扫描探测" name_zh_TW="AHG search.cgi腳本漏洞掃描探測" ruleid="30325" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="ans.pl脚本远程漏洞遍历目录" name_en_US="Remote Directory Traversal via ans.pl Script" name_zh_CN="ans.pl脚本远程漏洞遍历目录" name_zh_TW="ans.pl腳本遠程漏洞遍曆目錄" ruleid="30324" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Allaire ColdFusion未公开CFML标记漏洞扫描探测" name_en_US="Allaire ColdFusion Undocumented CFML Tags Vulnerability Detection" name_zh_CN="Allaire ColdFusion未公开CFML标记漏洞扫描探测" name_zh_TW="Allaire ColdFusion未公開CFML標記漏洞掃描探測" ruleid="20250" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS .htr文件名截断漏洞获取脚本源码攻击" name_en_US="Microsoft IIS .htr Filename Truncation Vulnerability Script Source Code Disclosure" name_zh_CN="Microsoft IIS .htr文件名截断漏洞获取脚本源码攻击" name_zh_TW="Microsoft IIS .htr文件名截斷漏洞獲取腳本源碼攻擊" ruleid="40289" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpCoin远程文件包含攻击" name_en_US="phpCoin Remote File Inclusion" name_zh_CN="phpCoin远程文件包含攻击" name_zh_TW="phpCoin遠程文件包含攻擊" ruleid="20653" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序近墨者通信" name_en_US="Backdoor/Trojan Jinmozhe Communication " name_zh_CN="木马后门程序近墨者通信" name_zh_TW="木馬後門程序近墨者通信" ruleid="40742" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware Gator下载安装程序" name_en_US="Adware Gator Downloading Installer on Windows" name_zh_CN="Windows系统下Adware Gator下载安装程序" name_zh_TW="Windows系統下Adware Gator下載安裝程序" ruleid="40743" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware AproposMedia下载安装程序" name_en_US="Adware AproposMedia Downloading Installer on Windows" name_zh_CN="Windows系统下Adware AproposMedia下载安装程序" name_zh_TW="Windows系統下Adware AproposMedia下載安裝程序" ruleid="40740" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序黑客帝国ASP后门访问" name_en_US="Backdoor/Trojan Hacker's Empire ASP Backdoor " name_zh_CN="木马后门程序黑客帝国ASP后门访问" name_zh_TW="木馬後門程序黑客帝國ASP後門訪問" ruleid="40741" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Caucho Resin viewfile获取脚本源码攻击" name_en_US="Caucho Resin viewfile Script Source Code Disclosure" name_zh_CN="Caucho Resin viewfile获取脚本源码攻击" name_zh_TW="Caucho Resin viewfile獲取腳本源碼攻擊" ruleid="30529" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834538" module="0" name="Helix Server DESCRIBE请求远程堆溢出攻击" name_en_US="Helix Server DESCRIBE Request Remote Stack Overflow" name_zh_CN="Helix Server DESCRIBE请求远程堆溢出攻击" name_zh_TW="Helix Server DESCRIBE請求遠程堆溢出攻擊" ruleid="20799" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware TopMoxie下载安装程序" name_en_US="Adware TopMoxie Downloading Installer on Windows" name_zh_CN="Windows系统下Adware TopMoxie下载安装程序" name_zh_TW="Windows系統下Adware TopMoxie下載安裝程序" ruleid="40744" visible="true" />
			<rule action=" db  screen " enabled="true" group="88088634" module="0" name="Microsoft SQL Server预验证过程远程缓冲区漏洞探测" name_en_US="Microsoft SQL Server Pre-authentication Process Buffer Vulnerability Detection" name_zh_CN="Microsoft SQL Server预验证过程远程缓冲区漏洞探测" name_zh_TW="Microsoft SQL Server預驗證過程遠程緩沖區漏洞探測" ruleid="30524" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="vBulletin Calendar.php脚本漏洞扫描探测" name_en_US="vBulletin Calendar.php Script Vulnerability Detection" name_zh_CN="vBulletin Calendar.php脚本漏洞扫描探测" name_zh_TW="vBulletin Calendar.php腳本漏洞掃描探測" ruleid="30255" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows TCP/IP引用计数溢出漏洞(MS11-083,CVE-2011-2013)" name_en_US="Microsoft Windows TCP/IP Stack Reference Counter Integer Overflow Vulnerability(MS11-083,CVE-2011-2013)" name_zh_CN="Microsoft Windows TCP/IP引用计数溢出漏洞(MS11-083,CVE-2011-2013)" name_zh_TW="Microsoft Windows TCP/IP引用計數溢出漏洞(MS11-083,CVE-2011-2013)" ruleid="21313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Tomcat 4.x远程获取JSP源代码攻击" name_en_US="Tomcat 4.x Remote JSP Source Code Disclosure" name_zh_CN="Tomcat 4.x远程获取JSP源代码攻击" name_zh_TW="Tomcat 4.x遠程獲取JSP源代碼攻擊" ruleid="30253" visible="true" />
			<rule action=" db  screen " enabled="true" group="347144278" module="0" name="TFTP服务获取Cisco IP Phone 7960配置文件" name_en_US="Cisco IP Phone 7960 Configuration File Disclosure via TFTP Service" name_zh_CN="TFTP服务获取Cisco IP Phone 7960配置文件" name_zh_TW="TFTP服務獲取Cisco IP Phone 7960配置文件" ruleid="30252" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问&quot;/globals.jsa&quot;获取Oracle 9iAS配置信息攻击" name_en_US="Oracle 9iAS Config Information Disclosure via &quot;/globals.jsa&quot;" name_zh_CN="访问&quot;/globals.jsa&quot;获取Oracle 9iAS配置信息攻击" name_zh_TW="訪問&quot;/globals.jsa&quot;獲取Oracle 9iAS配置信息攻擊" ruleid="30251" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Oracle 9iAS 访问&quot;/_pages&quot;获取JSP源码攻击" name_en_US="Oracle 9iAS JSP Source Code Disclosure via &quot;/_pages&quot;" name_zh_CN="Oracle 9iAS 访问&quot;/_pages&quot;获取JSP源码攻击" name_zh_TW="Oracle 9iAS 訪問&quot;/_pages&quot;獲取JSP源碼攻擊" ruleid="30250" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序BLEEDING-EDGE网络数据通信" name_en_US="Backdoor/Trojan BLEEDING-EDGE WORM MySQL bot DNS lookup B" name_zh_CN="木马后门程序BLEEDING-EDGE网络数据通信" name_zh_TW="木馬後門程序BLEEDING-EDGE網絡數據通信" ruleid="40850" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Bluefire木马连接建立" name_en_US="Backdoor/Trojan Bluefire Connection " name_zh_CN="木马后门程序Bluefire木马连接建立" name_zh_TW="木馬後門程序Bluefire木馬連接建立" ruleid="40327" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序冰河木马通信" name_en_US="Backdoor/Trojan Glacier Trojan Communication " name_zh_CN="木马后门程序冰河木马通信" name_zh_TW="木馬後門程序冰河木馬通信" ruleid="40328" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序The Prayer木马通信" name_en_US="Backdoor/Trojan The Prayer Communication " name_zh_CN="木马后门程序The Prayer木马通信" name_zh_TW="木馬後門程序The Prayer木馬通信" ruleid="40568" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序PrivatePort木马通信" name_en_US="Backdoor/Trojan PrivatePort Communication " name_zh_CN="木马后门程序PrivatePort木马通信" name_zh_TW="木馬後門程序PrivatePort木馬通信" ruleid="40569" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台中国游戏中心登录" name_en_US="Online Game Platform &quot;chinagames.net&quot; Login" name_zh_CN="网络游戏平台中国游戏中心登录" name_zh_TW="網絡遊戲平台中國遊戲中心登錄" ruleid="50099" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序NCX木马连接建立" name_en_US="Backdoor/Trojan NCX Connection " name_zh_CN="木马后门程序NCX木马连接建立" name_zh_TW="木馬後門程序NCX木馬連接建立" ruleid="40329" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序OOTLT木马通信" name_en_US="Backdoor/Trojan OOTLT Communication " name_zh_CN="木马后门程序OOTLT木马通信" name_zh_TW="木馬後門程序OOTLT木馬通信" ruleid="40562" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Optix木马通信" name_en_US="Backdoor/Trojan Optix Communication " name_zh_CN="木马后门程序Optix木马通信" name_zh_TW="木馬後門程序Optix木馬通信" ruleid="40563" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Olive木马通信" name_en_US="Backdoor/Trojan Olive Communication " name_zh_CN="木马后门程序Olive木马通信" name_zh_TW="木馬後門程序Olive木馬通信" ruleid="40560" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序One木马通信" name_en_US="Backdoor/Trojan One Communication " name_zh_CN="木马后门程序One木马通信" name_zh_TW="木馬後門程序One木馬通信" ruleid="40561" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Phoenix木马通信" name_en_US="Backdoor/Trojan Phoenix Communication " name_zh_CN="木马后门程序Phoenix木马通信" name_zh_TW="木馬後門程序Phoenix木馬通信" ruleid="40566" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序PitFall木马通信" name_en_US="Backdoor/Trojan PitFall Communication " name_zh_CN="木马后门程序PitFall木马通信" name_zh_TW="木馬後門程序PitFall木馬通信" ruleid="40567" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Oxon木马通信" name_en_US="Backdoor/Trojan Oxon Communication " name_zh_CN="木马后门程序Oxon木马通信" name_zh_TW="木馬後門程序Oxon木馬通信" ruleid="40564" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序PC Invader木马通信" name_en_US="Backdoor/Trojan PC Invader Communication " name_zh_CN="木马后门程序PC Invader木马通信" name_zh_TW="木馬後門程序PC Invader木馬通信" ruleid="40565" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="通过HTTP协议下载ISO文件" name_en_US="Downloading ISO Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载ISO文件" name_zh_TW="通過HTTP協議下載ISO文件" ruleid="50259" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="通过HTTP协议下载压缩文件" name_en_US="Downloading Compressed Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载压缩文件" name_zh_TW="通過HTTP協議下載壓縮文件" ruleid="50258" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="H-Sphere WebShell脚本漏洞扫描探测" name_en_US="H-Sphere WebShell Script Vulnerability Detection" name_zh_CN="H-Sphere WebShell脚本漏洞扫描探测" name_zh_TW="H-Sphere WebShell腳本漏洞掃描探測" ruleid="30414" visible="true" />
			<rule action=" db  screen " enabled="false" group="301006937" module="1" name="网络未知加密数据传输" name_en_US="Unknown Encrypted Data Transfering" name_zh_CN="网络未知加密数据传输" name_zh_TW="網絡未知加密數據傳輸" ruleid="50255" visible="true" />
			<rule action=" db  screen " enabled="true" group="301006937" module="1" name="HTTP协议多线程文件下载" name_en_US="HTTP Protocol Multithreading Downloading Files" name_zh_CN="HTTP协议多线程文件下载" name_zh_TW="HTTP協議多線程文件下載" ruleid="50254" visible="false" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="通过HTTP协议下载可执行文件" name_en_US="Downloading Executable Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载可执行文件" name_zh_TW="通過HTTP協議下載可執行文件" ruleid="50257" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963609" module="1" name="即时通讯工具飞鸽传输数据通信" name_en_US="Insant Messaging Tool Pigeon Downloading Files" name_zh_CN="即时通讯工具飞鸽传输数据通信" name_zh_TW="即時通訊工具飛鴿傳輸數據通信" ruleid="50256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="远程控制工具TeamViewer连接控制" name_en_US="Remote Control Tool TeamViewer Connection Control" name_zh_CN="远程控制工具TeamViewer连接控制" name_zh_TW="遠程控制工具TeamViewer連接控制" ruleid="50251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具FS2YOU文件下载" name_en_US="P2P File Sharing Tool FS2YOU Downloading Files" name_zh_CN="P2P文件共享工具FS2YOU文件下载" name_zh_TW="P2P文件共享工具FS2YOU文件下載" ruleid="50250" visible="true" />
			<rule action=" db  screen " enabled="true" group="435224665" module="1" name="通过HTTP协议下载视频文件" name_en_US="Downloading Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载视频文件" name_zh_TW="通過HTTP協議下載視頻文件" ruleid="50253" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具FlashGet文件下载" name_en_US="P2P File Sharing Tool FlashGet Downloading Files" name_zh_CN="P2P文件共享工具FlashGet文件下载" name_zh_TW="P2P文件共享工具FlashGet文件下載" ruleid="50252" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Oracle Application Server BPEL Module跨站脚本攻击" name_en_US="HTTP:Oracle Application Server BPEL Module Cross Site Scripting" name_zh_CN="Oracle Application Server BPEL Module跨站脚本攻击" name_zh_TW="Oracle Application Server BPEL Module跨站腳本攻擊" ruleid="60172" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440777" module="0" name="HTTP协议PUT命令上传操作" name_en_US="HTTP Protocol Request with PUT Command" name_zh_CN="HTTP协议PUT命令上传操作" name_zh_TW="HTTP協議PUT命令上傳操作" ruleid="40813" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="1" name="股票交易分析工具新一代大智慧活动" name_en_US="Stock Analyzing/Trading Software New Generation Dazhihui Activity" name_zh_CN="股票交易分析工具新一代大智慧活动" name_zh_TW="股票交易分析工具新一代大智慧活動" ruleid="50419" visible="false" />
			<rule action=" db  screen " enabled="false" group="99680345" module="1" name="股票交易分析工具新一代大智慧活动" name_en_US="Stock Analyzing/Trading Software New Generation Dazhihui Activity" name_zh_CN="股票交易分析工具新一代大智慧活动" name_zh_TW="股票交易分析工具新一代大智慧活動" ruleid="50418" visible="false" />
			<rule action=" db  screen " enabled="true" group="88146006" module="0" name="Microsoft SQL 客户端SA用户默认空口令连接" name_en_US="Microsoft SQL Client SA User Default Null Password Connection" name_zh_CN="Microsoft SQL 客户端SA用户默认空口令连接" name_zh_TW="Microsoft SQL 客戶端SA用戶默認空口令連接" ruleid="40299" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具东莞证券网通用户版活动 " name_en_US="Securities Analyzing/Trading Software  Dongguan Securities Netcom Activity" name_zh_CN="证券分析交易工具东莞证券网通用户版活动 " name_zh_TW="證券分析交易工具東莞證券網通用戶版活動 " ruleid="50413" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具东莞证券网通用户版活动 " name_en_US="Securities Analyzing/Trading Software  Dongguan Securities Netcom Activity" name_zh_CN="证券分析交易工具东莞证券网通用户版活动 " name_zh_TW="證券分析交易工具東莞證券網通用戶版活動 " ruleid="50412" visible="false" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="在线流媒体CCTV视频连接" name_en_US="Online Streaming Media CCTV Video  Connect" name_zh_CN="在线流媒体CCTV视频连接" name_zh_TW="在線流媒體CCTV視頻連接" ruleid="50411" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="在线流媒体奇艺视频连接" name_en_US="Online Streaming Media QiYi Video connect" name_zh_CN="在线流媒体奇艺视频连接" name_zh_TW="在線流媒體奇藝視頻連接" ruleid="50410" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具天一证券卓越版活动 " name_en_US="Securities Analyzing/Trading Software Tianyi Securities Zhuoyue Activity" name_zh_CN="证券分析交易工具天一证券卓越版活动 " name_zh_TW="證券分析交易工具天一證券卓越版活動 " ruleid="50417" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具天一证券卓越版活动 " name_en_US="Securities Analyzing/Trading Software Tianyi Securities Zhuoyue Activity" name_zh_CN="证券分析交易工具天一证券卓越版活动 " name_zh_TW="證券分析交易工具天一證券卓越版活動 " ruleid="50416" visible="false" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具东莞证券大智慧活动 " name_en_US="Securities Analyzing/Trading Software Dongguan Securities Dazhihui Activity" name_zh_CN="证券分析交易工具东莞证券大智慧活动 " name_zh_TW="證券分析交易工具東莞證券大智慧活動 " ruleid="50415" visible="false" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具东莞证券大智慧活动 " name_en_US="Securities Analyzing/Trading Software Dongguan Securities Dazhihui Activity" name_zh_CN="证券分析交易工具东莞证券大智慧活动 " name_zh_TW="證券分析交易工具東莞證券大智慧活動 " ruleid="50414" visible="false" />
			<rule action=" db  screen " enabled="true" group="68159534" module="0" name="Microsoft Works  Word 文件处理远程内存破坏漏洞(CVE-2012-2550)" name_en_US="Microsoft Works  Word File Handling Remote Memory Corruption Vulnerability(CVE-2012-2550)" name_zh_CN="Microsoft Works  Word 文件处理远程内存破坏漏洞(CVE-2012-2550)" name_zh_TW="Microsoft Works  Word 文件處理遠程內存破壞漏洞(CVE-2012-2550)" ruleid="22478" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159534" module="0" name="Microsoft Word RTF File Use-After-Free远程代码执行漏洞（MS12-064）(CVE-2012-2528)" name_en_US="Microsoft Word RTF File Use-After-Free Remote Code Execution Vulnerability （MS12-064）(CVE-2012-2528)" name_zh_CN="Microsoft Word RTF File Use-After-Free远程代码执行漏洞（MS12-064）(CVE-2012-2528)" name_zh_TW="Microsoft Word RTF File Use-After-Free遠程代碼執行漏洞（MS12-064）(CVE-2012-2528)" ruleid="22479" visible="true" />
			<rule action=" db  screen " enabled="true" group="203427883" module="0" name="phpMyAdmin server_sync.php 远程后门" name_en_US="phpMyAdmin server_sync.php Remote Backdoor" name_zh_CN="phpMyAdmin server_sync.php 远程后门" name_zh_TW="phpMyAdmin server_sync.php 遠程後門" ruleid="22470" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SQL Server Report Manager跨站脚本执行漏洞(MS12-070)(CVE-2012-2552)" name_en_US="Microsoft SQL Server Report Manager Cross Site Scripting Vulnerability(MS12-070)(CVE-2012-2552)" name_zh_CN="Microsoft SQL Server Report Manager跨站脚本执行漏洞(MS12-070)(CVE-2012-2552)" name_zh_TW="Microsoft SQL Server Report Manager跨站腳本執行漏洞(MS12-070)(CVE-2012-2552)" ruleid="22477" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序BLEEDING-EDGE网络数据通信" name_en_US="Backdoor/Trojan BLEEDING-EDGE VIRUS Win32.Mytob.CU Worm Infection / DNS lookup" name_zh_CN="木马后门程序BLEEDING-EDGE网络数据通信" name_zh_TW="木馬後門程序BLEEDING-EDGE網絡數據通信" ruleid="40851" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375343" module="0" name="Ruby on Rails Active Record远程代码执行漏洞(CVE-2013-0277)" name_en_US="Ruby on Rails Active Record Remote Code Execution(CVE-2013-0277)" name_zh_CN="Ruby on Rails Active Record远程代码执行漏洞(CVE-2013-0277)" name_zh_TW="Ruby on Rails Active Record遠程代碼執行漏洞(CVE-2013-0277)" ruleid="22679" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Ruby on Rails attr_protected 远程安全绕过漏洞(CVE-2013-0276)" name_en_US="Ruby on Rails attr_protected Security Bypass Vulnerability(CVE-2013-0276)" name_zh_CN="Ruby on Rails attr_protected 远程安全绕过漏洞(CVE-2013-0276)" name_zh_TW="Ruby on Rails attr_protected 遠程安全繞過漏洞(CVE-2013-0276)" ruleid="22676" visible="true" />
			<rule action=" db  screen " enabled="true" group="339771439" module="0" name="多个HP LaserJet Pro Printer远程debug telnet shell漏洞(CVE-2012-5215)" name_en_US="HP LaserJet Pro Printer Remote debug telnet shell Backdoor(CVE-2012-5215)" name_zh_CN="多个HP LaserJet Pro Printer远程debug telnet shell漏洞(CVE-2012-5215)" name_zh_TW="多個HP LaserJet Pro Printer遠程debug telnet shell漏洞(CVE-2012-5215)" ruleid="22674" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="TP-Link 无线路由器后门利用" name_en_US="TP-Link Router Backdoor Exploit" name_zh_CN="TP-Link 无线路由器后门利用" name_zh_TW="TP-Link 無線路由器後門利用" ruleid="22675" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208111" module="0" name="Microsoft IE removeChild 释放后重用远程代码执行漏洞(CVE-2013-0094)(MS13-021)" name_en_US="Microsoft Internet Explorer removeChild Use After Free Remote Code Execution(CVE-2013-0094)(MS13-021)" name_zh_CN="Microsoft IE removeChild 释放后重用远程代码执行漏洞(CVE-2013-0094)(MS13-021)" name_zh_TW="Microsoft IE removeChild 釋放後重用遠程代碼執行漏洞(CVE-2013-0094)(MS13-021)" ruleid="22672" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE GetMarkupPtr 释放后重用远程代码执行漏洞(CVE-2013-0092)(MS13-021)" name_en_US="Microsoft Internet Explorer GetMarkupPtr Use After Free Remote Code Execution(CVE-2013-0092)(MS13-021)" name_zh_CN="Microsoft IE GetMarkupPtr 释放后重用远程代码执行漏洞(CVE-2013-0092)(MS13-021)" name_zh_TW="Microsoft IE GetMarkupPtr 釋放後重用遠程代碼執行漏洞(CVE-2013-0092)(MS13-021)" ruleid="22670" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE onBeforeCopy 释放后重用远程代码执行漏洞(CVE-2013-0093)(MS13-021)" name_en_US="Microsoft Internet Explorer onBeforeCopy Use After Free Remote Code Execution (CVE-2013-0093)(MS13-021)" name_zh_CN="Microsoft IE onBeforeCopy 释放后重用远程代码执行漏洞(CVE-2013-0093)(MS13-021)" name_zh_TW="Microsoft IE onBeforeCopy 釋放後重用遠程代碼執行漏洞(CVE-2013-0093)(MS13-021)" ruleid="22671" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="网络蠕虫Novarg/Mydoom后门上传执行程序" name_en_US="Network Worm Novarg/Mydoom Backdoor Executable Upload" name_zh_CN="网络蠕虫Novarg/Mydoom后门上传执行程序" name_zh_TW="網絡蠕蟲Novarg/Mydoom後門上傳執行程序" ruleid="40458" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE开发者工具栏远程代码执行漏洞(MS12-037)(CVE-2012-1874)" name_en_US="Microsoft IE Developer Toolbar Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1874)" name_zh_CN="Microsoft IE开发者工具栏远程代码执行漏洞(MS12-037)(CVE-2012-1874)" name_zh_TW="Microsoft IE開發者工具欄遠程代碼執行漏洞(MS12-037)(CVE-2012-1874)" ruleid="22272" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE同一ID属性远程代码执行漏洞(MS12-037)(CVE-2012-1875)" name_en_US="Microsoft IE Same ID Property Remote Code Execution Vulnerability (MS12-037)(CVE-2012-1875)" name_zh_CN="Microsoft IE同一ID属性远程代码执行漏洞(MS12-037)(CVE-2012-1875)" name_zh_TW="Microsoft IE同一ID屬性遠程代碼執行漏洞(MS12-037)(CVE-2012-1875)" ruleid="22273" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE HTML过滤漏洞(MS12-037)(CVE-2012-1858)" name_en_US="Microsoft Internet Explorer HTML Sanitization Vulnerability(MS12-037)(CVE-2012-1858)" name_zh_CN="Microsoft IE HTML过滤漏洞(MS12-037)(CVE-2012-1858)" name_zh_TW="Microsoft IE HTML過濾漏洞(MS12-037)(CVE-2012-1858)" ruleid="22270" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE空字节信息泄露漏洞(MS12-037)(CVE-2012-1873)" name_en_US="Microsoft IE Null Byte Information Disclosure Vulnerability(MS12-037)(CVE-2012-1873)" name_zh_CN="Microsoft IE空字节信息泄露漏洞(MS12-037)(CVE-2012-1873)" name_zh_TW="Microsoft IE空字節信息泄露漏洞(MS12-037)(CVE-2012-1873)" ruleid="22271" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE OnBeforeDeactivate事件远程代码执行漏洞(MS12-037)(CVE-2012-1878)" name_en_US="Microsoft IE OnBeforeDeactivate Event Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1878)" name_zh_CN="Microsoft IE OnBeforeDeactivate事件远程代码执行漏洞(MS12-037)(CVE-2012-1878)" name_zh_TW="Microsoft IE OnBeforeDeactivate事件遠程代碼執行漏洞(MS12-037)(CVE-2012-1878)" ruleid="22276" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE insertAdjacentText远程代码执行漏洞(MS12-037)(CVE-2012-1879)" name_en_US="Microsoft IE insertAdjacentText Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1879)" name_zh_CN="Microsoft IE insertAdjacentText远程代码执行漏洞(MS12-037)(CVE-2012-1879)" name_zh_TW="Microsoft IE insertAdjacentText遠程代碼執行漏洞(MS12-037)(CVE-2012-1879)" ruleid="22277" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Col元素远程代码执行漏洞(MS12-037)(CVE-2012-1876)" name_en_US="Microsoft IE Col Element Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1876)" name_zh_CN="Microsoft IE Col元素远程代码执行漏洞(MS12-037)(CVE-2012-1876)" name_zh_TW="Microsoft IE Col元素遠程代碼執行漏洞(MS12-037)(CVE-2012-1876)" ruleid="22274" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Title元素更改远程代码执行漏洞(MS12-037)(CVE-2012-1877)" name_en_US="Microsoft IE Title Element Change Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1877)" name_zh_CN="Microsoft IE Title元素更改远程代码执行漏洞(MS12-037)(CVE-2012-1877)" name_zh_TW="Microsoft IE Title元素更改遠程代碼執行漏洞(MS12-037)(CVE-2012-1877)" ruleid="22275" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE insertRow远程代码执行漏洞(MS12-037)(CVE-2012-1880)" name_en_US="Microsoft IE insertRow Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1880)" name_zh_CN="Microsoft IE insertRow远程代码执行漏洞(MS12-037)(CVE-2012-1880)" name_zh_TW="Microsoft IE insertRow遠程代碼執行漏洞(MS12-037)(CVE-2012-1880)" ruleid="22278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE OnRowsInserted远程代码执行漏洞(MS12-037)(CVE-2012-1881)" name_en_US="Microsoft IE OnRowsInserted Event Remote Code Execution Vulnerability(MS12-037)(CVE-2012-1881)" name_zh_CN="Microsoft IE OnRowsInserted远程代码执行漏洞(MS12-037)(CVE-2012-1881)" name_zh_TW="Microsoft IE OnRowsInserted遠程代碼執行漏洞(MS12-037)(CVE-2012-1881)" ruleid="22279" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏星际争霸（Starcraft）客户端连接服务器" name_en_US="Online Game &quot;Starcraft&quot;  Client Client Server " name_zh_CN="网络游戏星际争霸（Starcraft）客户端连接服务器" name_zh_TW="網絡遊戲星際爭霸（Starcraft）客戶端連接服務器" ruleid="50079" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏反恐精英（CS）客户端连接服务器" name_en_US=" Online Game CS Client Connect Server " name_zh_CN="网络游戏反恐精英（CS）客户端连接服务器" name_zh_TW="網絡遊戲反恐精英（CS）客戶端連接服務器" ruleid="50078" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit进程管理" name_en_US="Backdoor/Trojan Rootkit Process Management" name_zh_CN="木马后门程序Rootkit进程管理" name_zh_TW="木馬後門程序Rootkit進程管理" ruleid="40977" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rexd服务存在性UDP扫描探测" name_en_US="Solaris rpc.rexd Service UDP Detection" name_zh_CN="Solaris rpc.rexd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rexd服務存在性UDP掃描探測" ruleid="30049" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Kerio Personal Firewall验证包远程缓冲区溢出攻击" name_en_US="Kerio Personal Firewall Authentication Packet Remote Buffer Overflow" name_zh_CN="Kerio Personal Firewall验证包远程缓冲区溢出攻击" name_zh_TW="Kerio Personal Firewall驗證包遠程緩沖區溢出攻擊" ruleid="20831" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Novarg/Mydoom蠕虫及其变种Mydoom.U病毒邮件" name_en_US="SMTP Service Sending Mails with Novarg/Mydoom and Variant Mydoom.U" name_zh_CN="SMTP服务发送Novarg/Mydoom蠕虫及其变种Mydoom.U病毒邮件" name_zh_TW="SMTP服務發送Novarg/Mydoom蠕蟲及其變種Mydoom.U病毒郵件" ruleid="40457" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.AP@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AP@mm" name_zh_CN="SMTP服务发送W32.Beagle.AP@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AP@mm蠕蟲病毒郵件" ruleid="40633" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377263" module="0" name="Apache APR_PSPrintf 内存破坏漏洞" name_en_US="Apache APR_PSPrintf Memory Corruption Vulnerability (WebDAV)" name_zh_CN="Apache APR_PSPrintf 内存破坏漏洞" name_zh_TW="Apache APR_PSPrintf 內存破壞漏洞" ruleid="21112" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425838" module="0" name="Apache SSI 错误页面跨站脚本攻击" name_en_US="Apache SSI Error Page XSS" name_zh_CN="Apache SSI 错误页面跨站脚本攻击" name_zh_TW="Apache SSI 錯誤頁面跨站腳本攻擊" ruleid="21113" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834554" module="0" name="Lotus Notes/Domino群件口令HASH泄露漏洞" name_en_US="Lotus Notes/Domino Groupware Password HASH Leak Vulnerability" name_zh_CN="Lotus Notes/Domino群件口令HASH泄露漏洞" name_zh_TW="Lotus Notes/Domino群件口令HASH泄露漏洞" ruleid="21110" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE 远程代码执行漏洞(CVE-2010-3962)" name_en_US="Microsoft IE Remote Code Execution Vulnerability(CVE-2010-3962)" name_zh_CN="Microsoft IE 远程代码执行漏洞(CVE-2010-3962)" name_zh_TW="Microsoft IE 遠程代碼執行漏洞(CVE-2010-3962)" ruleid="21111" visible="true" />
			<rule action=" db  screen " enabled="true" group="154206293" module="0" name="RLOGIN服务Guest用户访问" name_en_US="RLOGIN Service Guest Access" name_zh_CN="RLOGIN服务Guest用户访问" name_zh_TW="RLOGIN服務Guest用戶訪問" ruleid="21116" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616831" module="0" name="Best Software SalesLogix数据库证书泄露漏洞" name_en_US="Best Software SalesLogix Database Credentials Disclosure" name_zh_CN="Best Software SalesLogix数据库证书泄露漏洞" name_zh_TW="Best Software SalesLogix數據庫證書泄露漏洞" ruleid="21117" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Firefox密码管理器证书信息泄露漏洞" name_en_US="Firefox Password Manager Saved Authentication Theft by Javascript" name_zh_CN="Firefox密码管理器证书信息泄露漏洞" name_zh_TW="Firefox密碼管理器證書信息泄露漏洞" ruleid="21114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft IE FTP Web浏览界面跨站脚本攻击" name_en_US="Microsoft IE FTP Web View XSS" name_zh_CN="Microsoft IE FTP Web浏览界面跨站脚本攻击" name_zh_TW="Microsoft IE FTP Web浏覽界面跨站腳本攻擊" ruleid="21115" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352039" module="0" name="Seattle Lab Mail 5.5 POP3 缓冲区溢出漏洞" name_en_US="Seattle Lab Mail 5.5 POP3 Buffer Overflow" name_zh_CN="Seattle Lab Mail 5.5 POP3 缓冲区溢出漏洞" name_zh_TW="Seattle Lab Mail 5.5 POP3 緩沖區溢出漏洞" ruleid="21118" visible="true" />
			<rule action=" db  screen " enabled="true" group="150996047" module="0" name="网络蠕虫Lupper.A XML-RPC 传播请求变种1" name_en_US="Network Worm Lupper.A XML-RPC Propogation Request Variant 1" name_zh_CN="网络蠕虫Lupper.A XML-RPC 传播请求变种1" name_zh_TW="網絡蠕蟲Lupper.A XML-RPC 傳播請求變種1" ruleid="21119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE 8释放后重用远程代码执行漏洞(CVE-2013-1347)" name_en_US="Microsoft IE 8 Use After Free Remote Code Execution Vulnerability(CVE-2013-1347) " name_zh_CN="Microsoft IE 8释放后重用远程代码执行漏洞(CVE-2013-1347)" name_zh_TW="Microsoft IE 8釋放後重用遠程代碼執行漏洞(CVE-2013-1347)" ruleid="22707" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159531" module="0" name="CoolPDF Reader 远程栈缓冲区溢出漏洞" name_en_US="Cool PDF Image Stream Buffer Overflow " name_zh_CN="CoolPDF Reader 远程栈缓冲区溢出漏洞" name_zh_TW="CoolPDF Reader 遠程棧緩沖區溢出漏洞" ruleid="22701" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft IE 8浏览器恶意代码攻击" name_en_US="Microsoft IE 8 Browser  Malicious Code Attack" name_zh_CN="Microsoft IE 8浏览器恶意代码攻击" name_zh_TW="Microsoft IE 8浏覽器惡意代碼攻擊" ruleid="22708" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="即时通信系统BigAnt IM服务器USV请求栈溢出漏洞" name_en_US="Instant Messaging System BigAnt IM Server USV Request Stack Overflow Vulnerability" name_zh_CN="即时通信系统BigAnt IM服务器USV请求栈溢出漏洞" name_zh_TW="即時通信系統BigAnt IM服務器USV請求棧溢出漏洞" ruleid="22499" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Win32/PcClient.ZL网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Win32/PcClient.ZL Checkin" name_zh_CN="木马后门程序Backdoor.Win32/PcClient.ZL网络数据通信" name_zh_TW="木馬後門程序Backdoor.Win32/PcClient.ZL網絡數據通信" ruleid="40891" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台VS竞技游戏登录" name_en_US="Online Game Platform &quot;VS Games&quot; Login" name_zh_CN="网络游戏平台VS竞技游戏登录" name_zh_TW="網絡遊戲平台VS競技遊戲登錄" ruleid="50324" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941610" module="0" name="Cisco CallManager SIP 超长To字段缓冲区溢出攻击" name_en_US="Cisco CallManager SIP Over-long To Field Buffer Overflow" name_zh_CN="Cisco CallManager SIP 超长To字段缓冲区溢出攻击" name_zh_TW="Cisco CallManager SIP 超長To字段緩沖區溢出攻擊" ruleid="20731" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941610" module="0" name="Cisco CallManager SIP超长主机名UDP远程缓冲区溢出攻击" name_en_US="Cisco CallManager SIP Over-long Host Name UDP Remote Buffer Overflow" name_zh_CN="Cisco CallManager SIP超长主机名UDP远程缓冲区溢出攻击" name_zh_TW="Cisco CallManager SIP超長主機名UDP遠程緩沖區溢出攻擊" ruleid="20730" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Symantec Antivirus Rtvscan.exe远程栈溢出攻击" name_en_US="Symantec Antivirus Rtvscan.exe Remote Stack Buffer Overflow" name_zh_CN="Symantec Antivirus Rtvscan.exe远程栈溢出攻击" name_zh_TW="Symantec Antivirus Rtvscan.exe遠程棧溢出攻擊" ruleid="20733" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941610" module="0" name="Cisco CallManager SIP超长主机名TCP远程缓冲区溢出攻击" name_en_US="Cisco CallManager SIP Over-long Host Name TCP Remote Buffer Overflow" name_zh_CN="Cisco CallManager SIP超长主机名TCP远程缓冲区溢出攻击" name_zh_TW="Cisco CallManager SIP超長主機名TCP遠程緩沖區溢出攻擊" ruleid="20732" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE DHTML引擎竞争条件攻击" name_en_US="Microsoft IE DHTML Engine Race Condition" name_zh_CN="Microsoft IE DHTML引擎竞争条件攻击" name_zh_TW="Microsoft IE DHTML引擎競爭條件攻擊" ruleid="20735" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="Foxmail Serve MAIL FROM远程缓冲区溢出攻击" name_en_US="Foxmail Serve MAIL FROM Remote Buffer Overflow" name_zh_CN="Foxmail Serve MAIL FROM远程缓冲区溢出攻击" name_zh_TW="Foxmail Serve MAIL FROM遠程緩沖區溢出攻擊" ruleid="20734" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Netscape NSS库SSLV2畸形Hello消息远程缓冲区溢出攻击" name_en_US="Netscape NSS Lib SSLV2 Malformed Hello Message Remote Buffer Overflow" name_zh_CN="Netscape NSS库SSLV2畸形Hello消息远程缓冲区溢出攻击" name_zh_TW="Netscape NSS庫SSLV2畸形Hello消息遠程緩沖區溢出攻擊" ruleid="20737" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="SIP畸形URI远程缓冲区溢出攻击" name_en_US="SIP Malformed URI Remote Buffer Overflow" name_zh_CN="SIP畸形URI远程缓冲区溢出攻击" name_zh_TW="SIP畸形URI遠程緩沖區溢出攻擊" ruleid="20736" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="EQdkp dbal.php远程文件包含攻击" name_en_US="EQdkp dbal.php Remote File Inclusion" name_zh_CN="EQdkp dbal.php远程文件包含攻击" name_zh_TW="EQdkp dbal.php遠程文件包含攻擊" ruleid="20739" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Apache Mod_SSL/Apache-SSL远程缓冲区溢出攻击" name_en_US="Apache Mod_SSL/Apache-SSL Remote Buffer Overflow" name_zh_CN="Apache Mod_SSL/Apache-SSL远程缓冲区溢出攻击" name_zh_TW="Apache Mod_SSL/Apache-SSL遠程緩沖區溢出攻擊" ruleid="20738" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体百度影音连接" name_en_US="Online Streaming Media Baidu Video Audio Connect" name_zh_CN="在线流媒体百度影音连接" name_zh_TW="在線流媒體百度影音連接" ruleid="50452" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="在线流媒体网易视频连接" name_en_US=" Online Streaming Media Wangyi Video Audio Connect" name_zh_CN="在线流媒体网易视频连接" name_zh_TW="在線流媒體網易視頻連接" ruleid="50451" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit执行Shell" name_en_US="Rootkit Execute Shell" name_zh_CN="木马后门程序Rootkit执行Shell" name_zh_TW="木馬後門程序Rootkit執行Shell" ruleid="40976" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="网上银行北京银行用户登录" name_en_US="Internet Banking Bank of Beijing User Login" name_zh_CN="网上银行北京银行用户登录" name_zh_TW="網上銀行北京銀行用戶登錄" ruleid="50322" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Pakes/Cutwail/Kobcka网络数据通信" name_en_US="Backdoor/Trojan Pakes/Cutwail/Kobcka Checkin Detected High Ports" name_zh_CN="木马后门程序Pakes/Cutwail/Kobcka网络数据通信" name_zh_TW="木馬後門程序Pakes/Cutwail/Kobcka網絡數據通信" ruleid="40899" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序LP Webshell检测" name_en_US="Backdoor/Trojan LP Webshell Detection" name_zh_CN="木马后门程序LP Webshell检测" name_zh_TW="木馬後門程序LP Webshell檢測" ruleid="40962" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具Yahoo Messenger用户登录（HTTP代理）" name_en_US="Instant Messaging Tool Yahoo Messenger User Login（HTTP Proxy）" name_zh_CN="即时通信工具Yahoo Messenger用户登录（HTTP代理）" name_zh_TW="即時通信工具Yahoo Messenger用戶登錄（HTTP代理）" ruleid="50288" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel畸形对象远程代码执行漏洞（MS11-072,CVE-2011-1986）" name_en_US="Microsoft Excel Malformed Object Remote Code Execution Vulnerability（MS11-072,CVE-2011-1986" name_zh_CN="Microsoft Excel畸形对象远程代码执行漏洞（MS11-072,CVE-2011-1986）" name_zh_TW="Microsoft Excel畸形對象遠程代碼執行漏洞（MS11-072,CVE-2011-1986）" ruleid="21282" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel数组索引 'iax' Field 远程代码执行漏洞（MS11-072）" name_en_US="Microsoft Excel Array Indexing 'iax' Field Remote Code Execution Vulnerability（MS11-072）" name_zh_CN="Microsoft Excel数组索引 'iax' Field 远程代码执行漏洞（MS11-072）" name_zh_TW="Microsoft Excel數組索引 'iax' Field 遠程代碼執行漏洞（MS11-072）" ruleid="21283" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="Microsoft SharePoint XML处理远程文件泄露漏洞（MS11-074）" name_en_US="Microsoft SharePoint XML Handling Remote File Disclosure Vulnerability（MS11-074）" name_zh_CN="Microsoft SharePoint XML处理远程文件泄露漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint XML處理遠程文件泄露漏洞（MS11-074）" ruleid="21280" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft SharePoint跨站脚本执行漏洞(MS11-074)(CVE-2011-1893)" name_en_US="Microsoft SharePoint Cross Site Scripting Vulnerability(MS11-074)(CVE-2011-1893)" name_zh_CN="Microsoft SharePoint跨站脚本执行漏洞(MS11-074)(CVE-2011-1893)" name_zh_TW="Microsoft SharePoint跨站腳本執行漏洞(MS11-074)(CVE-2011-1893)" ruleid="21281" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel数组索引远程代码执行漏洞(MS11-072,CVE-2011-1990)" name_en_US="Microsoft Excel Array Index Remote Code Execution Vulnerability(MS11-072,CVE-2011-1990)" name_zh_CN="Microsoft Excel数组索引远程代码执行漏洞(MS11-072,CVE-2011-1990)" name_zh_TW="Microsoft Excel數組索引遠程代碼執行漏洞(MS11-072,CVE-2011-1990)" ruleid="21286" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft SharePoint日历跨站脚本执行漏洞(MS11-074)(CVE-2011-0653)" name_en_US="Microsoft SharePoint Calendar Cross Site Scripting Vulnerability(MS11-074)(CVE-2011-0653)" name_zh_CN="Microsoft SharePoint日历跨站脚本执行漏洞(MS11-074)(CVE-2011-0653)" name_zh_TW="Microsoft SharePoint日曆跨站腳本執行漏洞(MS11-074)(CVE-2011-0653)" ruleid="21287" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel畸形记录远程代码执行漏洞（MS11-072,CVE-2011-1988）" name_en_US="Microsoft Excel Malformed Record Remote Code Execution Vulnerability（MS11-072,CVE-2011-1988" name_zh_CN="Microsoft Excel畸形记录远程代码执行漏洞（MS11-072,CVE-2011-1988）" name_zh_TW="Microsoft Excel畸形記錄遠程代碼執行漏洞（MS11-072,CVE-2011-1988）" ruleid="21284" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel条件表达式远程代码执行漏洞（MS11-072,CVE-2011-1989）" name_en_US="Microsoft Excel Conditional Expression Remote Code Execution Vulnerability（MS11-072,CVE-2011-1989" name_zh_CN="Microsoft Excel条件表达式远程代码执行漏洞（MS11-072,CVE-2011-1989）" name_zh_TW="Microsoft Excel條件表達式遠程代碼執行漏洞（MS11-072,CVE-2011-1989）" ruleid="21285" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft SharePoint联系人详细信息跨站脚本执行漏洞(MS11-074)(CVE-2011-1891)" name_en_US="Microsoft SharePoint Contact Details Cross Site Scripting Vulnerability(MS11-074)(CVE-2011-1891)" name_zh_CN="Microsoft SharePoint联系人详细信息跨站脚本执行漏洞(MS11-074)(CVE-2011-1891)" name_zh_TW="Microsoft SharePoint聯系人詳細信息跨站腳本執行漏洞(MS11-074)(CVE-2011-1891)" ruleid="21288" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office &quot;MSO.dll&quot;未初始化指针远程代码执行漏洞（MS11-073）" name_en_US="Microsoft Office 'MSO.dll' Uninitialized Pointer Remote Code Execution Vulnerability(CVE-2011-1982)" name_zh_CN="Microsoft Office &quot;MSO.dll&quot;未初始化指针远程代码执行漏洞（MS11-073）" name_zh_TW="Microsoft Office &quot;MSO.dll&quot;未初始化指針遠程代碼執行漏洞（MS11-073）" ruleid="21289" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议destinationAddress email-ID数据畸形" name_en_US="H.225 Protocol destinationAddress email-ID Malformed Data" name_zh_CN="H.225协议destinationAddress email-ID数据畸形" name_zh_TW="H.225協議destinationAddress email-ID數據畸形" ruleid="10152" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议sourceAddress序列数据畸形" name_en_US="H.225 Protocol sourceAddress Sequence Malformed Data" name_zh_CN="H.225协议sourceAddress序列数据畸形" name_zh_TW="H.225協議sourceAddress序列數據畸形" ruleid="10153" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Q.931协议Calling Party Number Length数据畸形" name_en_US="Q.931 Protocol Calling Party Number Length Malformed Data" name_zh_CN="Q.931协议Calling Party Number Length数据畸形" name_zh_TW="Q.931協議Calling Party Number Length數據畸形" ruleid="10150" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议DestinationAddress序列数据畸形" name_en_US="H.225 Protocol DestinationAddress Sequence Malformed Data" name_zh_CN="H.225协议DestinationAddress序列数据畸形" name_zh_TW="H.225協議DestinationAddress序列數據畸形" ruleid="10151" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议Destination AliasAddress e164Number数据畸形" name_en_US="H.225 Protocol Destination AliasAddress e164Number Malformed Data" name_zh_CN="H.225协议Destination AliasAddress e164Number数据畸形" name_zh_TW="H.225協議Destination AliasAddress e164Number數據畸形" ruleid="10156" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议DestinationAddress H323-ID数据畸形" name_en_US="H.225 Protocol DestinationAddress H323-ID Malformed Data" name_zh_CN="H.225协议DestinationAddress H323-ID数据畸形" name_zh_TW="H.225協議DestinationAddress H323-ID數據畸形" ruleid="10157" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议sourceAddress url-ID数据畸形" name_en_US="H.225 Protocol sourceAddress url-ID Malformed Data" name_zh_CN="H.225协议sourceAddress url-ID数据畸形" name_zh_TW="H.225協議sourceAddress url-ID數據畸形" ruleid="10154" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="WEBgais webgais脚本漏洞远程执行命令" name_en_US="Remote Code Execution via WEBgais webgais Script Vulnerability" name_zh_CN="WEBgais webgais脚本漏洞远程执行命令" name_zh_TW="WEBgais webgais腳本漏洞遠程執行命令" ruleid="20088" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Matt Wright textcounter.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Matt Wright textcounter.pl Script Vulnerability" name_zh_CN="Matt Wright textcounter.pl脚本漏洞远程执行命令" name_zh_TW="Matt Wright textcounter.pl腳本漏洞遠程執行命令" ruleid="20087" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="NCSA phf脚本漏洞远程执行命令" name_en_US="Remote Code Execution via  NCSA phf Script Vulnerability" name_zh_CN="NCSA phf脚本漏洞远程执行命令" name_zh_TW="NCSA phf腳本漏洞遠程執行命令" ruleid="20086" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Roar Smith info2www脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Roar Smith info2www Script Vulnerability" name_zh_CN="Roar Smith info2www脚本漏洞远程执行命令" name_zh_TW="Roar Smith info2www腳本漏洞遠程執行命令" ruleid="20085" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="IRIX handler脚本漏洞远程执行命令" name_en_US="Remote Code Execution via IRIX handler Script Vulnerability" name_zh_CN="IRIX handler脚本漏洞远程执行命令" name_zh_TW="IRIX handler腳本漏洞遠程執行命令" ruleid="20084" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="FormMail formmail.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via FormMail formmail.pl Script Vulnerability" name_zh_CN="FormMail formmail.pl脚本漏洞远程执行命令" name_zh_TW="FormMail formmail.pl腳本漏洞遠程執行命令" ruleid="20083" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316967" module="0" name="Hylafax faxsurvey脚本漏洞远程执行命令" name_en_US="Hylafax faxsurvey Script Remote Code Execution" name_zh_CN="Hylafax faxsurvey脚本漏洞远程执行命令" name_zh_TW="Hylafax faxsurvey腳本漏洞遠程執行命令" ruleid="20082" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="CGISCRIPT.NET csNews.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CGISCRIPT.NET csNews.cgi Script Vulnerability" name_zh_CN="CGISCRIPT.NET csNews.cgi脚本漏洞远程执行命令" name_zh_TW="CGISCRIPT.NET csNews.cgi腳本漏洞遠程執行命令" ruleid="20081" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="CGISCRIPT.NET csLiveSupport.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CGISCRIPT.NET csLiveSupport.cgi Script Vulnerability" name_zh_CN="CGISCRIPT.NET csLiveSupport.cgi脚本漏洞远程执行命令" name_zh_TW="CGISCRIPT.NET csLiveSupport.cgi腳本漏洞遠程執行命令" ruleid="20080" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="WowBB view_user.php远程SQL注入攻击" name_en_US="WowBB view_user.php Remote SQL Injection" name_zh_CN="WowBB view_user.php远程SQL注入攻击" name_zh_TW="WowBB view_user.php遠程SQL注入攻擊" ruleid="20649" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="eStara Softphone SIP SDP请求远程缓冲区溢出攻击" name_en_US="eStara Softphone SIP SDP Request Remote Buffer Overflow" name_zh_CN="eStara Softphone SIP SDP请求远程缓冲区溢出攻击" name_zh_TW="eStara Softphone SIP SDP請求遠程緩沖區溢出攻擊" ruleid="20648" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="RaXnet Cacti远程文件包含执行命令攻击" name_en_US="RaXnet Cacti Remote File Inclusion Code Execution" name_zh_CN="RaXnet Cacti远程文件包含执行命令攻击" name_zh_TW="RaXnet Cacti遠程文件包含執行命令攻擊" ruleid="20645" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="miniBB news.php远程文件包含攻击" name_en_US="miniBB news.php Remote File Inclusion" name_zh_CN="miniBB news.php远程文件包含攻击" name_zh_TW="miniBB news.php遠程文件包含攻擊" ruleid="20644" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="osTicket include_dir变量远程文件包含攻击" name_en_US="osTicket include_dir Variable Remote File Inclusion" name_zh_CN="osTicket include_dir变量远程文件包含攻击" name_zh_TW="osTicket include_dir變量遠程文件包含攻擊" ruleid="20647" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PmWiki pmwiki.php远程文件包含攻击" name_en_US="PmWiki pmwiki.php Remote File Inclusion" name_zh_CN="PmWiki pmwiki.php远程文件包含攻击" name_zh_TW="PmWiki pmwiki.php遠程文件包含攻擊" ruleid="20646" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420715" module="0" name="Microsoft Windows Server驱动Mailslot远程堆溢出攻击" name_en_US="Microsoft Windows Server Driver Mailslot Remote Heap Overflow" name_zh_CN="Microsoft Windows Server驱动Mailslot远程堆溢出攻击" name_zh_TW="Microsoft Windows Server驅動Mailslot遠程堆溢出攻擊" ruleid="20641" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Mambo/Joomla mosConfig_absolute_path远程文件包含攻击" name_en_US="Mambo/Joomla mosConfig_absolute_path Remote File Inclusion" name_zh_CN="Mambo/Joomla mosConfig_absolute_path远程文件包含攻击" name_zh_TW="Mambo/Joomla mosConfig_absolute_path遠程文件包含攻擊" ruleid="20640" visible="true" />
			<rule action=" db  screen " enabled="true" group="300941611" module="0" name="D-Link路由器UPNP远程缓冲区溢出攻击" name_en_US="D-Link Rounter UPNP Remote Buffer Overflow" name_zh_CN="D-Link路由器UPNP远程缓冲区溢出攻击" name_zh_TW="D-Link路由器UPNP遠程緩沖區溢出攻擊" ruleid="20643" visible="true" />
			<rule action=" db  screen " enabled="true" group="97517871" module="0" name="Microsoft Windows DHCP Client服务ACK应答处理缓冲区溢出攻击" name_en_US="Microsoft Windows DHCP Client Service ACK Response Handling Buffer Overflow" name_zh_CN="Microsoft Windows DHCP Client服务ACK应答处理缓冲区溢出攻击" name_zh_TW="Microsoft Windows DHCP Client服務ACK應答處理緩沖區溢出攻擊" ruleid="20642" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Darksk ASP Webshell检测" name_en_US="Backdoor/Trojan Darksk ASP Webshell Detection" name_zh_CN="木马后门程序Darksk ASP Webshell检测" name_zh_TW="木馬後門程序Darksk ASP Webshell檢測" ruleid="40960" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台中国互动游戏中心用户登录" name_en_US="Online Game Platform &quot;cngame&quot; User Login" name_zh_CN="网络游戏平台中国互动游戏中心用户登录" name_zh_TW="網絡遊戲平台中國互動遊戲中心用戶登錄" ruleid="50286" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序NetSphere木马建立连接" name_en_US="Backdoor/Trojan NetSphere Connection " name_zh_CN="木马后门程序NetSphere木马建立连接" name_zh_TW="木馬後門程序NetSphere木馬建立連接" ruleid="40178" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Hack a tack木马建立连接" name_en_US="Backdoor/Trojan Hack a tack Connection " name_zh_CN="木马后门程序Hack a tack木马建立连接" name_zh_TW="木馬後門程序Hack a tack木馬建立連接" ruleid="40174" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序WinCrash 1.0木马建立连接" name_en_US="Backdoor/Trojan WinCrash 1.0 Connection " name_zh_CN="木马后门程序WinCrash 1.0木马建立连接" name_zh_TW="木馬後門程序WinCrash 1.0木馬建立連接" ruleid="40176" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Stacheldraht服务器回应堵塞" name_en_US="DDOS Tool Stacheldraht Server Response Block" name_zh_CN="DDOS工具Stacheldraht服务器回应堵塞" name_zh_TW="DDOS工具Stacheldraht服務器回應堵塞" ruleid="40171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序DonaldDick木马建立连接" name_en_US="Backdoor/Trojan DonaldDick Connection " name_zh_CN="木马后门程序DonaldDick木马建立连接" name_zh_TW="木馬後門程序DonaldDick木馬建立連接" ruleid="40173" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序的PhaseZero木马连接建立" name_en_US="Backdoor/Trojan PhaseZero Connection " name_zh_CN="木马后门程序的PhaseZero木马连接建立" name_zh_TW="木馬後門程序的PhaseZero木馬連接建立" ruleid="40172" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHPNews sendtofriend.php远程SQL注入攻击" name_en_US="PHPNews sendtofriend.php Remote SQL Injection" name_zh_CN="PHPNews sendtofriend.php远程SQL注入攻击" name_zh_TW="PHPNews sendtofriend.php遠程SQL注入攻擊" ruleid="20469" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PowerPortal index.php远程SQL注入攻击" name_en_US="PowerPortal index.php Remote SQL Injection" name_zh_CN="PowerPortal index.php远程SQL注入攻击" name_zh_TW="PowerPortal index.php遠程SQL注入攻擊" ruleid="20468" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="网络蠕虫Witty传播" name_en_US="Network Worm Witty Spreading" name_zh_CN="网络蠕虫Witty传播" name_zh_TW="網絡蠕蟲Witty傳播" ruleid="20399" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="MDaemon form2raw.cgi CGI脚本漏洞溢出攻击" name_en_US="Buffer Overflow via MDaemon form2raw.cgi CGI Script Vulnerability" name_zh_CN="MDaemon form2raw.cgi CGI脚本漏洞溢出攻击" name_zh_TW="MDaemon form2raw.cgi CGI腳本漏洞溢出攻擊" ruleid="20398" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Win32.VB.brg Checkin网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Win32.VB.brg C&amp;C Checkin" name_zh_CN="木马后门程序Backdoor.Win32.VB.brg Checkin网络数据通信" name_zh_TW="木馬後門程序Backdoor.Win32.VB.brg Checkin網絡數據通信" ruleid="40885" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Hupigon.dkxh网络数据通信" name_en_US="Backdoor/Trojan Hupigon.dkxh Checkin to CnC" name_zh_CN="木马后门程序Hupigon.dkxh网络数据通信" name_zh_TW="木馬後門程序Hupigon.dkxh網絡數據通信" ruleid="40884" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Win32.VB.brg Kill Command Acknowledge网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Win32.VB.brg C&amp;C Kill Command Acknowledge" name_zh_CN="木马后门程序Backdoor.Win32.VB.brg Kill Command Acknowledge网络数据通信" name_zh_TW="木馬後門程序Backdoor.Win32.VB.brg Kill Command Acknowledge網絡數據通信" ruleid="40887" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Win32.VB.brg DDoS Outbound网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Win32.VB.brg C&amp;C DDoS Outbound" name_zh_CN="木马后门程序Backdoor.Win32.VB.brg DDoS Outbound网络数据通信" name_zh_TW="木馬後門程序Backdoor.Win32.VB.brg DDoS Outbound網絡數據通信" ruleid="40886" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Phorum follow.php远程SQL注入攻击" name_en_US="Phorum follow.php Remote SQL Injection" name_zh_CN="Phorum follow.php远程SQL注入攻击" name_zh_TW="Phorum follow.php遠程SQL注入攻擊" ruleid="20461" visible="true" />
			<rule action=" db  screen " enabled="true" group="222298411" module="0" name="Oracle 8i TNS Listener缓冲区溢出攻击" name_en_US="Oracle 8i TNS Listener Buffer Overflow" name_zh_CN="Oracle 8i TNS Listener缓冲区溢出攻击" name_zh_TW="Oracle 8i TNS Listener緩沖區溢出攻擊" ruleid="20460" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows ASN.1库BER解码堆破坏攻击" name_en_US="Microsoft Windows ASN.1 Base BER Decoding Heap Corruption" name_zh_CN="Microsoft Windows ASN.1库BER解码堆破坏攻击" name_zh_TW="Microsoft Windows ASN.1庫BER解碼堆破壞攻擊" ruleid="20391" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="vBulletin Forum last.php远程SQL注入攻击" name_en_US="vBulletin Forum last.php Remote SQL Injection" name_zh_CN="vBulletin Forum last.php远程SQL注入攻击" name_zh_TW="vBulletin Forum last.php遠程SQL注入攻擊" ruleid="20462" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpBB admin_cash.php CGI脚本漏洞远程执行命令" name_en_US="Remote Command Execution via phpBB admin_cash.php CGI Script Vulnerability" name_zh_CN="phpBB admin_cash.php CGI脚本漏洞远程执行命令" name_zh_TW="phpBB admin_cash.php CGI腳本漏洞遠程執行命令" ruleid="20465" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254895" module="0" name="Serv-U FTP服务器MDTM命令远程缓冲区溢出攻击" name_en_US="Serv-U FTP Server MDTM Command Remote Buffer Overflow" name_zh_CN="Serv-U FTP服务器MDTM命令远程缓冲区溢出攻击" name_zh_TW="Serv-U FTP服務器MDTM命令遠程緩沖區溢出攻擊" ruleid="20396" visible="true" />
			<rule action=" db  screen " enabled="true" group="82837807" module="0" name="Ipswitch IMail Server LDAP守护进程远程缓冲区溢出攻击" name_en_US="Ipswitch IMail Server LDAP Daemon Remote Buffer Overflow" name_zh_CN="Ipswitch IMail Server LDAP守护进程远程缓冲区溢出攻击" name_zh_TW="Ipswitch IMail Server LDAP守護進程遠程緩沖區溢出攻擊" ruleid="20395" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpBB URL编码远程任意命令执行攻击" name_en_US="phpBB URL Encoding Remote Arbitrary Command Execution" name_zh_CN="phpBB URL编码远程任意命令执行攻击" name_zh_TW="phpBB URL編碼遠程任意命令執行攻擊" ruleid="20466" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Home Free search.cgi脚本漏洞目录遍历攻击" name_en_US="Directory Traversal via Home Free search.cgi Script Vulnerability" name_zh_CN="Home Free search.cgi脚本漏洞目录遍历攻击" name_zh_TW="Home Free search.cgi腳本漏洞目錄遍曆攻擊" ruleid="30402" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Moreover.com cached_feed.cgi脚本远程遍历目录" name_en_US="Remote Directory Traversal via Moreover.com cached_feed.cgi Script" name_zh_CN="Moreover.com cached_feed.cgi脚本远程遍历目录" name_zh_TW="Moreover.com cached_feed.cgi腳本遠程遍曆目錄" ruleid="30403" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="PHP-Nuke CGI脚本漏洞获取目录信息" name_en_US="Directory Information Disclosure via PHP-Nuke CGI Script Vulnerability" name_zh_CN="PHP-Nuke CGI脚本漏洞获取目录信息" name_zh_TW="PHP-Nuke CGI腳本漏洞獲取目錄信息" ruleid="30400" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞" name_en_US="Trend Micro OfficeScan jdkRqNotify.exe Script Vulnerability" name_zh_CN="Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞" name_zh_TW="Trend Micro OfficeScan jdkRqNotify.exe腳本漏洞" ruleid="30401" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="Microsoft Outlook Web Access漏洞进行拒绝服务攻击" name_en_US="Denial of Service via Microsoft Outlook Web Access Vulnerability" name_zh_CN="Microsoft Outlook Web Access漏洞进行拒绝服务攻击" name_zh_TW="Microsoft Outlook Web Access漏洞進行拒絕服務攻擊" ruleid="10088" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365526" module="0" name="ProFTPD STAT命令远程拒绝服务攻击" name_en_US="ProFTPD STAT Command Remote Denial of Service" name_zh_CN="ProFTPD STAT命令远程拒绝服务攻击" name_zh_TW="ProFTPD STAT命令遠程拒絕服務攻擊" ruleid="10089" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Moreover.com cached_feed.cgi脚本漏洞扫描探测" name_en_US="Moreover.com cached_feed.cgi Script Vulnerability Detection" name_zh_CN="Moreover.com cached_feed.cgi脚本漏洞扫描探测" name_zh_TW="Moreover.com cached_feed.cgi腳本漏洞掃描探測" ruleid="30404" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375354" module="0" name="通过Web服务访问Netscape SuiteSpot管理员口令文件" name_en_US="Access to Netscape SuiteSpot Admin Password File via Web Service" name_zh_CN="通过Web服务访问Netscape SuiteSpot管理员口令文件" name_zh_TW="通過Web服務訪問Netscape SuiteSpot管理員口令文件" ruleid="30405" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943382" module="0" name="Ascend系列路由器UDP/9端口拒绝服务攻击" name_en_US="Ascend Routers Port UDP/9 Denial of Service" name_zh_CN="Ascend系列路由器UDP/9端口拒绝服务攻击" name_zh_TW="Ascend系列路由器UDP/9端口拒絕服務攻擊" ruleid="10084" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316950" module="0" name="HP Openview Manager OpenView5.exe程序漏洞拒绝服务攻击" name_en_US="Denial of Service via HP Openview Manager OpenView5.exe Vulnerability" name_zh_CN="HP Openview Manager OpenView5.exe程序漏洞拒绝服务攻击" name_zh_TW="HP Openview Manager OpenView5.exe程序漏洞拒絕服務攻擊" ruleid="10086" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Open WebMail openwebmail-shared.pl脚本漏洞扫描探测" name_en_US="Open WebMail openwebmail-shared.pl Script Vulnerability Detection" name_zh_CN="Open WebMail openwebmail-shared.pl脚本漏洞扫描探测" name_zh_TW="Open WebMail openwebmail-shared.pl腳本漏洞掃描探測" ruleid="30409" visible="true" />
			<rule action=" db  screen " enabled="true" group="337643542" module="0" name="Cisco VoIP Phone流量统计请求拒绝服务攻击" name_en_US="Cisco VoIP Phone Traffic Statistic Request Denial of Service" name_zh_CN="Cisco VoIP Phone流量统计请求拒绝服务攻击" name_zh_TW="Cisco VoIP Phone流量統計請求拒絕服務攻擊" ruleid="10080" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256662" module="0" name="TransSoft FTP-Broker远程拒绝服务攻击" name_en_US="TransSoft FTP-Broker Remote Denial of Service" name_zh_CN="TransSoft FTP-Broker远程拒绝服务攻击" name_zh_TW="TransSoft FTP-Broker遠程拒絕服務攻擊" ruleid="10081" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425818" module="0" name="Real Networks RealServer远程拒绝服务攻击" name_en_US="Real Networks RealServer Remote Denial of Service" name_zh_CN="Real Networks RealServer远程拒绝服务攻击" name_zh_TW="Real Networks RealServer遠程拒絕服務攻擊" ruleid="10082" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft IIS 4.0/5.0 .asp ISAPI扩展远程缓冲区溢出攻击" name_en_US="Microsoft IIS 4.0/5.0 .asp ISAPI Extension Remote Buffer Overflow" name_zh_CN="Microsoft IIS 4.0/5.0 .asp ISAPI扩展远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 4.0/5.0 .asp ISAPI擴展遠程緩沖區溢出攻擊" ruleid="40313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Oracle 9i应用服务器无需授权访问管理目录漏洞攻击" name_en_US="Oracle 9i Application Server Admin Directory Unauthorized Access" name_zh_CN="Oracle 9i应用服务器无需授权访问管理目录漏洞攻击" name_zh_TW="Oracle 9i應用服務器無需授權訪問管理目錄漏洞攻擊" ruleid="20266" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723879" module="0" name="AIX pdnsd远程缓冲区溢出攻击" name_en_US="AIX pdnsd Remote Buffer Overflow" name_zh_CN="AIX pdnsd远程缓冲区溢出攻击" name_zh_TW="AIX pdnsd遠程緩沖區溢出攻擊" ruleid="20263" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="NETCODE book.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via NETCODE book.cgi Script Vulnerability" name_zh_CN="NETCODE book.cgi脚本漏洞远程执行命令" name_zh_TW="NETCODE book.cgi腳本漏洞遠程執行命令" ruleid="20262" visible="true" />
			<rule action=" db  screen " enabled="true" group="141558059" module="0" name="SSH1守护程序CRC2补偿攻击检测安全漏洞攻击" name_en_US="SSH1 Daemon CRC32 Compensation Attack Detection" name_zh_CN="SSH1守护程序CRC2补偿攻击检测安全漏洞攻击" name_zh_TW="SSH1守護程序CRC2補償攻擊檢測安全漏洞攻擊" ruleid="20067" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995243" module="0" name="Solaris ypbind TCP远程缓冲区溢出攻击" name_en_US="Solaris ypbind TCP Remote Buffer Overflow" name_zh_CN="Solaris ypbind TCP远程缓冲区溢出攻击" name_zh_TW="Solaris ypbind TCP遠程緩沖區溢出攻擊" ruleid="20060" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365547" module="0" name="Wu-ftpd畸形文件名扩展请求远程堆溢出攻击" name_en_US="Wu-ftpd Malformed Filename Extension Request Remote Heap Overflow" name_zh_CN="Wu-ftpd畸形文件名扩展请求远程堆溢出攻击" name_zh_TW="Wu-ftpd畸形文件名擴展請求遠程堆溢出攻擊" ruleid="20068" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="通过Web服务访问Oracle 9i默认配置文件XSQLConfig.xml" name_en_US="Access to Oracle 9i Default Config File XSQLConfig.xml via Web Service" name_zh_CN="通过Web服务访问Oracle 9i默认配置文件XSQLConfig.xml" name_zh_TW="通過Web服務訪問Oracle 9i默認配置文件XSQLConfig.xml" ruleid="30248" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="通过Web服务访问Oracle 9i默认配置文件soapConfig.xml" name_en_US="Access to Oracle 9i Default Config File soapConfig.xml via Web Service" name_zh_CN="通过Web服务访问Oracle 9i默认配置文件soapConfig.xml" name_zh_TW="通過Web服務訪問Oracle 9i默認配置文件soapConfig.xml" ruleid="30249" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Win32.VB.fdi网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Win32.VB.fdi Bot Reporting to Controller" name_zh_CN="木马后门程序Backdoor.Win32.VB.fdi网络数据通信" name_zh_TW="木馬後門程序Backdoor.Win32.VB.fdi網絡數據通信" ruleid="40889" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序Big Gluck客户连接" name_en_US="Backdoor/Trojan Big Gluck Client Connection" name_zh_CN="木马后门程序Big Gluck客户连接" name_zh_TW="木馬後門程序Big Gluck客戶連接" ruleid="40950" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPWrsky Webshell检测" name_en_US="Backdoor/Trojan ASPWrsky Webshell Detection" name_zh_CN="木马后门程序ASPWrsky Webshell检测" name_zh_TW="木馬後門程序ASPWrsky Webshell檢測" ruleid="40957" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPShell Webshell检测" name_en_US="Backdoor/Trojan ASPShell Webshell Detection" name_zh_CN="木马后门程序ASPShell Webshell检测" name_zh_TW="木馬後門程序ASPShell Webshell檢測" ruleid="40956" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="Xoops editor_registry.php脚本目录遍历攻击" name_en_US="Xoops editor_registry.php Script Directory Traversal" name_zh_CN="Xoops editor_registry.php脚本目录遍历攻击" name_zh_TW="Xoops editor_registry.php腳本目錄遍曆攻擊" ruleid="30538" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Asterisk Web非授权访问Voicemail攻击" name_en_US="Asterisk Web Voicemail Unauthorized Access" name_zh_CN="Asterisk Web非授权访问Voicemail攻击" name_zh_TW="Asterisk Web非授權訪問Voicemail攻擊" ruleid="30539" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="漏洞扫描器Cybercop Scanner EHLO命令探测SMTP服务" name_en_US="Vulnerability Scanner Cybercop EHLO Command Detecting SMTP Service" name_zh_CN="漏洞扫描器Cybercop Scanner EHLO命令探测SMTP服务" name_zh_TW="漏洞掃描器Cybercop Scanner EHLO命令探測SMTP服務" ruleid="30240" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422521" module="0" name="Microsoft Windows Server驱动内存信息泄露攻击" name_en_US="Microsoft Windows Server Driver Memory Information Disclosure" name_zh_CN="Microsoft Windows Server驱动内存信息泄露攻击" name_zh_TW="Microsoft Windows Server驅動內存信息泄露攻擊" ruleid="30537" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－TCP端口扫描" name_en_US="Server Port Scan - Normal Scan" name_zh_CN="服务器端口扫描－TCP端口扫描" name_zh_TW="服務器端口掃描－TCP端口掃描" ruleid="30242" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－FULLXMAS扫描" name_en_US="Server Port Scan - FULLXMAS Scan" name_zh_CN="服务器端口扫描－FULLXMAS扫描" name_zh_TW="服務器端口掃描－FULLXMAS掃描" ruleid="30243" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－FIN扫描" name_en_US="Server Port Scan - FIN Scan" name_zh_CN="服务器端口扫描－FIN扫描" name_zh_TW="服務器端口掃描－FIN掃描" ruleid="30244" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－SYNFIN扫描" name_en_US="Server Port Scan - SYNFIN Scan" name_zh_CN="服务器端口扫描－SYNFIN扫描" name_zh_TW="服務器端口掃描－SYNFIN掃描" ruleid="30245" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－NULL扫描" name_en_US="Server Port Scan - NULL Scan" name_zh_CN="服务器端口扫描－NULL扫描" name_zh_TW="服務器端口掃描－NULL掃描" ruleid="30246" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－XMAS扫描" name_en_US="Server Port Scan - XMAS Scan" name_zh_CN="服务器端口扫描－XMAS扫描" name_zh_TW="服務器端口掃描－XMAS掃描" ruleid="30247" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序NOSecure木马通信" name_en_US="Backdoor/Trojan NOSecure Communication " name_zh_CN="木马后门程序NOSecure木马通信" name_zh_TW="木馬後門程序NOSecure木馬通信" ruleid="40557" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="perl.exe程序漏洞扫描探测" name_en_US="perl.exe Vulnerability Detection" name_zh_CN="perl.exe程序漏洞扫描探测" name_zh_TW="perl.exe程序漏洞掃描探測" ruleid="40224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序New Silencer木马通信" name_en_US="Backdoor/Trojan New Silencer Communication " name_zh_CN="木马后门程序New Silencer木马通信" name_zh_TW="木馬後門程序New Silencer木馬通信" ruleid="40555" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Network Terrorist木马通信" name_en_US="Backdoor/Trojan Network Terrorist Communication " name_zh_CN="木马后门程序Network Terrorist木马通信" name_zh_TW="木馬後門程序Network Terrorist木馬通信" ruleid="40554" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序NetTrash木马通信" name_en_US="Backdoor/Trojan NetTrash Communication " name_zh_CN="木马后门程序NetTrash木马通信" name_zh_TW="木馬後門程序NetTrash木馬通信" ruleid="40553" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Net Taxi木马通信" name_en_US="Backdoor/Trojan Net Taxi Communication " name_zh_CN="木马后门程序Net Taxi木马通信" name_zh_TW="木馬後門程序Net Taxi木馬通信" ruleid="40552" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Net Controller木马通信" name_en_US="Backdoor/Trojan Net Controller Communication " name_zh_CN="木马后门程序Net Controller木马通信" name_zh_TW="木馬後門程序Net Controller木馬通信" ruleid="40551" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="EZShopper loadpage.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via EZShopper loadpage.cgi Script Vulnerability" name_zh_CN="EZShopper loadpage.cgi脚本漏洞远程执行命令" name_zh_TW="EZShopper loadpage.cgi腳本漏洞遠程執行命令" ruleid="30186" visible="true" />
			<rule action=" db  screen " enabled="true" group="154206293" module="0" name="RLOGIN服务root用户认证" name_en_US="RLOGIN Service root User Authentication" name_zh_CN="RLOGIN服务root用户认证" name_zh_TW="RLOGIN服務root用戶認證" ruleid="40308" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Osiris木马通信" name_en_US="Backdoor/Trojan Osiris Communication " name_zh_CN="木马后门程序Osiris木马通信" name_zh_TW="木馬後門程序Osiris木馬通信" ruleid="40559" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Oblivion木马通信" name_en_US="Backdoor/Trojan Oblivion Communication " name_zh_CN="木马后门程序Oblivion木马通信" name_zh_TW="木馬後門程序Oblivion木馬通信" ruleid="40558" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615787" module="0" name="Windows系统下熊猫烧香蠕虫病毒刷计数器操作" name_en_US="Nimaya Refreshing the Counter on Windows" name_zh_CN="Windows系统下熊猫烧香蠕虫病毒刷计数器操作" name_zh_TW="Windows系統下熊貓燒香蠕蟲病毒刷計數器操作" ruleid="40795" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615787" module="0" name="Windows系统下熊猫烧香蠕虫病毒解析恶意网站域名" name_en_US="Nimaya Parsing Malicious Website Domain Name on Windows System" name_zh_CN="Windows系统下熊猫烧香蠕虫病毒解析恶意网站域名" name_zh_TW="Windows系統下熊貓燒香蠕蟲病毒解析惡意網站域名" ruleid="40794" visible="true" />
			<rule action=" db  screen " enabled="true" group="270534697" module="0" name="Netgear FVS318绕过URL访问过滤攻击" name_en_US="Netgear FVS318 URL Sanitization Bypass" name_zh_CN="Netgear FVS318绕过URL访问过滤攻击" name_zh_TW="Netgear FVS318繞過URL訪問過濾攻擊" ruleid="40797" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rwalld服务存在性UDP扫描探测" name_en_US="Solaris rpc.rwalld Service UDP Detection" name_zh_CN="Solaris rpc.rwalld服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rwalld服務存在性UDP掃描探測" ruleid="40309" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Windows图形渲染引擎恶意WMF格式文档邮件附件传播" name_en_US="Microsoft Windows Graphics Rendering Engine WMF Format Attachment Propagation" name_zh_CN="Microsoft Windows图形渲染引擎恶意WMF格式文档邮件附件传播" name_zh_TW="Microsoft Windows圖形渲染引擎惡意WMF格式文檔郵件附件傳播" ruleid="40791" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft IE FTP URI处理漏洞恶意命令代码邮件引用" name_en_US="Microsoft IE FTP URI Processing Vulnerability Mail" name_zh_CN="Microsoft IE FTP URI处理漏洞恶意命令代码邮件引用" name_zh_TW="Microsoft IE FTP URI處理漏洞惡意命令代碼郵件引用" ruleid="40790" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680326" module="0" name="Microsoft Windows 2000 RPC服务畸形回应" name_en_US="Microsoft Windows 2000 RPC Service Malformed Response" name_zh_CN="Microsoft Windows 2000 RPC服务畸形回应" name_zh_TW="Microsoft Windows 2000 RPC服務畸形回應" ruleid="40793" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680326" module="0" name="Microsoft Windows 2000 RPC服务畸形请求" name_en_US="Microsoft Windows 2000 RPC Service Malformed Requests" name_zh_CN="Microsoft Windows 2000 RPC服务畸形请求" name_zh_TW="Microsoft Windows 2000 RPC服務畸形請求" ruleid="40792" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具网易泡泡用户登录" name_en_US="Instant Messaging Tool POPO User Login" name_zh_CN="即时通信工具网易泡泡用户登录" name_zh_TW="即時通信工具網易泡泡用戶登錄" ruleid="50080" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序网络红娘木马通信" name_en_US="Backdoor/Trojan RedGirl Communication " name_zh_CN="木马后门程序网络红娘木马通信" name_zh_TW="木馬後門程序網絡紅娘木馬通信" ruleid="40719" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715790" module="0" name="SMTP服务暴力猜测用户名口令" name_en_US="SMTP Service User Password Brute Forcce" name_zh_CN="SMTP服务暴力猜测用户名口令" name_zh_TW="SMTP服務暴力猜測用戶名口令" ruleid="50082" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="0" name="Windows系统远程管理工具终端服务用户登录" name_en_US="Windows Remote Management Tool Terminal Service User Login" name_zh_CN="Windows系统远程管理工具终端服务用户登录" name_zh_TW="Windows系統遠程管理工具終端服務用戶登錄" ruleid="50083" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157722" module="0" name="Macromedia Shockwave 10 SWDIR.DLL多个ActiveX控件远程拒绝服务攻击" name_en_US="Macromedia Shockwave 10 SWDIR.DLL ActiveX Control Remote Denial of Service" name_zh_CN="Macromedia Shockwave 10 SWDIR.DLL多个ActiveX控件远程拒绝服务攻击" name_zh_TW="Macromedia Shockwave 10 SWDIR.DLL多個ActiveX控件遠程拒絕服務攻擊" ruleid="40799" visible="true" />
			<rule action=" db  screen " enabled="true" group="136380473" module="0" name="Nokia Electronic Documentation连接重定向功能利用" name_en_US="Nokia Electronic Documentation Connection Redirection Exploitation" name_zh_CN="Nokia Electronic Documentation连接重定向功能利用" name_zh_TW="Nokia Electronic Documentation連接重定向功能利用" ruleid="40798" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN发现非法信息通信" name_en_US="Instant Messaging Tool MSN Illegal Information Attempt" name_zh_CN="即时通信工具MSN发现非法信息通信" name_zh_TW="即時通信工具MSN發現非法信息通信" ruleid="50086" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序随意门木马通信" name_en_US="Backdoor/Trojan RandomDoor Communication " name_zh_CN="木马后门程序随意门木马通信" name_zh_TW="木馬後門程序隨意門木馬通信" ruleid="40718" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体Vids.Myspace连接" name_en_US="Online Streaming Media Vids.Myspace Connect" name_zh_CN="在线流媒体Vids.Myspace连接" name_zh_TW="在線流媒體Vids.Myspace連接" ruleid="50248" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="用户访问开心网" name_en_US="User Login Kaixin Website" name_zh_CN="用户访问开心网" name_zh_TW="用戶訪問開心網" ruleid="50249" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体YouTube连接" name_en_US="Online Streaming Media YouTube Connect" name_zh_CN="在线流媒体YouTube连接" name_zh_TW="在線流媒體YouTube連接" ruleid="50246" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体ViralVideoChart连接" name_en_US="Online Streaming Media Viral Video Chart Connect" name_zh_CN="在线流媒体ViralVideoChart连接" name_zh_TW="在線流媒體ViralVideoChart連接" ruleid="50247" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件齐鲁证券用户登录" name_en_US="Stock Market Analtsis Software Qilu User Login" name_zh_CN="股票行情分析操作软件齐鲁证券用户登录" name_zh_TW="股票行情分析操作軟件齊魯證券用戶登錄" ruleid="50244" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp3.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp3.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp3.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp3.htr文件訪問" ruleid="30180" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏剑侠情缘用户登录" name_en_US="Online Game Jianxia User Login" name_zh_CN="网络游戏剑侠情缘用户登录" name_zh_TW="網絡遊戲劍俠情緣用戶登錄" ruleid="50242" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="2" name="用户访问受控URL" name_en_US="User Browsing Restricted URL" name_zh_CN="用户访问受控URL" name_zh_TW="用戶訪問受控URL" ruleid="50243" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏跑跑卡丁车用户登陆" name_en_US="Online Game PaoPao User Login" name_zh_CN="网络游戏跑跑卡丁车用户登陆" name_zh_TW="網絡遊戲跑跑卡丁車用戶登陸" ruleid="50240" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏英雄之门用户登陆" name_en_US="Online Game HeroGate User Login" name_zh_CN="网络游戏英雄之门用户登陆" name_zh_TW="網絡遊戲英雄之門用戶登陸" ruleid="50241" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="HyperSeek hsx.cgi脚本漏洞扫描利用" name_en_US="HyperSeek hsx.cgi Script Vulnerability Detection" name_zh_CN="HyperSeek hsx.cgi脚本漏洞扫描利用" name_zh_TW="HyperSeek hsx.cgi腳本漏洞掃描利用" ruleid="30335" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CGIScript.net cspassword.cgi脚本漏洞扫描探测" name_en_US="CGIScript.net cspassword.cgi Script Vulnerability Detection" name_zh_CN="CGIScript.net cspassword.cgi脚本漏洞扫描探测" name_zh_TW="CGIScript.net cspassword.cgi腳本漏洞掃描探測" ruleid="30336" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="password.cgi.tmp文件扫描探测" name_en_US="password.cgi.tmp File Detection" name_zh_CN="password.cgi.tmp文件扫描探测" name_zh_TW="password.cgi.tmp文件掃描探測" ruleid="30337" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="IBM Net.Data document.d2w脚本漏洞扫描利用" name_en_US="IBM Net.Data document.d2w Script Vulnerability Detection" name_zh_CN="IBM Net.Data document.d2w脚本漏洞扫描利用" name_zh_TW="IBM Net.Data document.d2w腳本漏洞掃描利用" ruleid="30330" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="Alibaba tst.bat脚本漏洞扫描利用" name_en_US="Alibaba tst.bat Script Vulnerability Detection" name_zh_CN="Alibaba tst.bat脚本漏洞扫描利用" name_zh_TW="Alibaba tst.bat腳本漏洞掃描利用" ruleid="30331" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="cal_make.pl脚本漏洞扫描利用" name_en_US="cal_make.pl Script Vulnerability Detection" name_zh_CN="cal_make.pl脚本漏洞扫描利用" name_zh_TW="cal_make.pl腳本漏洞掃描利用" ruleid="30332" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="pagelog.cgi脚本遍历目录" name_en_US="Directory Traversal via pagelog.cgi Script" name_zh_CN="pagelog.cgi脚本遍历目录" name_zh_TW="pagelog.cgi腳本遍曆目錄" ruleid="30333" visible="true" />
			<rule action=" db  screen " enabled="true" group="222298411" module="0" name="MySQL MaxDB WebDBM Database Name Handling Remote 缓冲区溢出漏洞" name_en_US="HTTP: MySQL MaxDB WebDBM Database Name Handling Remote Buffer Overflow Vulnerability" name_zh_CN="MySQL MaxDB WebDBM Database Name Handling Remote 缓冲区溢出漏洞" name_zh_TW="MySQL MaxDB WebDBM Database Name Handling Remote 緩沖區溢出漏洞" ruleid="29113" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Novell NetMail WebAdmin.exe 漏洞" name_en_US="HTTP: Novell NetMail WebAdmin.exe Vulnerability" name_zh_CN="Novell NetMail WebAdmin.exe 漏洞" name_zh_TW="Novell NetMail WebAdmin.exe 漏洞" ruleid="29111" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="BEA WebLogic Admin Console 跨站脚本攻击漏洞" name_en_US="HTTP: BEA WebLogic Admin Console Cross Site Scripting Vulnerability" name_zh_CN="BEA WebLogic Admin Console 跨站脚本攻击漏洞" name_zh_TW="BEA WebLogic Admin Console 跨站腳本攻擊漏洞" ruleid="29116" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="classifieds.cgi脚本漏洞扫描利用" name_en_US="classifieds.cgi Script Vulnerability Detection" name_zh_CN="classifieds.cgi脚本漏洞扫描利用" name_zh_TW="classifieds.cgi腳本漏洞掃描利用" ruleid="30339" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Ipswitch WhatsUp Gold Web Server 缓冲区溢出漏洞" name_en_US="HTTP: Ipswitch WhatsUp Gold Web Server Buffer Overflow" name_zh_CN="Ipswitch WhatsUp Gold Web Server 缓冲区溢出漏洞" name_zh_TW="Ipswitch WhatsUp Gold Web Server 緩沖區溢出漏洞" ruleid="29114" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Ask Toolbar ToolbarSettings ActiveX控件远程栈溢出攻击" name_en_US="Ask Toolbar ToolbarSettings ActiveX Control Remote Stack Overflow" name_zh_CN="Ask Toolbar ToolbarSettings ActiveX控件远程栈溢出攻击" name_zh_TW="Ask Toolbar ToolbarSettings ActiveX控件遠程棧溢出攻擊" ruleid="20895" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="Web应用漏洞扫描器WebInspect扫描操作" name_en_US="Web Application Vulnerability Scanner WebInspect Scan Operation" name_zh_CN="Web应用漏洞扫描器WebInspect扫描操作" name_zh_TW="Web應用漏洞掃描器WebInspect掃描操作" ruleid="30590" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425851" module="0" name="SQL注入漏洞扫描利用工具SQLMAP扫描操作" name_en_US="SQL Injection Vulnerability Scanner SQLMAP Scan Operation" name_zh_CN="SQL注入漏洞扫描利用工具SQLMAP扫描操作" name_zh_TW="SQL注入漏洞掃描利用工具SQLMAP掃描操作" ruleid="30591" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486045" module="0" name="Windows SMB访问匿名管道" name_en_US="Windows SMB Accessing Anonymous Pipe" name_zh_CN="Windows SMB访问匿名管道" name_zh_TW="Windows SMB訪問匿名管道" ruleid="40420" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Dagger 1.4.0木马服务端返回系统信息" name_en_US="Backdoor/Trojan Dagger 1.4.0 Server Returning System Information " name_zh_CN="木马后门程序Dagger 1.4.0木马服务端返回系统信息" name_zh_TW="木馬後門程序Dagger 1.4.0木馬服務端返回系統信息" ruleid="40427" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="F5 BIG-IP XML外部实体注入漏洞" name_en_US="F5 BIG-IP XML External Entity Injection Vulnerability" name_zh_CN="F5 BIG-IP XML外部实体注入漏洞" name_zh_TW="F5 BIG-IP XML外部實體注入漏洞" ruleid="30592" visible="true" />
			<rule action=" db  screen " enabled="true" group="154206294" module="0" name="RLOGIN服务用户认证失败" name_en_US="RLOGIN Service User Authentication Failed" name_zh_CN="RLOGIN服务用户认证失败" name_zh_TW="RLOGIN服務用戶認證失敗" ruleid="40425" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPAdmin数据库操作" name_en_US="Backdoor/Trojan ASPAdmin Database Operation" name_zh_CN="木马后门程序ASPAdmin数据库操作" name_zh_TW="木馬後門程序ASPAdmin數據庫操作" ruleid="40968" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="MyPHPLinks index.php脚本漏洞绕过验证访问" name_en_US="Authentication Bypass via MyPHPLinks index.php Script Vulnerability" name_zh_CN="MyPHPLinks index.php脚本漏洞绕过验证访问" name_zh_TW="MyPHPLinks index.php腳本漏洞繞過驗證訪問" ruleid="40429" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315067" module="0" name="F5 BIG-IP SQL注入漏洞" name_en_US="F5 BIG-IP SQL Injection Vulnerability" name_zh_CN="F5 BIG-IP SQL注入漏洞" name_zh_TW="F5 BIG-IP SQL注入漏洞" ruleid="30593" visible="true" />
			<rule action=" db  screen " enabled="true" group="202506333" module="1" name="在线流媒体MP4视频连接" name_en_US="Online Streaming Media MP4 Video  Connect" name_zh_CN="在线流媒体MP4视频连接" name_zh_TW="在線流媒體MP4視頻連接" ruleid="50405" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="易盛期货软件交易用户登陆" name_en_US="Yi Sheng Futures Trading Software User Login" name_zh_CN="易盛期货软件交易用户登陆" name_zh_TW="易盛期貨軟件交易用戶登陸" ruleid="50406" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="文华财经期货交易软件用户登陆" name_en_US="Wen Hua Futures Trading Software User Login" name_zh_CN="文华财经期货交易软件用户登陆" name_zh_TW="文華財經期貨交易軟件用戶登陸" ruleid="50407" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具Jabber用户登录" name_en_US="Instant Messaging Tool  Jabber User Login" name_zh_CN="即时通信工具Jabber用户登录" name_zh_TW="即時通信工具Jabber用戶登錄" ruleid="50136" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898074" module="0" name="可执行目录上传文件事件" name_en_US="HTTP: Post File to Executable Directory" name_zh_CN="可执行目录上传文件事件" name_zh_TW="可執行目錄上傳文件事件" ruleid="50402" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="图像过滤事件监控" name_en_US="Photo Filter Events Monitor" name_zh_CN="图像过滤事件监控" name_zh_TW="圖像過濾事件監控" ruleid="50403" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365526" module="0" name="Solaris FTP畸形CWD命令引发CoreDump攻击" name_en_US="Solaris FTP Malformed CWD Command CoreDump Attack" name_zh_CN="Solaris FTP畸形CWD命令引发CoreDump攻击" name_zh_TW="Solaris FTP畸形CWD命令引發CoreDump攻擊" ruleid="20273" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPAdmin文件浏览" name_en_US="Backdoor/Trojan ASPAdmin Files Browser" name_zh_CN="木马后门程序ASPAdmin文件浏览" name_zh_TW="木馬後門程序ASPAdmin文件浏覽" ruleid="40969" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725690" module="0" name="JBoss企业应用平台非授权访问漏洞" name_en_US="JBoss Enterprise Application Platform Unauthorized Access Vulnerability" name_zh_CN="JBoss企业应用平台非授权访问漏洞" name_zh_TW="JBoss企業應用平台非授權訪問漏洞" ruleid="62147" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Siemens Tecnomatix FactoryLink CSService GetFile path缓冲区溢出漏洞" name_en_US="Siemens Tecnomatix FactoryLink CSService GetFile path Buffer Overflow Vulnerability " name_zh_CN="Siemens Tecnomatix FactoryLink CSService GetFile path缓冲区溢出漏洞" name_zh_TW="Siemens Tecnomatix FactoryLink CSService GetFile path緩沖區溢出漏洞" ruleid="22399" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Siemens Tecnomatix FactoryLink CSService CSMSG filter缓冲区溢出漏洞" name_en_US="Siemens Tecnomatix FactoryLink CSService CSMSG filter Buffer Overflow Vulnerability " name_zh_CN="Siemens Tecnomatix FactoryLink CSService CSMSG filter缓冲区溢出漏洞" name_zh_TW="Siemens Tecnomatix FactoryLink CSService CSMSG filter緩沖區溢出漏洞" ruleid="22398" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETTELEMETRY缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETTELEMETRY Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETTELEMETRY缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETTELEMETRY緩沖區溢出漏洞" ruleid="22391" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGSEND缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGSEND Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGSEND缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGSEND緩沖區溢出漏洞" ruleid="22390" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETTELEMETRY缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETTELEMETRY Buffer Overflow Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETTELEMETRY缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETTELEMETRY緩沖區溢出漏洞" ruleid="22393" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETCHANNELTELEMETRY缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETCHANNELTELEMETRY Buffer Overflow Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETCHANNELTELEMETRY缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_GETCHANNELTELEMETRY緩沖區溢出漏洞" ruleid="22392" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="RealFlex RealWin SCADA On_FC_SCRIPT_FCS_STARTPROG缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_SCRIPT_FCS_STARTPROG Buffer Overflow Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_SCRIPT_FCS_STARTPROG缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_SCRIPT_FCS_STARTPROG緩沖區溢出漏洞" ruleid="22395" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETCHANNELTELEMETRY缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETCHANNELTELEMETRY Buffer Overflow Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETCHANNELTELEMETRY缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CGETTAG_FCS_SETCHANNELTELEMETRY緩沖區溢出漏洞" ruleid="22394" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Iconics Genesis SCADA整数溢出漏洞" name_en_US="Iconics Genesis SCADA Integer Overflow Vulnerability" name_zh_CN="Iconics Genesis SCADA整数溢出漏洞" name_zh_TW="Iconics Genesis SCADA整數溢出漏洞" ruleid="22397" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Iconics Genesis SCADA释放未初始化的内存触发选项漏洞" name_en_US="Iconics Genesis SCADA Freeing of Unitialized Memory Trigger Option Vulnerability" name_zh_CN="Iconics Genesis SCADA释放未初始化的内存触发选项漏洞" name_zh_TW="Iconics Genesis SCADA釋放未初始化的內存觸發選項漏洞" ruleid="22396" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序DeepThroat 3.1 服务端回应后门 " name_en_US="Backdoor/Trojan DeepThroat 3.1 Server Response " name_zh_CN="木马后门程序DeepThroat 3.1 服务端回应后门 " name_zh_TW="木馬後門程序DeepThroat 3.1 服務端回應後門 " ruleid="40951" visible="true" />
			<rule action=" db  screen " enabled="true" group="154206293" module="0" name="RLOGIN服务信任用户认证" name_en_US="RLOGIN Service Trusting User Authentication" name_zh_CN="RLOGIN服务信任用户认证" name_zh_TW="RLOGIN服務信任用戶認證" ruleid="50066" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问默认共享C$" name_en_US="Windows SMB Accessing the Default Share C$" name_zh_CN="Windows SMB访问默认共享C$" name_zh_TW="Windows SMB訪問默認共享C$" ruleid="50067" visible="true" />
			<rule action=" db  screen " enabled="true" group="222363738" module="0" name="Oracle数据库dbsnmp_start远程执行命令操作" name_en_US="Oracle Database dbsnmp_start Remote Command Execution" name_zh_CN="Oracle数据库dbsnmp_start远程执行命令操作" name_zh_TW="Oracle數據庫dbsnmp_start遠程執行命令操作" ruleid="50064" visible="true" />
			<rule action=" db  screen " enabled="false" group="95486045" module="0" name="Windows NBTSTAT信息探测" name_en_US="Windows NBTSTAT Information Detection" name_zh_CN="Windows NBTSTAT信息探测" name_zh_TW="Windows NBTSTAT信息探測" ruleid="50065" visible="true" />
			<rule action=" db  screen " enabled="true" group="95682639" module="0" name="网络蠕虫Worm.SoBig病毒利用共享传播" name_en_US="Network Worm Worm.SoBig Propagation Through Sharing" name_zh_CN="网络蠕虫Worm.SoBig病毒利用共享传播" name_zh_TW="網絡蠕蟲Worm.SoBig病毒利用共享傳播" ruleid="50062" visible="true" />
			<rule action=" db  screen " enabled="true" group="95421514" module="0" name="可疑蠕虫病毒通过Windows共享传播" name_en_US="Suspicious Worms Propagation via Windows Sharing" name_zh_CN="可疑蠕虫病毒通过Windows共享传播" name_zh_TW="可疑蠕蟲病毒通過Windows共享傳播" ruleid="50063" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHP-CGI远程源码泄露和任意代码执行漏洞" name_en_US="PHP-CGI Remote Source Disclosure And Arbitrary Code Execution Vulnerability" name_zh_CN="PHP-CGI远程源码泄露和任意代码执行漏洞" name_zh_TW="PHP-CGI遠程源碼泄露和任意代碼執行漏洞" ruleid="22249" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208111" module="0" name="Discuz! X2.5远程代码执行漏洞" name_en_US="Discuz! X2.5 Remote Code Execution Vulnerability" name_zh_CN="Discuz! X2.5远程代码执行漏洞" name_zh_TW="Discuz! X2.5遠程代碼執行漏洞" ruleid="22248" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="DEDECMS 5.7之前版本远程SQL注入漏洞" name_en_US="DEDECMS Version 5.7 Remote SQL Injection Vulnerability" name_zh_CN="DEDECMS 5.7之前版本远程SQL注入漏洞" name_zh_TW="DEDECMS 5.7之前版本遠程SQL注入漏洞" ruleid="22247" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="TELNET服务客户端解析服务器配置" name_en_US="TELNET Service Client Parsing Server Configuration" name_zh_CN="TELNET服务客户端解析服务器配置" name_zh_TW="TELNET服務客戶端解析服務器配置" ruleid="40095" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Novell eDirectory Server iMonitor远程缓冲区溢出攻击" name_en_US="Novell eDirectory Server iMonitor Remote Buffer Overflow" name_zh_CN="Novell eDirectory Server iMonitor远程缓冲区溢出攻击" name_zh_TW="Novell eDirectory Server iMonitor遠程緩沖區溢出攻擊" ruleid="20625" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486037" module="0" name="Windows SMB访问默认共享D$" name_en_US="Windows SMB Accessing the Default Share D$" name_zh_CN="Windows SMB访问默认共享D$" name_zh_TW="Windows SMB訪問默認共享D$" ruleid="50068" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486045" module="0" name="Windows SMB访问默认共享ADMIN$" name_en_US="Windows SMB Accessing the Default Share ADMIN$" name_zh_CN="Windows SMB访问默认共享ADMIN$" name_zh_TW="Windows SMB訪問默認共享ADMIN$" ruleid="50069" visible="true" />
			<rule action=" db  screen " enabled="false" group="166727755" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Trinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40391" visible="false" />
			<rule action=" db  screen " enabled="true" group="93323567" module="0" name="AgentX++ Master AgentX::receive_agentx栈缓冲区溢出漏洞" name_en_US="AgentX++ Master AgentX::receive_agentx Stack Buffer Overflow Vulnerability" name_zh_CN="AgentX++ Master AgentX::receive_agentx栈缓冲区溢出漏洞" name_zh_TW="AgentX++ Master AgentX::receive_agentx棧緩沖區溢出漏洞" ruleid="22024" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="ACDSee XPM File Section缓冲区溢出漏洞" name_en_US="ACDSee XPM File Section Buffer Overflow Vulnerability" name_zh_CN="ACDSee XPM File Section缓冲区溢出漏洞" name_zh_TW="ACDSee XPM File Section緩沖區溢出漏洞" ruleid="22022" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="ACDSee FotoSlate PLP File id参数溢出漏洞" name_en_US="ACDSee FotoSlate PLP File id Parameter Overflow Vulnerability" name_zh_CN="ACDSee FotoSlate PLP File id参数溢出漏洞" name_zh_TW="ACDSee FotoSlate PLP File id參數溢出漏洞" ruleid="22021" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="安全工具360系列软件更新" name_en_US="Security Tool 360 Software Upgrade" name_zh_CN="安全工具360系列软件更新" name_zh_TW="安全工具360系列軟件更新" ruleid="40826" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="远程控制工具NetOp建立连接(UDP)" name_en_US="Remote Control Tool NetOp Connection(UDP)" name_zh_CN="远程控制工具NetOp建立连接(UDP)" name_zh_TW="遠程控制工具NetOp建立連接(UDP)" ruleid="40824" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit探测服务" name_en_US="Backdoor/Trojan Rootkit Investigate  Serveices" name_zh_CN="木马后门程序Rootkit探测服务" name_zh_TW="木馬後門程序Rootkit探測服務" ruleid="40973" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows打印后台程序GetPrinterData过程远程拒绝服务攻击" name_en_US="Microsoft Windows Spooler GetPrinterData Procedure Remote Denial of Service" name_zh_CN="Microsoft Windows打印后台程序GetPrinterData过程远程拒绝服务攻击" name_zh_TW="Microsoft Windows打印後台程序GetPrinterData過程遠程拒絕服務攻擊" ruleid="10180" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="4" name="垃圾邮件网络传播" name_en_US="Spam Network Spreading" name_zh_CN="垃圾邮件网络传播" name_zh_TW="垃圾郵件網絡傳播" ruleid="40821" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="已知危险IP地址数据通信" name_en_US="Communicating with Suspicious Known IP" name_zh_CN="已知危险IP地址数据通信" name_zh_TW="已知危險IP地址數據通信" ruleid="40820" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Windows Media Player畸形PNG块文档邮件附件传播" name_en_US="Microsoft Windows Media Player Malformed PNG Chunk Document Attachment Propagation" name_zh_CN="Microsoft Windows Media Player畸形PNG块文档邮件附件传播" name_zh_TW="Microsoft Windows Media Player畸形PNG塊文檔郵件附件傳播" ruleid="40779" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616810" module="0" name="Microsoft PowerPoint远程代码执行漏洞(CVE-2010-3337)" name_en_US="Microsoft PowerPoint Remote Code Execution Vulnerability(CVE-2010-3337)" name_zh_CN="Microsoft PowerPoint远程代码执行漏洞(CVE-2010-3337)" name_zh_TW="Microsoft PowerPoint遠程代碼執行漏洞(CVE-2010-3337)" ruleid="21129" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel 2000,Excel 2002内存破坏漏洞" name_en_US="Microsoft Excel 2000,Excel 2002 Memory Corrupt Vulnerability" name_zh_CN="Microsoft Excel 2000,Excel 2002内存破坏漏洞" name_zh_TW="Microsoft Excel 2000,Excel 2002內存破壞漏洞" ruleid="21128" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010远程代码执行漏洞(CVE-2010-3335)" name_en_US="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010 Remote Code Execution Vulnerability(CVE-2010-3335)" name_zh_CN="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010远程代码执行漏洞(CVE-2010-3335)" name_zh_TW="Microsoft Excel 2000,Excel 2002,Excel 2007 and Excel 2010遠程代碼執行漏洞(CVE-2010-3335)" ruleid="21127" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Office艺术绘图记录解析内存破坏漏洞（MS10-087）" name_en_US="Microsoft Office Art Drawing Record Parsing Memory Corruption Vulnerability (MS10-087)" name_zh_CN="Microsoft Office艺术绘图记录解析内存破坏漏洞（MS10-087）" name_zh_TW="Microsoft Office藝術繪圖記錄解析內存破壞漏洞（MS10-087）" ruleid="21126" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Word RTF文件解析栈溢出漏洞" name_en_US="Microsoft Word RTF File Parsing Stack Buffer Overflow Vulnerability" name_zh_CN="Microsoft Word RTF文件解析栈溢出漏洞" name_zh_TW="Microsoft Word RTF文件解析棧溢出漏洞" ruleid="21125" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft PowerPoint 'mso.dll' 堆破坏漏洞" name_en_US="Microsoft PowerPoint 'mso.dll' Heap Corruption Vulnerability  " name_zh_CN="Microsoft PowerPoint 'mso.dll' 堆破坏漏洞" name_zh_TW="Microsoft PowerPoint 'mso.dll' 堆破壞漏洞" ruleid="21124" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft PowerPoint 'PP7X32.DLL' 远程堆溢出漏洞" name_en_US="Microsoft PowerPoint 'PP7X32.DLL' Remote Heap-Based Buffer Overflow Vulnerability " name_zh_CN="Microsoft PowerPoint 'PP7X32.DLL' 远程堆溢出漏洞" name_zh_TW="Microsoft PowerPoint 'PP7X32.DLL' 遠程堆溢出漏洞" ruleid="21123" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256683" module="0" name="ProFTPD IAC 远程root权限利用" name_en_US="ProFTPD IAC Remote Root Exploit" name_zh_CN="ProFTPD IAC 远程root权限利用" name_zh_TW="ProFTPD IAC 遠程root權限利用" ruleid="21122" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256698" module="0" name="FileCOPA FTP Server 6.01目录遍历攻击" name_en_US="FileCOPA FTP Server 6.01 Directory Traversal" name_zh_CN="FileCOPA FTP Server 6.01目录遍历攻击" name_zh_TW="FileCOPA FTP Server 6.01目錄遍曆攻擊" ruleid="21121" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Landesk OS命令注入漏洞" name_en_US="Landesk OS Command Injection" name_zh_CN="Landesk OS命令注入漏洞" name_zh_TW="Landesk OS命令注入漏洞" ruleid="21120" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943407" module="0" name="TP-Link IP Cameras多个远程安全漏洞" name_en_US="TP-Link IP Cameras Multiple Vulnerabilities" name_zh_CN="TP-Link IP Cameras多个远程安全漏洞" name_zh_TW="TP-Link IP Cameras多個遠程安全漏洞" ruleid="22732" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Ruby on Rails 远程代码执行漏洞利用(CVE-2013-0156)" name_en_US="Ruby on Rails Remote Code Execution Vulnerability(CVE-2013-0156)" name_zh_CN="Ruby on Rails 远程代码执行漏洞利用(CVE-2013-0156)" name_zh_TW="Ruby on Rails 遠程代碼執行漏洞利用(CVE-2013-0156)" ruleid="22731" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit间谍" name_en_US="Backdoor/Trojan Rootkit Spyware" name_zh_CN="木马后门程序Rootkit间谍" name_zh_TW="木馬後門程序Rootkit間諜" ruleid="40975" visible="true" />
			<rule action=" db  screen " enabled="false" group="99618886" module="0" name="木马后门程序Ackcmd木马程序通信" name_en_US="Backdoor/Trojan Ackcmd Communication " name_zh_CN="木马后门程序Ackcmd木马程序通信" name_zh_TW="木馬後門程序Ackcmd木馬程序通信" ruleid="40000" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具宏源证券活动  " name_en_US="Securities Analyzing/Trading Software  Hongyuan Securities Activity" name_zh_CN="证券分析交易工具宏源证券活动  " name_zh_TW="證券分析交易工具宏源證券活動  " ruleid="50427" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpMyDirectory ROOT_PATH参数远程文件包含攻击" name_en_US="phpMyDirectory ROOT_PATH Parameter Remote File Inclusion" name_zh_CN="phpMyDirectory ROOT_PATH参数远程文件包含攻击" name_zh_TW="phpMyDirectory ROOT_PATH參數遠程文件包含攻擊" ruleid="20722" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="ScozNet ScozNews CONFIG[main_path]参数远程文件包含攻击" name_en_US="ScozNet ScozNews CONFIG[main_path] Parameter Remote File Inclusion" name_zh_CN="ScozNet ScozNews CONFIG[main_path]参数远程文件包含攻击" name_zh_TW="ScozNet ScozNews CONFIG[main_path]參數遠程文件包含攻擊" ruleid="20723" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="TR Newsportal poll.php远程文件包含攻击" name_en_US="TR Newsportal poll.php Remote File Inclusion" name_zh_CN="TR Newsportal poll.php远程文件包含攻击" name_zh_TW="TR Newsportal poll.php遠程文件包含攻擊" ruleid="20720" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpBazar classified_right.php远程文件包含攻击" name_en_US="phpBazar classified_right.php Remote File Inclusion" name_zh_CN="phpBazar classified_right.php远程文件包含攻击" name_zh_TW="phpBazar classified_right.php遠程文件包含攻擊" ruleid="20721" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft SQL Server sqldmo.dll ActiveX控件缓冲区溢出攻击" name_en_US="Microsoft SQL Server sqldmo.dll ActiveX Control Buffer Overflow" name_zh_CN="Microsoft SQL Server sqldmo.dll ActiveX控件缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server sqldmo.dll ActiveX控件緩沖區溢出攻擊" ruleid="20894" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpRaid远程文件包含攻击" name_en_US="phpRaid Remote File Inclusion" name_zh_CN="phpRaid远程文件包含攻击" name_zh_TW="phpRaid遠程文件包含攻擊" ruleid="20727" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Quezza BB class_template.php远程文件包含攻击" name_en_US="Quezza BB class_template.php Remote File Inclusion" name_zh_CN="Quezza BB class_template.php远程文件包含攻击" name_zh_TW="Quezza BB class_template.php遠程文件包含攻擊" ruleid="20724" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Squirrelcart cart_content.php远程文件包含攻击" name_en_US="Squirrelcart cart_content.php Remote File Inclusion" name_zh_CN="Squirrelcart cart_content.php远程文件包含攻击" name_zh_TW="Squirrelcart cart_content.php遠程文件包含攻擊" ruleid="20725" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="即时通讯工具雅虎通YVerInfo.dll ActiveX控件远程栈缓冲区溢出攻击" name_en_US="Insant Messaging Tool Yahoo! Messenger YVerInfo.dll ActiveX Control Remote Stack Buffer Overflow" name_zh_CN="即时通讯工具雅虎通YVerInfo.dll ActiveX控件远程栈缓冲区溢出攻击" name_zh_TW="即時通訊工具雅虎通YVerInfo.dll ActiveX控件遠程棧緩沖區溢出攻擊" ruleid="20898" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Macrovision InstallShield Update Service ActiveX非授权下载执行任意程序攻击" name_en_US="Macrovision InstallShield Update Service ActiveX Unauthorized Arbitrary Program Execution" name_zh_CN="Macrovision InstallShield Update Service ActiveX非授权下载执行任意程序攻击" name_zh_TW="Macrovision InstallShield Update Service ActiveX非授權下載執行任意程序攻擊" ruleid="20899" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Windows RPC DCOM接口UDP长路径名远程堆缓冲区溢出攻击" name_en_US="Windows RPC DCOM Interface UDP Long Path Name Remote Stack Buffer Overflow" name_zh_CN="Windows RPC DCOM接口UDP长路径名远程堆缓冲区溢出攻击" name_zh_TW="Windows RPC DCOM接口UDP長路徑名遠程堆緩沖區溢出攻擊" ruleid="20728" visible="true" />
			<rule action=" db  screen " enabled="true" group="71303467" module="0" name="InterAccess TelnetD Server远程缓冲区溢出攻击" name_en_US="InterAccess TelnetD Server Remote Buffer Overflow" name_zh_CN="InterAccess TelnetD Server远程缓冲区溢出攻击" name_zh_TW="InterAccess TelnetD Server遠程緩沖區溢出攻擊" ruleid="20729" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序VIRUS Worm.Pyks A类木马网络数据通信" name_en_US="Backdoor/Trojan VIRUS Worm.Pyks HTTP C&amp;C Traffic User-Agent skw00001" name_zh_CN="木马后门程序VIRUS Worm.Pyks A类木马网络数据通信" name_zh_TW="木馬後門程序VIRUS Worm.Pyks A類木馬網絡數據通信" ruleid="40944" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序黑星通信" name_en_US="Backdoor/Trojan BlackStar Trojan Communnication" name_zh_CN="木马后门程序黑星通信" name_zh_TW="木馬後門程序黑星通信" ruleid="40761" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Institution2004通信" name_en_US="Backdoor/Trojan Institution2004 Communication " name_zh_CN="木马后门程序Institution2004通信" name_zh_TW="木馬後門程序Institution2004通信" ruleid="40762" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834575" module="0" name="协议数据溢出SHELLCODE攻击" name_en_US="Protocol Data Buffer Overflow SHELLCODE Attack" name_zh_CN="协议数据溢出SHELLCODE攻击" name_zh_TW="協議數據溢出SHELLCODE攻擊" ruleid="70002" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="非默认端口上发现已知协议" name_en_US="Known Protocol on Non-default Port" name_zh_CN="非默认端口上发现已知协议" name_zh_TW="非默認端口上發現已知協議" ruleid="70003" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615787" module="0" name="Windows系统下威金蠕虫病毒解析恶意网站域名" name_en_US="Worm.Viking Parsing Malicious Website Domain Name on Windows System" name_zh_CN="Windows系统下威金蠕虫病毒解析恶意网站域名" name_zh_TW="Windows系統下威金蠕蟲病毒解析惡意網站域名" ruleid="40763" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="发现异常的HTTP协议" name_en_US="Abnormal HTTP Protocol" name_zh_CN="发现异常的HTTP协议" name_zh_TW="發現異常的HTTP協議" ruleid="70004" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序流萤 2.5木马通信" name_en_US="Backdoor/Trojan FireFly 2.5 Communication " name_zh_CN="木马后门程序流萤 2.5木马通信" name_zh_TW="木馬後門程序流螢 2.5木馬通信" ruleid="40764" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序自由远程管理系统侧通信" name_en_US="Backdoor/Trojan Free Remote Management System Communication " name_zh_CN="木马后门程序自由远程管理系统侧通信" name_zh_TW="木馬後門程序自由遠程管理系統側通信" ruleid="40765" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Stacheldraht客户端确认通信" name_en_US="DDOS Stacheldraht Client Communication Confirmation" name_zh_CN="DDOS工具Stacheldraht客户端确认通信" name_zh_TW="DDOS工具Stacheldraht客戶端確認通信" ruleid="40766" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Stacheldraht主控端向分布端发送指令" name_en_US="DDOS Tool Stacheldraht Console Sending Command to Distributed End" name_zh_CN="DDOS工具Stacheldraht主控端向分布端发送指令" name_zh_TW="DDOS工具Stacheldraht主控端向分布端發送指令" ruleid="40767" visible="true" />
			<rule action=" db  screen " enabled="true" group="78644299" module="0" name="网络蠕虫Nimda攻击" name_en_US="Network Worm Nimda Attack" name_zh_CN="网络蠕虫Nimda攻击" name_zh_TW="網絡蠕蟲Nimda攻擊" ruleid="62114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Nuclear RAT通信" name_en_US="Backdoor/Trojan Nuclear RAT Communication " name_zh_CN="木马后门程序Nuclear RAT通信" name_zh_TW="木馬後門程序Nuclear RAT通信" ruleid="40717" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651930" module="0" name="SNMPv3畸形报文处理拒绝服务攻击" name_en_US="SNMPv3 Malformed Message Handling Denial of Service" name_zh_CN="SNMPv3畸形报文处理拒绝服务攻击" name_zh_TW="SNMPv3畸形報文處理拒絕服務攻擊" ruleid="10169" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Cisco IP Phone畸形SIP协议请求拒绝服务攻击" name_en_US="Cisco IP Phone Malformed SIP Protocol Request Denial of Service" name_zh_CN="Cisco IP Phone畸形SIP协议请求拒绝服务攻击" name_zh_TW="Cisco IP Phone畸形SIP協議請求拒絕服務攻擊" ruleid="10168" visible="true" />
			<rule action=" db  screen " enabled="true" group="161482778" module="0" name="GNU Radius SNMP字符串长度整数溢出拒绝服务攻击" name_en_US="GNU Radius SNMP String Length Integer Overflow Denial of Service" name_zh_CN="GNU Radius SNMP字符串长度整数溢出拒绝服务攻击" name_zh_TW="GNU Radius SNMP字符串長度整數溢出拒絕服務攻擊" ruleid="10167" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208090" module="0" name="Apache Tomcat MS-DOS设备名远程拒绝服务攻击" name_en_US="Apache Tomcat MS-DOS Device Name Remote Denial of Service" name_zh_CN="Apache Tomcat MS-DOS设备名远程拒绝服务攻击" name_zh_TW="Apache Tomcat MS-DOS設備名遠程拒絕服務攻擊" ruleid="10166" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651930" module="0" name="Cisco IOS畸形SNMP消息处理远程拒绝服务攻击" name_en_US="Cisco IOS Malformed SNMP Message Handling Remote Denial of Service" name_zh_CN="Cisco IOS畸形SNMP消息处理远程拒绝服务攻击" name_zh_TW="Cisco IOS畸形SNMP消息處理遠程拒絕服務攻擊" ruleid="10165" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377243" module="0" name="HTTP请求负值Content-Length字段远程拒绝服务攻击" name_en_US="HTTP Request Negative Content-Length Field Remote Denial of Service" name_zh_CN="HTTP请求负值Content-Length字段远程拒绝服务攻击" name_zh_TW="HTTP請求負值Content-Length字段遠程拒絕服務攻擊" ruleid="10164" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206303" module="0" name="HTTP协议头超长HOST字段缓冲区溢出攻击" name_en_US="HTTP Protocol Header Over-long HOST Field Buffer Overflow" name_zh_CN="HTTP协议头超长HOST字段缓冲区溢出攻击" name_zh_TW="HTTP協議頭超長HOST字段緩沖區溢出攻擊" ruleid="10163" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159514" module="0" name="Mbedthis Software AppWeb HTTP Server设备名访问拒绝服务攻击" name_en_US="Mbedthis Software AppWeb HTTP Server Device Name Denial of Service" name_zh_CN="Mbedthis Software AppWeb HTTP Server设备名访问拒绝服务攻击" name_zh_TW="Mbedthis Software AppWeb HTTP Server設備名訪問拒絕服務攻擊" ruleid="10162" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Jeuce Personal Web Server远程拒绝服务攻击" name_en_US="Jeuce Personal Web Server Remote Denial of Service" name_zh_CN="Jeuce Personal Web Server远程拒绝服务攻击" name_zh_TW="Jeuce Personal Web Server遠程拒絕服務攻擊" ruleid="10161" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208090" module="0" name="Apple QuickTime/Darwin流服务器MS-DOS设备文件名拒绝服务攻击" name_en_US="Apple QuickTime/Darwin Streaming Server MS-DOS Device Filename Denial of Service" name_zh_CN="Apple QuickTime/Darwin流服务器MS-DOS设备文件名拒绝服务攻击" name_zh_TW="Apple QuickTime/Darwin流服務器MS-DOS設備文件名拒絕服務攻擊" ruleid="10160" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel XP/2003 超出边界访问漏洞" name_en_US="Microsoft Excel XP/2003 Out of Boundary Access Vulnerability" name_zh_CN="Microsoft Excel XP/2003 超出边界访问漏洞" name_zh_TW="Microsoft Excel XP/2003 超出邊界訪問漏洞" ruleid="21255" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Mricrosoft Server Message Block(SMB) client 远程代码执行漏洞" name_en_US="Mricrosoft Server Message Block(SMB) client Remote Code Execution Vulnerability" name_zh_CN="Mricrosoft Server Message Block(SMB) client 远程代码执行漏洞" name_zh_TW="Mricrosoft Server Message Block(SMB) client 遠程代碼執行漏洞" ruleid="21254" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel 2007 超出边界访问漏洞" name_en_US="Microsoft Excel 2007 Out of Boundary Access Vulnerability" name_zh_CN="Microsoft Excel 2007 超出边界访问漏洞" name_zh_TW="Microsoft Excel 2007 超出邊界訪問漏洞" ruleid="21257" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel 超出边界访问漏洞" name_en_US="Microsoft Excel Access Vulnerability" name_zh_CN="Microsoft Excel 超出边界访问漏洞" name_zh_TW="Microsoft Excel 超出邊界訪問漏洞" ruleid="21256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Handling Selection 内存破坏漏洞" name_en_US="Microsoft IE Handling Selection Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling Selection 内存破坏漏洞" name_zh_TW="Microsoft IE Handling Selection 內存破壞漏洞" ruleid="21251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Handling Layout 内存破坏漏洞" name_en_US="Microsoft IE Handling Layout Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling Layout 内存破坏漏洞" name_zh_TW="Microsoft IE Handling Layout 內存破壞漏洞" ruleid="21250" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="YACS远程文件包含攻击" name_en_US="YACS Remote File Inclusion" name_zh_CN="YACS远程文件包含攻击" name_zh_TW="YACS遠程文件包含攻擊" ruleid="20658" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Handling CDL Protocol Selection 内存破坏漏洞" name_en_US="Microsoft IE Handling CDL Protocol Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling CDL Protocol Selection 内存破坏漏洞" name_zh_TW="Microsoft IE Handling CDL Protocol Selection 內存破壞漏洞" ruleid="21252" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpECard远程文件包含攻击" name_en_US="phpECard Remote File Inclusion" name_zh_CN="phpECard远程文件包含攻击" name_zh_TW="phpECard遠程文件包含攻擊" ruleid="20656" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="FlashChat远程文件包含攻击" name_en_US="FlashChat Remote File Inclusion" name_zh_CN="FlashChat远程文件包含攻击" name_zh_TW="FlashChat遠程文件包含攻擊" ruleid="20657" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="eIQnetworks ESA  LICMGR_ADDLICENSE命令远程缓冲区溢出攻击" name_en_US="eIQnetworks ESA  LICMGR_ADDLICENSE Command Remote Buffer Overflow" name_zh_CN="eIQnetworks ESA  LICMGR_ADDLICENSE命令远程缓冲区溢出攻击" name_zh_TW="eIQnetworks ESA  LICMGR_ADDLICENSE命令遠程緩沖區溢出攻擊" ruleid="20654" visible="true" />
			<rule action=" db  screen " enabled="true" group="89129259" module="0" name="NIPrint LPD打印服务程序远程缓冲区溢出攻击" name_en_US="NIPrint LPD Spooler Remote Buffer Overflow" name_zh_CN="NIPrint LPD打印服务程序远程缓冲区溢出攻击" name_zh_TW="NIPrint LPD打印服務程序遠程緩沖區溢出攻擊" ruleid="20655" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel Parsing SLK Files 内存破坏漏洞" name_en_US="Microsoft Excel Parsing SLK Files Memory Corruption Vulnerability" name_zh_CN="Microsoft Excel Parsing SLK Files 内存破坏漏洞" name_zh_TW="Microsoft Excel Parsing SLK Files 內存破壞漏洞" ruleid="21259" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel Scenario(0xAF) Records 代码执行漏洞" name_en_US="Microsoft Excel Scenario(0xAF) Records Code Execution Vulnerability" name_zh_CN="Microsoft Excel Scenario(0xAF) Records 代码执行漏洞" name_zh_TW="Microsoft Excel Scenario(0xAF) Records 代碼執行漏洞" ruleid="21258" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Apache mod_rewrite模块单字节缓冲区溢出攻击" name_en_US="Apache mod_rewrite Module Off-by-one Buffer Overflow" name_zh_CN="Apache mod_rewrite模块单字节缓冲区溢出攻击" name_zh_TW="Apache mod_rewrite模塊單字節緩沖區溢出攻擊" ruleid="20650" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420719" module="0" name="Microsoft Windows Server服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Server Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows Server服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows Server服務遠程緩沖區溢出攻擊" ruleid="20651" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPAdmin服务器探测" name_en_US="Backdoor/Trojan ASPAdmin Server Investigation" name_zh_CN="木马后门程序ASPAdmin服务器探测" name_zh_TW="木馬後門程序ASPAdmin服務器探測" ruleid="40970" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Scroll Event 远程代码执行漏洞(CVE-2011-1993)" name_en_US="Scroll Event Remote Code Execution vulnerability(CVE-2011-1993)" name_zh_CN="Scroll Event 远程代码执行漏洞(CVE-2011-1993)" name_zh_TW="Scroll Event 遠程代碼執行漏洞(CVE-2011-1993)" ruleid="21294" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420998" module="0" name="Windows SMB暴力猜测用户口令" name_en_US="Windows SMB User Password Brute Force" name_zh_CN="Windows SMB暴力猜测用户口令" name_zh_TW="Windows SMB暴力猜測用戶口令" ruleid="20384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="网络蠕虫W32.HLLW.Lovgate病毒后门访问" name_en_US="Network Worm Windows W32.HLLW.Lovgate Backdoor Access" name_zh_CN="网络蠕虫W32.HLLW.Lovgate病毒后门访问" name_zh_TW="網絡蠕蟲W32.HLLW.Lovgate病毒後門訪問" ruleid="20385" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="VisualShapers EZContents module.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via VisualShapers EZContents module.php Script Vulnerability" name_zh_CN="VisualShapers EZContents module.php脚本漏洞远程执行命令" name_zh_TW="VisualShapers EZContents module.php腳本漏洞遠程執行命令" ruleid="20387" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Real Networks Helix Universal Server RTSP URI处理远程缓冲区溢出攻击" name_en_US="Real Networks Helix Universal Server RTSP URI Processing Remote Buffer Overflow" name_zh_CN="Real Networks Helix Universal Server RTSP URI处理远程缓冲区溢出攻击" name_zh_TW="Real Networks Helix Universal Server RTSP URI處理遠程緩沖區溢出攻擊" ruleid="20380" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375758" module="0" name="HTTP服务暴力猜测口令攻击" name_en_US="HTTP Service Password Brute Force" name_zh_CN="HTTP服务暴力猜测口令攻击" name_zh_TW="HTTP服務暴力猜測口令攻擊" ruleid="20381" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows工作站服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Workstation Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows工作站服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows工作站服務遠程緩沖區溢出攻擊" ruleid="20382" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft FrontPage POST请求远程缓冲区溢出攻击" name_en_US="Microsoft FrontPage POST Request Remote Buffer Overflow" name_zh_CN="Microsoft FrontPage POST请求远程缓冲区溢出攻击" name_zh_TW="Microsoft FrontPage POST請求遠程緩沖區溢出攻擊" ruleid="20383" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="PHPDig config.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via PHPDig config.php Script Vulnerability" name_zh_CN="PHPDig config.php脚本漏洞远程执行命令" name_zh_TW="PHPDig config.php腳本漏洞遠程執行命令" ruleid="20388" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254895" module="0" name="Serv-U FTP服务器SITE CHMOD命令超长文件名远程溢出攻击" name_en_US="Serv-U FTP Server SITE CHMOD Command Over-Long Filename Remote Buffer Overflow" name_zh_CN="Serv-U FTP服务器SITE CHMOD命令超长文件名远程溢出攻击" name_zh_TW="Serv-U FTP服務器SITE CHMOD命令超長文件名遠程溢出攻擊" ruleid="20389" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Beizhu/Womble/Vipdataend网络数据通信" name_en_US="Backdoor/Trojan Beizhu/Womble/Vipdataend Checking in with Controller" name_zh_CN="木马后门程序Beizhu/Womble/Vipdataend网络数据通信" name_zh_TW="木馬後門程序Beizhu/Womble/Vipdataend網絡數據通信" ruleid="40892" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHPKIT CGI脚本SQL注入攻击" name_en_US="PHPKIT CGI Script SQL Injection" name_zh_CN="PHPKIT CGI脚本SQL注入攻击" name_zh_TW="PHPKIT CGI腳本SQL注入攻擊" ruleid="20478" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve/Enterprise发现服务SERVICEPC远程溢出攻击" name_en_US="CA BrightStor ARCserve/Enterprise Discovery Service SERVICEPC Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCserve/Enterprise发现服务SERVICEPC远程溢出攻击" name_zh_TW="CA BrightStor ARCserve/Enterprise發現服務SERVICEPC遠程溢出攻擊" ruleid="20479" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Dorf/Win32.Inject.adt网络数据通信" name_en_US="Backdoor/Trojan Dorf/Win32.Inject.adt C&amp;C Communication Outbound" name_zh_CN="木马后门程序Dorf/Win32.Inject.adt网络数据通信" name_zh_TW="木馬後門程序Dorf/Win32.Inject.adt網絡數據通信" ruleid="40897" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Delf网络数据通信" name_en_US="Backdoor/Trojan Delf CnC Channel Keepalive Pong" name_zh_CN="木马后门程序Delf网络数据通信" name_zh_TW="木馬後門程序Delf網絡數據通信" ruleid="40895" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft WINS内存覆盖任意指令执行攻击" name_en_US="Microsoft WINS Memory Overwriting Arbitrary Code Execution" name_zh_CN="Microsoft WINS内存覆盖任意指令执行攻击" name_zh_TW="Microsoft WINS內存覆蓋任意指令執行攻擊" ruleid="20472" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft WINS服务畸形包远程缓冲区溢出攻击" name_en_US="Microsoft WINS Service Malformed Packet Remote Buffer Overflow" name_zh_CN="Microsoft WINS服务畸形包远程缓冲区溢出攻击" name_zh_TW="Microsoft WINS服務畸形包遠程緩沖區溢出攻擊" ruleid="20473" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Windows GDI+ JPG解析组件缓冲区溢出攻击" name_en_US="Microsoft Windows GDI+ JPG Resolution Buffer Overflow" name_zh_CN="Microsoft Windows GDI+ JPG解析组件缓冲区溢出攻击" name_zh_TW="Microsoft Windows GDI+ JPG解析組件緩沖區溢出攻擊" ruleid="20470" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="WS_FTP Server命令参数处理缓冲区溢出攻击" name_en_US="WS_FTP Server Command Parameter Handling Buffer Overflow" name_zh_CN="WS_FTP Server命令参数处理缓冲区溢出攻击" name_zh_TW="WS_FTP Server命令參數處理緩沖區溢出攻擊" ruleid="20471" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208103" module="0" name="Windows NT IIS MSDAC RDS远程执行命令攻击" name_en_US="Windows NT IIS MSDAC RDS Remote Code Execution" name_zh_CN="Windows NT IIS MSDAC RDS远程执行命令攻击" name_zh_TW="Windows NT IIS MSDAC RDS遠程執行命令攻擊" ruleid="20476" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="AwStats CGI脚本远程执行命令攻击" name_en_US="AwStats CGI Script Remote Code Execution" name_zh_CN="AwStats CGI脚本远程执行命令攻击" name_zh_TW="AwStats CGI腳本遠程執行命令攻擊" ruleid="20477" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Ikonboard ikonboard.cgi远程SQL注入攻击" name_en_US="Ikonboard ikonboard.cgi Remote SQL Injection" name_zh_CN="Ikonboard ikonboard.cgi远程SQL注入攻击" name_zh_TW="Ikonboard ikonboard.cgi遠程SQL注入攻擊" ruleid="20474" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Zeroboard多个CGI脚本远程执行命令攻击" name_en_US="Zeroboard multiple CGI Scripts Remomte Code Execution" name_zh_CN="Zeroboard多个CGI脚本远程执行命令攻击" name_zh_TW="Zeroboard多個CGI腳本遠程執行命令攻擊" ruleid="20475" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft IE文件下载对话框控制恶意代码邮件引用" name_en_US="Microsoft IE File Download Dialog Box Control Mail" name_zh_CN="Microsoft IE文件下载对话框控制恶意代码邮件引用" name_zh_TW="Microsoft IE文件下載對話框控制惡意代碼郵件引用" ruleid="40786" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="upload.cgi脚本漏洞扫描探测" name_en_US="upload.cgi Script Vulnerability Detection" name_zh_CN="upload.cgi脚本漏洞扫描探测" name_zh_TW="upload.cgi腳本漏洞掃描探測" ruleid="30439" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Webchat defines.php脚本漏洞扫描探测" name_en_US="Webchat defines.php Script Vulnerability Detection" name_zh_CN="Webchat defines.php脚本漏洞扫描探测" name_zh_TW="Webchat defines.php腳本漏洞掃描探測" ruleid="30438" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="phping脚本漏洞扫描探测" name_en_US="phping Script Vulnerability Detection" name_zh_CN="phping脚本漏洞扫描探测" name_zh_TW="phping腳本漏洞掃描探測" ruleid="30437" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431994" module="0" name="Web服务访问password.txt文件获取数据信息" name_en_US="Web Service password.txt Access Data Disclosure" name_zh_CN="Web服务访问password.txt文件获取数据信息" name_zh_TW="Web服務訪問password.txt文件獲取數據信息" ruleid="30435" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Invision Board ipchat.php脚本漏洞扫描探测" name_en_US="Invision Board ipchat.php Script Vulnerability Detection" name_zh_CN="Invision Board ipchat.php脚本漏洞扫描探测" name_zh_TW="Invision Board ipchat.php腳本漏洞掃描探測" ruleid="30433" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316967" module="0" name="IRIX parse_xml.cgi远程命令执行" name_en_US="IRIX parse_xml.cgi Script Remote Command Execution" name_zh_CN="IRIX parse_xml.cgi远程命令执行" name_zh_TW="IRIX parse_xml.cgi遠程命令執行" ruleid="30432" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="DotBr system.php3脚本漏洞扫描探测" name_en_US="DotBr system.php3 Script Vulnerability Detection" name_zh_CN="DotBr system.php3脚本漏洞扫描探测" name_zh_TW="DotBr system.php3腳本漏洞掃描探測" ruleid="30431" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="DotBr exec.php3脚本漏洞扫描探测" name_en_US="DotBr exec.php3 Script Vulnerability Detection" name_zh_CN="DotBr exec.php3脚本漏洞扫描探测" name_zh_TW="DotBr exec.php3腳本漏洞掃描探測" ruleid="30430" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft IE JavaScript OnLoad处理器畸形代码邮件引用" name_en_US="Microsoft IE JavaScript OnLoad Processor Vulnerability Mail" name_zh_CN="Microsoft IE JavaScript OnLoad处理器畸形代码邮件引用" name_zh_TW="Microsoft IE JavaScript OnLoad處理器畸形代碼郵件引用" ruleid="40785" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Word畸形字体文档邮件附件传播" name_en_US="Microsoft Word Malformed Font Document Attachment Propagation" name_zh_CN="Microsoft Word畸形字体文档邮件附件传播" name_zh_TW="Microsoft Word畸形字體文檔郵件附件傳播" ruleid="40782" visible="true" />
			<rule action=" db  screen " enabled="true" group="78645302" module="0" name="SolarWinds TFTP服务程序目录遍历攻击" name_en_US="SolarWinds TFTP Server Directory Traversal" name_zh_CN="SolarWinds TFTP服务程序目录遍历攻击" name_zh_TW="SolarWinds TFTP服務程序目錄遍曆攻擊" ruleid="30296" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Amaya sendtemp.pl脚本漏洞扫描探测" name_en_US="Amaya sendtemp.pl Script Vulnerability Detection" name_zh_CN="Amaya sendtemp.pl脚本漏洞扫描探测" name_zh_TW="Amaya sendtemp.pl腳本漏洞掃描探測" ruleid="30187" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082475" module="0" name="MySQL/Windows CREATE FUNCTION功能引用特殊函数库攻击" name_en_US="MySQL/Windows CREATE FUNCTION Special Library Reference" name_zh_CN="MySQL/Windows CREATE FUNCTION功能引用特殊函数库攻击" name_zh_TW="MySQL/Windows CREATE FUNCTION功能引用特殊函數庫攻擊" ruleid="20520" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="EZShopper loadpage.cgi脚本漏洞扫描探测" name_en_US="EZShopper loadpage.cgi Script Vulnerability Detection" name_zh_CN="EZShopper loadpage.cgi脚本漏洞扫描探测" name_zh_TW="EZShopper loadpage.cgi腳本漏洞掃描探測" ruleid="30185" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/anot3.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/anot3.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/anot3.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/anot3.htr文件訪問" ruleid="30184" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/anot.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/anot.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/anot.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/anot.htr文件訪問" ruleid="30183" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp4b.htr文件訪問" ruleid="30182" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp4.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp4.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp4.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp4.htr文件訪問" ruleid="30181" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082475" module="0" name="MySQL/Windows CREATE FUNCTION功能目录遍历加载任意库攻击" name_en_US="MySQL/Windows CREATE FUNCTION Directory Traversal Arbitrary Library Loading" name_zh_CN="MySQL/Windows CREATE FUNCTION功能目录遍历加载任意库攻击" name_zh_TW="MySQL/Windows CREATE FUNCTION功能目錄遍曆加載任意庫攻擊" ruleid="20521" visible="true" />
			<rule action=" db  screen " enabled="true" group="227606621" module="0" name="SNMP服务试图使用默认public口令访问" name_en_US="SNMP Service Access Attempt with Default public Password" name_zh_CN="SNMP服务试图使用默认public口令访问" name_zh_TW="SNMP服務試圖使用默認public口令訪問" ruleid="40301" visible="true" />
			<rule action=" db  screen " enabled="true" group="337643558" module="0" name="Cisco IOS Web配置接口绕过安全认证攻击" name_en_US="Cisco IOS Web Config Interface Authentication Bypass" name_zh_CN="Cisco IOS Web配置接口绕过安全认证攻击" name_zh_TW="Cisco IOS Web配置接口繞過安全認證攻擊" ruleid="40306" visible="true" />
			<rule action=" db  screen " enabled="true" group="368052246" module="0" name="Apple Mac OS X AppleFileServer FPLoginExt远程拒绝服务攻击" name_en_US="Apple Mac OS X AppleFileServer FPLoginExt Remote Denial of Service" name_zh_CN="Apple Mac OS X AppleFileServer FPLoginExt远程拒绝服务攻击" name_zh_TW="Apple Mac OS X AppleFileServer FPLoginExt遠程拒絕服務攻擊" ruleid="10143" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CdomainFree whois_raw.cgi脚本漏洞扫描探测" name_en_US="CdomainFree whois_raw.cgi Script Vulnerability Detection" name_zh_CN="CdomainFree whois_raw.cgi脚本漏洞扫描探测" name_zh_TW="CdomainFree whois_raw.cgi腳本漏洞掃描探測" ruleid="30189" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="WebSPIRS webspirs.cgi脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via WebSPIRS webspirs.cgi Script Vulnerability" name_zh_CN="WebSPIRS webspirs.cgi脚本漏洞远程遍历目录" name_zh_TW="WebSPIRS webspirs.cgi腳本漏洞遠程遍曆目錄" ruleid="30188" visible="true" />
			<rule action=" db  screen " enabled="false" group="70254891" module="0" name="WS_FTP Server CPWD远程缓冲区溢出攻击" name_en_US="WS_FTP Server CPWD Remote Buffer Overflow" name_zh_CN="WS_FTP Server CPWD远程缓冲区溢出攻击" name_zh_TW="WS_FTP Server CPWD遠程緩沖區溢出攻擊" ruleid="20271" visible="true" />
			<rule action=" db  screen " enabled="true" group="78645274" module="0" name="3Com 3CDaemon TFTP保留设备名拒绝服务攻击" name_en_US="3Com 3CDaemon TFTP Reserved Device Name Denial of Service" name_zh_CN="3Com 3CDaemon TFTP保留设备名拒绝服务攻击" name_zh_TW="3Com 3CDaemon TFTP保留設備名拒絕服務攻擊" ruleid="10142" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080679" module="0" name="Microsoft SQL Server/MSDE扩展存储过程xp_displayparamstmt远程缓冲区溢出攻击" name_en_US="Microsoft SQL Server/MSDE Exteneded Stored Procedure xp_displayparamstmt Remote Buffer Overflow" name_zh_CN="Microsoft SQL Server/MSDE扩展存储过程xp_displayparamstmt远程缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server/MSDE擴展存儲過程xp_displayparamstmt遠程緩沖區溢出攻擊" ruleid="20274" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080679" module="0" name="Microsoft SQL Server/MSDE扩展存储过程xp_setsqlsecurity远程缓冲区溢出攻击" name_en_US="Microsoft SQL Server/MSDE Extended Stored Procedure xp_setsqlsecurity Remote Buffer Overflow" name_zh_CN="Microsoft SQL Server/MSDE扩展存储过程xp_setsqlsecurity远程缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server/MSDE擴展存儲過程xp_setsqlsecurity遠程緩沖區溢出攻擊" ruleid="20275" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080679" module="0" name="Microsoft SQL Server RAISERROR语句缓冲区溢出攻击" name_en_US="Microsoft SQL Server RAISERROR Statement Buffer Overflow" name_zh_CN="Microsoft SQL Server RAISERROR语句缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server RAISERROR語句緩沖區溢出攻擊" ruleid="20276" visible="true" />
			<rule action=" db  screen " enabled="true" group="139460903" module="0" name="POP3服务AUTH命令超长参数溢出攻击" name_en_US="POP3 Service AUTH Command Over-Long Parameter Buffer Overflow" name_zh_CN="POP3服务AUTH命令超长参数溢出攻击" name_zh_TW="POP3服務AUTH命令超長參數溢出攻擊" ruleid="20278" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MyBulletinBoard search.php远程SQL注入攻击" name_en_US="MyBulletinBoard search.php Remote SQL Injection" name_zh_CN="MyBulletinBoard search.php远程SQL注入攻击" name_zh_TW="MyBulletinBoard search.php遠程SQL注入攻擊" ruleid="20524" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Woltlab Burning Board modcp.php远程SQL注入攻击" name_en_US="Woltlab Burning Board modcp.php Remote Code Injection" name_zh_CN="Woltlab Burning Board modcp.php远程SQL注入攻击" name_zh_TW="Woltlab Burning Board modcp.php遠程SQL注入攻擊" ruleid="20525" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="NCSA nph-test-cgi脚本漏洞远程浏览目录" name_en_US="NCSA nph-test-cgi Script Remote Directory Browsing" name_zh_CN="NCSA nph-test-cgi脚本漏洞远程浏览目录" name_zh_TW="NCSA nph-test-cgi腳本漏洞遠程浏覽目錄" ruleid="20076" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995243" module="0" name="Solaris rpc.cachefsd远程堆溢出攻击" name_en_US="Solaris rpc.cachefsd Remote Heap Overflow" name_zh_CN="Solaris rpc.cachefsd远程堆溢出攻击" name_zh_TW="Solaris rpc.cachefsd遠程堆溢出攻擊" ruleid="20075" visible="true" />
			<rule action=" db  screen " enabled="true" group="71305242" module="0" name="Microsoft Windows 2000 telnet服务器远程拒绝服务攻击" name_en_US="Microsoft Windows 2000 telnet Server Remote Denial of Service" name_zh_CN="Microsoft Windows 2000 telnet服务器远程拒绝服务攻击" name_zh_TW="Microsoft Windows 2000 telnet服務器遠程拒絕服務攻擊" ruleid="10147" visible="true" />
			<rule action=" db  screen " enabled="true" group="138414106" module="0" name="Solaris Telnet服务远程Ctrl-D字符拒绝服务攻击" name_en_US="Solaris Telnet Service Remote Ctrl-D Character Denial of Service" name_zh_CN="Solaris Telnet服务远程Ctrl-D字符拒绝服务攻击" name_zh_TW="Solaris Telnet服務遠程Ctrl-D字符拒絕服務攻擊" ruleid="10146" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="传奇假人拒绝服务攻击" name_en_US="Legend Dummy Denial of Service" name_zh_CN="传奇假人拒绝服务攻击" name_zh_TW="傳奇假人拒絕服務攻擊" ruleid="10189" visible="false" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="CGISCRIPT.NET csChatRBox.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CGISCRIPT.NET csChatRBox.cgi Script Vulnerability" name_zh_CN="CGISCRIPT.NET csChatRBox.cgi脚本漏洞远程执行命令" name_zh_TW="CGISCRIPT.NET csChatRBox.cgi腳本漏洞遠程執行命令" ruleid="20079" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Infector 1.7木马通信" name_en_US="Backdoor/Trojan Infector 1.7 Communication " name_zh_CN="木马后门程序Infector 1.7木马通信" name_zh_TW="木馬後門程序Infector 1.7木馬通信" ruleid="40768" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.323协议Calling Party Number数据畸形" name_en_US="H.323 Protocol Calling Party Number Malformed Data" name_zh_CN="H.323协议Calling Party Number数据畸形" name_zh_TW="H.323協議Calling Party Number數據畸形" ruleid="10149" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480574" module="0" name="漏洞扫描器Nessus扫描探测FTP漏洞" name_en_US="Nessus Scanner Detecting FTP Vulnerability" name_zh_CN="漏洞扫描器Nessus扫描探测FTP漏洞" name_zh_TW="漏洞掃描器Nessus掃描探測FTP漏洞" ruleid="30508" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615791" module="0" name="网络蠕虫Windows系统下W32.Stuxnet攻击" name_en_US="Network Worm W32.Stuxnet Attack On Windows" name_zh_CN="网络蠕虫Windows系统下W32.Stuxnet攻击" name_zh_TW="網絡蠕蟲Windows系統下W32.Stuxnet攻擊" ruleid="40948" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序AgentInfo通信" name_en_US="Backdoor/Trojan AgentInfo Communication" name_zh_CN="木马后门程序AgentInfo通信" name_zh_TW="木馬後門程序AgentInfo通信" ruleid="40949" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA License Client/Server GBR请求缓冲区溢出攻击" name_en_US="CA License Client/Server GBR Request Buffer Overflow" name_zh_CN="CA License Client/Server GBR请求缓冲区溢出攻击" name_zh_TW="CA License Client/Server GBR請求緩沖區溢出攻擊" ruleid="20482" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Furax通信" name_en_US="Backdoor/Trojan Furax Communication " name_zh_CN="木马后门程序Furax通信" name_zh_TW="木馬後門程序Furax通信" ruleid="40760" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="HP Web Jetadmin CGI脚本漏洞及配置文件获取信息" name_en_US="Information Disclosure via HP Web Jetadmin CGI Script Vulnerability and Configuration Files" name_zh_CN="HP Web Jetadmin CGI脚本漏洞及配置文件获取信息" name_zh_TW="HP Web Jetadmin CGI腳本漏洞及配置文件獲取信息" ruleid="30502" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="psinclude.cgi脚本漏洞扫描探测" name_en_US="psinclude.cgi Script Vulnerability Detection" name_zh_CN="psinclude.cgi脚本漏洞扫描探测" name_zh_TW="psinclude.cgi腳本漏洞掃描探測" ruleid="30501" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Lotus Domino文件名加点获取脚本源代码攻击" name_en_US="Lotus Domino Filename (appended with dot) Script Source Code Disclosure" name_zh_CN="Lotus Domino文件名加点获取脚本源代码攻击" name_zh_TW="Lotus Domino文件名加點獲取腳本源代碼攻擊" ruleid="30500" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431998" module="0" name="漏洞扫描器Nessus扫描探测CGI漏洞" name_en_US="Vulnerability Scanner Nessus CGI Vulnerability Detection" name_zh_CN="漏洞扫描器Nessus扫描探测CGI漏洞" name_zh_TW="漏洞掃描器Nessus掃描探測CGI漏洞" ruleid="30507" visible="true" />
			<rule action=" db  screen " enabled="true" group="162531386" module="0" name="Samba远程畸形路径名导致目录遍历攻击" name_en_US="Samba Remote Malformed Path Name Directory Traversal" name_zh_CN="Samba远程畸形路径名导致目录遍历攻击" name_zh_TW="Samba遠程畸形路徑名導致目錄遍曆攻擊" ruleid="30506" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315070" module="0" name="Turbo Seek tseekdir.cgi脚本漏洞读取文件" name_en_US="File Reading via Turbo Seek tseekdir.cgi Script Vulnerability" name_zh_CN="Turbo Seek tseekdir.cgi脚本漏洞读取文件" name_zh_TW="Turbo Seek tseekdir.cgi腳本漏洞讀取文件" ruleid="30505" visible="true" />
			<rule action=" db  screen " enabled="true" group="163643453" module="0" name="CVS未文档化命令获取信息攻击" name_en_US="CVS Undocument Command Information Disclosure" name_zh_CN="CVS未文档化命令获取信息攻击" name_zh_TW="CVS未文檔化命令獲取信息攻擊" ruleid="30504" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Meet The Lamer木马通信" name_en_US="Backdoor/Trojan Meet The Lamer Communication " name_zh_CN="木马后门程序Meet The Lamer木马通信" name_zh_TW="木馬後門程序Meet The Lamer木馬通信" ruleid="40540" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Michal木马通信" name_en_US="Backdoor/Trojan Michal Communication " name_zh_CN="木马后门程序Michal木马通信" name_zh_TW="木馬後門程序Michal木馬通信" ruleid="40541" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Microspy木马通信" name_en_US="Backdoor/Trojan Microspy Communication " name_zh_CN="木马后门程序Microspy木马通信" name_zh_TW="木馬後門程序Microspy木馬通信" ruleid="40542" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="雅虎Music Jukebox datagrid.dll ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Music Jukebox datagrid.dll ActiveX Control Remote Stack Overflow" name_zh_CN="雅虎Music Jukebox datagrid.dll ActiveX控件远程栈溢出攻击" name_zh_TW="雅虎Music Jukebox datagrid.dll ActiveX控件遠程棧溢出攻擊" ruleid="20952" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Mini Oblivion木马通信" name_en_US="Backdoor/Trojan Mini Oblivion Communication " name_zh_CN="木马后门程序Mini Oblivion木马通信" name_zh_TW="木馬後門程序Mini Oblivion木馬通信" ruleid="40544" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Mneah Trojan木马通信" name_en_US="Backdoor/Trojan Mneah Trojan Communication " name_zh_CN="木马后门程序Mneah Trojan木马通信" name_zh_TW="木馬後門程序Mneah Trojan木馬通信" ruleid="40545" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序MoonPie木马通信" name_en_US="Backdoor/Trojan MoonPie Communication " name_zh_CN="木马后门程序MoonPie木马通信" name_zh_TW="木馬後門程序MoonPie木馬通信" ruleid="40546" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Mosucker木马通信" name_en_US="Backdoor/Trojan Mosucker Communication " name_zh_CN="木马后门程序Mosucker木马通信" name_zh_TW="木馬後門程序Mosucker木馬通信" ruleid="40547" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Net Administrator木马通信" name_en_US="Backdoor/Trojan Net Administrator Communication " name_zh_CN="木马后门程序Net Administrator木马通信" name_zh_TW="木馬後門程序Net Administrator木馬通信" ruleid="40548" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Net Metropolitan木马通信" name_en_US="Backdoor/Trojan Net Metropolitan Communication " name_zh_CN="木马后门程序Net Metropolitan木马通信" name_zh_TW="木馬後門程序Net Metropolitan木馬通信" ruleid="40549" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300203" module="0" name="Oracle MySQL Server堆溢出漏洞" name_en_US="Oracle MySQL Server堆溢出漏洞" name_zh_CN="Oracle MySQL Server堆溢出漏洞" name_zh_TW="Oracle MySQL Server堆溢出漏洞" ruleid="22613" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Phorum系列脚本漏洞扫描探测" name_en_US="PhorumSeries Script Vulnerability Detection" name_zh_CN="Phorum系列脚本漏洞扫描探测" name_zh_TW="Phorum系列腳本漏洞掃描探測" ruleid="30293" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Hosting Controller dsnmanager.asp脚本漏洞扫描探测" name_en_US="Hosting Controller dsnmanager.asp Script Vulnerability Detection" name_zh_CN="Hosting Controller dsnmanager.asp脚本漏洞扫描探测" name_zh_TW="Hosting Controller dsnmanager.asp腳本漏洞掃描探測" ruleid="30292" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="Hosting Controller browse.asp脚本漏洞扫描利用" name_en_US="Hosting Controller browse.asp Script Vulnerability Detection" name_zh_CN="Hosting Controller browse.asp脚本漏洞扫描利用" name_zh_TW="Hosting Controller browse.asp腳本漏洞掃描利用" ruleid="30291" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="mcNews header.php脚本漏洞扫描探测" name_en_US="mcNews header.php Script Vulnerability Detection" name_zh_CN="mcNews header.php脚本漏洞扫描探测" name_zh_TW="mcNews header.php腳本漏洞掃描探測" ruleid="30290" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="vpopmail-CGIApps vadddomain脚本漏洞扫描探测" name_en_US="vpopmail-CGIApps vadddomain Script Vulnerability Detection" name_zh_CN="vpopmail-CGIApps vadddomain脚本漏洞扫描探测" name_zh_TW="vpopmail-CGIApps vadddomain腳本漏洞掃描探測" ruleid="30297" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Symantec Backup Exec调度程序ActiveX栈溢出攻击" name_en_US="Symantec Backup Exec Scheduler ActiveX Stack Overflow" name_zh_CN="Symantec Backup Exec调度程序ActiveX栈溢出攻击" name_zh_TW="Symantec Backup Exec調度程序ActiveX棧溢出攻擊" ruleid="20957" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="AdMentor系列脚本漏洞扫描探测" name_en_US="AdMentor Series Script Vulnerability Detection" name_zh_CN="AdMentor系列脚本漏洞扫描探测" name_zh_TW="AdMentor系列腳本漏洞掃描探測" ruleid="30295" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="myPHPNuke phptonuke.php脚本漏洞扫描探测" name_en_US="myPHPNuke phptonuke.php Script Vulnerability Detection" name_zh_CN="myPHPNuke phptonuke.php脚本漏洞扫描探测" name_zh_TW="myPHPNuke phptonuke.php腳本漏洞掃描探測" ruleid="30294" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="avatar.php脚本漏洞遍历目录" name_en_US="Directory Traversal via avatar.php Script Vulnerability" name_zh_CN="avatar.php脚本漏洞遍历目录" name_zh_TW="avatar.php腳本漏洞遍曆目錄" ruleid="30299" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="金山毒霸在线升级模块ActiveX控件远程堆溢出攻击" name_en_US="Kingsoft Online Upgrade Module ActiveX Control Remote Heap Overflow" name_zh_CN="金山毒霸在线升级模块ActiveX控件远程堆溢出攻击" name_zh_TW="金山毒霸在線升級模塊ActiveX控件遠程堆溢出攻擊" ruleid="20956" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Windows ASN.1库BER解码漏洞SMTP协议攻击" name_en_US="Microsoft Windows ASN.1 Base BER Decoding Vulnerability SMTP Protocol Attack" name_zh_CN="Microsoft Windows ASN.1库BER解码漏洞SMTP协议攻击" name_zh_TW="Microsoft Windows ASN.1庫BER解碼漏洞SMTP協議攻擊" ruleid="40788" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Web服务远程SQL注入攻击可疑行为" name_en_US="Web Service Remote SQL Injection Suspicious Behavior" name_zh_CN="Web服务远程SQL注入攻击可疑行为" name_zh_TW="Web服務遠程SQL注入攻擊可疑行爲" ruleid="29001" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序MALWARE Speed-runner.com A类网络数据通信" name_en_US="Backdoor/Trojan MALWARE Speed-runner.com Fake Speed Test User-Agent SRInstaller" name_zh_CN="木马后门程序MALWARE Speed-runner.com A类网络数据通信" name_zh_TW="木馬後門程序MALWARE Speed-runner.com A類網絡數據通信" ruleid="40836" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Visual Studio .NET Crystal Reports 漏洞" name_en_US="HTTP: Microsoft Visual Studio .NET Crystal Reports Vulnerability" name_zh_CN="Microsoft Visual Studio .NET Crystal Reports 漏洞" name_zh_TW="Microsoft Visual Studio .NET Crystal Reports 漏洞" ruleid="29124" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="SHOUTcast Filename 格式字符串漏洞" name_en_US="HTTP: SHOUTcast Filename Format String Vulnerability" name_zh_CN="SHOUTcast Filename 格式字符串漏洞" name_zh_TW="SHOUTcast Filename 格式字符串漏洞" ruleid="29123" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name=" HP OpenView Network Node Manager HTTP Handling 缓冲区溢出漏洞" name_en_US="HTTP:  HP OpenView Network Node Manager HTTP Handling Buffer Overflow" name_zh_CN=" HP OpenView Network Node Manager HTTP Handling 缓冲区溢出漏洞" name_zh_TW=" HP OpenView Network Node Manager HTTP Handling 緩沖區溢出漏洞" ruleid="29120" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件东菀证券网通用户版行情系统用户登录" name_en_US="Stock Market Analysis Software dongwan 	Securities Netcom Quote System User Login" name_zh_CN="股票行情分析操作软件东菀证券网通用户版行情系统用户登录" name_zh_TW="股票行情分析操作軟件東菀證券網通用戶版行情系統用戶登錄" ruleid="50273" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPAdmin ASP自定义" name_en_US="Backdoor/Trojan ASPAdmin ASP Custom Definition" name_zh_CN="木马后门程序ASPAdmin ASP自定义" name_zh_TW="木馬後門程序ASPAdmin ASP自定義" ruleid="40972" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537945" module="0" name="FTP服务远程命令执行命令" name_en_US="FTP Service CMD Execution" name_zh_CN="FTP服务远程命令执行命令" name_zh_TW="FTP服務遠程命令執行命令" ruleid="50271" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780825" module="0" name="SMTP发邮件" name_en_US="SMTP Send Mail" name_zh_CN="SMTP发邮件" name_zh_TW="SMTP發郵件" ruleid="50270" visible="true" />
			<rule action=" db  screen " enabled="true" group="202506333" module="1" name="在线流媒体RTSP协议实时数据传输连接" name_en_US="Online Streaming Media RTSP  in Real-time Data Transmission Connect" name_zh_CN="在线流媒体RTSP协议实时数据传输连接" name_zh_TW="在線流媒體RTSP協議實時數據傳輸連接" ruleid="50277" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE不安全库加载漏洞(MS11-099,CVE-2011-2019)" name_en_US="Microsoft IE Insecure Library Loading Vulnerability(MS11-099,CVE-2011-2019)" name_zh_CN="Microsoft IE不安全库加载漏洞(MS11-099,CVE-2011-2019)" name_zh_TW="Microsoft IE不安全庫加載漏洞(MS11-099,CVE-2011-2019)" ruleid="21334" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft IIS远程名字欺骗" name_en_US="Microsoft IIS Remote Server Name Spoof" name_zh_CN="Microsoft IIS远程名字欺骗" name_zh_TW="Microsoft IIS遠程名字欺騙" ruleid="29128" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641657" module="0" name="Novell GroupWise GWWEB.EXE程序漏洞扫描利用" name_en_US="Novell GroupWise GWWEB.EXE Detection" name_zh_CN="Novell GroupWise GWWEB.EXE程序漏洞扫描利用" name_zh_TW="Novell GroupWise GWWEB.EXE程序漏洞掃描利用" ruleid="30341" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256694" module="0" name="Serv-U FTP远程目录遍历攻击(CVE-2001-0054)" name_en_US="Serv-U FTP Remote Directory Traversal(CVE-2001-0054)" name_zh_CN="Serv-U FTP远程目录遍历攻击(CVE-2001-0054)" name_zh_TW="Serv-U FTP遠程目錄遍曆攻擊(CVE-2001-0054)" ruleid="30340" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="apexec.pl脚本漏洞扫描利用" name_en_US="apexec.pl Script Vulnerability Detection" name_zh_CN="apexec.pl脚本漏洞扫描利用" name_zh_TW="apexec.pl腳本漏洞掃描利用" ruleid="30343" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft PowerPoint不安全库加载远程代码执行漏洞(MS11-094,CVE-2011-3396)" name_en_US="Microsoft PowerPoint Insecure Library Loading Remote Code Execution Vulnerability(MS11-094,CVE-2011-3396)" name_zh_CN="Microsoft PowerPoint不安全库加载远程代码执行漏洞(MS11-094,CVE-2011-3396)" name_zh_TW="Microsoft PowerPoint不安全庫加載遠程代碼執行漏洞(MS11-094,CVE-2011-3396)" ruleid="21335" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Allaire ColdFusion application.cfm脚本漏洞扫描探测" name_en_US="Allaire ColdFusion application.cfm Script Vulnerability Detection" name_zh_CN="Allaire ColdFusion application.cfm脚本漏洞扫描探测" name_zh_TW="Allaire ColdFusion application.cfm腳本漏洞掃描探測" ruleid="30345" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="Allaire ColdFusion 4.0x cfcache.map脚本漏洞扫描探测" name_en_US="Allaire ColdFusion 4.0x cfcache.map Script Vulnerability Detection" name_zh_CN="Allaire ColdFusion 4.0x cfcache.map脚本漏洞扫描探测" name_zh_TW="Allaire ColdFusion 4.0x cfcache.map腳本漏洞掃描探測" ruleid="30344" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Apache::ASP source.asp脚本漏洞扫描探测" name_en_US="Apache::ASP source.asp Script Vulnerability Detection" name_zh_CN="Apache::ASP source.asp脚本漏洞扫描探测" name_zh_TW="Apache::ASP source.asp腳本漏洞掃描探測" ruleid="30347" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425851" module="0" name="ColdFusion 9 / 10 远程目录遍历漏洞" name_en_US="ColdFusion 9 / 10 Remote Directory Traversal Vulnerability" name_zh_CN="ColdFusion 9 / 10 远程目录遍历漏洞" name_zh_TW="ColdFusion 9 / 10 遠程目錄遍曆漏洞" ruleid="30610" visible="true" />
			<rule action=" db  screen " enabled="true" group="337641657" module="0" name="NetWare Web Server 2.x convert.bas脚本漏洞扫描利用" name_en_US="NetWare Web Server 2.x convert.bas Script Vulnerability Detection" name_zh_CN="NetWare Web Server 2.x convert.bas脚本漏洞扫描利用" name_zh_TW="NetWare Web Server 2.x convert.bas腳本漏洞掃描利用" ruleid="30349" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="端口扫描器Superscan PING操作" name_en_US="Port Scanner Superscan PING Operation" name_zh_CN="端口扫描器Superscan PING操作" name_zh_TW="端口掃描器Superscan PING操作" ruleid="30348" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Yanz.B蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Yanz.B" name_zh_CN="SMTP服务发送W32.Yanz.B蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Yanz.B蠕蟲病毒郵件" ruleid="40663" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHPCMS V9版本帐号管理页面POST参数SQL注入漏洞" name_en_US="PHPCMS V9 Account Manage POST Parameter SQL Injection Vulnerability" name_zh_CN="PHPCMS V9版本帐号管理页面POST参数SQL注入漏洞" name_zh_TW="PHPCMS V9版本帳號管理頁面POST參數SQL注入漏洞" ruleid="22615" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="台湾地区IP网络数据通信" name_en_US="NetWork Communication with IP From TaiWan Province" name_zh_CN="台湾地区IP网络数据通信" name_zh_TW="台灣地區IP網絡數據通信" ruleid="50276" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680341" module="1" name="HTTP协议CONNECT遂道功能连接访问" name_en_US="HTTP Protocol CONNECT Tunnel Feature Connection Access" name_zh_CN="HTTP协议CONNECT遂道功能连接访问" name_zh_TW="HTTP協議CONNECT遂道功能連接訪問" ruleid="50181" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="网络代理软件http-tunnel数据通信" name_en_US="Network Agent Software http-tunnel Data Communication" name_zh_CN="网络代理软件http-tunnel数据通信" name_zh_TW="網絡代理軟件http-tunnel數據通信" ruleid="50180" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="无界软件获取代理服务器IP" name_en_US="WuJie SoftWare Get Proxy Server IP" name_zh_CN="无界软件获取代理服务器IP" name_zh_TW="無界軟件獲取代理服務器IP" ruleid="50183" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="自由门软件获取代理服务器IP" name_en_US="FreeGate SoftWare Get Proxy Server IP" name_zh_CN="自由门软件获取代理服务器IP" name_zh_TW="自由門軟件獲取代理服務器IP" ruleid="50182" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="Windows系统Nimda蠕虫利用Unicode漏洞传播" name_en_US="Worm Nimda Propagation on Windows via Unicode Vulnerability" name_zh_CN="Windows系统Nimda蠕虫利用Unicode漏洞传播" name_zh_TW="Windows系統Nimda蠕蟲利用Unicode漏洞傳播" ruleid="40438" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件天一证券用户登录" name_en_US="Stock Market Analtsis Software Tianyi Securities User Login" name_zh_CN="股票行情分析操作软件天一证券用户登录" name_zh_TW="股票行情分析操作軟件天一證券用戶登錄" ruleid="50187" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具迅雷通过HTTP协议多线程文件下载" name_en_US="P2P File Sharing Tool Xunlei Multi-thread File Downloading Through HTTP Protocol" name_zh_CN="P2P文件共享工具迅雷通过HTTP协议多线程文件下载" name_zh_TW="P2P文件共享工具迅雷通過HTTP協議多線程文件下載" ruleid="50186" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具迅雷通过HTTP协议单线程文件下载" name_en_US="P2P File Sharing Tool Xunlei Single Thread File Downloading Through HTTP Protocol" name_zh_CN="P2P文件共享工具迅雷通过HTTP协议单线程文件下载" name_zh_TW="P2P文件共享工具迅雷通過HTTP協議單線程文件下載" ruleid="50189" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="0" name="远程控制工具Remote Administrator建立连接" name_en_US="Remote Control Tool Remote Administrator Connection" name_zh_CN="远程控制工具Remote Administrator建立连接" name_zh_TW="遠程控制工具Remote Administrator建立連接" ruleid="40435" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BackOrifice 2000木马客户端连接服务端" name_en_US="Backdoor/Trojan BackOrifice 2000 Client Connection to Server " name_zh_CN="木马后门程序BackOrifice 2000木马客户端连接服务端" name_zh_TW="木馬後門程序BackOrifice 2000木馬客戶端連接服務端" ruleid="40436" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="木马后门程序Happy99邮件蠕虫活动" name_en_US="Backdoor/Trojan Happy99 Mail Virus " name_zh_CN="木马后门程序Happy99邮件蠕虫活动" name_zh_TW="木馬後門程序Happy99郵件蠕蟲活動" ruleid="40437" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BackOrifice 1.2木马PING操作" name_en_US="Backdoor/Trojan BackOrifice 1.2 PING Operation " name_zh_CN="木马后门程序BackOrifice 1.2木马PING操作" name_zh_TW="木馬後門程序BackOrifice 1.2木馬PING操作" ruleid="40430" visible="true" />
			<rule action=" db  screen " enabled="true" group="203489374" module="0" name="HTTP服务基本登录认证" name_en_US="HTTP Service Basic Login Authentication" name_zh_CN="HTTP服务基本登录认证" name_zh_TW="HTTP服務基本登錄認證" ruleid="40432" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="木马后门程序黑基ASP大马v2009 Webshell上传文件" name_en_US="Backdoor/Trojan Heiji ASP Dama v2009 Webshell Upload Files" name_zh_CN="木马后门程序黑基ASP大马v2009 Webshell上传文件" name_zh_TW="木馬後門程序黑基ASP大馬v2009 Webshell上傳文件" ruleid="40984" visible="true" />
			<rule action=" db  screen " enabled="true" group="153157717" module="0" name="RSH服务root用户操作" name_en_US="RSH Service root User Operation" name_zh_CN="RSH服务root用户操作" name_zh_TW="RSH服務root用戶操作" ruleid="40307" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Adobe Acrobat和Reader远程代码执行漏洞(CVE-2013-0640)(APSA13-02)" name_en_US="Adobe Acrobat and Reader Remote Code Execution(CVE-2013-0640)(APSA13-02)" name_zh_CN="Adobe Acrobat和Reader远程代码执行漏洞(CVE-2013-0640)(APSA13-02)" name_zh_TW="Adobe Acrobat和Reader遠程代碼執行漏洞(CVE-2013-0640)(APSA13-02)" ruleid="22650" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_BINFILE_FCS_*FILE缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_BINFILE_FCS_*FILE Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA On_FC_BINFILE_FCS_*FILE缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_BINFILE_FCS_*FILE緩沖區溢出漏洞" ruleid="22388" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGBROADCAST缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGBROADCAST Buffer Overflow Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGBROADCAST缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_MISC_FCS_MSGBROADCAST緩沖區溢出漏洞" ruleid="22389" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA SCPC_TXTEVENT strcpy()缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA SCPC_TXTEVENT strcpy() Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA SCPC_TXTEVENT strcpy()缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA SCPC_TXTEVENT strcpy()緩沖區溢出漏洞" ruleid="22382" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CONNECT_FCS_LOGIN缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CONNECT_FCS_LOGIN Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA On_FC_CONNECT_FCS_LOGIN缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CONNECT_FCS_LOGIN緩沖區溢出漏洞" ruleid="22383" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="IGSS SCADA STDREP Request缓冲区溢出漏洞" name_en_US="IGSS SCADA STDREP Request Buffer Overflow Vulnerability " name_zh_CN="IGSS SCADA STDREP Request缓冲区溢出漏洞" name_zh_TW="IGSS SCADA STDREP Request緩沖區溢出漏洞" ruleid="22380" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="IGSS SCADA dc.exe Server目录遍历任意文件执行漏洞" name_en_US="IGSS SCADA dc.exe Server Directory Traversal Arbitrary File Execution Vulnerability Vulnerability" name_zh_CN="IGSS SCADA dc.exe Server目录遍历任意文件执行漏洞" name_zh_TW="IGSS SCADA dc.exe Server目錄遍曆任意文件執行漏洞" ruleid="22381" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_ADDTAGMS缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_ADDTAGMS Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_ADDTAGMS缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_ADDTAGMS緩沖區溢出漏洞" ruleid="22386" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_RFUSER_FCS_LOGIN缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_RFUSER_FCS_LOGIN Buffer Overflow Vulnerability Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_RFUSER_FCS_LOGIN缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_RFUSER_FCS_LOGIN緩沖區溢出漏洞" ruleid="22387" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CADDTAG缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CADDTAG Buffer Overflow Vulnerability" name_zh_CN="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CADDTAG缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CADDTAG緩沖區溢出漏洞" ruleid="22384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CDELTAG缓冲区溢出漏洞" name_en_US="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CDELTAG Buffer Overflow Vulnerability " name_zh_CN="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CDELTAG缓冲区溢出漏洞" name_zh_TW="RealFlex RealWin SCADA On_FC_CTAGLIST_FCS_CDELTAG緩沖區溢出漏洞" ruleid="22385" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft .NET Framework缓冲区分配漏洞(MS12-034,CVE-2012-0162)" name_en_US="Microsoft .NET Framework Buffer Allocation Vulnerability(MS12-034,CVE-2012-0162)" name_zh_CN="Microsoft .NET Framework缓冲区分配漏洞(MS12-034,CVE-2012-0162)" name_zh_TW="Microsoft .NET Framework緩沖區分配漏洞(MS12-034,CVE-2012-0162)" ruleid="22258" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft GDI+记录类型漏洞(MS12-034,CVE-2012-0165)" name_en_US="Microsoft GDI+ Record Type Vulnerability (MS12-034,CVE-2012-0165)" name_zh_CN="Microsoft GDI+记录类型漏洞(MS12-034,CVE-2012-0165)" name_zh_TW="Microsoft GDI+記錄類型漏洞(MS12-034,CVE-2012-0165)" ruleid="22259" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="TELNET服务root用户认证成功" name_en_US="TELNET Service root User Authentication Success" name_zh_CN="TELNET服务root用户认证成功" name_zh_TW="TELNET服務root用戶認證成功" ruleid="50051" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="TELNET服务用户认证失败" name_en_US="TELNET Service User Authentication Fail" name_zh_CN="TELNET服务用户认证失败" name_zh_TW="TELNET服務用戶認證失敗" ruleid="50050" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486045" module="0" name="Windows XP SMB建立连接" name_en_US="Windows XP SMB Connection Establishment" name_zh_CN="Windows XP SMB建立连接" name_zh_TW="Windows XP SMB建立連接" ruleid="50057" visible="false" />
			<rule action=" db  screen " enabled="true" group="95486045" module="0" name="Windows SMB访问系统注册表" name_en_US="Windows SMB Accessing System Registry" name_zh_CN="Windows SMB访问系统注册表" name_zh_TW="Windows SMB訪問系統注冊表" ruleid="50055" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477654" module="0" name="TELNET服务用户执行su命令" name_en_US="su Command Execution in TELNET Service" name_zh_CN="TELNET服务用户执行su命令" name_zh_TW="TELNET服務用戶執行su命令" ruleid="50054" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-031,CVE-2012-0018)" name_en_US="Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-031,CVE-2012-0018)" name_zh_CN="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-031,CVE-2012-0018)" name_zh_TW="Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-031,CVE-2012-0018)" ruleid="22250" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office Excel文件格式内存破坏漏洞(MS12-030,CVE-2012-0141 )" name_en_US="Microsoft Office Excel File Format Memory Corruption Vulnerability(MS12-030,CVE-2012-0141)" name_zh_CN="Microsoft Office Excel文件格式内存破坏漏洞(MS12-030,CVE-2012-0141 )" name_zh_TW="Microsoft Office Excel文件格式內存破壞漏洞(MS12-030,CVE-2012-0141 )" ruleid="22251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office Excel OBJECTLINK Record中存在文件格式内存破坏漏洞(MS12-030,CVE-2012-0142)" name_en_US="Microsoft Office Excel File Format Memory Corruption in OBJECTLINK Record Vulnerability(MS12-030,CVE-2012-0142)" name_zh_CN="Microsoft Office Excel OBJECTLINK Record中存在文件格式内存破坏漏洞(MS12-030,CVE-2012-0142)" name_zh_TW="Microsoft Office Excel OBJECTLINK Record中存在文件格式內存破壞漏洞(MS12-030,CVE-2012-0142)" ruleid="22252" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office Excel通过修改多个字节导致内存破坏漏洞(MS12-030,CVE-2012-0143)" name_en_US="Microsoft Office Excel Memory Corruption Using Various Modified Bytes Vulnerability(MS12-030,CVE-2012-0143)" name_zh_CN="Microsoft Office Excel通过修改多个字节导致内存破坏漏洞(MS12-030,CVE-2012-0143)" name_zh_TW="Microsoft Office Excel通過修改多個字節導致內存破壞漏洞(MS12-030,CVE-2012-0143)" ruleid="22253" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft TrueType字体解析漏洞(MS12-034,CVE-2012-0159)" name_en_US="Microsoft TrueType Font Parsing Vulnerability(MS12-034,CVE-2012-0159)" name_zh_CN="Microsoft TrueType字体解析漏洞(MS12-034,CVE-2012-0159)" name_zh_TW="Microsoft TrueType字體解析漏洞(MS12-034,CVE-2012-0159)" ruleid="22254" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office Excel SXLI Record内存破坏漏洞(MS12-030,CVE-2012-0184)" name_en_US="Microsoft Office Excel SXLI Record Memory Corruption Vulnerability(MS12-030,CVE-2012-0184)" name_zh_CN="Microsoft Office Excel SXLI Record内存破坏漏洞(MS12-030,CVE-2012-0184)" name_zh_TW="Microsoft Office Excel SXLI Record內存破壞漏洞(MS12-030,CVE-2012-0184)" ruleid="22255" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office Excel MergeCells Record堆溢出漏洞(MS12-030,CVE-2012-0185)" name_en_US="Microsoft Office Excel MergeCells Record Heap Overflow Vulnerability(MS12-030,CVE-2012-0185)" name_zh_CN="Microsoft Office Excel MergeCells Record堆溢出漏洞(MS12-030,CVE-2012-0185)" name_zh_TW="Microsoft Office Excel MergeCells Record堆溢出漏洞(MS12-030,CVE-2012-0185)" ruleid="22256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Word RTF不匹配漏洞(MS12-029,CVE-2012-0183)" name_en_US="Microsoft Word RTF Mismatch Vulnerability(MS12-029,CVE-2012-0183)" name_zh_CN="Microsoft Word RTF不匹配漏洞(MS12-029,CVE-2012-0183)" name_zh_TW="Microsoft Word RTF不匹配漏洞(MS12-029,CVE-2012-0183)" ruleid="22257" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="CakePHP Cache Corruption代码执行漏洞" name_en_US="CakePHP Cache Corruption Code Execution Vulnerability" name_zh_CN="CakePHP Cache Corruption代码执行漏洞" name_zh_TW="CakePHP Cache Corruption代碼執行漏洞" ruleid="22031" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="DivX Player 5.5 .plf PlayList缓冲区溢出漏洞" name_en_US="DivX Player 5.5 .plf PlayList Buffer Overflow Vulnerability" name_zh_CN="DivX Player 5.5 .plf PlayList缓冲区溢出漏洞" name_zh_TW="DivX Player 5.5 .plf PlayList緩沖區溢出漏洞" ruleid="22034" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows任务调度服务本地权限提升漏洞" name_en_US="Microsoft Windows Task Scheduler Service Local Privilege Escalation Vulnerability" name_zh_CN="Microsoft Windows任务调度服务本地权限提升漏洞" name_zh_TW="Microsoft Windows任務調度服務本地權限提升漏洞" ruleid="21138" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows BranchCache DLL加载任意代码执行漏洞(MS10-095)" name_en_US="Microsoft Windows BranchCache DLL Loading Arbitrary Code Execution Vulnerability (MS10-095)" name_zh_CN="Microsoft Windows BranchCache DLL加载任意代码执行漏洞(MS10-095)" name_zh_TW="Microsoft Windows BranchCache DLL加載任意代碼執行漏洞(MS10-095)" ruleid="21139" visible="true" />
			<rule action=" db  screen " enabled="true" group="99876943" module="0" name="Microsoft Forefront UAG redirection Issue网络钓鱼" name_en_US="Microsoft Forefront UAG redirection Issue Allow Phishing" name_zh_CN="Microsoft Forefront UAG redirection Issue网络钓鱼" name_zh_TW="Microsoft Forefront UAG redirection Issue網絡釣魚" ruleid="21130" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft Forefront UAG跨站脚本攻击绕过证书认证" name_en_US="Microsoft Forefront UAG XSS Allows Authentication Bypass" name_zh_CN="Microsoft Forefront UAG跨站脚本攻击绕过证书认证" name_zh_TW="Microsoft Forefront UAG跨站腳本攻擊繞過證書認證" ruleid="21131" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208102" module="0" name="Microsoft Forefront Unified Access Gateway跨站脚本攻击" name_en_US="Forefront Unified Access Gateway XSS" name_zh_CN="Microsoft Forefront Unified Access Gateway跨站脚本攻击" name_zh_TW="Microsoft Forefront Unified Access Gateway跨站腳本攻擊" ruleid="21132" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208102" module="0" name="Microsoft Forefront UAG Signurl.asp 跨站脚本攻击" name_en_US="Microsoft Forefront UAG Signurl.asp XSS" name_zh_CN="Microsoft Forefront UAG Signurl.asp 跨站脚本攻击" name_zh_TW="Microsoft Forefront UAG Signurl.asp 跨站腳本攻擊" ruleid="21133" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420715" module="0" name="Microsoft SMB Server Trans2 Pool 溢出攻击" name_en_US="Microsoft SMB Server Trans2 Pool Overflow" name_zh_CN="Microsoft SMB Server Trans2 Pool 溢出攻击" name_zh_TW="Microsoft SMB Server Trans2 Pool 溢出攻擊" ruleid="21134" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="IBM Lotus Domino WebMail信息泄露漏洞" name_en_US="IBM Lotus Domino WebMail Information Disclosure Vulnerability" name_zh_CN="IBM Lotus Domino WebMail信息泄露漏洞" name_zh_TW="IBM Lotus Domino WebMail信息泄露漏洞" ruleid="21135" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(MS10-105)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(MS10-105)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(MS10-105)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(MS10-105)" ruleid="21136" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Publisher远程代码执行漏洞(MS10-103)" name_en_US="Microsoft Office Publisher Remote Code Execution Vulnerabilities(MS10-103)" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞(MS10-103)" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞(MS10-103)" ruleid="21137" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="MySQL可疑数据库文件下载" name_en_US="MySQL DataBase Suspicious File Download" name_zh_CN="MySQL可疑数据库文件下载" name_zh_TW="MySQL可疑數據庫文件下載" ruleid="50447" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Java 7 SE 内存破坏远程代码执行漏洞(CVE-2013-1491)" name_en_US="Java 7 SE Memory Corruption Remote Code Execution Vulnerability(CVE-2013-1491)" name_zh_CN="Java 7 SE 内存破坏远程代码执行漏洞(CVE-2013-1491)" name_zh_TW="Java 7 SE 內存破壞遠程代碼執行漏洞(CVE-2013-1491)" ruleid="22728" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1307)(MS13-037)" name_en_US="Microsoft Internet Explorer Use-After-Free Remote Code Execution Vulnerability (CVE-2013-1307)(MS13-037)" name_zh_CN="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1307)(MS13-037)" name_zh_TW="Microsoft Internet Explorer 釋放後重用遠程代碼執行漏洞(CVE-2013-1307)(MS13-037)" ruleid="22724" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1309)(MS13-037)" name_en_US="Microsoft Internet Explorer Use-After-Free Remote Code Execution Vulnerability(CVE-2013-1309)(MS13-037)" name_zh_CN="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1309)(MS13-037)" name_zh_TW="Microsoft Internet Explorer 釋放後重用遠程代碼執行漏洞(CVE-2013-1309)(MS13-037)" ruleid="22725" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1312)(MS13-037)" name_en_US="Microsoft Internet Explorer  Use-After-Free Remote Code Execution Vulnerability(CVE-2013-1312)(MS13-037)" name_zh_CN="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1312)(MS13-037)" name_zh_TW="Microsoft Internet Explorer 釋放後重用遠程代碼執行漏洞(CVE-2013-1312)(MS13-037)" ruleid="22726" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1311)(MS13-037)" name_en_US="Microsoft Internet Explorer  Use-After-Free Remote Code Execution Vulnerability (CVE-2013-1311)(MS13-037)" name_zh_CN="Microsoft Internet Explorer 释放后重用远程代码执行漏洞(CVE-2013-1311)(MS13-037)" name_zh_TW="Microsoft Internet Explorer 釋放後重用遠程代碼執行漏洞(CVE-2013-1311)(MS13-037)" ruleid="22727" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Apache Struts2远程代码执行漏洞(S2-013)" name_en_US="Apache Struts2 Remote Command Execution(S2-013)" name_zh_CN="Apache Struts2远程代码执行漏洞(S2-013)" name_zh_TW="Apache Struts2遠程代碼執行漏洞(S2-013)" ruleid="22722" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="UCenter Home 2.0 musicbox 插件SQL注入漏洞" name_en_US="UCenter Home 2.0 musicbox Plugin SQL Injection Vulnerability" name_zh_CN="UCenter Home 2.0 musicbox 插件SQL注入漏洞" name_zh_TW="UCenter Home 2.0 musicbox 插件SQL注入漏洞" ruleid="22723" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Mantis木马通信" name_en_US="Backdoor/Trojan Mantis Communication " name_zh_CN="木马后门程序Mantis木马通信" name_zh_TW="木馬後門程序Mantis木馬通信" ruleid="40536" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="HTTP协议Cookie字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long Cookie Field Buffer Overflow" name_zh_CN="HTTP协议Cookie字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議Cookie字段超長緩沖區溢出攻擊" ruleid="20869" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Novell Netmail IMAP服务AUTHENTICATE GSSAPI远程缓冲区溢出攻击" name_en_US="Novell Netmail IMAP Service AUTHENTICATE GSSAPI Remote Buffer Overflow" name_zh_CN="Novell Netmail IMAP服务AUTHENTICATE GSSAPI远程缓冲区溢出攻击" name_zh_TW="Novell Netmail IMAP服務AUTHENTICATE GSSAPI遠程緩沖區溢出攻擊" ruleid="20868" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Docebo全局变量远程文件包含攻击" name_en_US="Docebo global Variable Remote File Inclusion" name_zh_CN="Docebo全局变量远程文件包含攻击" name_zh_TW="Docebo全局變量遠程文件包含攻擊" ruleid="20719" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="phpCommunityCalendar多个脚本远程SQL注入攻击" name_en_US="phpCommunityCalendar multiple Scripts Remote SQL Injection" name_zh_CN="phpCommunityCalendar多个脚本远程SQL注入攻击" name_zh_TW="phpCommunityCalendar多個腳本遠程SQL注入攻擊" ruleid="20718" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="mIRC IRC URL缓冲区溢出攻击" name_en_US="mIRC IRC URL Buffer Overflow" name_zh_CN="mIRC IRC URL缓冲区溢出攻击" name_zh_TW="mIRC IRC URL緩沖區溢出攻擊" ruleid="20865" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="eIQnetworks Enterprise Security Analyzer拓扑服务器栈溢出攻击" name_en_US="eIQnetworks Enterprise Security Analyzer Topology Server Stack Overflow" name_zh_CN="eIQnetworks Enterprise Security Analyzer拓扑服务器栈溢出攻击" name_zh_TW="eIQnetworks Enterprise Security Analyzer拓撲服務器棧溢出攻擊" ruleid="20864" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375466" module="0" name="HTTP协议Accept-Language字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long Accept-Language Field Buffer Overflow" name_zh_CN="HTTP协议Accept-Language字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議Accept-Language字段超長緩沖區溢出攻擊" ruleid="20867" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="vBulletin misc.php template名远程代码注入攻击" name_en_US="vBulletin misc.php template Remote Code Injection" name_zh_CN="vBulletin misc.php template名远程代码注入攻击" name_zh_TW="vBulletin misc.php template名遠程代碼注入攻擊" ruleid="20866" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="远程控制工具UltraVNC客户端缓冲区溢出攻击" name_en_US="Remote Control Tool UltraVNC Client Buffer Overflow" name_zh_CN="远程控制工具UltraVNC客户端缓冲区溢出攻击" name_zh_TW="遠程控制工具UltraVNC客戶端緩沖區溢出攻擊" ruleid="20861" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472619" module="0" name="FTP服务器SIZE命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server SIZE Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器SIZE命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器SIZE命令超長參數遠程緩沖區溢出攻擊" ruleid="20860" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="XMPlay播放列表文件远程栈溢出攻击" name_en_US="XMPlay Playlist File Remote Stack Overflow" name_zh_CN="XMPlay播放列表文件远程栈溢出攻击" name_zh_TW="XMPlay播放列表文件遠程棧溢出攻擊" ruleid="20863" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="WordPress cache_lastpostdate远程命令执行攻击" name_en_US="WordPress cache_lastpostdate Remote Command Execution" name_zh_CN="WordPress cache_lastpostdate远程命令执行攻击" name_zh_TW="WordPress cache_lastpostdate遠程命令執行攻擊" ruleid="20862" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898063" module="0" name="Botnet 主控端可疑网络活动" name_en_US="Botnet Master Suspicious Network Activity." name_zh_CN="Botnet 主控端可疑网络活动" name_zh_TW="Botnet 主控端可疑網絡活動" ruleid="41045" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序WinRat木马通信" name_en_US="Backdoor/Trojan WinRat Communication " name_zh_CN="木马后门程序WinRat木马通信" name_zh_TW="木馬後門程序WinRat木馬通信" ruleid="40607" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PHP/FI mylog.phtml脚本漏洞扫描探测" name_en_US="PHP/FI mylog.phtml Script Vulnerability Detection" name_zh_CN="PHP/FI mylog.phtml脚本漏洞扫描探测" name_zh_TW="PHP/FI mylog.phtml腳本漏洞掃描探測" ruleid="40189" visible="true" />
			<rule action=" db  screen " enabled="true" group="166789189" module="1" name="由内网向外网发起X Window应用连接" name_en_US="X Windows Application Connection Initiated from Intranet to External Network" name_zh_CN="由内网向外网发起X Window应用连接" name_zh_TW="由內網向外網發起X Window應用連接" ruleid="40061" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Asterisk SIP响应远程拒绝服务攻击" name_en_US="Asterisk SIP Response Remote Denial of Service" name_zh_CN="Asterisk SIP响应远程拒绝服务攻击" name_zh_TW="Asterisk SIP響應遠程拒絕服務攻擊" ruleid="10178" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Linksys SPA941 \377字符拒绝服务攻击" name_en_US="Linksys SPA941 \377 Character Denial of Service" name_zh_CN="Linksys SPA941 \377字符拒绝服务攻击" name_zh_TW="Linksys SPA941 \377字符拒絕服務攻擊" ruleid="10179" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208090" module="0" name="Sambar Web服务器例子程序远程拒绝服务攻击" name_en_US="Sambar Web Server Sample Program Remote Denial of Service" name_zh_CN="Sambar Web服务器例子程序远程拒绝服务攻击" name_zh_TW="Sambar Web服務器例子程序遠程拒絕服務攻擊" ruleid="10170" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888154" module="0" name="CA BrightStor ARCserve Backup catirpc.exe远程拒绝服务攻击" name_en_US="CA BrightStor ARCserve Backup catirpc.exe Remote Denial of Service" name_zh_CN="CA BrightStor ARCserve Backup catirpc.exe远程拒绝服务攻击" name_zh_TW="CA BrightStor ARCserve Backup catirpc.exe遠程拒絕服務攻擊" ruleid="10171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="CA BrightStor ARCServe BackUp LGServer畸形数据长度拒绝服务攻击" name_en_US="CA BrightStor ARCServe BackUp LGServer Malformed Data Length Denial of Service" name_zh_CN="CA BrightStor ARCServe BackUp LGServer畸形数据长度拒绝服务攻击" name_zh_TW="CA BrightStor ARCServe BackUp LGServer畸形數據長度拒絕服務攻擊" ruleid="10172" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Systems Management Server远程拒绝服务攻击" name_en_US="Microsoft Systems Management Server Remote Denial of Service" name_zh_CN="Microsoft Systems Management Server远程拒绝服务攻击" name_zh_TW="Microsoft Systems Management Server遠程拒絕服務攻擊" ruleid="10173" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Cisco 7940/7960 Phone SIP INVITE消息远程拒绝服务攻击" name_en_US="Cisco 7940/7960 Phone SIP INVITE Message Remote Denial of Service" name_zh_CN="Cisco 7940/7960 Phone SIP INVITE消息远程拒绝服务攻击" name_zh_TW="Cisco 7940/7960 Phone SIP INVITE消息遠程拒絕服務攻擊" ruleid="10174" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Asterisk畸形SIP消息远程拒绝服务攻击" name_en_US="Asterisk Malformed SIP Message Remote Denial of Service" name_zh_CN="Asterisk畸形SIP消息远程拒绝服务攻击" name_zh_TW="Asterisk畸形SIP消息遠程拒絕服務攻擊" ruleid="10175" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725658" module="0" name="Asterisk SIP畸形INVITE消息远程拒绝服务攻击" name_en_US="Asterisk SIP Malformed INVITE Message Remote Denial of Service" name_zh_CN="Asterisk SIP畸形INVITE消息远程拒绝服务攻击" name_zh_TW="Asterisk SIP畸形INVITE消息遠程拒絕服務攻擊" ruleid="10176" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="Grandstream BudgeTone-200畸形INVITE消息远程拒绝服务攻击" name_en_US="Grandstream BudgeTone-200 Malformed INVITE Message Remote Denial of Service" name_zh_CN="Grandstream BudgeTone-200畸形INVITE消息远程拒绝服务攻击" name_zh_TW="Grandstream BudgeTone-200畸形INVITE消息遠程拒絕服務攻擊" ruleid="10177" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Handling Layout  内存破坏漏洞" name_en_US="Microsoft IE Handling Layout Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling Layout  内存破坏漏洞" name_zh_TW="Microsoft IE Handling Layout  內存破壞漏洞" ruleid="21246" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="Microsoft IE toStaticHTML 信息暴露漏洞" name_en_US="Microsoft IE toStaticHTML Information Disclosure Vulnerability" name_zh_CN="Microsoft IE toStaticHTML 信息暴露漏洞" name_zh_TW="Microsoft IE toStaticHTML 信息暴露漏洞" ruleid="21247" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE oleaut32.dll 远程代码执行漏洞" name_en_US="Microsoft IE oleaut32.dll Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE oleaut32.dll 远程代码执行漏洞" name_zh_TW="Microsoft IE oleaut32.dll 遠程代碼執行漏洞" ruleid="21244" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Handling Link  内存破坏漏洞" name_en_US="Microsoft IE Handling Link Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling Link  内存破坏漏洞" name_zh_TW="Microsoft IE Handling Link  內存破壞漏洞" ruleid="21245" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Oracle GlassFish Server Administration Console远程身份验证绕过漏洞" name_en_US="Oracle GlassFish Server Administration Console Remote Authentication Bypass Vulnerability" name_zh_CN="Oracle GlassFish Server Administration Console远程身份验证绕过漏洞" name_zh_TW="Oracle GlassFish Server Administration Console遠程身份驗證繞過漏洞" ruleid="21243" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpBB db.php phpbb_root_path远程文件包含攻击" name_en_US="phpBB db.php phpbb_root_path Remote File Inclusion" name_zh_CN="phpBB db.php phpbb_root_path远程文件包含攻击" name_zh_TW="phpBB db.php phpbb_root_path遠程文件包含攻擊" ruleid="20663" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="AWStats awstats.pl多个参数远程执行命令攻击" name_en_US="AWStats awstats.pl multiple Parameters Remote Code Execution" name_zh_CN="AWStats awstats.pl多个参数远程执行命令攻击" name_zh_TW="AWStats awstats.pl多個參數遠程執行命令攻擊" ruleid="20662" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Vivvo Article Manager远程文件包含攻击" name_en_US="Vivvo Article Manager Remote File Inclusion" name_zh_CN="Vivvo Article Manager远程文件包含攻击" name_zh_TW="Vivvo Article Manager遠程文件包含攻擊" ruleid="20661" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Open Bulletin Board远程文件包含攻击" name_en_US="Open Bulletin Board Remote File Inclusion" name_zh_CN="Open Bulletin Board远程文件包含攻击" name_zh_TW="Open Bulletin Board遠程文件包含攻擊" ruleid="20660" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="AllMyGuests远程文件包含攻击" name_en_US="AllMyGuests Remote File Inclusion" name_zh_CN="AllMyGuests远程文件包含攻击" name_zh_TW="AllMyGuests遠程文件包含攻擊" ruleid="20667" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Claroline claro_init_local.inc.php远程文件包含攻击" name_en_US="Claroline claro_init_local.inc.php Remote File Inclusion" name_zh_CN="Claroline claro_init_local.inc.php远程文件包含攻击" name_zh_TW="Claroline claro_init_local.inc.php遠程文件包含攻擊" ruleid="20666" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE Handling Layouts 内存破坏漏洞" name_en_US="Microsoft Internet Explorer Handling Layouts Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling Layouts 内存破坏漏洞" name_zh_TW="Microsoft IE Handling Layouts 內存破壞漏洞" ruleid="21248" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Handling HTML+Time 内存破坏漏洞" name_en_US="Microsoft IE Handling HTML+Time Memory Corruption Vulnerability" name_zh_CN="Microsoft IE Handling HTML+Time 内存破坏漏洞" name_zh_TW="Microsoft IE Handling HTML+Time 內存破壞漏洞" ruleid="21249" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352043" module="0" name="Cyrus IMAPD pop3d popsubfolders USER缓冲区溢出漏洞" name_en_US="Cyrus IMAPD pop3d popsubfolders USER Buffer Overflow Vulnerability" name_zh_CN="Cyrus IMAPD pop3d popsubfolders USER缓冲区溢出漏洞" name_zh_TW="Cyrus IMAPD pop3d popsubfolders USER緩沖區溢出漏洞" ruleid="21919" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="WEBInsta Limbo SERVER变量远程执行命令攻击" name_en_US="WEBInsta Limbo SERVER Variable Remote Command Execution" name_zh_CN="WEBInsta Limbo SERVER变量远程执行命令攻击" name_zh_TW="WEBInsta Limbo SERVER變量遠程執行命令攻擊" ruleid="20557" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316971" module="0" name="HP OpenView网络节点管理器远程命令执行攻击(CVE-2005-2773)" name_en_US="HP OpenView Network Node Manager Remote Command Execution(CVE-2005-2773)" name_zh_CN="HP OpenView网络节点管理器远程命令执行攻击(CVE-2005-2773)" name_zh_TW="HP OpenView網絡節點管理器遠程命令執行攻擊(CVE-2005-2773)" ruleid="20556" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="B2 b2edit.showposts.php脚本漏洞扫描探测" name_en_US="B2 b2edit.showposts.php Script Vulnerability Detection" name_zh_CN="B2 b2edit.showposts.php脚本漏洞扫描探测" name_zh_TW="B2 b2edit.showposts.php腳本漏洞掃描探測" ruleid="20003" visible="true" />
			<rule action="" enabled="true" group="95486041" module="0" name="Windows SMB Openuser操作" name_en_US="Windows SMB Openuser Operation " name_zh_CN="Windows SMB Openuser操作" name_zh_TW="Windows SMB Openuser操作" ruleid="70100" visible="false" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="WebGlimpse aglimpse脚本漏洞扫描探测" name_en_US="WebGlimpse aglimpse Script Vulnerability Detection" name_zh_CN="WebGlimpse aglimpse脚本漏洞扫描探测" name_zh_TW="WebGlimpse aglimpse腳本漏洞掃描探測" ruleid="20002" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Mambo Server Function.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Mambo Server Function.php Script Vulnerability" name_zh_CN="Mambo Server Function.php脚本漏洞远程执行命令" name_zh_TW="Mambo Server Function.php腳本漏洞遠程執行命令" ruleid="20447" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMAP服务LIST命令畸形参数远程缓冲区溢出攻击" name_en_US="IMAP Service LIST Command Malformed Parameter Remote Buffer Overflow" name_zh_CN="IMAP服务LIST命令畸形参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務LIST命令畸形參數遠程緩沖區溢出攻擊" ruleid="20446" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497775" module="0" name="MDaemon SMTP服务程序多个命令远程缓冲区攻击" name_en_US="MDaemon SMTP Server multiple Commands Remote Buffer Attack" name_zh_CN="MDaemon SMTP服务程序多个命令远程缓冲区攻击" name_zh_TW="MDaemon SMTP服務程序多個命令遠程緩沖區攻擊" ruleid="20445" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="YaPiG add_comment.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via YaPiG add_comment.php Script Vulnerability" name_zh_CN="YaPiG add_comment.php脚本漏洞远程执行命令" name_zh_TW="YaPiG add_comment.php腳本漏洞遠程執行命令" ruleid="20444" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Gallery save_photos.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Gallery save_photos.php Script Vulnerability" name_zh_CN="Gallery save_photos.php脚本漏洞远程执行命令" name_zh_TW="Gallery save_photos.php腳本漏洞遠程執行命令" ruleid="20443" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Slashcode admin.pl脚本漏洞扫描探测" name_en_US="Slashcode admin.pl Script Vulnerability Detection" name_zh_CN="Slashcode admin.pl脚本漏洞扫描探测" name_zh_TW="Slashcode admin.pl腳本漏洞掃描探測" ruleid="20001" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="CVSTrac filediff CGI程序漏洞远程执行命令" name_en_US="Remote Command Execution via CVSTrac filediff CGI Program Vulnerability" name_zh_CN="CVSTrac filediff CGI程序漏洞远程执行命令" name_zh_TW="CVSTrac filediff CGI程序漏洞遠程執行命令" ruleid="20441" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="X.Org X字体服务器内存破坏攻击" name_en_US="X.Org X Font Server Memory Corruption" name_zh_CN="X.Org X字体服务器内存破坏攻击" name_zh_TW="X.Org X字體服務器內存破壞攻擊" ruleid="20912" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP信息中心HPInfoDLL.dll ActiveX控件远程代码执行攻击" name_en_US="HP Information Center HPInfoDLL.dll ActiveX Control Remote Code Execution Attack" name_zh_CN="HP信息中心HPInfoDLL.dll ActiveX控件远程代码执行攻击" name_zh_TW="HP信息中心HPInfoDLL.dll ActiveX控件遠程代碼執行攻擊" ruleid="20919" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft消息队列服务栈溢出攻击(MS07-065)" name_en_US="Microsoft Message Queuing Service Stack Overflow Attack(MS07-065)" name_zh_CN="Microsoft消息队列服务栈溢出攻击(MS07-065)" name_zh_TW="Microsoft消息隊列服務棧溢出攻擊(MS07-065)" ruleid="20918" visible="true" />
			<rule action=" db  screen " enabled="true" group="142608423" module="0" name="Sendmail WIZ命令远程执行命令攻击" name_en_US="Sendmail WIZ Remote Command Execution" name_zh_CN="Sendmail WIZ命令远程执行命令攻击" name_zh_TW="Sendmail WIZ命令遠程執行命令攻擊" ruleid="20449" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Icecast多个头结构字段远程溢出攻击" name_en_US="Icecast Multiple Head Structure Fields Remote Buffer Overflow" name_zh_CN="Icecast多个头结构字段远程溢出攻击" name_zh_TW="Icecast多個頭結構字段遠程溢出攻擊" ruleid="20448" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="D-Forum CGI脚本漏洞扫描探测" name_en_US="D-Forum CGI Script Vulnerability Detection" name_zh_CN="D-Forum CGI脚本漏洞扫描探测" name_zh_TW="D-Forum CGI腳本漏洞掃描探測" ruleid="30428" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256694" module="0" name="BisonFTP远程获取信息攻击" name_en_US="BisonFTP Remote Information Disclosure" name_zh_CN="BisonFTP远程获取信息攻击" name_zh_TW="BisonFTP遠程獲取信息攻擊" ruleid="30429" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="EditTag edittag.cgi脚本漏洞扫描探测" name_en_US="EditTag edittag.cgi Script Vulnerability Detection" name_zh_CN="EditTag edittag.cgi脚本漏洞扫描探测" name_zh_TW="EditTag edittag.cgi腳本漏洞掃描探測" ruleid="30420" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="MyRoom save_item.php脚本漏洞扫描探测" name_en_US="MyRoom save_item.php Script Vulnerability Detection" name_zh_CN="MyRoom save_item.php脚本漏洞扫描探测" name_zh_TW="MyRoom save_item.php腳本漏洞掃描探測" ruleid="30422" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Mambo Site Server脚本漏洞扫描探测" name_en_US="Mambo Site Server Script Vulnerability Detection" name_zh_CN="Mambo Site Server脚本漏洞扫描探测" name_zh_TW="Mambo Site Server腳本漏洞掃描探測" ruleid="30423" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="myphpPageTool CGI脚本漏洞扫描探测" name_en_US="myphpPageTool CGI Script Vulnerability Detection" name_zh_CN="myphpPageTool CGI脚本漏洞扫描探测" name_zh_TW="myphpPageTool CGI腳本漏洞掃描探測" ruleid="30424" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="FileSeek FileSeek.cgi脚本漏洞扫描探测" name_en_US="FileSeek FileSeek.cgi Script Vulnerability Detection" name_zh_CN="FileSeek FileSeek.cgi脚本漏洞扫描探测" name_zh_TW="FileSeek FileSeek.cgi腳本漏洞掃描探測" ruleid="30426" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="emailreader_execute_on_each_page.inc.php脚本漏洞扫描探测" name_en_US="emailreader_execute_on_each_page.inc.php Script Vulnerability Detection" name_zh_CN="emailreader_execute_on_each_page.inc.php脚本漏洞扫描探测" name_zh_TW="emailreader_execute_on_each_page.inc.php腳本漏洞掃描探測" ruleid="30427" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Windows Mite木马通信" name_en_US="Backdoor/Trojan Windows Mite Communication " name_zh_CN="木马后门程序Windows Mite木马通信" name_zh_TW="木馬後門程序Windows Mite木馬通信" ruleid="40606" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件新一代大智慧用户登录" name_en_US="Stock Market Analysis new generation Software Dazhihui User Login" name_zh_CN="股票行情分析操作软件新一代大智慧用户登录" name_zh_TW="股票行情分析操作軟件新一代大智慧用戶登錄" ruleid="50274" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Carey Internet Services commerce.cgi脚本漏洞扫描探测" name_en_US="Carey Internet Services commerce.cgi Script Vulnerability Detection" name_zh_CN="Carey Internet Services commerce.cgi脚本漏洞扫描探测" name_zh_TW="Carey Internet Services commerce.cgi腳本漏洞掃描探測" ruleid="30190" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Carey Internet Services commerce.cgi脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via Carey Internet Services commerce.cgi Script Vulnerability" name_zh_CN="Carey Internet Services commerce.cgi脚本漏洞远程遍历目录" name_zh_TW="Carey Internet Services commerce.cgi腳本漏洞遠程遍曆目錄" ruleid="30191" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Verity's Search`97 search97.vts脚本漏洞扫描探测" name_en_US="Verity's Search`97 search97.vts Script Vulnerability Detection" name_zh_CN="Verity's Search`97 search97.vts脚本漏洞扫描探测" name_zh_TW="Verity's Search`97 search97.vts腳本漏洞掃描探測" ruleid="30193" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS 3.0 &quot;%2e&quot; 获取ASP源码攻击" name_en_US="Microsoft IIS 3.0 &quot;%2e&quot; ASP Source Code Disclosure Vulnerability" name_zh_CN="Microsoft IIS 3.0 &quot;%2e&quot; 获取ASP源码攻击" name_zh_TW="Microsoft IIS 3.0 &quot;%2e&quot; 獲取ASP源碼攻擊" ruleid="30196" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PHP-Nuke modules.php脚本漏洞扫描探测" name_en_US="PHP-Nuke modules.php Script Vulnerability Detection" name_zh_CN="PHP-Nuke modules.php脚本漏洞扫描探测" name_zh_TW="PHP-Nuke modules.php腳本漏洞掃描探測" ruleid="30410" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="SunOS rpc.selection_svc服务存在性TCP扫描探测" name_en_US="SunOS rpc.selection_svc Service Existence TCP Detection" name_zh_CN="SunOS rpc.selection_svc服务存在性TCP扫描探测" name_zh_TW="SunOS rpc.selection_svc服務存在性TCP掃描探測" ruleid="30198" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 3.0/4.0 &quot;%81&quot; 漏洞获取ASP源码攻击" name_en_US="ASP Source Code Disclosure via Microsoft IIS 3.0/4.0 &quot;%81&quot; Vulnerability" name_zh_CN="Microsoft IIS 3.0/4.0 &quot;%81&quot; 漏洞获取ASP源码攻击" name_zh_TW="Microsoft IIS 3.0/4.0 &quot;%81&quot; 漏洞獲取ASP源碼攻擊" ruleid="30199" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="W-Agora editform.php脚本漏洞扫描探测" name_en_US="W-Agora editform.php Script Vulnerability Detection" name_zh_CN="W-Agora editform.php脚本漏洞扫描探测" name_zh_TW="W-Agora editform.php腳本漏洞掃描探測" ruleid="30412" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票交易分析工具益盟操盘手软件活动" name_en_US="Stock Analyzing/Trading Software Yimeng Caopanshou Activity" name_zh_CN="股票交易分析工具益盟操盘手软件活动" name_zh_TW="股票交易分析工具益盟操盤手軟件活動" ruleid="50432" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Active PHP Bookmarks脚本漏洞扫描探测" name_en_US="Active PHP Bookmarks Script Vulnerability Detection" name_zh_CN="Active PHP Bookmarks脚本漏洞扫描探测" name_zh_TW="Active PHP Bookmarks腳本漏洞掃描探測" ruleid="30415" visible="true" />
			<rule action=" db  screen " enabled="true" group="154142759" module="0" name="AIX RLOGIN -froot非授权root用户访问攻击" name_en_US="AIX RLOGIN -froot Unauthorized root User Access" name_zh_CN="AIX RLOGIN -froot非授权root用户访问攻击" name_zh_TW="AIX RLOGIN -froot非授權root用戶訪問攻擊" ruleid="20286" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="Oracle Web Listener批处理文件远程执行命令" name_en_US="File Batch Handling via Oracle Web Listener Remote Command Execution" name_zh_CN="Oracle Web Listener批处理文件远程执行命令" name_zh_TW="Oracle Web Listener批處理文件遠程執行命令" ruleid="20281" visible="true" />
			<rule action=" db  screen " enabled="true" group="74449190" module="0" name="VanDyke SecureCRT SSH1协议处理远程缓冲区溢出攻击" name_en_US="VanDyke SecureCRT SSH1 Protocol Handling Remote Buffer Overflow" name_zh_CN="VanDyke SecureCRT SSH1协议处理远程缓冲区溢出攻击" name_zh_TW="VanDyke SecureCRT SSH1協議處理遠程緩沖區溢出攻擊" ruleid="20282" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="SquirrelMail CGI脚本漏洞远程浏览文件" name_en_US="Remote File Browsing via SquirrelMail CGI Script Vulnerability" name_zh_CN="SquirrelMail CGI脚本漏洞远程浏览文件" name_zh_TW="SquirrelMail CGI腳本漏洞遠程浏覽文件" ruleid="30514" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316990" module="0" name="Whois.Cart whoiscart脚本目录遍历攻击" name_en_US="Whois.Cart whoiscart Script Directory Traversal" name_zh_CN="Whois.Cart whoiscart脚本目录遍历攻击" name_zh_TW="Whois.Cart whoiscart腳本目錄遍曆攻擊" ruleid="30515" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="NCSA post-query程序漏洞扫描探测" name_en_US="NCSA post-query Vulnerability Detection" name_zh_CN="NCSA post-query程序漏洞扫描探测" name_zh_TW="NCSA post-query程序漏洞掃描探測" ruleid="20041" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="O'Reilly WebSite win-c-sample.exe CGI程序漏洞扫描探测" name_en_US="O'Reilly WebSite win-c-sample.exe CGI Vulnerability Detection" name_zh_CN="O'Reilly WebSite win-c-sample.exe CGI程序漏洞扫描探测" name_zh_TW="O'Reilly WebSite win-c-sample.exe CGI程序漏洞掃描探測" ruleid="20040" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="EZshopper loadpage.cgi CGI脚本漏洞进行目录遍历攻击" name_en_US="Directory Traversal via EZshopper loadpage.cgi CGI Script Vulnerability" name_zh_CN="EZshopper loadpage.cgi CGI脚本漏洞进行目录遍历攻击" name_zh_TW="EZshopper loadpage.cgi CGI腳本漏洞進行目錄遍曆攻擊" ruleid="30510" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PHP-Nuke mailattach.php脚本漏洞扫描探测" name_en_US="PHP-Nuke mailattach.php Script Vulnerability Detection" name_zh_CN="PHP-Nuke mailattach.php脚本漏洞扫描探测" name_zh_TW="PHP-Nuke mailattach.php腳本漏洞掃描探測" ruleid="30417" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616795" module="0" name="CA BrightStor ARCserve Backup caloggerd.exe远程拒绝服务攻击" name_en_US="CA BrightStor ARCserve Backup caloggerd.exe Remote Denial of Service Attack" name_zh_CN="CA BrightStor ARCserve Backup caloggerd.exe远程拒绝服务攻击" name_zh_TW="CA BrightStor ARCserve Backup caloggerd.exe遠程拒絕服務攻擊" ruleid="10190" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425854" module="0" name="PHP-Nuke modules.php远程目录遍历攻击" name_en_US="PHP-Nuke modules.php Remote Directory Traversal" name_zh_CN="PHP-Nuke modules.php远程目录遍历攻击" name_zh_TW="PHP-Nuke modules.php遠程目錄遍曆攻擊" ruleid="30518" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="端口扫描器PING Sweep操作" name_en_US="Port Scanner PING Sweep Operation" name_zh_CN="端口扫描器PING Sweep操作" name_zh_TW="端口掃描器PING Sweep操作" ruleid="30519" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序BLEEDING-EDGE VIRUS网络数据通信" name_en_US="Backdoor/Trojan BLEEDING-EDGE VIRUS Agobot/Phatbot Infection" name_zh_CN="木马后门程序BLEEDING-EDGE VIRUS网络数据通信" name_zh_TW="木馬後門程序BLEEDING-EDGE VIRUS網絡數據通信" ruleid="40938" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序W32.Virut.A木马网络数据通信" name_en_US="Backdoor/Trojan W32.Virut.A Joining IRC Channel" name_zh_CN="木马后门程序W32.Virut.A木马网络数据通信" name_zh_TW="木馬後門程序W32.Virut.A木馬網絡數據通信" ruleid="40930" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序Trojan.Delf-5496木马网络数据通信" name_en_US="Backdoor/Trojan Trojan.Delf-5496 Egg Request" name_zh_CN="木马后门程序Trojan.Delf-5496木马网络数据通信" name_zh_TW="木馬後門程序Trojan.Delf-5496木馬網絡數據通信" ruleid="40933" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Realtimegaming.com网络数据通信" name_en_US="Backdoor/Trojan MALWARE Realtimegaming.com Online Casino Spyware Gaming Checkin" name_zh_CN="木马后门程序Realtimegaming.com网络数据通信" name_zh_TW="木馬後門程序Realtimegaming.com網絡數據通信" ruleid="40937" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序PWS-LDPinch网络数据通信" name_en_US="Backdoor/Trojan LDPinch Reporting Infection via Email" name_zh_CN="木马后门程序PWS-LDPinch网络数据通信" name_zh_TW="木馬後門程序PWS-LDPinch網絡數據通信" ruleid="40936" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814473" module="0" name="TCP DNS 解析请求可疑域名" name_en_US="TCP DNS Resolution Suspicious Domain Name" name_zh_CN="TCP DNS 解析请求可疑域名" name_zh_TW="TCP DNS 解析請求可疑域名" ruleid="50264" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814473" module="0" name="TCP DNS解析请求域名" name_en_US="TCP DNS Resolution Domain Name" name_zh_CN="TCP DNS解析请求域名" name_zh_TW="TCP DNS解析請求域名" ruleid="50265" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814473" module="0" name="UDP DNS解析域名返回可疑IP" name_en_US="UDP DNS Resolution Domain Name Find Suspicious IP" name_zh_CN="UDP DNS解析域名返回可疑IP" name_zh_TW="UDP DNS解析域名返回可疑IP" ruleid="50266" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814473" module="0" name="TCP DNS解析域名返回可疑IP" name_en_US="TCP DNS Resolution Domain Name Find Suspicious IP" name_zh_CN="TCP DNS解析域名返回可疑IP" name_zh_TW="TCP DNS解析域名返回可疑IP" ruleid="50267" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="CGIScript.NET CSMailto.cgi脚本漏洞扫描利用" name_en_US="CGIScript.NET CSMailto.cgi Script Vulnerability Detection" name_zh_CN="CGIScript.NET CSMailto.cgi脚本漏洞扫描利用" name_zh_TW="CGIScript.NET CSMailto.cgi腳本漏洞掃描利用" ruleid="30288" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="mcNews header.php脚本漏洞遍历目录" name_en_US="Directory Traversal via mcNews header.php Script Vulnerability" name_zh_CN="mcNews header.php脚本漏洞遍历目录" name_zh_TW="mcNews header.php腳本漏洞遍曆目錄" ruleid="30289" visible="true" />
			<rule action=" db  screen " enabled="true" group="77660249" module="0" name="DNS解析请求域名" name_en_US="DNS Resolution Domain Name" name_zh_CN="DNS解析请求域名" name_zh_TW="DNS解析請求域名" ruleid="50262" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616841" module="0" name="非标准端口经过标准网络流量" name_en_US="Non-standard Ports Through Standard Network Traffic" name_zh_CN="非标准端口经过标准网络流量" name_zh_TW="非標准端口經過標准網絡流量" ruleid="50263" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Marcus S. directory.php脚本漏洞扫描探测" name_en_US="Marcus S. directory.php Script Vulnerability Detection" name_zh_CN="Marcus S. directory.php脚本漏洞扫描探测" name_zh_TW="Marcus S. directory.php腳本漏洞掃描探測" ruleid="30284" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Sunsolve CD sscd_suncourier.pl脚本漏洞扫描利用" name_en_US="Sunsolve CD sscd_suncourier.pl Script Vulnerability Detection" name_zh_CN="Sunsolve CD sscd_suncourier.pl脚本漏洞扫描利用" name_zh_TW="Sunsolve CD sscd_suncourier.pl腳本漏洞掃描利用" ruleid="30285" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="PHPprojekt filemanager_forms.php脚本漏洞扫描利用" name_en_US="PHPprojekt filemanager_forms.php Script Vulnerability Detection" name_zh_CN="PHPprojekt filemanager_forms.php脚本漏洞扫描利用" name_zh_TW="PHPprojekt filemanager_forms.php腳本漏洞掃描利用" ruleid="30286" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="com.endymion.sake.servlet.mail.MailServlet脚本漏洞扫描利用" name_en_US="com.endymion.sake.servlet.mail.MailServlet Script Vulnerability Detection" name_zh_CN="com.endymion.sake.servlet.mail.MailServlet脚本漏洞扫描利用" name_zh_TW="com.endymion.sake.servlet.mail.MailServlet腳本漏洞掃描利用" ruleid="30287" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Hosting Controller filemanager.asp脚本利用扫描探测" name_en_US="Hosting Controller filemanager.asp Script Detection" name_zh_CN="Hosting Controller filemanager.asp脚本利用扫描探测" name_zh_TW="Hosting Controller filemanager.asp腳本利用掃描探測" ruleid="30280" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Hosting Controller statsbrowse.asp系列脚本漏洞扫描探测" name_en_US="Hosting Controller statsbrowse.asp Series Script Vulnerability Detection" name_zh_CN="Hosting Controller statsbrowse.asp系列脚本漏洞扫描探测" name_zh_TW="Hosting Controller statsbrowse.asp系列腳本漏洞掃描探測" ruleid="30281" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="PostNuke user.php脚本漏洞扫描利用" name_en_US="PostNuke user.php Script Vulnerability Detection" name_zh_CN="PostNuke user.php脚本漏洞扫描利用" name_zh_TW="PostNuke user.php腳本漏洞掃描利用" ruleid="30282" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Apache Win32批处理脚本漏洞扫描探测" name_en_US="Apache Win32 Batch Script Vulnerability Detection" name_zh_CN="Apache Win32批处理脚本漏洞扫描探测" name_zh_TW="Apache Win32批處理腳本漏洞掃描探測" ruleid="30283" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Multiple Vendor CUPS Administration Interface CGI 堆溢出漏洞" name_en_US="HTTP: Multiple Vendor CUPS Administration Interface CGI Heap Overflow" name_zh_CN="Multiple Vendor CUPS Administration Interface CGI 堆溢出漏洞" name_zh_TW="Multiple Vendor CUPS Administration Interface CGI 堆溢出漏洞" ruleid="29135" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Trend Micro OfficeScan Policy Server漏洞" name_en_US="HTTP: Trend Micro OfficeScan Policy Server" name_zh_CN="Trend Micro OfficeScan Policy Server漏洞" name_zh_TW="Trend Micro OfficeScan Policy Server漏洞" ruleid="29139" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="通过Web服务获取SmartWin CyberOffice Shopping Cart 2.0数据库文件" name_en_US="SmartWin CyberOffice Shopping Cart 2.0 Database File Disclosure via Web Service" name_zh_CN="通过Web服务获取SmartWin CyberOffice Shopping Cart 2.0数据库文件" name_zh_TW="通過Web服務獲取SmartWin CyberOffice Shopping Cart 2.0數據庫文件" ruleid="30352" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="wwwboard.pl脚本漏洞扫描利用" name_en_US="wwwboard.pl Script Vulnerability Detection" name_zh_CN="wwwboard.pl脚本漏洞扫描利用" name_zh_TW="wwwboard.pl腳本漏洞掃描利用" ruleid="30353" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="Talentsoft Web+获取内部IP地址攻击" name_en_US="Internal IP Address Disclosure via Talentsoft Web+" name_zh_CN="Talentsoft Web+获取内部IP地址攻击" name_zh_TW="Talentsoft Web+獲取內部IP地址攻擊" ruleid="30350" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Talentsoft Web+漏洞获取脚本源码攻击" name_en_US="Script Source Code Disclosure via Talentsoft Web+ Vulnerability" name_zh_CN="Talentsoft Web+漏洞获取脚本源码攻击" name_zh_TW="Talentsoft Web+漏洞獲取腳本源碼攻擊" ruleid="30351" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="importInfo脚本漏洞扫描探测" name_en_US="importInfo Script Vulnerability Detection" name_zh_CN="importInfo脚本漏洞扫描探测" name_zh_TW="importInfo腳本漏洞掃描探測" ruleid="30356" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="importInfo脚本漏洞远程执行命令" name_en_US="Remote Code Execution via importInfo Script Vulnerability" name_zh_CN="importInfo脚本漏洞远程执行命令" name_zh_TW="importInfo腳本漏洞遠程執行命令" ruleid="30357" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="Phorum violation.php3脚本漏洞扫描利用" name_en_US="Phorum violation.php3 Script Vulnerability Detection" name_zh_CN="Phorum violation.php3脚本漏洞扫描利用" name_zh_TW="Phorum violation.php3腳本漏洞掃描利用" ruleid="30354" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Web Portal customize.php脚本漏洞扫描探测" name_en_US="Web Portal customize.php Script Vulnerability Detection" name_zh_CN="Web Portal customize.php脚本漏洞扫描探测" name_zh_TW="Web Portal customize.php腳本漏洞掃描探測" ruleid="30355" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="BadBlue soinfo.php脚本漏洞扫描利用" name_en_US="BadBlue soinfo.php Script Vulnerability Detection" name_zh_CN="BadBlue soinfo.php脚本漏洞扫描利用" name_zh_TW="BadBlue soinfo.php腳本漏洞掃描利用" ruleid="30358" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="HTTPBench ezhttpbench.php脚本漏洞扫描利用" name_en_US="HTTPBench ezhttpbench.php Script Vulnerability Detection" name_zh_CN="HTTPBench ezhttpbench.php脚本漏洞扫描利用" name_zh_TW="HTTPBench ezhttpbench.php腳本漏洞掃描利用" ruleid="30359" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序BLEEDING-EDGE网络数据通信" name_en_US="Backdoor/Trojan BLEEDING-EDGE WORM MySQL bot DNS lookup A" name_zh_CN="木马后门程序BLEEDING-EDGE网络数据通信" name_zh_TW="木馬後門程序BLEEDING-EDGE網絡數據通信" ruleid="40849" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Matrix木马通信" name_en_US="Backdoor/Trojan Matrix Communication " name_zh_CN="木马后门程序Matrix木马通信" name_zh_TW="木馬後門程序Matrix木馬通信" ruleid="40339" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序NetBus木马通信" name_en_US="Backdoor/Trojan NetBus Trojan Communication " name_zh_CN="木马后门程序NetBus木马通信" name_zh_TW="木馬後門程序NetBus木馬通信" ruleid="40338" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="P2P文件共享工具脱兔进行文件下载" name_en_US="P2P File Sharing Tool Tuotu File Download" name_zh_CN="P2P文件共享工具脱兔进行文件下载" name_zh_TW="P2P文件共享工具脫兔進行文件下載" ruleid="50192" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Doly Trojan 1.6木马建立连接" name_en_US="Backdoor/Trojan Doly Trojan 1.6 Connection " name_zh_CN="木马后门程序Doly Trojan 1.6木马建立连接" name_zh_TW="木馬後門程序Doly Trojan 1.6木馬建立連接" ruleid="40448" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680329" module="0" name="HTTP协议Chunked数据编码异常" name_en_US="HTTP Protocol Chunked Data Coding Anomaly" name_zh_CN="HTTP协议Chunked数据编码异常" name_zh_TW="HTTP協議Chunked數據編碼異常" ruleid="50190" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k请求文件片断(UDP)" name_en_US="P2P File Sharing Tool eDonkey/ed2k Requesting File Fragment (UDP)" name_zh_CN="P2P文件共享工具eDonkey/ed2k请求文件片断(UDP)" name_zh_TW="P2P文件共享工具eDonkey/ed2k請求文件片斷(UDP)" ruleid="50196" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitComet通过HTTP协议进行文件下载" name_en_US="P2P File Sharing Tool BitComet Downloading Files via HTTP Protocol" name_zh_CN="P2P文件共享工具BitComet通过HTTP协议进行文件下载" name_zh_TW="P2P文件共享工具BitComet通過HTTP協議進行文件下載" ruleid="50197" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="网络代理软件SocksOnline数据通信" name_en_US="Network Agent Software SocksOnline Data Communication" name_zh_CN="网络代理软件SocksOnline数据通信" name_zh_TW="網絡代理軟件SocksOnline數據通信" ruleid="50194" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具迅雷文件下载 (UDP)" name_en_US="P2P File Sharing Tool Xunlei File Downloading (UDP)" name_zh_CN="P2P文件共享工具迅雷文件下载 (UDP)" name_zh_TW="P2P文件共享工具迅雷文件下載 (UDP)" ruleid="50195" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络爬虫Google抓取网页信息" name_en_US="Web Crawler Google Capture Page Information" name_zh_CN="网络爬虫Google抓取网页信息" name_zh_TW="網絡爬蟲Google抓取網頁信息" ruleid="50199" visible="true" />
			<rule action=" db  screen " enabled="true" group="204474438" module="0" name="FTP服务Bounce跳转攻击" name_en_US="FTP Service Bounce Attack" name_zh_CN="FTP服务Bounce跳转攻击" name_zh_TW="FTP服務Bounce跳轉攻擊" ruleid="40445" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Doly Trojan 2.0木马建立连接" name_en_US="Backdoor/Trojan Doly Trojan 2.0 Connection " name_zh_CN="木马后门程序Doly Trojan 2.0木马建立连接" name_zh_TW="木馬後門程序Doly Trojan 2.0木馬建立連接" ruleid="40447" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序NetBus Pro木马通信" name_en_US="Backdoor/Trojan NetBus Pro Communication " name_zh_CN="木马后门程序NetBus Pro木马通信" name_zh_TW="木馬後門程序NetBus Pro木馬通信" ruleid="40446" visible="true" />
			<rule action=" db  screen " enabled="true" group="227606617" module="0" name="SNMP服务使用非默认的端口" name_en_US="SNMP Service Uses Non-Default Port" name_zh_CN="SNMP服务使用非默认的端口" name_zh_TW="SNMP服務使用非默認的端口" ruleid="50462" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680346" module="0" name="360系列产品检测" name_en_US="360 series product detection" name_zh_CN="360系列产品检测" name_zh_TW="360系列産品檢測" ruleid="50461" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082454" module="0" name="Microsoft SQL Server 2000 Resolution服务keep-alive拒绝服务攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service keep-alive Denial of Service" name_zh_CN="Microsoft SQL Server 2000 Resolution服务keep-alive拒绝服务攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務keep-alive拒絕服務攻擊" ruleid="10052" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="HP OpenView网络节点管理器多个缓冲区溢出和命令注入漏洞" name_en_US="HP OpenView Network Node Manager Snmp.exe CGI Buffer Overflow Vulnerability" name_zh_CN="HP OpenView网络节点管理器多个缓冲区溢出和命令注入漏洞" name_zh_TW="HP OpenView網絡節點管理器多個緩沖區溢出和命令注入漏洞" ruleid="21748" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Oracle Java 7 JmxMBeanServer类远程代码执行漏洞" name_en_US="Oracle Java 7 JmxMBeanServer Remote Code Execution" name_zh_CN="Oracle Java 7 JmxMBeanServer类远程代码执行漏洞" name_zh_TW="Oracle Java 7 JmxMBeanServer類遠程代碼執行漏洞" ruleid="22621" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375338" module="0" name="WordPress WP-Property PHP 文件上传漏洞" name_en_US="WordPress WP-Property PHP File Upload Vulnerability" name_zh_CN="WordPress WP-Property PHP 文件上传漏洞" name_zh_TW="WordPress WP-Property PHP 文件上傳漏洞" ruleid="22620" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MoinMoin action/twikidraw.py和action/anywikidraw.py任意代码执行漏洞" name_en_US="MoinMoin action/twikidraw.py action/anywikidraw.py Remote Code Execution Vulnerability" name_zh_CN="MoinMoin action/twikidraw.py和action/anywikidraw.py任意代码执行漏洞" name_zh_TW="MoinMoin action/twikidraw.py和action/anywikidraw.py任意代碼執行漏洞" ruleid="22625" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082454" module="0" name="Microsoft SQL Server 2000 Resolution服务远程堆破坏拒绝服务攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service Remote Heap Corruption Denial of Service" name_zh_CN="Microsoft SQL Server 2000 Resolution服务远程堆破坏拒绝服务攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務遠程堆破壞拒絕服務攻擊" ruleid="10051" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sunway ForceControl AngelServer 2001/TCP Type 0X57 栈溢出漏洞" name_en_US="Sunway ForceControl AngelServer 2001/TCP Type 0X57 Stack Overflow Vulnerability" name_zh_CN="Sunway ForceControl AngelServer 2001/TCP Type 0X57 栈溢出漏洞" name_zh_TW="Sunway ForceControl AngelServer 2001/TCP Type 0X57 棧溢出漏洞" ruleid="21311" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Stacheldraht客户端连接检查" name_en_US="DDOS Stacheldraht Client Connection Deteciton" name_zh_CN="DDOS工具Stacheldraht客户端连接检查" name_zh_TW="DDOS工具Stacheldraht客戶端連接檢查" ruleid="40369" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具方正证券-核新交易软件-7709" name_en_US="Securities Analyzing/Trading Software He Xin Transaction Software-7709" name_zh_CN="证券分析交易工具方正证券-核新交易软件-7709" name_zh_TW="證券分析交易工具方正證券-核新交易軟件-7709" ruleid="51021" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具方正证券-核新活动" name_en_US="Securities Analyzing/Trading Software Founder Securities-Hexin Activity" name_zh_CN="证券分析交易工具方正证券-核新活动" name_zh_TW="證券分析交易工具方正證券-核新活動" ruleid="51020" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具方正证券-核新II活动 " name_en_US="Securities Analyzing/Trading Software Founder Securities-Hexin Edition II Activity" name_zh_CN="证券分析交易工具方正证券-核新II活动 " name_zh_TW="證券分析交易工具方正證券-核新II活動 " ruleid="51023" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具方正证券-核新I活动" name_en_US="SecuritiesAnalyzing/Trading Software Founder Securities-Hexin Edition I Activity" name_zh_CN="证券分析交易工具方正证券-核新I活动" name_zh_TW="證券分析交易工具方正證券-核新I活動" ruleid="51022" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具东方证券-核新活动" name_en_US="Securities Analyzing/Trading Software Orient Securities Company limited-Hexin Activity" name_zh_CN="证券分析交易工具东方证券-核新活动" name_zh_TW="證券分析交易工具東方證券-核新活動" ruleid="51025" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具东方证券-恒生活动" name_en_US="Securities Analyzing/Trading Software Orient Securities Company limited-Hengsheng Activity" name_zh_CN="证券分析交易工具东方证券-恒生活动" name_zh_TW="證券分析交易工具東方證券-恒生活動" ruleid="51024" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具广发华福-核新" name_en_US="Securities Analyzing/Trading Software Gf Huafu Securities-Hexin" name_zh_CN="证券分析交易工具广发华福-核新" name_zh_TW="證券分析交易工具廣發華福-核新" ruleid="51027" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具上海证券-恒生活动" name_en_US="Securities Analyzing/Trading Software Shanghai Securities-Hengsheng Activity" name_zh_CN="证券分析交易工具上海证券-恒生活动" name_zh_TW="證券分析交易工具上海證券-恒生活動" ruleid="51026" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票交易分析工具申银万国-钱龙" name_en_US="Stock Analyzing/Trading Software Shenyin Wanguo Securities-Qianlong" name_zh_CN="股票交易分析工具申银万国-钱龙" name_zh_TW="股票交易分析工具申銀萬國-錢龍" ruleid="51029" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具国信证券-通达信活动" name_en_US="Securities Analyzing/Trading Software GuoSen-Tongdaxin Activity" name_zh_CN="证券分析交易工具国信证券-通达信活动" name_zh_TW="證券分析交易工具國信證券-通達信活動" ruleid="51028" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723445" module="0" name="SMTP服务EXPN命令请求" name_en_US="SMTP Service EXPN Command Request" name_zh_CN="SMTP服务EXPN命令请求" name_zh_TW="SMTP服務EXPN命令請求" ruleid="40364" visible="true" />
			<rule action=" db  screen " enabled="true" group="210829398" module="0" name="IMAP服务用户弱口令认证" name_en_US="IMAP Service Weak User Password Authentication" name_zh_CN="IMAP服务用户弱口令认证" name_zh_TW="IMAP服務用戶弱口令認證" ruleid="50048" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="TELNET服务用户认证成功" name_en_US="TELNET Service User Authentication Success" name_zh_CN="TELNET服务用户认证成功" name_zh_TW="TELNET服務用戶認證成功" ruleid="50049" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723445" module="0" name="SMTP服务VRFY命令请求" name_en_US="SMTP Service VRFY Command Request" name_zh_CN="SMTP服务VRFY命令请求" name_zh_TW="SMTP服務VRFY命令請求" ruleid="40365" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635094" module="0" name="POP3服务用户登录认证失败" name_en_US="POP3 Service User Login Authentication Fail" name_zh_CN="POP3服务用户登录认证失败" name_zh_TW="POP3服務用戶登錄認證失敗" ruleid="50044" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537942" module="0" name="FTP服务用户弱口令认证" name_en_US="FTP Service User Weak Password Authentication" name_zh_CN="FTP服务用户弱口令认证" name_zh_TW="FTP服務用戶弱口令認證" ruleid="50045" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635094" module="0" name="POP3服务用户弱口令认证" name_en_US="POP3 Service Weak User Password Authentication" name_zh_CN="POP3服务用户弱口令认证" name_zh_TW="POP3服務用戶弱口令認證" ruleid="50047" visible="true" />
			<rule action=" db  screen " enabled="false" group="206831691" module="0" name="POP3服务接收可疑病毒邮件" name_en_US="POP3 Service Receiving Mails with Suspicious Virus" name_zh_CN="POP3服务接收可疑病毒邮件" name_zh_TW="POP3服務接收可疑病毒郵件" ruleid="50040" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Stacheldraht服务器回应" name_en_US="DDOS Stacheldraht Server Response" name_zh_CN="DDOS工具Stacheldraht服务器回应" name_zh_TW="DDOS工具Stacheldraht服務器回應" ruleid="40366" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635093" module="0" name="POP3服务用户登录认证成功" name_en_US="POP3 Service User Login Authentication Success" name_zh_CN="POP3服务用户登录认证成功" name_zh_TW="POP3服務用戶登錄認證成功" ruleid="50043" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Tatantella TTAWebTop.CGI脚本漏洞扫描利用" name_en_US="Tatantella TTAWebTop.CGI Script Vulnerability Detection" name_zh_CN="Tatantella TTAWebTop.CGI脚本漏洞扫描利用" name_zh_TW="Tatantella TTAWebTop.CGI腳本漏洞掃描利用" ruleid="30320" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft Dynamics AX Enterprise Portal跨站脚本漏洞(MS12-040)(CVE-2012-1857)" name_en_US="Microsoft Dynamics AX Enterprise Portal XSS Vulnerability(MS12-040)(CVE-2012-1857)" name_zh_CN="Microsoft Dynamics AX Enterprise Portal跨站脚本漏洞(MS12-040)(CVE-2012-1857)" name_zh_TW="Microsoft Dynamics AX Enterprise Portal跨站腳本漏洞(MS12-040)(CVE-2012-1857)" ruleid="22283" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616806" module="0" name="Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-039)(CVE-2012-1854)" name_en_US="Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability(MS12-039)(CVE-2012-1854)" name_zh_CN="Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-039)(CVE-2012-1854)" name_zh_TW="Microsoft Visual Basic for Applications不安全庫加載漏洞(MS12-039)(CVE-2012-1854)" ruleid="22282" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420718" module="0" name="Microsoft Lync/Office Communicator Lync不安全库加载漏洞(MS12-039)(CVE-2012-1849)" name_en_US="Microsoft Lync/Office Communicator Lync Insecure Library Loading Vulnerability(MS12-043)(CVE-2012-1849)" name_zh_CN="Microsoft Lync/Office Communicator Lync不安全库加载漏洞(MS12-039)(CVE-2012-1849)" name_zh_TW="Microsoft Lync/Office Communicator Lync不安全庫加載漏洞(MS12-039)(CVE-2012-1849)" ruleid="22281" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft .NET Framework WinForms内存访问漏洞(MS12-038)(CVE-2012-1855)" name_en_US="Microsoft .NET Framework WinForms Memory Access Vulnerability(MS12-038)(CVE-2012-1855)" name_zh_CN="Microsoft .NET Framework WinForms内存访问漏洞(MS12-038)(CVE-2012-1855)" name_zh_TW="Microsoft .NET Framework WinForms內存訪問漏洞(MS12-038)(CVE-2012-1855)" ruleid="22280" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Lync/Office Communicator HTML代码过滤漏洞 (CVE-2012-1858) (MS12-039)" name_en_US="Microsoft Lync/Office Communicator HTML Code Filtering Vulnerability(MS12-050)(CVE-2012-1858)" name_zh_CN="Microsoft Lync/Office Communicator HTML代码过滤漏洞 (CVE-2012-1858) (MS12-039)" name_zh_TW="Microsoft Lync/Office Communicator HTML代碼過濾漏洞 (CVE-2012-1858) (MS12-039)" ruleid="22287" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-046)(CVE-2012-1854)" name_en_US="Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability(MS12-046)(CVE-2012-1854)" name_zh_CN="Microsoft Visual Basic for Applications不安全库加载漏洞(MS12-046)(CVE-2012-1854)" name_zh_TW="Microsoft Visual Basic for Applications不安全庫加載漏洞(MS12-046)(CVE-2012-1854)" ruleid="22286" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="i@Report报表采集汇总平台认证绕过及任意文件下载漏洞" name_en_US="i@Report Statements Collected Summary Platform Authentication Bypass and Arbitrary File Download Vulnerability" name_zh_CN="i@Report报表采集汇总平台认证绕过及任意文件下载漏洞" name_zh_TW="i@Report報表采集彙總平台認證繞過及任意文件下載漏洞" ruleid="22285" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208111" module="0" name="Microsoft SharePoint反射列表参数漏洞(MS12-050)(CVE-2012-1863)" name_en_US="Microsoft SharePoint Reflected List Parameter Vulnerability(MS12-050)(CVE-2012-1863)" name_zh_CN="Microsoft SharePoint反射列表参数漏洞(MS12-050)(CVE-2012-1863)" name_zh_TW="Microsoft SharePoint反射列表參數漏洞(MS12-050)(CVE-2012-1863)" ruleid="22289" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft scriptresx.ashx跨站脚本漏洞(MS12-050)(CVE-2012-1859)" name_en_US="Microsoft XSS scriptresx.ashx Vulnerability(MS12-050)(CVE-2012-1859)" name_zh_CN="Microsoft scriptresx.ashx跨站脚本漏洞(MS12-050)(CVE-2012-1859)" name_zh_TW="Microsoft scriptresx.ashx跨站腳本漏洞(MS12-050)(CVE-2012-1859)" ruleid="22288" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Adobe Reader/Acrobat内存破坏漏洞(CVE-2011-4372)" name_en_US="Adobe Reader/Acrobat Memory Corruption Vulnerability(CVE-2011-4372)" name_zh_CN="Adobe Reader/Acrobat内存破坏漏洞(CVE-2011-4372)" name_zh_TW="Adobe Reader/Acrobat內存破壞漏洞(CVE-2011-4372)" ruleid="21344" visible="true" />
			<rule action=" db  screen " enabled="false" group="138477654" module="0" name="TELNET服务用户弱口令认证" name_en_US="User Weak Password Authentication in TELNET Service" name_zh_CN="TELNET服务用户弱口令认证" name_zh_TW="TELNET服務用戶弱口令認證" ruleid="50053" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425814" module="0" name="Netscape Enterprise Server Web Publisher拒绝服务攻击" name_en_US="Netscape Enterprise Server Web Publisher Denial of Service" name_zh_CN="Netscape Enterprise Server Web Publisher拒绝服务攻击" name_zh_TW="Netscape Enterprise Server Web Publisher拒絕服務攻擊" ruleid="10059" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Procyon Core Server HMI Coreservice.exe栈缓冲区溢出漏洞" name_en_US="Procyon Core Server HMI Coreservice.exe Stack Buffer Overflow Vulnerability" name_zh_CN="Procyon Core Server HMI Coreservice.exe栈缓冲区溢出漏洞" name_zh_TW="Procyon Core Server HMI Coreservice.exe棧緩沖區溢出漏洞" ruleid="21899" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="TELNET服务root用户认证失败" name_en_US="TELNET Service root User Authentication Fail" name_zh_CN="TELNET服务root用户认证失败" name_zh_TW="TELNET服務root用戶認證失敗" ruleid="50052" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI文件解析远程代码执行漏洞(MS12-004,CVE-2012-0003)" name_en_US="Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI File Parsing Remote Code Execution Vulnerability(MS12-004,CVE-2012-0003)" name_zh_CN="Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI文件解析远程代码执行漏洞(MS12-004,CVE-2012-0003)" name_zh_TW="Microsoft Windows Media Player&quot;winmm.dll&quot; MIDI文件解析遠程代碼執行漏洞(MS12-004,CVE-2012-0003)" ruleid="21340" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IBM Tivoli Provisioning Manager Express for Software Distribution Isig.isigCtl.1 ActiveX RunAndUploadFile() Method缓冲区溢出漏洞" name_en_US="IBM Tivoli Provisioning Manager Express for Software Distribution Isig.isigCtl.1 ActiveX RunAndUploadFile() Method Overflow Vulnerability" name_zh_CN="IBM Tivoli Provisioning Manager Express for Software Distribution Isig.isigCtl.1 ActiveX RunAndUploadFile() Method缓冲区溢出漏洞" name_zh_TW="IBM Tivoli Provisioning Manager Express for Software Distribution Isig.isigCtl.1 ActiveX RunAndUploadFile() Method緩沖區溢出漏洞" ruleid="21893" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P软件Shareaza文件下载" name_en_US="P2P Software Shareaza File Downloding" name_zh_CN="P2P软件Shareaza文件下载" name_zh_TW="P2P軟件Shareaza文件下載" ruleid="50227" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="SIPfoundry sipXtapi畸形CSeq字段处理远程缓冲区溢出攻击" name_en_US="SIPfoundry sipXtapi Malformed CSeq Field Handling Remote Buffer Overflow" name_zh_CN="SIPfoundry sipXtapi畸形CSeq字段处理远程缓冲区溢出攻击" name_zh_TW="SIPfoundry sipXtapi畸形CSeq字段處理遠程緩沖區溢出攻擊" ruleid="20708" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Sabdrimer CMS advanced1.php远程文件包含攻击" name_en_US="Sabdrimer CMS advanced1.php Remote File Inclusion" name_zh_CN="Sabdrimer CMS advanced1.php远程文件包含攻击" name_zh_TW="Sabdrimer CMS advanced1.php遠程文件包含攻擊" ruleid="20709" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve for Laptops &amp; Desktops LGServer缓冲区溢出漏洞" name_en_US="CA BrightStor ARCserve for Laptops &amp; Desktops LGServer Buffer Overflow Vulnerability" name_zh_CN="CA BrightStor ARCserve for Laptops &amp; Desktops LGServer缓冲区溢出漏洞" name_zh_TW="CA BrightStor ARCserve for Laptops &amp; Desktops LGServer緩沖區溢出漏洞" ruleid="21873" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="SaveWebPortal SITE_Path变量远程文件包含攻击" name_en_US="SaveWebPortal SITE_Path Variable Remote File Inclusion" name_zh_CN="SaveWebPortal SITE_Path变量远程文件包含攻击" name_zh_TW="SaveWebPortal SITE_Path變量遠程文件包含攻擊" ruleid="20700" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="The Search Engine Project (TSEP) colorswitch.php远程文件包含攻击" name_en_US="The Search Engine Project (TSEP) colorswitch.php Remote File Inclusion" name_zh_CN="The Search Engine Project (TSEP) colorswitch.php远程文件包含攻击" name_zh_TW="The Search Engine Project (TSEP) colorswitch.php遠程文件包含攻擊" ruleid="20701" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Knusperleicht ShoutBox SB_INCLUDE_PATH参数远程文件包含攻击" name_en_US="Knusperleicht ShoutBox SB_INCLUDE_PATH Variable Remote File Inclusion" name_zh_CN="Knusperleicht ShoutBox SB_INCLUDE_PATH参数远程文件包含攻击" name_zh_TW="Knusperleicht ShoutBox SB_INCLUDE_PATH參數遠程文件包含攻擊" ruleid="20702" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MyNewsGroups layersmenu.inc.php远程文件包含攻击" name_en_US="MyNewsGroups layersmenu.inc.php Remote File Inclusion" name_zh_CN="MyNewsGroups layersmenu.inc.php远程文件包含攻击" name_zh_TW="MyNewsGroups layersmenu.inc.php遠程文件包含攻擊" ruleid="20703" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Easy File Sharing FTP Server超长PASS命令参数远程缓冲区溢出攻击" name_en_US="Easy File Sharing FTP Server Over-long PASS Parameter Remote Buffer Overflow" name_zh_CN="Easy File Sharing FTP Server超长PASS命令参数远程缓冲区溢出攻击" name_zh_TW="Easy File Sharing FTP Server超長PASS命令參數遠程緩沖區溢出攻擊" ruleid="20704" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="Mambo VideoDB组件远程文件包含攻击" name_en_US="Mambo VideoDB Component Remote File Inclusion" name_zh_CN="Mambo VideoDB组件远程文件包含攻击" name_zh_TW="Mambo VideoDB組件遠程文件包含攻擊" ruleid="20705" visible="true" />
			<rule action=" db  screen " enabled="false" group="70254891" module="0" name="Intervations FileCopa LIST命令远程缓冲区溢出攻击" name_en_US="Intervations FileCopa LIST Command Remote Buffer Overflow" name_zh_CN="Intervations FileCopa LIST命令远程缓冲区溢出攻击" name_zh_TW="Intervations FileCopa LIST命令遠程緩沖區溢出攻擊" ruleid="20706" visible="false" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Symantec Norton个人防火墙ActiveX控件远程溢出攻击" name_en_US="Symantec Norton Private Firewall ActiveX Control Remote Buffer Overflow" name_zh_CN="Symantec Norton个人防火墙ActiveX控件远程溢出攻击" name_zh_TW="Symantec Norton個人防火牆ActiveX控件遠程溢出攻擊" ruleid="20871" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows LPC消息缓冲溢出漏洞" name_en_US="Microsoft Windows LPC Message Buffer Overrun Vulnerability" name_zh_CN="Microsoft Windows LPC消息缓冲溢出漏洞" name_zh_TW="Microsoft Windows LPC消息緩沖溢出漏洞" ruleid="21097" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Word书签漏洞" name_en_US="Microsoft Word Bookmarks Vulnerability" name_zh_CN="Microsoft Word书签漏洞" name_zh_TW="Microsoft Word書簽漏洞" ruleid="21096" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Word栈溢出漏洞" name_en_US="Microsoft Word Stack Overflow Vulnerability" name_zh_CN="Microsoft Word栈溢出漏洞" name_zh_TW="Microsoft Word棧溢出漏洞" ruleid="21095" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Windows Comct132堆溢出漏洞" name_en_US="Microsoft Windows Comctl32 Heap Overflow Vulnerability" name_zh_CN="Microsoft Windows Comct132堆溢出漏洞" name_zh_TW="Microsoft Windows Comct132堆溢出漏洞" ruleid="21094" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Windows Media Player内存破坏漏洞" name_en_US="Microsoft Windows Media Player Memory Corruption Vulnerability" name_zh_CN="Microsoft Windows Media Player内存破坏漏洞" name_zh_TW="Microsoft Windows Media Player內存破壞漏洞" ruleid="21093" visible="true" />
			<rule action=" db  screen " enabled="true" group="99614895" module="0" name="Microsoft Windows Win32k.sys内核驱动本地权限提升漏洞" name_en_US="Vulnerabilities in Microsoft Windows Win32k.sys Kernel-Mode Drivers Could Allow Elevation of Privilege" name_zh_CN="Microsoft Windows Win32k.sys内核驱动本地权限提升漏洞" name_zh_TW="Microsoft Windows Win32k.sys內核驅動本地權限提升漏洞" ruleid="21092" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Win32K键盘布局漏洞" name_en_US="Microsoft Windows Win32K Keyboard Layout Vulnerability" name_zh_CN="Microsoft Windows Win32K键盘布局漏洞" name_zh_TW="Microsoft Windows Win32K鍵盤布局漏洞" ruleid="21091" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows OpenType字体验证漏洞" name_en_US="Microsoft Windows OpenType Font Validation Vulnerability" name_zh_CN="Microsoft Windows OpenType字体验证漏洞" name_zh_TW="Microsoft Windows OpenType字體驗證漏洞" ruleid="21090" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="ExAir示例脚本search.asp拒绝服务攻击" name_en_US="ExAir Sample Script search.asp Denial of Service" name_zh_CN="ExAir示例脚本search.asp拒绝服务攻击" name_zh_TW="ExAir示例腳本search.asp拒絕服務攻擊" ruleid="10050" visible="true" />
			<rule action=" db  screen " enabled="true" group="209716298" module="0" name="SMTP服务发送Worm.SoBig蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Worm.SoBig" name_zh_CN="SMTP服务发送Worm.SoBig蠕虫病毒邮件" name_zh_TW="SMTP服務發送Worm.SoBig蠕蟲病毒郵件" ruleid="50059" visible="true" />
			<rule action=" db  screen " enabled="true" group="99614895" module="0" name="Microsoft .NET Framework x64 JIT编译器漏洞" name_en_US="Microsoft .NET Framework x64 JIT Compiler Vulnerability" name_zh_CN="Microsoft .NET Framework x64 JIT编译器漏洞" name_zh_TW="Microsoft .NET Framework x64 JIT編譯器漏洞" ruleid="21099" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Media Player网络共享服务RTSP释放后使用漏洞" name_en_US="Windows Media Player Network Sharing Service RTSP Use After Free Remote Code Execution Vulnerability" name_zh_CN="Microsoft Windows Media Player网络共享服务RTSP释放后使用漏洞" name_zh_TW="Microsoft Windows Media Player網絡共享服務RTSP釋放後使用漏洞" ruleid="21098" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="Oracle数据库访问操作" name_en_US="Oracle Database Access" name_zh_CN="Oracle数据库访问操作" name_zh_TW="Oracle數據庫訪問操作" ruleid="50058" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423914" module="0" name="Easynews绕过管理认证攻击" name_en_US="Easynews Admin Authentication Bypass" name_zh_CN="Easynews绕过管理认证攻击" name_zh_TW="Easynews繞過管理認證攻擊" ruleid="20674" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="P-News p-news.php远程文件包含攻击" name_en_US="P-News p-news.php Remote File Inclusion" name_zh_CN="P-News p-news.php远程文件包含攻击" name_zh_TW="P-News p-news.php遠程文件包含攻擊" ruleid="20675" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MiniBB bb_func_txt.php远程文件包含攻击" name_en_US="MiniBB bb_func_txt.php Remote File Inclusion" name_zh_CN="MiniBB bb_func_txt.php远程文件包含攻击" name_zh_TW="MiniBB bb_func_txt.php遠程文件包含攻擊" ruleid="20676" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="TextPattern txpcfg[txpath]变量远程文件包含攻击" name_en_US="TextPattern txpcfg[txpath] Variable Remote File Inclusion" name_zh_CN="TextPattern txpcfg[txpath]变量远程文件包含攻击" name_zh_TW="TextPattern txpcfg[txpath]變量遠程文件包含攻擊" ruleid="20677" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PowerPortal file_name[]变量远程文件包含攻击" name_en_US="PowerPortal file_name[] Variable Remote File Inclusion" name_zh_CN="PowerPortal file_name[]变量远程文件包含攻击" name_zh_TW="PowerPortal file_name[]變量遠程文件包含攻擊" ruleid="20670" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Freenews chemin变量远程文件包含攻击" name_en_US="Freenews chemin Variable Remote File Inclusion" name_zh_CN="Freenews chemin变量远程文件包含攻击" name_zh_TW="Freenews chemin變量遠程文件包含攻擊" ruleid="20671" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHP Live! help.php远程文件包含攻击" name_en_US="PHP Live! help.php Remote File Inclusion" name_zh_CN="PHP Live! help.php远程文件包含攻击" name_zh_TW="PHP Live! help.php遠程文件包含攻擊" ruleid="20672" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="NuralStorm Webmail DEFAULT_SKIN变量远程文件包含攻击" name_en_US="NuralStorm Webmail DEFAULT_SKIN Variable Remote File Inclusion" name_zh_CN="NuralStorm Webmail DEFAULT_SKIN变量远程文件包含攻击" name_zh_TW="NuralStorm Webmail DEFAULT_SKIN變量遠程文件包含攻擊" ruleid="20673" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MySource CMS INCLUDE_PATH变量远程文件包含攻击" name_en_US="MySource CMS INCLUDE_PATH Variable Remote File Inclusion" name_zh_CN="MySource CMS INCLUDE_PATH变量远程文件包含攻击" name_zh_TW="MySource CMS INCLUDE_PATH變量遠程文件包含攻擊" ruleid="20678" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Novell eDirectory/iMonitor HTTP协议畸形HOST字段缓冲区溢出攻击" name_en_US="Novell eDirectory/iMonitor HTTP Protocol Malformed HOST Field Remote Buffer Overflow" name_zh_CN="Novell eDirectory/iMonitor HTTP协议畸形HOST字段缓冲区溢出攻击" name_zh_TW="Novell eDirectory/iMonitor HTTP協議畸形HOST字段緩沖區溢出攻擊" ruleid="20679" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596715" module="0" name="Microsoft Windows DNS Server NAPTR查询远程代码执行漏洞（MS11-058)" name_en_US="Microsoft Windows DNS Server NAPTR Query Remote Code Execution Vulnerability（MS11-058)" name_zh_CN="Microsoft Windows DNS Server NAPTR查询远程代码执行漏洞（MS11-058)" name_zh_TW="Microsoft Windows DNS Server NAPTR查詢遠程代碼執行漏洞（MS11-058)" ruleid="21273" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE样式对象内存破坏远程代码执行漏洞（MS11-057)" name_en_US="Microsoft IE Style Object Memory Corruption Remote Code Execution Vulnerability（MS11-057)" name_zh_CN="Microsoft IE样式对象内存破坏远程代码执行漏洞（MS11-057)" name_zh_TW="Microsoft IE樣式對象內存破壞遠程代碼執行漏洞（MS11-057)" ruleid="21272" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IEs Handling of Iframes 内存破坏漏洞(cve-2011-1963)" name_en_US="Microsoft Internet Explorers Handling of Iframes Memory Corruption Vulnerability(cve-2011-1963)" name_zh_CN="Microsoft IEs Handling of Iframes 内存破坏漏洞(cve-2011-1963)" name_zh_TW="Microsoft IEs Handling of Iframes 內存破壞漏洞(cve-2011-1963)" ruleid="21271" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE 任意代码执行漏洞(cve-2011-1961)" name_en_US="Microsoft Internet Explorer Execute Arbitrary Programs Vulnerability(cve-2011-1961)" name_zh_CN="Microsoft IE 任意代码执行漏洞(cve-2011-1961)" name_zh_TW="Microsoft IE 任意代碼執行漏洞(cve-2011-1961)" ruleid="21270" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio远程代码执行漏洞（MS11-061)(CVE-2011-1979)" name_en_US="Microsoft Visio Remote Code Execution Vulnerability（MS11-061)(CVE-2011-1979)" name_zh_CN="Microsoft Visio远程代码执行漏洞（MS11-061)(CVE-2011-1979)" name_zh_TW="Microsoft Visio遠程代碼執行漏洞（MS11-061)(CVE-2011-1979)" ruleid="21276" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft .NET Framework Chart信息泄露漏洞（MS11-066)" name_en_US="Microsoft .NET Framework Chart Control Information Disclosure Vulnerability（MS11-066)" name_zh_CN="Microsoft .NET Framework Chart信息泄露漏洞（MS11-066)" name_zh_TW="Microsoft .NET Framework Chart信息泄露漏洞（MS11-066)" ruleid="21275" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Report Viewer 信息泄露漏洞 (CVE-2011-1976)" name_en_US="Microsoft Report Viewer Information Disclosure Vulnerability(CVE-2011-1976)" name_zh_CN="Microsoft Report Viewer 信息泄露漏洞 (CVE-2011-1976)" name_zh_TW="Microsoft Report Viewer 信息泄露漏洞 (CVE-2011-1976)" ruleid="21274" visible="true" />
			<rule action=" db  screen " enabled="true" group="233865247" module="0" name="PostgreSQL远程拒绝服务和代码执行漏洞" name_en_US="PostgreSQL Denial of Service  And  Remote Code Execution Vulnerability" name_zh_CN="PostgreSQL远程拒绝服务和代码执行漏洞" name_zh_TW="PostgreSQL遠程拒絕服務和代碼執行漏洞" ruleid="10342" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="Microsoft SharePoint EditForm.aspx脚本注入漏洞（MS11-074）" name_en_US="Microsoft SharePoint 'EditForm.aspx' Script Injection Vulnerability（MS11-074）" name_zh_CN="Microsoft SharePoint EditForm.aspx脚本注入漏洞（MS11-074）" name_zh_TW="Microsoft SharePoint EditForm.aspx腳本注入漏洞（MS11-074）" ruleid="21279" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159531" module="0" name="Microsoft IIS 5.x/6.0 JPG/GIF WebShell执行漏洞" name_en_US="Microsoft IIS 5.x/6.0 JPG/GIF WebShell Execution Vulnerability" name_zh_CN="Microsoft IIS 5.x/6.0 JPG/GIF WebShell执行漏洞" name_zh_TW="Microsoft IIS 5.x/6.0 JPG/GIF WebShell執行漏洞" ruleid="21278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序海阳顶端网ASP木马通信" name_en_US="Backdoor/Trojan HaiYang DingDuan Net ASP Trojan Communication" name_zh_CN="木马后门程序海阳顶端网ASP木马通信" name_zh_TW="木馬後門程序海陽頂端網ASP木馬通信" ruleid="40966" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序黑基ASP大马v2009 Webshell检测" name_en_US="Backdoor/Trojan Heiji ASP DaMa v2009 Webshell Detection" name_zh_CN="木马后门程序黑基ASP大马v2009 Webshell检测" name_zh_TW="木馬後門程序黑基ASP大馬v2009 Webshell檢測" ruleid="40967" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995239" module="0" name="Solaris rpc.ttdbserverd远程缓冲区溢出攻击" name_en_US="Solaris rpc.ttdbserverd Remote Buffer Overflow" name_zh_CN="Solaris rpc.ttdbserverd远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程緩沖區溢出攻擊" ruleid="20167" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序桂林老兵ASP站长助手Webshell检测" name_en_US="Backdoor/Trojan GuiLin LaoBing ASP Webmaster Helper Webshell Detection" name_zh_CN="木马后门程序桂林老兵ASP站长助手Webshell检测" name_zh_TW="木馬後門程序桂林老兵ASP站長助手Webshell檢測" ruleid="40964" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="MINOR:Dnsmasq TFTP 服务远程堆缓冲区溢出漏洞" name_en_US="MINOR:Dnsmasq TFTP Service Remote Heap Buffer Overflow" name_zh_CN="MINOR:Dnsmasq TFTP 服务远程堆缓冲区溢出漏洞" name_zh_TW="MINOR:Dnsmasq TFTP 服務遠程堆緩沖區溢出漏洞" ruleid="60028" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序桂林老兵文件管理工具Webshell检测" name_en_US="Backdoor/Trojan GuiLin LaoBing Documentation Tool Webshell Detection" name_zh_CN="木马后门程序桂林老兵文件管理工具Webshell检测" name_zh_TW="木馬後門程序桂林老兵文件管理工具Webshell檢測" ruleid="40965" visible="true" />
			<rule action=" db  screen " enabled="true" group="368054347" module="0" name="木马后门程序Theef活动通信" name_en_US="Backdoor/Trojan Theef Trojan Communication " name_zh_CN="木马后门程序Theef活动通信" name_zh_TW="木馬後門程序Theef活動通信" ruleid="40770" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Sugar Suite GLOBALS[sugarEntry]参数本地文件包含攻击" name_en_US="Sugar Suite GLOBALS[sugarEntry] Parameter Local File Inclusion" name_zh_CN="Sugar Suite GLOBALS[sugarEntry]参数本地文件包含攻击" name_zh_TW="Sugar Suite GLOBALS[sugarEntry]參數本地文件包含攻擊" ruleid="30536" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware MySearch下载安装程序" name_en_US="Adware MySearch Downloading Installer on Windows" name_zh_CN="Windows系统下Adware MySearch下载安装程序" name_zh_TW="Windows系統下Adware MySearch下載安裝程序" ruleid="40746" visible="true" />
			<rule action=" db  screen " enabled="true" group="88088630" module="0" name="Microsoft SQL Server登录获取版本信息" name_en_US="Microsoft SQL Server Login Version Information Disclosure" name_zh_CN="Microsoft SQL Server登录获取版本信息" name_zh_TW="Microsoft SQL Server登錄獲取版本信息" ruleid="30528" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="ocPortal index.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via ocPortal index.php Script Vulnerability" name_zh_CN="ocPortal index.php脚本漏洞远程执行命令" name_zh_TW="ocPortal index.php腳本漏洞遠程執行命令" ruleid="20450" visible="true" />
			<rule action=" db  screen " enabled="true" group="98566443" module="0" name="Microsoft NNTP XPAT命令远程远程缓冲区溢出攻击" name_en_US="Microsoft NNTP XPAT Command Remote Buffer Overflow" name_zh_CN="Microsoft NNTP XPAT命令远程远程缓冲区溢出攻击" name_zh_TW="Microsoft NNTP XPAT命令遠程遠程緩沖區溢出攻擊" ruleid="20451" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="Microsoft Windows NetDDE远程缓冲区溢出攻击" name_en_US="Microsoft Windows NetDDE Remote Buffer Overflow" name_zh_CN="Microsoft Windows NetDDE远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows NetDDE遠程緩沖區溢出攻擊" ruleid="20452" visible="true" />
			<rule action=" db  screen " enabled="true" group="83887183" module="0" name="网络蠕虫MSBLAST（冲击波）利用TFTP服务传播" name_en_US="Network Worm MSBLAST Propagation via TFTP Service" name_zh_CN="网络蠕虫MSBLAST（冲击波）利用TFTP服务传播" name_zh_TW="網絡蠕蟲MSBLAST（沖擊波）利用TFTP服務傳播" ruleid="20453" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="网络蠕虫Sasser（震荡波）FTP后门操作" name_en_US="Network Worm Sasser FTP Backdoor" name_zh_CN="网络蠕虫Sasser（震荡波）FTP后门操作" name_zh_TW="網絡蠕蟲Sasser（震蕩波）FTP後門操作" ruleid="20454" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="雅虎通Webcam Upload ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Messenger Webcam Upload ActiveX Control Remote Stack Overflow" name_zh_CN="雅虎通Webcam Upload ActiveX控件远程栈溢出攻击" name_zh_TW="雅虎通Webcam Upload ActiveX控件遠程棧溢出攻擊" ruleid="20903" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="联众ConnectAndEnterRoom ActiveX控件栈溢出攻击" name_en_US="Ourgame ConnectAndEnterRoom ActiveX Control Stack Overflow" name_zh_CN="联众ConnectAndEnterRoom ActiveX控件栈溢出攻击" name_zh_TW="聯衆ConnectAndEnterRoom ActiveX控件棧溢出攻擊" ruleid="20900" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715503" module="0" name="SMTP服务带超长参数的EXPN命令溢出攻击" name_en_US="SMTP Service EXPN Command Over-Long Parameter Buffer Overflow" name_zh_CN="SMTP服务带超长参数的EXPN命令溢出攻击" name_zh_TW="SMTP服務帶超長參數的EXPN命令溢出攻擊" ruleid="20457" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266603" module="0" name="Apache_W32 Web Server分块编码传输方式远程溢出攻击" name_en_US="Apache_W32 Web Server Chunked Encoding Transmission Remote Buffer Overflow" name_zh_CN="Apache_W32 Web Server分块编码传输方式远程溢出攻击" name_zh_TW="Apache_W32 Web Server分塊編碼傳輸方式遠程溢出攻擊" ruleid="20458" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="UBBThreads dosearch.php远程SQL注入攻击" name_en_US="UBBThreads dosearch.php Remote SQL Injection" name_zh_CN="UBBThreads dosearch.php远程SQL注入攻击" name_zh_TW="UBBThreads dosearch.php遠程SQL注入攻擊" ruleid="20459" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware InstantAccess下载安装程序" name_en_US="Adware InstantAccess Downloading Installer on Windows" name_zh_CN="Windows系统下Adware InstantAccess下载安装程序" name_zh_TW="Windows系統下Adware InstantAccess下載安裝程序" ruleid="40745" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="迅雷PPLAYER.DLL_1_WORK ActiveX控件缓冲区溢出攻击" name_en_US="Xunlei PPLAYER.DLL_1_WORK ActiveX Control Buffer Overflow" name_zh_CN="迅雷PPLAYER.DLL_1_WORK ActiveX控件缓冲区溢出攻击" name_zh_TW="迅雷PPLAYER.DLL_1_WORK ActiveX控件緩沖區溢出攻擊" ruleid="20908" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Borland InterBase ibserver.exe远程栈缓冲区溢出攻击" name_en_US="Borland InterBase ibserver.exe Remote Stack Buffer Overflow" name_zh_CN="Borland InterBase ibserver.exe远程栈缓冲区溢出攻击" name_zh_TW="Borland InterBase ibserver.exe遠程棧緩沖區溢出攻擊" ruleid="20909" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="Alibaba alibaba.pl脚本漏洞扫描利用" name_en_US="Alibaba alibaba.pl Script Vulnerability Detection" name_zh_CN="Alibaba alibaba.pl脚本漏洞扫描利用" name_zh_TW="Alibaba alibaba.pl腳本漏洞掃描利用" ruleid="30525" visible="true" />
			<rule action=" db  screen " enabled="false" group="141566005" module="0" name="SSH服务返回版本信息" name_en_US="SSH Service Returning Version Information" name_zh_CN="SSH服务返回版本信息" name_zh_TW="SSH服務返回版本信息" ruleid="30527" visible="true" />
			<rule action=" db  screen " enabled="true" group="361824349" module="1" name="SNMP服务使用默认public口令回应" name_en_US="SNMP Service Responding to Default public Password" name_zh_CN="SNMP服务使用默认public口令回应" name_zh_TW="SNMP服務使用默認public口令回應" ruleid="70085" visible="false" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="site_searcher.cgi脚本漏洞扫描探测" name_en_US="site_searcher.cgi Script Vulnerability Detection" name_zh_CN="site_searcher.cgi脚本漏洞扫描探测" name_zh_TW="site_searcher.cgi腳本漏洞掃描探測" ruleid="30254" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－RESET扫描" name_en_US="Server Port Scan - RESET Scan" name_zh_CN="服务器端口扫描－RESET扫描" name_zh_TW="服務器端口掃描－RESET掃描" ruleid="30521" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－ACK扫描" name_en_US="Server Port Scan - ACK Scan" name_zh_CN="服务器端口扫描－ACK扫描" name_zh_TW="服務器端口掃描－ACK掃描" ruleid="30520" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Home FTP Server远程目录遍历攻击" name_en_US="Home FTP Server Remote Directory Traversal" name_zh_CN="Home FTP Server远程目录遍历攻击" name_zh_TW="Home FTP Server遠程目錄遍曆攻擊" ruleid="30534" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Allaire JRun Servlet畸形请求远程获取源码攻击" name_en_US="Allaire JRun Servlet Malformed Request Source Code Disclosure" name_zh_CN="Allaire JRun Servlet畸形请求远程获取源码攻击" name_zh_TW="Allaire JRun Servlet畸形請求遠程獲取源碼攻擊" ruleid="30523" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－SYNACK扫描" name_en_US="Server Port Scan - SYNACK Scan" name_zh_CN="服务器端口扫描－SYNACK扫描" name_zh_TW="服務器端口掃描－SYNACK掃描" ruleid="30522" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Matt Kruse calendar-admin.pl脚本漏洞扫描探测" name_en_US="Matt Kruse calendar-admin.pl Script Vulnerability Detection" name_zh_CN="Matt Kruse calendar-admin.pl脚本漏洞扫描探测" name_zh_TW="Matt Kruse calendar-admin.pl腳本漏洞掃描探測" ruleid="30168" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft IIS 5.0 codebrws.asp脚本漏洞扫描探测" name_en_US="Microsoft IIS 5.0 codebrws.asp Script Vulnerability Detection" name_zh_CN="Microsoft IIS 5.0 codebrws.asp脚本漏洞扫描探测" name_zh_TW="Microsoft IIS 5.0 codebrws.asp腳本漏洞掃描探測" ruleid="30165" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS 4.0 showcode.asp脚本漏洞遍历目录读取文件" name_en_US="Microsoft IIS 4.0 showcode.asp Instancec Script Arbitrary File" name_zh_CN="Microsoft IIS 4.0 showcode.asp脚本漏洞遍历目录读取文件" name_zh_TW="Microsoft IIS 4.0 showcode.asp腳本漏洞遍曆目錄讀取文件" ruleid="30164" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Matt Kruse calendar.pl脚本漏洞扫描探测" name_en_US="Matt Kruse calendar.pl Script Vulnerability Detection" name_zh_CN="Matt Kruse calendar.pl脚本漏洞扫描探测" name_zh_TW="Matt Kruse calendar.pl腳本漏洞掃描探測" ruleid="30167" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS 5.0 codebrws.asp脚本漏洞遍历目录读取文件" name_en_US="Microsoft IIS 5.0 codebrws.asp Script Directory Traversal File Reading Vulnerability" name_zh_CN="Microsoft IIS 5.0 codebrws.asp脚本漏洞遍历目录读取文件" name_zh_TW="Microsoft IIS 5.0 codebrws.asp腳本漏洞遍曆目錄讀取文件" ruleid="30166" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208118" module="0" name="Microsoft IIS 4.0 FrontPage 98扩展察看CGI脚本源代码攻击" name_en_US="Microsoft IIS 4.0 FrontPage 98 Extension CGI Script Source Code Disclosure" name_zh_CN="Microsoft IIS 4.0 FrontPage 98扩展察看CGI脚本源代码攻击" name_zh_TW="Microsoft IIS 4.0 FrontPage 98擴展察看CGI腳本源代碼攻擊" ruleid="30160" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft IIS 4.0 showcode.asp脚本漏洞扫描探测" name_en_US="Microsoft IIS 4.0 showcode.asp Script Vulnerability Detection" name_zh_CN="Microsoft IIS 4.0 showcode.asp脚本漏洞扫描探测" name_zh_TW="Microsoft IIS 4.0 showcode.asp腳本漏洞掃描探測" ruleid="30163" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Rod Clark sendform.cgi脚本漏洞扫描探测" name_en_US="Rod Clark sendform.cgi Script Vulnerability Detection" name_zh_CN="Rod Clark sendform.cgi脚本漏洞扫描探测" name_zh_TW="Rod Clark sendform.cgi腳本漏洞掃描探測" ruleid="30162" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725690" module="0" name="Sun Solaris kcms_server远程读取任意文件攻击" name_en_US="Sun Solaris kcms_server Remote Arbitrary File Reading" name_zh_CN="Sun Solaris kcms_server远程读取任意文件攻击" name_zh_TW="Sun Solaris kcms_server遠程讀取任意文件攻擊" ruleid="20296" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420715" module="0" name="Microsoft Windows Locator服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Locator Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows Locator服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows Locator服務遠程緩沖區溢出攻擊" ruleid="20297" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="psunami.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via psunami.cgi Script Vulnerability" name_zh_CN="psunami.cgi脚本漏洞远程执行命令" name_zh_TW="psunami.cgi腳本漏洞遠程執行命令" ruleid="20294" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL COM_CHANGE_USER功能口令认证缺陷漏洞攻击" name_en_US="MySQL COM_CHANGE_USER Function Password Authentication Vulnerability" name_zh_CN="MySQL COM_CHANGE_USER功能口令认证缺陷漏洞攻击" name_zh_TW="MySQL COM_CHANGE_USER功能口令認證缺陷漏洞攻擊" ruleid="20295" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423911" module="0" name="DCP-Portal lib.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via DCP-Portal lib.php Script Vulnerability" name_zh_CN="DCP-Portal lib.php脚本漏洞远程执行命令" name_zh_TW="DCP-Portal lib.php腳本漏洞遠程執行命令" ruleid="20292" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995243" module="0" name="Solaris rpc.ttdbserverd远程堆溢出攻击" name_en_US="Solaris rpc.ttdbserverd Remote Stack Overflow" name_zh_CN="Solaris rpc.ttdbserverd远程堆溢出攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程堆溢出攻擊" ruleid="20293" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Open WebMail openwebmail-shared.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Open WebMail openwebmail-shared.pl Script Vulnerability" name_zh_CN="Open WebMail openwebmail-shared.pl脚本漏洞远程执行命令" name_zh_TW="Open WebMail openwebmail-shared.pl腳本漏洞遠程執行命令" ruleid="20290" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Active PHP Bookmarks脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Active PHP Bookmarks Script Vulnerability" name_zh_CN="Active PHP Bookmarks脚本漏洞远程执行命令" name_zh_TW="Active PHP Bookmarks腳本漏洞遠程執行命令" ruleid="20291" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="RXS-3211 IP摄像头远程密码信息泄露漏洞" name_en_US="RXS-3211 IP Camera UDP Packet Password Information Disclosure Vulnerability" name_zh_CN="RXS-3211 IP摄像头远程密码信息泄露漏洞" name_zh_TW="RXS-3211 IP攝像頭遠程密碼信息泄露漏洞" ruleid="30563" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="Microsoft IE 空字节信息泄露漏洞(MS12-010,CVE-2012-0012)" name_en_US="Microsoft IE Null Byte Information Disclosure Vulnerability(MS12-010,CVE-2012-0012)" name_zh_CN="Microsoft IE 空字节信息泄露漏洞(MS12-010,CVE-2012-0012)" name_zh_TW="Microsoft IE 空字節信息泄露漏洞(MS12-010,CVE-2012-0012)" ruleid="30567" visible="true" />
			<rule action=" db  screen " enabled="true" group="74453035" module="0" name="Putty中文版被植入后门解析回传服务器域名" name_en_US="Putty Chinese Version Backdoor Resolving Server Domain Name" name_zh_CN="Putty中文版被植入后门解析回传服务器域名" name_zh_TW="Putty中文版被植入後門解析回傳服務器域名" ruleid="30566" visible="true" />
			<rule action=" db  screen " enabled="false" group="99622974" module="0" name="漏洞扫描器Nessus远程扫描RDP漏洞(CVE-2012-0002)" name_en_US="Vulnerability Scanner Nessus Remote Scan RDP Vulnerability (CVE-2012-0002)" name_zh_CN="漏洞扫描器Nessus远程扫描RDP漏洞(CVE-2012-0002)" name_zh_TW="漏洞掃描器Nessus遠程掃描RDP漏洞(CVE-2012-0002)" ruleid="30569" visible="false" />
			<rule action=" db  screen " enabled="true" group="69271622" module="0" name="Web服务执行tftp.exe程序" name_en_US="Web Service tftp.exe Program Execution" name_zh_CN="Web服务执行tftp.exe程序" name_zh_TW="Web服務執行tftp.exe程序" ruleid="40146" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Bifrose网络数据通信" name_en_US="Backdoor/Trojan TROJAN Bifrose Connecting to Controller" name_zh_CN="木马后门程序Bifrose网络数据通信" name_zh_TW="木馬後門程序Bifrose網絡數據通信" ruleid="40922" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序LD Pinch网络数据通信" name_en_US="Backdoor/Trojan LD Pinch HTTP POST Operation" name_zh_CN="木马后门程序LD Pinch网络数据通信" name_zh_TW="木馬後門程序LD Pinch網絡數據通信" ruleid="40923" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Win32.Agent.bea网络数据通信" name_en_US="Backdoor/Trojan Win32.Agent.bea C&amp;C connection" name_zh_CN="木马后门程序Win32.Agent.bea网络数据通信" name_zh_TW="木馬後門程序Win32.Agent.bea網絡數據通信" ruleid="40920" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Bifrose网络数据通信变种2" name_en_US="Backdoor/Trojan Bifrose Connecting to Controller Variant 2" name_zh_CN="木马后门程序Bifrose网络数据通信变种2" name_zh_TW="木馬後門程序Bifrose網絡數據通信變種2" ruleid="40921" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208134" module="0" name="Web服务请求执行cmd.exe程序" name_en_US="Web Service Request cmd.exe Program Execution" name_zh_CN="Web服务请求执行cmd.exe程序" name_zh_TW="Web服務請求執行cmd.exe程序" ruleid="40148" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体SopCast网络电视(TCP)连接" name_en_US="Online Streaming Media SopCast Network TV  (TCP) Connect" name_zh_CN="在线流媒体SopCast网络电视(TCP)连接" name_zh_TW="在線流媒體SopCast網絡電視(TCP)連接" ruleid="50211" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体SopCast网络电视(UDP)连接" name_en_US="Online Streaming Media SopCast Network TV  (UDP) Connect" name_zh_CN="在线流媒体SopCast网络电视(UDP)连接" name_zh_TW="在線流媒體SopCast網絡電視(UDP)連接" ruleid="50210" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体NEO(泥巴网)网络电视(UDP)连接" name_en_US="Online Streaming Media NEO(nibaa.tv) Network TV  (UDP) Connect" name_zh_CN="在线流媒体NEO(泥巴网)网络电视(UDP)连接" name_zh_TW="在線流媒體NEO(泥巴網)網絡電視(UDP)連接" ruleid="50213" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体FLV视频连接" name_en_US="Online Streaming Media FLV Video Connect" name_zh_CN="在线流媒体FLV视频连接" name_zh_TW="在線流媒體FLV視頻連接" ruleid="50212" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体TVUPlayer网络电视(TCP)连接" name_en_US="Online Streaming Media TVUPlayer Network TV  (TCP) Connect" name_zh_CN="在线流媒体TVUPlayer网络电视(TCP)连接" name_zh_TW="在線流媒體TVUPlayer網絡電視(TCP)連接" ruleid="50215" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体TVUPlayer网络电视(UDP)连接" name_en_US="Online Streaming Media TVUPlayer Network TV  (UDP) Connect" name_zh_CN="在线流媒体TVUPlayer网络电视(UDP)连接" name_zh_TW="在線流媒體TVUPlayer網絡電視(UDP)連接" ruleid="50214" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件渤海-华泰-财富证券用户登录" name_en_US="Stock Market Analysis Software Bohai Securities User Login" name_zh_CN="股票行情分析操作软件渤海-华泰-财富证券用户登录" name_zh_TW="股票行情分析操作軟件渤海-華泰-財富證券用戶登錄" ruleid="50217" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件飞天行情分析系统用户登录" name_en_US="Stock Market Analysis Software Feitian Market Analysis System User Login" name_zh_CN="股票行情分析操作软件飞天行情分析系统用户登录" name_zh_TW="股票行情分析操作軟件飛天行情分析系統用戶登錄" ruleid="50216" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件东菀证券-宏源-华融-中信-财富证券用户登录" name_en_US="Stock Market Analtsis Software Dongwan Securities - Hongyuan - Huarong - Zhongxin - Fortune Securities User Login" name_zh_CN="股票行情分析操作软件东菀证券-宏源-华融-中信-财富证券用户登录" name_zh_TW="股票行情分析操作軟件東菀證券-宏源-華融-中信-財富證券用戶登錄" ruleid="50219" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="边锋网络游戏世界用户登录" name_en_US="BianFeng Network Game World User Login" name_zh_CN="边锋网络游戏世界用户登录" name_zh_TW="邊鋒網絡遊戲世界用戶登錄" ruleid="50218" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行上海浦东发展银行个人用户登录" name_en_US="Internet Banking Shanghai Pudong Development Bank Personal User Login" name_zh_CN="网上银行上海浦东发展银行个人用户登录" name_zh_TW="網上銀行上海浦東發展銀行個人用戶登錄" ruleid="50314" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Molly系列脚本漏洞扫描探测" name_en_US="Molly Series Script Vulnerability Detection" name_zh_CN="Molly系列脚本漏洞扫描探测" name_zh_TW="Molly系列腳本漏洞掃描探測" ruleid="30298" visible="true" />
			<rule action=" db  screen " enabled="true" group="78644299" module="0" name="网络蠕虫Dabber攻击" name_en_US="Network Worm Dabber Attack" name_zh_CN="网络蠕虫Dabber攻击" name_zh_TW="網絡蠕蟲Dabber攻擊" ruleid="62116" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643495" module="0" name="TFTP Server文件名处理远程栈溢出漏洞" name_en_US="TFTP Server File Name Handling Remote Stack Overflow Vulnerability" name_zh_CN="TFTP Server文件名处理远程栈溢出漏洞" name_zh_TW="TFTP Server文件名處理遠程棧溢出漏洞" ruleid="62115" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="网上银行深圳发展银行用户登录" name_en_US="Internet Banking Shenzhen Development Bank User Login" name_zh_CN="网上银行深圳发展银行用户登录" name_zh_TW="網上銀行深圳發展銀行用戶登錄" ruleid="50315" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="网上银行广东发展银行通用版个人用户登录" name_en_US="Internet Banking Generic Version of Guangdong Development Bank Personal User Login" name_zh_CN="网上银行广东发展银行通用版个人用户登录" name_zh_TW="網上銀行廣東發展銀行通用版個人用戶登錄" ruleid="50316" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Storm Worm Encrypted Variant 1 Traffic 1网络数据通信" name_en_US="Backdoor/Trojan Storm Worm Encrypted Variant 1 Traffic 1" name_zh_CN="木马后门程序Storm Worm Encrypted Variant 1 Traffic 1网络数据通信" name_zh_TW="木馬後門程序Storm Worm Encrypted Variant 1 Traffic 1網絡數據通信" ruleid="40856" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Storm Worm Encrypted Variant 1 Traffic 2网络数据通信" name_en_US="Backdoor/Trojan Storm Worm Encrypted Variant 1 Traffic 2" name_zh_CN="木马后门程序Storm Worm Encrypted Variant 1 Traffic 2网络数据通信" name_zh_TW="木馬後門程序Storm Worm Encrypted Variant 1 Traffic 2網絡數據通信" ruleid="40857" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="网上银行中国光大银行企业用户登录" name_en_US="Internet Banking China Everbright Bank User Login" name_zh_CN="网上银行中国光大银行企业用户登录" name_zh_TW="網上銀行中國光大銀行企業用戶登錄" ruleid="50317" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序POLICY Possible Spambot Host DNS MX Query High Count网络数据通信" name_en_US="Backdoor/Trojan POLICY Possible Spambot Host DNS MX Query High Count" name_zh_CN="木马后门程序POLICY Possible Spambot Host DNS MX Query High Count网络数据通信" name_zh_TW="木馬後門程序POLICY Possible Spambot Host DNS MX Query High Count網絡數據通信" ruleid="40853" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Sojourn sojourn.cgi脚本漏洞读取文件" name_en_US="File Reading via Sojourn sojourn.cgi Script Vulnerability" name_zh_CN="Sojourn sojourn.cgi脚本漏洞读取文件" name_zh_TW="Sojourn sojourn.cgi腳本漏洞讀取文件" ruleid="30369" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CGI-World Poll脚本漏洞扫描探测" name_en_US="CGI-World Poll Script Vulnerability Detection" name_zh_CN="CGI-World Poll脚本漏洞扫描探测" name_zh_TW="CGI-World Poll腳本漏洞掃描探測" ruleid="30368" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="CGI-World Poll CGI脚本漏洞获取系统文件" name_en_US="System File Disclosure via CGI-World Poll CGI Script Vulnerability" name_zh_CN="CGI-World Poll CGI脚本漏洞获取系统文件" name_zh_TW="CGI-World Poll CGI腳本漏洞獲取系統文件" ruleid="30367" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="OpenLinux rpm_query CGI获取系统RPM包安装信息" name_en_US="RPM Package Installation Detection via OpenLinux rpm_query CGI" name_zh_CN="OpenLinux rpm_query CGI获取系统RPM包安装信息" name_zh_TW="OpenLinux rpm_query CGI獲取系統RPM包安裝信息" ruleid="30366" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="PhpSmsSend smssend.php脚本漏洞扫描利用" name_en_US="PhpSmsSend smssend.php Script Vulnerability Detection" name_zh_CN="PhpSmsSend smssend.php脚本漏洞扫描利用" name_zh_TW="PhpSmsSend smssend.php腳本漏洞掃描利用" ruleid="30365" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323142" module="0" name="Web服务.htaccess文件访问" name_en_US="Web Service .htaccess File Access " name_zh_CN="Web服务.htaccess文件访问" name_zh_TW="Web服務.htaccess文件訪問" ruleid="30364" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Way-Board way-board.cgi脚本漏洞远程浏览文件" name_en_US="Remote File Viewing via Way-Board way-board.cgi Script Vulnerability" name_zh_CN="Way-Board way-board.cgi脚本漏洞远程浏览文件" name_zh_TW="Way-Board way-board.cgi腳本漏洞遠程浏覽文件" ruleid="30363" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="PHP-Nuke admin.php脚本漏洞浏览本地文件" name_en_US="Local File Browsing via PHP-Nuke admin.php Script Vulnerability" name_zh_CN="PHP-Nuke admin.php脚本漏洞浏览本地文件" name_zh_TW="PHP-Nuke admin.php腳本漏洞浏覽本地文件" ruleid="30361" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="ION ion-p.exe脚本漏洞扫描利用" name_en_US="ION ion-p.exe Script Vulnerability Detection" name_zh_CN="ION ion-p.exe脚本漏洞扫描利用" name_zh_TW="ION ion-p.exe腳本漏洞掃描利用" ruleid="30360" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="扫描探测helpme.html/helpme2.html页面文件" name_en_US="helpme.html/helpme2.html Page File Detection" name_zh_CN="扫描探测helpme.html/helpme2.html页面文件" name_zh_TW="掃描探測helpme.html/helpme2.html頁面文件" ruleid="30494" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行中国中信银行个人用户登录" name_en_US="Internet Banking China CITIC Bank User Login" name_zh_CN="网上银行中国中信银行个人用户登录" name_zh_TW="網上銀行中國中信銀行個人用戶登錄" ruleid="50312" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行中国民生银行个人用户登录" name_en_US="Internet Banking China Minsheng Bank User Login" name_zh_CN="网上银行中国民生银行个人用户登录" name_zh_TW="網上銀行中國民生銀行個人用戶登錄" ruleid="50313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="SquirrelMail left_main.php脚本漏洞扫描探测" name_en_US="SquirrelMail left_main.php Script Vulnerability Detection" name_zh_CN="SquirrelMail left_main.php脚本漏洞扫描探测" name_zh_TW="SquirrelMail left_main.php腳本漏洞掃描探測" ruleid="30385" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="SquirrelSpell check_me.mod.php脚本漏洞扫描探测" name_en_US="SquirrelSpell check_me.mod.php Script Vulnerability Detection" name_zh_CN="SquirrelSpell check_me.mod.php脚本漏洞扫描探测" name_zh_TW="SquirrelSpell check_me.mod.php腳本漏洞掃描探測" ruleid="30384" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Oracle Reports Server rwcgi60脚本漏洞扫描探测" name_en_US="Oracle Reports Server rwcgi60 Script Vulnerability Detection" name_zh_CN="Oracle Reports Server rwcgi60脚本漏洞扫描探测" name_zh_TW="Oracle Reports Server rwcgi60腳本漏洞掃描探測" ruleid="30387" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Messagerie supp_membre.php脚本漏洞扫描探测" name_en_US="Messagerie supp_membre.php Script Vulnerability Detection" name_zh_CN="Messagerie supp_membre.php脚本漏洞扫描探测" name_zh_TW="Messagerie supp_membre.php腳本漏洞掃描探測" ruleid="30386" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Webspeed wsisa.dll脚本漏洞扫描探测" name_en_US="Webspeed wsisa.dll Script Vulnerability Detection" name_zh_CN="Webspeed wsisa.dll脚本漏洞扫描探测" name_zh_TW="Webspeed wsisa.dll腳本漏洞掃描探測" ruleid="30381" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="SWSoft ASPSeek s.cgi CGI程序漏洞扫描探测" name_en_US="SWSoft ASPSeek s.cgi CGI Vulnerability Detection" name_zh_CN="SWSoft ASPSeek s.cgi CGI程序漏洞扫描探测" name_zh_TW="SWSoft ASPSeek s.cgi CGI程序漏洞掃描探測" ruleid="30380" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Blahz-DNS dostuff.php脚本漏洞扫描探测" name_en_US="Blahz-DNS dostuff.php Script Vulnerability Detection" name_zh_CN="Blahz-DNS dostuff.php脚本漏洞扫描探测" name_zh_TW="Blahz-DNS dostuff.php腳本漏洞掃描探測" ruleid="30383" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="DNSTools dnstools.php脚本漏洞扫描探测" name_en_US="DNSTools dnstools.php Script Vulnerability Detection" name_zh_CN="DNSTools dnstools.php脚本漏洞扫描探测" name_zh_TW="DNSTools dnstools.php腳本漏洞掃描探測" ruleid="30382" visible="true" />
			<rule action=" db  screen " enabled="true" group="209716298" module="0" name="SMTP服务发送W32.Lovgate蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Lovgate" name_zh_CN="SMTP服务发送W32.Lovgate蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Lovgate蠕蟲病毒郵件" ruleid="40452" visible="true" />
			<rule action=" db  screen " enabled="true" group="206570575" module="0" name="POP3服务接收W32.Lovgate蠕虫病毒邮件" name_en_US="POP3 Service Receiving Mails with the W32.Lovgate" name_zh_CN="POP3服务接收W32.Lovgate蠕虫病毒邮件" name_zh_TW="POP3服務接收W32.Lovgate蠕蟲病毒郵件" ruleid="40453" visible="true" />
			<rule action=" db  screen " enabled="true" group="95421515" module="0" name="网络蠕虫Nimda利用共享传播" name_en_US="Network Worm Nimda Propagation via Sharing" name_zh_CN="网络蠕虫Nimda利用共享传播" name_zh_TW="網絡蠕蟲Nimda利用共享傳播" ruleid="40450" visible="true" />
			<rule action=" db  screen " enabled="true" group="95421515" module="0" name="网络蠕虫求职信病毒利用共享传播" name_en_US="Network Worm Worm.Klez Propagation via Windows Sharing" name_zh_CN="网络蠕虫求职信病毒利用共享传播" name_zh_TW="網絡蠕蟲求職信病毒利用共享傳播" ruleid="40451" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="通过访问SnoopServlet Servlet获取服务器软件安装路径信息" name_en_US="Server Installation Path Disclosure from SnoopServlet Servlet" name_zh_CN="通过访问SnoopServlet Servlet获取服务器软件安装路径信息" name_zh_TW="通過訪問SnoopServlet Servlet獲取服務器軟件安裝路徑信息" ruleid="30389" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315061" module="0" name="访问TroubleShooter Servlet获取服务器软件安装路径信息" name_en_US="Server Installation Path Disclosure from TroubleShooter Servlet" name_zh_CN="访问TroubleShooter Servlet获取服务器软件安装路径信息" name_zh_TW="訪問TroubleShooter Servlet獲取服務器軟件安裝路徑信息" ruleid="30388" visible="true" />
			<rule action=" db  screen " enabled="true" group="95682631" module="0" name="网络蠕虫W32.Lovgate病毒通过共享传播" name_en_US="Network Worm W32.Lovgate Propagation via Windows Sharing" name_zh_CN="网络蠕虫W32.Lovgate病毒通过共享传播" name_zh_TW="網絡蠕蟲W32.Lovgate病毒通過共享傳播" ruleid="40454" visible="true" />
			<rule action=" db  screen " enabled="true" group="75759695" module="0" name="SMTP服务发送W32.Bugbear.B@mm蠕虫病毒的窃密邮件" name_en_US="SMTP Service Sending Information Theft Mails with W32.Bugbear.B@mm" name_zh_CN="SMTP服务发送W32.Bugbear.B@mm蠕虫病毒的窃密邮件" name_zh_TW="SMTP服務發送W32.Bugbear.B@mm蠕蟲病毒的竊密郵件" ruleid="40455" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN用户音频聊天通信" name_en_US="Instant Messaging Tool MSN User Audio Chatting Attempt" name_zh_CN="即时通信工具MSN用户音频聊天通信" name_zh_TW="即時通信工具MSN用戶音頻聊天通信" ruleid="50094" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件操盘手用户登录" name_en_US="Stock Market Analysis Software Caopanshou User Login" name_zh_CN="股票行情分析操作软件操盘手用户登录" name_zh_TW="股票行情分析操作軟件操盤手用戶登錄" ruleid="50329" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="网络代理软件Vidalia Bundle火狐代理数据通信" name_en_US="Network Agent Software Vidalia BundleFirefox Agents Data Communication" name_zh_CN="网络代理软件Vidalia Bundle火狐代理数据通信" name_zh_TW="網絡代理軟件Vidalia Bundle火狐代理數據通信" ruleid="50328" visible="true" />
			<rule action=" db  screen " enabled="true" group="166789194" module="0" name="DNS隧道攻击工具NSTX连接" name_en_US="DNS Tunnel Attack Tool NSTX Connect" name_zh_CN="DNS隧道攻击工具NSTX连接" name_zh_TW="DNS隧道攻擊工具NSTX連接" ruleid="50459" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="0" name="远程控制工具VNC软件连接" name_en_US="Remote Control Tool VNC Software Connection" name_zh_CN="远程控制工具VNC软件连接" name_zh_TW="遠程控制工具VNC軟件連接" ruleid="50458" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680346" module="0" name="远程控制工具Radmin软件连接" name_en_US="Reomote Control Tool Radmin Software Connection" name_zh_CN="远程控制工具Radmin软件连接" name_zh_TW="遠程控制工具Radmin軟件連接" ruleid="50457" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN用户联系人状态改变为离开通信" name_en_US="Instant Messaging Tool MSN User Contact State Changed into &quot;Leave&quot; Attempt" name_zh_CN="即时通信工具MSN用户联系人状态改变为离开通信" name_zh_TW="即時通信工具MSN用戶聯系人狀態改變爲離開通信" ruleid="50093" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具百度Hi用户登录" name_en_US="Instant Messaging Tool Baidu Hi User Login" name_zh_CN="即时通信工具百度Hi用户登录" name_zh_TW="即時通信工具百度Hi用戶登錄" ruleid="50327" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件和讯股道黄金版用户登录" name_en_US="Stock Market Analysis Software Hexungudao Gold Edition User Login" name_zh_CN="股票行情分析操作软件和讯股道黄金版用户登录" name_zh_TW="股票行情分析操作軟件和訊股道黃金版用戶登錄" ruleid="50326" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏风雷游戏中心客户端连接服务器" name_en_US="Online Game fenglei Game Center Client Connect  Server " name_zh_CN="网络游戏风雷游戏中心客户端连接服务器" name_zh_TW="網絡遊戲風雷遊戲中心客戶端連接服務器" ruleid="50321" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="simplite MSN收发消息" name_en_US="simplite MSN Sending or Receiving Message" name_zh_CN="simplite MSN收发消息" name_zh_TW="simplite MSN收發消息" ruleid="50320" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="期货分析软件文华财经2008用户登录" name_en_US="Futures Analysis Software Webstock2008 User Login" name_zh_CN="期货分析软件文华财经2008用户登录" name_zh_TW="期貨分析軟件文華財經2008用戶登錄" ruleid="50323" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN用户状态改变为离开通信" name_en_US="Instant Messaging Tool  MSN User State Changed into &quot;Leave&quot; Attempt" name_zh_CN="即时通信工具MSN用户状态改变为离开通信" name_zh_TW="即時通信工具MSN用戶狀態改變爲離開通信" ruleid="50092" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN传送文件失败通信" name_en_US="Instant Messaging Tool MSN Sending Files Failed Attempt" name_zh_CN="即时通信工具MSN传送文件失败通信" name_zh_TW="即時通信工具MSN傳送文件失敗通信" ruleid="50091" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Prosiak木马建立连接" name_en_US="Backdoor/Trojan Prosiak Connection " name_zh_CN="木马后门程序Prosiak木马建立连接" name_zh_TW="木馬後門程序Prosiak木馬建立連接" ruleid="40092" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN传送文件成功通信" name_en_US="Instant Messaging Tool MSN Sending Files Succeeded Attempt" name_zh_CN="即时通信工具MSN传送文件成功通信" name_zh_TW="即時通信工具MSN傳送文件成功通信" ruleid="50090" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="SQLQHit.asp CGI脚本漏洞收集系统信息" name_en_US="System Information Collection via SQLQHit.asp CGI Script" name_zh_CN="SQLQHit.asp CGI脚本漏洞收集系统信息" name_zh_TW="SQLQHit.asp CGI腳本漏洞收集系統信息" ruleid="30496" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE SetCapture释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer SetCapture Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft IE SetCapture释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft IE SetCapture釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22633" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424042" module="0" name="Icinga history.cgi &quot;show_history()&quot; 缓冲区溢出漏洞" name_en_US="Icinga history.cgi &quot;show_history()&quot; Buffer Overflow Vulnerability" name_zh_CN="Icinga history.cgi &quot;show_history()&quot; 缓冲区溢出漏洞" name_zh_TW="Icinga history.cgi &quot;show_history()&quot; 緩沖區溢出漏洞" ruleid="22630" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer vtable释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer vtable Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer vtable释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer vtable釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22636" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer LsGetTrailInfo释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer LsGetTrailInfo Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer LsGetTrailInfo释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer LsGetTrailInfo釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22637" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE COmWindowProxy释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer COmWindowProxy Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft IE COmWindowProxy释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft IE COmWindowProxy釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22634" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer CMarkup释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer CMarkup Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer CMarkup释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer CMarkup釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22635" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159534" module="0" name="Microsoft Internet Explorer pasteHTML释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer pasteHTML Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer pasteHTML释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer pasteHTML釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22638" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer SLayoutRun释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer SLayoutRun Use After Free Remote Code Excuted(MS13-009)" name_zh_CN="Microsoft Internet Explorer SLayoutRun释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer SLayoutRun釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22639" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Stacheldraht客户端操作" name_en_US="DDOS Stacheldraht Client Operation" name_zh_CN="DDOS工具Stacheldraht客户端操作" name_zh_TW="DDOS工具Stacheldraht客戶端操作" ruleid="40367" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具江海证券通达信活动" name_en_US="Securities Analyzing/Trading Software Jianhai Securities Tongdaxin Acitivity" name_zh_CN="证券分析交易工具江海证券通达信活动" name_zh_TW="證券分析交易工具江海證券通達信活動" ruleid="51032" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="电子邮件附件大小超出限制" name_en_US="Email attachment is larger than the specified size" name_zh_CN="电子邮件附件大小超出限制" name_zh_TW="電子郵件附件大小超出限制" ruleid="51033" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具安信证券-核新活动 " name_en_US="Securities Analyzing/Trading Software  Essence Securities-Hexin Activity" name_zh_CN="证券分析交易工具安信证券-核新活动 " name_zh_TW="證券分析交易工具安信證券-核新活動 " ruleid="51030" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具江海证券通达信活动" name_en_US="Securities Analyzing/Trading Software Jianhai Securities Tongdaxin Acitivity" name_zh_CN="证券分析交易工具江海证券通达信活动" name_zh_TW="證券分析交易工具江海證券通達信活動" ruleid="51031" visible="false" />
			<rule action=" db  screen " enabled="true" group="99616791" module="0" name="Microsoft Windows TCP/IP协议栈畸形IP头选项拒绝服务攻击" name_en_US="Microsoft Windows TCP/IP Protocol Stack Malformed IP Header Option Denial of Service" name_zh_CN="Microsoft Windows TCP/IP协议栈畸形IP头选项拒绝服务攻击" name_zh_TW="Microsoft Windows TCP/IP協議棧畸形IP頭選項拒絕服務攻擊" ruleid="10129" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="有道网络爬虫抓取网页信息" name_en_US="YoudaoBot Web Crawlers Capture Page Information" name_zh_CN="有道网络爬虫抓取网页信息" name_zh_TW="有道網絡爬蟲抓取網頁信息" ruleid="50372" visible="true" />
			<rule action=" db  screen " enabled="false" group="206831691" module="0" name="POP3服务接收.vbs病毒邮件" name_en_US="POP3 Service Receiving Mails with .vbs Virus" name_zh_CN="POP3服务接收.vbs病毒邮件" name_zh_TW="POP3服務接收.vbs病毒郵件" ruleid="50039" visible="true" />
			<rule action=" db  screen " enabled="true" group="209716298" module="0" name="SMTP服务发送可疑病毒邮件" name_en_US="SMTP Service Sending Mails with Suspicious Virus" name_zh_CN="SMTP服务发送可疑病毒邮件" name_zh_TW="SMTP服務發送可疑病毒郵件" ruleid="50038" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365530" module="0" name="Wu-ftpd多文件名扩展请求远程拒绝服务攻击" name_en_US="Wu-ftpd Multiple Filename Expand Remote Denial of Service" name_zh_CN="Wu-ftpd多文件名扩展请求远程拒绝服务攻击" name_zh_TW="Wu-ftpd多文件名擴展請求遠程拒絕服務攻擊" ruleid="10128" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537949" module="0" name="FTP服务普通用户认证成功" name_en_US="FTP Service Unprivileged User Authentication Success" name_zh_CN="FTP服务普通用户认证成功" name_zh_TW="FTP服務普通用戶認證成功" ruleid="50031" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="远程控制工具DameWare建立连接" name_en_US="Remote Control Tool DameWare Connection" name_zh_CN="远程控制工具DameWare建立连接" name_zh_TW="遠程控制工具DameWare建立連接" ruleid="50030" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780829" module="0" name="SMTP服务用户认证" name_en_US="SMTP Service User Authentication" name_zh_CN="SMTP服务用户认证" name_zh_TW="SMTP服務用戶認證" ruleid="50033" visible="true" />
			<rule action=" db  screen " enabled="true" group="209716298" module="0" name="SMTP服务发送Worm.MiMail蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Worm.MiMail" name_zh_CN="SMTP服务发送Worm.MiMail蠕虫病毒邮件" name_zh_TW="SMTP服務發送Worm.MiMail蠕蟲病毒郵件" ruleid="50032" visible="true" />
			<rule action=" db  screen " enabled="true" group="210829401" module="0" name="IMAP服务用户认证成功" name_en_US="IMAP Service User Authentication Success" name_zh_CN="IMAP服务用户认证成功" name_zh_TW="IMAP服務用戶認證成功" ruleid="50035" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780829" module="0" name="SMTP服务用户认证" name_en_US="SMTP Service User Authentication" name_zh_CN="SMTP服务用户认证" name_zh_TW="SMTP服務用戶認證" ruleid="50034" visible="true" />
			<rule action=" db  screen " enabled="true" group="209716298" module="0" name="SMTP服务发送.vbs病毒邮件" name_en_US="SMTP Service Sending Mails with .vbs Virus" name_zh_CN="SMTP服务发送.vbs病毒邮件" name_zh_TW="SMTP服務發送.vbs病毒郵件" ruleid="50037" visible="true" />
			<rule action=" db  screen " enabled="true" group="210829402" module="0" name="IMAP服务用户认证失败" name_en_US="IMAP Service User Authentication Fail" name_zh_CN="IMAP服务用户认证失败" name_zh_TW="IMAP服務用戶認證失敗" ruleid="50036" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PostNuke readmsg.php CGI脚本SQL注入攻击" name_en_US="PostNuke readmsg.php CGI Script SQL Injection" name_zh_CN="PostNuke readmsg.php CGI脚本SQL注入攻击" name_zh_TW="PostNuke readmsg.php CGI腳本SQL注入攻擊" ruleid="20502" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows NT/9x畸形TCP/IP包淹没拒绝服务攻击" name_en_US="Microsoft Windows NT/9x Malformed TCP/IP Packet Flood Denial of Service" name_zh_CN="Microsoft Windows NT/9x畸形TCP/IP包淹没拒绝服务攻击" name_zh_TW="Microsoft Windows NT/9x畸形TCP/IP包淹沒拒絕服務攻擊" ruleid="10122" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Oracle Java Runtime Environment组件Hotspot子组件完全控制和拒绝服务漏洞(CVE-2012-1723)" name_en_US="Oracle Java SE Remote Code Execution Vulnerability(CVE-2012-1723)" name_zh_CN="Oracle Java Runtime Environment组件Hotspot子组件完全控制和拒绝服务漏洞(CVE-2012-1723)" name_zh_TW="Oracle Java Runtime Environment組件Hotspot子組件完全控制和拒絕服務漏洞(CVE-2012-1723)" ruleid="22290" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425838" module="0" name="phpBB bbcode.php CGI脚本跨站脚本执行攻击" name_en_US="phpBB bbcode.php CGI Cross-Site Scripting" name_zh_CN="phpBB bbcode.php CGI脚本跨站脚本执行攻击" name_zh_TW="phpBB bbcode.php CGI腳本跨站腳本執行攻擊" ruleid="20500" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="UDP畸形数据包拒绝服务攻击" name_en_US="Malformed UDP Packet Denial of Service" name_zh_CN="UDP畸形数据包拒绝服务攻击" name_zh_TW="UDP畸形數據包拒絕服務攻擊" ruleid="10120" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft NT RAS/PPTP畸形控制包远程拒绝服务攻击" name_en_US="Microsoft NT RAS/PPTP Malformed Packet Remote Denial of Service" name_zh_CN="Microsoft NT RAS/PPTP畸形控制包远程拒绝服务攻击" name_zh_TW="Microsoft NT RAS/PPTP畸形控制包遠程拒絕服務攻擊" ruleid="10127" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814422" module="0" name="DNS服务连接请求淹没拒绝服务攻击" name_en_US="DNS Service Connection Request Flood Denial of Service" name_zh_CN="DNS服务连接请求淹没拒绝服务攻击" name_zh_TW="DNS服務連接請求淹沒拒絕服務攻擊" ruleid="10126" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具KuGoo文件下载" name_en_US="P2P File Sharing Tool KuGoo File Downloading" name_zh_CN="P2P文件共享工具KuGoo文件下载" name_zh_TW="P2P文件共享工具KuGoo文件下載" ruleid="50145" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具百宝文件下载" name_en_US="P2P File Sharing Tool 100bao File Downloading" name_zh_CN="P2P文件共享工具百宝文件下载" name_zh_TW="P2P文件共享工具百寶文件下載" ruleid="50144" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898053" module="0" name="DB2数据库管理服务回应" name_en_US="DB2 Database Management Service Response" name_zh_CN="DB2数据库管理服务回应" name_zh_TW="DB2數據庫管理服務回應" ruleid="50147" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具天网Maze文件下载" name_en_US="P2P File Sharing Tool Maze File Downloading" name_zh_CN="P2P文件共享工具天网Maze文件下载" name_zh_TW="P2P文件共享工具天網Maze文件下載" ruleid="50146" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体PPStream网络电视连接" name_en_US="Online Streaming Media PPStream Network TV Connect" name_zh_CN="在线流媒体PPStream网络电视连接" name_zh_TW="在線流媒體PPStream網絡電視連接" ruleid="50141" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Windows 2000/NT打印服务拒绝服务攻击" name_en_US="Windows 2000/NT Spooler Denial of Service" name_zh_CN="Windows 2000/NT打印服务拒绝服务攻击" name_zh_TW="Windows 2000/NT打印服務拒絕服務攻擊" ruleid="10125" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具迅雷文件下载(TCP)" name_en_US="P2P File Sharing Tool Xunlei File Downloading (TCP)" name_zh_CN="P2P文件共享工具迅雷文件下载(TCP)" name_zh_TW="P2P文件共享工具迅雷文件下載(TCP)" ruleid="50143" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体沸点网络电视连接" name_en_US="Online Streaming Media feidian Network TV  Connect" name_zh_CN="在线流媒体沸点网络电视连接" name_zh_TW="在線流媒體沸點網絡電視連接" ruleid="50142" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows NT 4.0远程注册表操作拒绝服务攻击" name_en_US="Microsoft Windows NT 4.0 Remote Registry Operation Denial of Service" name_zh_CN="Microsoft Windows NT 4.0远程注册表操作拒绝服务攻击" name_zh_TW="Microsoft Windows NT 4.0遠程注冊表操作拒絕服務攻擊" ruleid="10124" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体QQ直播连接" name_en_US="Online Streaming MediaQQ Live  Connect" name_zh_CN="在线流媒体QQ直播连接" name_zh_TW="在線流媒體QQ直播連接" ruleid="50149" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线电视流媒体猫扑网络连接" name_en_US="Online Streaming Media mop Network TV Connect" name_zh_CN="在线电视流媒体猫扑网络连接" name_zh_TW="在線電視流媒體貓撲網絡連接" ruleid="50148" visible="true" />
			<rule action="" enabled="true" group="233840717" module="0" name="ICMP PING扫描单包" name_en_US="Single ICMP PING Packet " name_zh_CN="ICMP PING扫描单包" name_zh_TW="ICMP PING掃描單包" ruleid="70084" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具TM2008用户登录（TCP）" name_en_US="Instant Messaging 工具 TM2008 User Login" name_zh_CN="即时通信工具TM2008用户登录（TCP）" name_zh_TW="即時通信工具TM2008用戶登錄（TCP）" ruleid="50290" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Windows系统远程管理工具PcAnywhere远程登录失败" name_en_US="Windows Remote Management Tool PcAnywhere Remote Login Failed" name_zh_CN="Windows系统远程管理工具PcAnywhere远程登录失败" name_zh_TW="Windows系統遠程管理工具PcAnywhere遠程登錄失敗" ruleid="40053" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Comet WebFileManager CheckUpload.php远程文件包含攻击" name_en_US="Comet WebFileManager CheckUpload.php Remote File Inclusion" name_zh_CN="Comet WebFileManager CheckUpload.php远程文件包含攻击" name_zh_TW="Comet WebFileManager CheckUpload.php遠程文件包含攻擊" ruleid="20699" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="SMTP服务EXPN命令系统帐号存在性探测" name_en_US="SMTP Service EXPN Command System Account Detection" name_zh_CN="SMTP服务EXPN命令系统帐号存在性探测" name_zh_TW="SMTP服務EXPN命令系統帳號存在性探測" ruleid="40363" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="EasyFTP Server CWD 命令栈缓冲区溢出漏洞" name_en_US="EasyFTP Server CWD Command Stack Buffer Overflow Vulnerability" name_zh_CN="EasyFTP Server CWD 命令栈缓冲区溢出漏洞" name_zh_TW="EasyFTP Server CWD 命令棧緩沖區溢出漏洞" ruleid="21885" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="ACal Calendar day.php远程文件包含攻击" name_en_US="ACal Calendar day.php Remote File Inclusion" name_zh_CN="ACal Calendar day.php远程文件包含攻击" name_zh_TW="ACal Calendar day.php遠程文件包含攻擊" ruleid="20693" visible="true" />
			<rule action="" enabled="true" group="233898061" module="0" name="RealVNC客户端发送空认证类型" name_en_US="RealVNC Client Sending NULL Authenticaition Type " name_zh_CN="RealVNC客户端发送空认证类型" name_zh_TW="RealVNC客戶端發送空認證類型" ruleid="70091" visible="false" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="IMAP服务器APPEND命令超长参数缓冲区溢出攻击" name_en_US="IMAP Server APPEND Command Over-Long Parameter Buffer Overflow" name_zh_CN="IMAP服务器APPEND命令超长参数缓冲区溢出攻击" name_zh_TW="IMAP服務器APPEND命令超長參數緩沖區溢出攻擊" ruleid="20849" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Mozilla Firefox Javascript导航器对象远程代码执行攻击" name_en_US="Mozilla Firefox Javascript Navigator Object Remote Code Execution" name_zh_CN="Mozilla Firefox Javascript导航器对象远程代码执行攻击" name_zh_TW="Mozilla Firefox Javascript導航器對象遠程代碼執行攻擊" ruleid="20848" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Siemens FactoryLink vrn.exe Opcode 9缓冲区溢出漏洞" name_en_US="Siemens FactoryLink vrn.exe Opcode 9 Buffer Overflow Vulnerability" name_zh_CN="Siemens FactoryLink vrn.exe Opcode 9缓冲区溢出漏洞" name_zh_TW="Siemens FactoryLink vrn.exe Opcode 9緩沖區溢出漏洞" ruleid="21862" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Siemens FactoryLink 8 CSService Logging Path Param缓冲区溢出漏洞" name_en_US="Siemens FactoryLink 8 CSService Logging Path Param Buffer Overflow Vulnerability" name_zh_CN="Siemens FactoryLink 8 CSService Logging Path Param缓冲区溢出漏洞" name_zh_TW="Siemens FactoryLink 8 CSService Logging Path Param緩沖區溢出漏洞" ruleid="21863" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="SoftiaCom WMailserver 1.0缓冲区溢出漏洞" name_en_US="SoftiaCom WMailserver 1.0 Buffer Overflow Vulnerability" name_zh_CN="SoftiaCom WMailserver 1.0缓冲区溢出漏洞" name_zh_TW="SoftiaCom WMailserver 1.0緩沖區溢出漏洞" ruleid="21861" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="CA BrightStor ARCserve Backup Tape Engine服务远程缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup Tape Engine Service Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup Tape Engine服务远程缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup Tape Engine服務遠程緩沖區溢出攻擊" ruleid="20843" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="CA BrightStor ARCserve Message Engine服务远程堆溢出攻击" name_en_US="CA BrightStor ARCserve Message Engine Service Remote Heap Overflow" name_zh_CN="CA BrightStor ARCserve Message Engine服务远程堆溢出攻击" name_zh_TW="CA BrightStor ARCserve Message Engine服務遠程堆溢出攻擊" ruleid="20842" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="CA BrightStor ARCServe BackUp Message/Tape Engine服务远程溢出攻击" name_en_US="CA BrightStor ARCServe BackUp Message/Tape Engine Service Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCServe BackUp Message/Tape Engine服务远程溢出攻击" name_zh_TW="CA BrightStor ARCServe BackUp Message/Tape Engine服務遠程溢出攻擊" ruleid="20841" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="Mercury/32 PH Server模块远程缓冲区溢出攻击" name_en_US="Mercury/32 PH Server Module Remote Buffer Overflow" name_zh_CN="Mercury/32 PH Server模块远程缓冲区溢出攻击" name_zh_TW="Mercury/32 PH Server模塊遠程緩沖區溢出攻擊" ruleid="20840" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="NaviCOPA Web Server远程缓冲区溢出攻击" name_en_US="NaviCOPA Web Server Remote Buffer Overflow" name_zh_CN="NaviCOPA Web Server远程缓冲区溢出攻击" name_zh_TW="NaviCOPA Web Server遠程緩沖區溢出攻擊" ruleid="20847" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Mozilla Suite/Firefox compareTo()代码执行攻击" name_en_US="Mozilla Suite/Firefox compareTo() Code Execution" name_zh_CN="Mozilla Suite/Firefox compareTo()代码执行攻击" name_zh_TW="Mozilla Suite/Firefox compareTo()代碼執行攻擊" ruleid="20846" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="HTTP协议URL字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long URL Field Buffer Overflow" name_zh_CN="HTTP协议URL字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議URL字段超長緩沖區溢出攻擊" ruleid="20845" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="CA BrightStor ARCserve Backup Media Server组件远程栈溢出攻击" name_en_US="CA BrightStor ARCserve Backup Media Server Component Remote Stack Overflow" name_zh_CN="CA BrightStor ARCserve Backup Media Server组件远程栈溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup Media Server組件遠程棧溢出攻擊" ruleid="20844" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266603" module="0" name="yoopss YOPS HTTP请求头字段缓冲溢出漏洞" name_en_US="yoopss YOPS HTTP Request Header Buffer Overflow Vulnerability" name_zh_CN="yoopss YOPS HTTP请求头字段缓冲溢出漏洞" name_zh_TW="yoopss YOPS HTTP請求頭字段緩沖溢出漏洞" ruleid="21081" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS目录绕过认证漏洞" name_en_US="Microsoft IIS Directory Authentication Bypass Vulnerability" name_zh_CN="Microsoft IIS目录绕过认证漏洞" name_zh_TW="Microsoft IIS目錄繞過認證漏洞" ruleid="21082" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Outlook Online模式远程堆溢出漏洞" name_en_US="Microsoft Outlook Online Mode Remote Heap Overflow Vulnerability" name_zh_CN="Microsoft Outlook Online模式远程堆溢出漏洞" name_zh_TW="Microsoft Outlook Online模式遠程堆溢出漏洞" ruleid="21083" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Windows和Office产品Uniscribe字体解析引擎内存破坏漏洞" name_en_US="Microsoft Windows and Office Uniscribe Font Parsing Engine Memory Corruption Vulnerability" name_zh_CN="Microsoft Windows和Office产品Uniscribe字体解析引擎内存破坏漏洞" name_zh_TW="Microsoft Windows和Office産品Uniscribe字體解析引擎內存破壞漏洞" ruleid="21084" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Print Spooler 服务角色扮演漏洞" name_en_US="Microsoft Windows Print Spooler Service Impersonation Vulnerability" name_zh_CN="Microsoft Windows Print Spooler 服务角色扮演漏洞" name_zh_TW="Microsoft Windows Print Spooler 服務角色扮演漏洞" ruleid="21085" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616831" module="0" name="Microsoft .NET Framework ASP.NET信息泄露漏洞" name_en_US="Vulnerability in Microsoft .NET Framework ASP.NET Could Allow Information Disclosure" name_zh_CN="Microsoft .NET Framework ASP.NET信息泄露漏洞" name_zh_TW="Microsoft .NET Framework ASP.NET信息泄露漏洞" ruleid="21086" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Office COM对象验证远程代码执行漏洞" name_en_US="Microsoft Windows COM Object Validation Remote Code Execution Vulnerability" name_zh_CN="Microsoft Office COM对象验证远程代码执行漏洞" name_zh_TW="Microsoft Office COM對象驗證遠程代碼執行漏洞" ruleid="21087" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Windows嵌入式OpenType字体整数溢出漏洞" name_en_US="Microsoft Windows Embedded OpenType Font Integer Overflow Vulnerability" name_zh_CN="Microsoft Windows嵌入式OpenType字体整数溢出漏洞" name_zh_TW="Microsoft Windows嵌入式OpenType字體整數溢出漏洞" ruleid="21088" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Windows和Office产品OpenType字体解析漏洞" name_en_US="Microsoft Windows and Office OpenType Font Parsing Vulnerability" name_zh_CN="Microsoft Windows和Office产品OpenType字体解析漏洞" name_zh_TW="Microsoft Windows和Office産品OpenType字體解析漏洞" ruleid="21089" visible="true" />
			<rule action="" enabled="true" group="233898077" module="1" name="RealVNC服务端发送认证类型" name_en_US="RealVNC Server Sending Authentication Type " name_zh_CN="RealVNC服务端发送认证类型" name_zh_TW="RealVNC服務端發送認證類型" ruleid="70090" visible="false" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="Nucleus CMS PLUGINADMIN.php远程文件包含攻击" name_en_US="Nucleus CMS PLUGINADMIN.php Remote File Inclusion" name_zh_CN="Nucleus CMS PLUGINADMIN.php远程文件包含攻击" name_zh_TW="Nucleus CMS PLUGINADMIN.php遠程文件包含攻擊" ruleid="20601" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316971" module="0" name="UBB.threads addpost_newpoll.php远程文件包含攻击" name_en_US="UBB.threads addpost_newpoll.php Remote File Inclusion" name_zh_CN="UBB.threads addpost_newpoll.php远程文件包含攻击" name_zh_TW="UBB.threads addpost_newpoll.php遠程文件包含攻擊" ruleid="20600" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316975" module="0" name="HP OpenView OmniBack非授权命令执行攻击" name_en_US="HP OpenView OmniBack Unauthorized Code Execution" name_zh_CN="HP OpenView OmniBack非授权命令执行攻击" name_zh_TW="HP OpenView OmniBack非授權命令執行攻擊" ruleid="20603" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="DotClear prepend.php远程文件包含攻击" name_en_US="DotClear prepend.php Remote File Inclusion" name_zh_CN="DotClear prepend.php远程文件包含攻击" name_zh_TW="DotClear prepend.php遠程文件包含攻擊" ruleid="20602" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="RaXnet Cacti graph_image.php远程命令执行攻击" name_en_US="RaXnet Cacti graph_image.php Remote Code Execution" name_zh_CN="RaXnet Cacti graph_image.php远程命令执行攻击" name_zh_TW="RaXnet Cacti graph_image.php遠程命令執行攻擊" ruleid="20605" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Simple PHP Blog上传脚本文件执行代码攻击" name_en_US="Simple PHP Blog Upload Script Code Execution" name_zh_CN="Simple PHP Blog上传脚本文件执行代码攻击" name_zh_TW="Simple PHP Blog上傳腳本文件執行代碼攻擊" ruleid="20607" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Lyris ListManager远程命令执行攻击" name_en_US="Lyris ListManager Remote Code Execution" name_zh_CN="Lyris ListManager远程命令执行攻击" name_zh_TW="Lyris ListManager遠程命令執行攻擊" ruleid="20606" visible="true" />
			<rule action=" db  screen " enabled="true" group="156239915" module="0" name="Solaris LPD远程命令执行攻击" name_en_US="Solaris LPD Remote Command Execution" name_zh_CN="Solaris LPD远程命令执行攻击" name_zh_TW="Solaris LPD遠程命令執行攻擊" ruleid="20609" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Barracuda img.pl远程命令执行攻击" name_en_US="Barracuda img.pl Remote Code Execution" name_zh_CN="Barracuda img.pl远程命令执行攻击" name_zh_TW="Barracuda img.pl遠程命令執行攻擊" ruleid="20608" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898063" module="0" name="Botnet 主控端可疑网络活动" name_en_US="Botnet Master Suspicious Network Activity." name_zh_CN="Botnet 主控端可疑网络活动" name_zh_TW="Botnet 主控端可疑網絡活動" ruleid="41044" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft Windows Remote Desktop Web Access跨站脚本执行漏洞（MS11-061)(CVE-2011-1263)" name_en_US="Microsoft Windows Remote Desktop Web Access XSS Vulnerability（MS11-061)(CVE-2011-1263)" name_zh_CN="Microsoft Windows Remote Desktop Web Access跨站脚本执行漏洞（MS11-061)(CVE-2011-1263)" name_zh_TW="Microsoft Windows Remote Desktop Web Access跨站腳本執行漏洞（MS11-061)(CVE-2011-1263)" ruleid="21268" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE事件处理程序跨域信息泄露漏洞（MS11-057)" name_en_US="Microsoft IE Event Handlers Cross Domain Information Disclosure Vulnerability（MS11-057)" name_zh_CN="Microsoft IE事件处理程序跨域信息泄露漏洞（MS11-057)" name_zh_TW="Microsoft IE事件處理程序跨域信息泄露漏洞（MS11-057)" ruleid="21269" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Distributed File System(DFS) client 远程代码执行漏洞" name_en_US="Distributed File System(DFS) client Remote Code Executing Vulnerability" name_zh_CN="Distributed File System(DFS) client 远程代码执行漏洞" name_zh_TW="Distributed File System(DFS) client 遠程代碼執行漏洞" ruleid="21264" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="MHTML component 信息暴露漏洞" name_en_US="MHTML component Information Disclosure Vulnerability" name_zh_CN="MHTML component 信息暴露漏洞" name_zh_TW="MHTML component 信息暴露漏洞" ruleid="21265" visible="true" />
			<rule action=" db  screen " enabled="true" group="337643563" module="0" name="H3C ER5100身份验证绕过漏洞" name_en_US="H3C ER5100 Authentication Bypass Vulnerability" name_zh_CN="H3C ER5100身份验证绕过漏洞" name_zh_TW="H3C ER5100身份驗證繞過漏洞" ruleid="21266" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE 代码执行漏洞(CVE-2011-1257)（MS11-057）" name_en_US="Microsoft IE Code Execution Vulnerability(CVE-2011-1257)（MS11-057）" name_zh_CN="Microsoft IE 代码执行漏洞(CVE-2011-1257)（MS11-057）" name_zh_TW="Microsoft IE 代碼執行漏洞(CVE-2011-1257)（MS11-057）" ruleid="21267" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel 超过边界访问漏洞" name_en_US="Microsoft Excel Out of Boundary Vulnerability" name_zh_CN="Microsoft Excel 超过边界访问漏洞" name_zh_TW="Microsoft Excel 超過邊界訪問漏洞" ruleid="21260" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel 代码执行漏洞" name_en_US="Microsoft Excel Code Execution Vulnerability" name_zh_CN="Microsoft Excel 代码执行漏洞" name_zh_TW="Microsoft Excel 代碼執行漏洞" ruleid="21261" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel 2003 超过边界访问漏洞" name_en_US="Microsoft Excel 2003 Out of Boundary Vulnerability" name_zh_CN="Microsoft Excel 2003 超过边界访问漏洞" name_zh_TW="Microsoft Excel 2003 超過邊界訪問漏洞" ruleid="21262" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Visual Studio 信息暴露漏洞" name_en_US="Microsoft Visual Studio Information Disclosure Vulnerability" name_zh_CN="Microsoft Visual Studio 信息暴露漏洞" name_zh_TW="Microsoft Visual Studio 信息暴露漏洞" ruleid="21263" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159531" module="0" name="WinHTTP Chunked 长整形溢出远程代码执行" name_en_US="WinHTTP Chunked Large Size Overflow Remote Code Execution" name_zh_CN="WinHTTP Chunked 长整形溢出远程代码执行" name_zh_TW="WinHTTP Chunked 長整形溢出遠程代碼執行" ruleid="20985" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="SynCE vdccm守护程序远程命令注入攻击" name_en_US="SynCE vdccm Remote Command Injection Attack" name_zh_CN="SynCE vdccm守护程序远程命令注入攻击" name_zh_TW="SynCE vdccm守護程序遠程命令注入攻擊" ruleid="20933" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Gateway CWebLaunchCtl ActiveX控件远程栈溢出攻击" name_en_US="Gateway CWebLaunchCtl ActiveX Control Remote Stack Overflow Attack" name_zh_CN="Gateway CWebLaunchCtl ActiveX控件远程栈溢出攻击" name_zh_TW="Gateway CWebLaunchCtl ActiveX控件遠程棧溢出攻擊" ruleid="20932" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157610" module="0" name="Tikiwiki CMS tiki-listmovies.php文件目录遍历攻击" name_en_US="Tikiwiki CMS tiki-listmovies.php Directory Traversal Attack" name_zh_CN="Tikiwiki CMS tiki-listmovies.php文件目录遍历攻击" name_zh_TW="Tikiwiki CMS tiki-listmovies.php文件目錄遍曆攻擊" ruleid="20931" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="Wordpress xmlrpc.php脚本远程SQL注入攻击" name_en_US="Wordpress xmlrpc.php Script Remote SQL injection Attack" name_zh_CN="Wordpress xmlrpc.php脚本远程SQL注入攻击" name_zh_TW="Wordpress xmlrpc.php腳本遠程SQL注入攻擊" ruleid="20930" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Macrovision FLEXnet Connect ActiveX控件恶意文件下载攻击" name_en_US="Macrovision FLEXnet Connect ActiveX Control Downloading Malicious File Attack" name_zh_CN="Macrovision FLEXnet Connect ActiveX控件恶意文件下载攻击" name_zh_TW="Macrovision FLEXnet Connect ActiveX控件惡意文件下載攻擊" ruleid="20937" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="yaSSL远程缓冲区溢出及无效内存访问攻击" name_en_US="yaSSL Remote Buffer Overflow And Invalid Memory Access Attack" name_zh_CN="yaSSL远程缓冲区溢出及无效内存访问攻击" name_zh_TW="yaSSL遠程緩沖區溢出及無效內存訪問攻擊" ruleid="20935" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="CUPS SNMP后端asn1_get_string()函数远程栈溢出攻击" name_en_US="CUPS SNMP asn1_get_string() Remote Stack Overflow Attack" name_zh_CN="CUPS SNMP后端asn1_get_string()函数远程栈溢出攻击" name_zh_TW="CUPS SNMP後端asn1_get_string()函數遠程棧溢出攻擊" ruleid="20934" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_en_US="CA ETrust Intrusion Detection Caller.dll Control Remote Code Execution Attack" name_zh_CN="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_zh_TW="CA ETrust Intrusion Detection Caller.dll控件遠程代碼執行攻擊" ruleid="20939" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="SAP MaxDB cons.exe远程命令注入攻击" name_en_US="SAP MaxDB cons.exe Remote Command Injection Attack" name_zh_CN="SAP MaxDB cons.exe远程命令注入攻击" name_zh_TW="SAP MaxDB cons.exe遠程命令注入攻擊" ruleid="20938" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995239" module="0" name="Solaris rpc.cmsd远程缓冲区溢出攻击" name_en_US="Solaris rpc.cmsd Remote Buffer Overflow" name_zh_CN="Solaris rpc.cmsd远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.cmsd遠程緩沖區溢出攻擊" ruleid="20118" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995243" module="0" name="Linux rpc.statd远程格式串溢出攻击(TCP)" name_en_US="Linux rpc.statd Remote Format String TCP Overflow(TCP)" name_zh_CN="Linux rpc.statd远程格式串溢出攻击(TCP)" name_zh_TW="Linux rpc.statd遠程格式串溢出攻擊(TCP)" ruleid="20115" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995239" module="0" name="Solaris rpc.yppasswdd远程缓冲区溢出攻击" name_en_US="Solaris rpc.yppasswdd Remote Buffer Overflow" name_zh_CN="Solaris rpc.yppasswdd远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.yppasswdd遠程緩沖區溢出攻擊" ruleid="20111" visible="true" />
			<rule action=" db  screen " enabled="true" group="227541287" module="0" name="SNMPv1请求处理远程缓冲区溢出攻击" name_en_US="SNMPv1 Request Processing Remote Buffer Overflow" name_zh_CN="SNMPv1请求处理远程缓冲区溢出攻击" name_zh_TW="SNMPv1請求處理遠程緩沖區溢出攻擊" ruleid="20110" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995239" module="0" name="Linux rpc.statd远程格式串溢出攻击(UDP)" name_en_US="Linux rpc.statd Remote Format String Overflow(UDP)" name_zh_CN="Linux rpc.statd远程格式串溢出攻击(UDP)" name_zh_TW="Linux rpc.statd遠程格式串溢出攻擊(UDP)" ruleid="20113" visible="true" />
			<rule action=" db  screen " enabled="true" group="229638447" module="0" name="SMB服务远程代码执行攻击漏洞" name_en_US="SMB Service Remote Code Execution Vulnerability" name_zh_CN="SMB服务远程代码执行攻击漏洞" name_zh_TW="SMB服務遠程代碼執行攻擊漏洞" ruleid="21462" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="WINS服务远程代码执行攻击漏洞" name_en_US="WINS Service Remote Code Execution Vulnerability" name_zh_CN="WINS服务远程代码执行攻击漏洞" name_zh_TW="WINS服務遠程代碼執行攻擊漏洞" ruleid="21463" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.ASP.Ace ASP Web访问" name_en_US="Backdoor/Trojan Backdoor.ASP.Ace ASP Web Access" name_zh_CN="木马后门程序Backdoor.ASP.Ace ASP Web访问" name_zh_TW="木馬後門程序Backdoor.ASP.Ace ASP Web訪問" ruleid="21460" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="TikiWiki tiki-graph_formula远程PHP代码执行漏洞" name_en_US="TikiWiki tiki-graph_formula Remote PHP Code Execution Vulnerability" name_zh_CN="TikiWiki tiki-graph_formula远程PHP代码执行漏洞" name_zh_TW="TikiWiki tiki-graph_formula遠程PHP代碼執行漏洞" ruleid="21461" visible="true" />
			<rule action=" db  screen " enabled="true" group="203427883" module="0" name="DedeCMS shopcar.class.php后门可执行任意PHP命令漏洞" name_en_US="DedeCMS shopcar.class.php Backdoor Executable Arbitrary PHP Commands Vulnerability" name_zh_CN="DedeCMS shopcar.class.php后门可执行任意PHP命令漏洞" name_zh_TW="DedeCMS shopcar.class.php後門可執行任意PHP命令漏洞" ruleid="21466" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888175" module="0" name="DCE-RPC服务远程代码执行攻击" name_en_US="DCE-RPC Service Remote Code Execution Vulnerability" name_zh_CN="DCE-RPC服务远程代码执行攻击" name_zh_TW="DCE-RPC服務遠程代碼執行攻擊" ruleid="21464" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082479" module="0" name="SQL Server服务远程代码执行攻击漏洞" name_en_US="SQL Server Service Remote Code Execution Vulnerability" name_zh_CN="SQL Server服务远程代码执行攻击漏洞" name_zh_TW="SQL Server服務遠程代碼執行攻擊漏洞" ruleid="21465" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="AwStats migrate参数远程执行命令攻击" name_en_US="AwStats migrate Parameter Remomte Code Execution" name_zh_CN="AwStats migrate参数远程执行命令攻击" name_zh_TW="AwStats migrate參數遠程執行命令攻擊" ruleid="20591" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="TopList Hack for phpBB远程文件包含攻击" name_en_US="TopList Hack for phpBB Remote File Inclusion" name_zh_CN="TopList Hack for phpBB远程文件包含攻击" name_zh_TW="TopList Hack for phpBB遠程文件包含攻擊" ruleid="20590" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="MySQL MaxDB HTTP GET请求远程缓冲区溢出攻击" name_en_US="MySQL MaxDB HTTP GET Request Remote Buffer Overflow" name_zh_CN="MySQL MaxDB HTTP GET请求远程缓冲区溢出攻击" name_zh_TW="MySQL MaxDB HTTP GET請求遠程緩沖區溢出攻擊" ruleid="20593" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="网络游戏Epic Games Unreal Engine Secure Query缓冲区溢出攻击" name_en_US="Online Game Epic Games Unreal Engine Secure Query Buffer Overflow" name_zh_CN="网络游戏Epic Games Unreal Engine Secure Query缓冲区溢出攻击" name_zh_TW="網絡遊戲Epic Games Unreal Engine Secure Query緩沖區溢出攻擊" ruleid="20592" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Veritas Backup Exec注册请求远程缓冲区溢出攻击" name_en_US="Veritas Backup Exec Register Request Remote Buffer Overflow" name_zh_CN="Veritas Backup Exec注册请求远程缓冲区溢出攻击" name_zh_TW="Veritas Backup Exec注冊請求遠程緩沖區溢出攻擊" ruleid="20595" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft IIS w3who ISAPI DLL远程缓冲区溢出攻击" name_en_US="Microsoft IIS w3who ISAPI DLL Remote Buffer Overflow" name_zh_CN="Microsoft IIS w3who ISAPI DLL远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS w3who ISAPI DLL遠程緩沖區溢出攻擊" ruleid="20594" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Arkeia Server Backup 77请求类型远程缓冲区溢出攻击" name_en_US="Arkeia Server Backup Type 77 Request Remote Buffer Overflow" name_zh_CN="Arkeia Server Backup 77请求类型远程缓冲区溢出攻击" name_zh_TW="Arkeia Server Backup 77請求類型遠程緩沖區溢出攻擊" ruleid="20597" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="ISS RealSecure/BlackICE协议分析模块ICQ应答处理缓冲区溢出攻击" name_en_US="ISS RealSecure/BlackICE Protocol Analysis Module ICQ Response Handling Buffer Overflow" name_zh_CN="ISS RealSecure/BlackICE协议分析模块ICQ应答处理缓冲区溢出攻击" name_zh_TW="ISS RealSecure/BlackICE協議分析模塊ICQ應答處理緩沖區溢出攻擊" ruleid="20596" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpListPro returnpath变量远程文件包含攻击" name_en_US="phpListPro returnpath Variable Remote File Inclusion" name_zh_CN="phpListPro returnpath变量远程文件包含攻击" name_zh_TW="phpListPro returnpath變量遠程文件包含攻擊" ruleid="20599" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="即时通讯工具AOL Instant Messenger Away Message缓冲区溢出攻击" name_en_US="Instant Messageing Tool AOL Instant Messenger Away Message Buffer Overflow" name_zh_CN="即时通讯工具AOL Instant Messenger Away Message缓冲区溢出攻击" name_zh_TW="即時通訊工具AOL Instant Messenger Away Message緩沖區溢出攻擊" ruleid="20598" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="Netscape Servers search脚本漏洞远程拒绝服务攻击" name_en_US="Remote Denial of Service via Netscape Servers search Script Vulnerability" name_zh_CN="Netscape Servers search脚本漏洞远程拒绝服务攻击" name_zh_TW="Netscape Servers search腳本漏洞遠程拒絕服務攻擊" ruleid="10075" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365543" module="0" name="FTP服务SITE EXEC执行命令攻击" name_en_US="FTP Service SITE EXEC Command Execution" name_zh_CN="FTP服务SITE EXEC执行命令攻击" name_zh_TW="FTP服務SITE EXEC執行命令攻擊" ruleid="40046" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537942" module="0" name="FTP服务普通用户认证失败" name_en_US="FTP Service Unprivileged User Authentication Fail" name_zh_CN="FTP服务普通用户认证失败" name_zh_TW="FTP服務普通用戶認證失敗" ruleid="40048" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp2.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp2.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp2.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp2.htr文件訪問" ruleid="30178" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp2b.htr文件訪問" ruleid="30179" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/achg.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/achg.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/achg.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/achg.htr文件訪問" ruleid="30176" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS 4.0 /iisadmpwd/aexp.htr文件访问" name_en_US="Access to Microsoft IIS 4.0 /iisadmpwd/aexp.htr File" name_zh_CN="Microsoft IIS 4.0 /iisadmpwd/aexp.htr文件访问" name_zh_TW="Microsoft IIS 4.0 /iisadmpwd/aexp.htr文件訪問" ruleid="30177" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft FrontPage authors.pwd文件访问" name_en_US="Access to Microsoft FrontPage authors.pwd File" name_zh_CN="Microsoft FrontPage authors.pwd文件访问" name_zh_TW="Microsoft FrontPage authors.pwd文件訪問" ruleid="30174" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft FrontPage administrators.pwd文件访问" name_en_US="Access to Microsoft FrontPage administrators.pwd File" name_zh_CN="Microsoft FrontPage administrators.pwd文件访问" name_zh_TW="Microsoft FrontPage administrators.pwd文件訪問" ruleid="30175" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问Microsoft FrontPage扩展users.pwd文件" name_en_US="Access to Microsoft FrontPage Extension users.pwd File" name_zh_CN="访问Microsoft FrontPage扩展users.pwd文件" name_zh_TW="訪問Microsoft FrontPage擴展users.pwd文件" ruleid="30172" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="访问Microsoft FrontPage扩展service.pwd文件" name_en_US="Access to Microsoft FrontPage Extension service.pwd File" name_zh_CN="访问Microsoft FrontPage扩展service.pwd文件" name_zh_TW="訪問Microsoft FrontPage擴展service.pwd文件" ruleid="30173" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="通过Web服务访问Windows 2000的SAM文件" name_en_US="Access to SAM File of Windows 2000 via Web Service" name_zh_CN="通过Web服务访问Windows 2000的SAM文件" name_zh_TW="通過Web服務訪問Windows 2000的SAM文件" ruleid="30171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE javaprxy.dll COM对象邮件内容引用" name_en_US="Microsoft IE javaprxy.dll COM Object Vulnerability Mail" name_zh_CN="Microsoft IE javaprxy.dll COM对象邮件内容引用" name_zh_TW="Microsoft IE javaprxy.dll COM對象郵件內容引用" ruleid="40784" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429061" module="0" name="FTP服务客户端CWD ~root操作" name_en_US="FTP Service Client End CWD ~root Operation" name_zh_CN="FTP服务客户端CWD ~root操作" name_zh_TW="FTP服務客戶端CWD ~root操作" ruleid="40042" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703787" module="0" name="BIND服务远程代码执行攻击" name_en_US="BIND Service Remote Code Execution" name_zh_CN="BIND服务远程代码执行攻击" name_zh_TW="BIND服務遠程代碼執行攻擊" ruleid="20029" visible="true" />
			<rule action=" db  screen " enabled="true" group="99622970" module="0" name=" Microsoft远程桌面协议RDP远程代码执行漏洞扫描" name_en_US="Microsoft Remote Desktop Protocol RDP remote code execution vulnerability scan" name_zh_CN=" Microsoft远程桌面协议RDP远程代码执行漏洞扫描" name_zh_TW=" Microsoft遠程桌面協議RDP遠程代碼執行漏洞掃描" ruleid="30570" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="JWPlayer远程跨站脚本执行漏洞" name_en_US="JWPlayer Remote Cross-Site Scripting Vulnerability" name_zh_CN="JWPlayer远程跨站脚本执行漏洞" name_zh_TW="JWPlayer遠程跨站腳本執行漏洞" ruleid="30571" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Srizbi网络数据通信" name_en_US="Backdoor/Trojan Srizbi registering with controller" name_zh_CN="木马后门程序Srizbi网络数据通信" name_zh_TW="木馬後門程序Srizbi網絡數據通信" ruleid="40913" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Cow网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Cow Varient Backdoor.Win32.Agent.lam C&amp;C traffic" name_zh_CN="木马后门程序Backdoor.Cow网络数据通信" name_zh_TW="木馬後門程序Backdoor.Cow網絡數據通信" ruleid="40912" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Vipdataend/Ceckno网络数据通信" name_en_US="Backdoor/Trojan Vipdataend/Ceckno C&amp;C Traffic - Checkin" name_zh_CN="木马后门程序Vipdataend/Ceckno网络数据通信" name_zh_TW="木馬後門程序Vipdataend/Ceckno網絡數據通信" ruleid="40911" visible="true" />
			<rule action=" db  screen " enabled="true" group="142606630" module="0" name="NetManage Chameleon SMTP服务远程缓冲区溢出攻击" name_en_US="NetManage Chameleon SMTP Service Remote Buffer Overflow" name_zh_CN="NetManage Chameleon SMTP服务远程缓冲区溢出攻击" name_zh_TW="NetManage Chameleon SMTP服務遠程緩沖區溢出攻擊" ruleid="20021" visible="true" />
			<rule action=" db  screen " enabled="true" group="202440762" module="0" name="PostgreSQL数据库密码Hash获取" name_en_US="PostgreSQL Databases Password Hash Access " name_zh_CN="PostgreSQL数据库密码Hash获取" name_zh_TW="PostgreSQL數據庫密碼Hash獲取" ruleid="30578" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Trojan-PSW.Win32.Nilage.crg网络数据通信" name_en_US="Backdoor/Trojan Trojan-PSW.Win32.Nilage.crg Checkin" name_zh_CN="木马后门程序Trojan-PSW.Win32.Nilage.crg网络数据通信" name_zh_TW="木馬後門程序Trojan-PSW.Win32.Nilage.crg網絡數據通信" ruleid="40919" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Progenic木马通信" name_en_US="Backdoor/Trojan Progenic Communication " name_zh_CN="木马后门程序Progenic木马通信" name_zh_TW="木馬後門程序Progenic木馬通信" ruleid="40136" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL空口令HASH绕过认证攻击" name_en_US="MySQL Null Password HASH Authentication Bypass" name_zh_CN="MySQL空口令HASH绕过认证攻击" name_zh_TW="MySQL空口令HASH繞過認證攻擊" ruleid="20432" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Big Brother bb-hist.sh脚本漏洞遍历主机目录" name_en_US="Remote Host Directory Traversal via Big Brother bb-hist.sh Script Vulnerability" name_zh_CN="Big Brother bb-hist.sh脚本漏洞遍历主机目录" name_zh_TW="Big Brother bb-hist.sh腳本漏洞遍曆主機目錄" ruleid="30526" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Microsoft IIS bdir.htr脚本漏洞扫描探测" name_en_US="Microsoft IIS bdir.htr Script Vulnerability Detection" name_zh_CN="Microsoft IIS bdir.htr脚本漏洞扫描探测" name_zh_TW="Microsoft IIS bdir.htr腳本漏洞掃描探測" ruleid="40268" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Uploader木马通信" name_en_US="Backdoor/Trojan Uploader Communication " name_zh_CN="木马后门程序Uploader木马通信" name_zh_TW="木馬後門程序Uploader木馬通信" ruleid="40599" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Undetected木马通信" name_en_US="Backdoor/Trojan Undetected Communication " name_zh_CN="木马后门程序Undetected木马通信" name_zh_TW="木馬後門程序Undetected木馬通信" ruleid="40598" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="phpMyAdmin远程PHP代码注入攻击" name_en_US="phpMyAdmin Remote PHP Code Injection" name_zh_CN="phpMyAdmin远程PHP代码注入攻击" name_zh_TW="phpMyAdmin遠程PHP代碼注入攻擊" ruleid="20430" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Microsoft JET adctest.asp脚本漏洞扫描探测" name_en_US="Microsoft JET adctest.asp Script Vulnerability Detection" name_zh_CN="Microsoft JET adctest.asp脚本漏洞扫描探测" name_zh_TW="Microsoft JET adctest.asp腳本漏洞掃描探測" ruleid="40261" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Trojan Spirit木马通信" name_en_US="Backdoor/Trojan Trojan Spirit Communication " name_zh_CN="木马后门程序Trojan Spirit木马通信" name_zh_TW="木馬後門程序Trojan Spirit木馬通信" ruleid="40592" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Trojan Cow木马通信" name_en_US="Backdoor/Trojan Trojan Cow Communication " name_zh_CN="木马后门程序Trojan Cow木马通信" name_zh_TW="木馬後門程序Trojan Cow木馬通信" ruleid="40591" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Pivot module_db.php脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Pivot module_db.php Script Vulnerability" name_zh_CN="Pivot module_db.php脚本漏洞远程执行命令" name_zh_TW="Pivot module_db.php腳本漏洞遠程執行命令" ruleid="20431" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208118" module="0" name="Microsoft NTFS ::$DATA漏洞获取ASP源码攻击" name_en_US="Microsoft NTFS ::$DATA Vulnerability ASP Source Code Disclosure" name_zh_CN="Microsoft NTFS ::$DATA漏洞获取ASP源码攻击" name_zh_TW="Microsoft NTFS ::$DATA漏洞獲取ASP源碼攻擊" ruleid="40265" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序UltimateRAT木马通信" name_en_US="Backdoor/Trojan UltimateRAT Communication " name_zh_CN="木马后门程序UltimateRAT木马通信" name_zh_TW="木馬後門程序UltimateRAT木馬通信" ruleid="40596" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Ullysse木马通信" name_en_US="Backdoor/Trojan Ullysse Communication " name_zh_CN="木马后门程序Ullysse木马通信" name_zh_TW="木馬後門程序Ullysse木馬通信" ruleid="40595" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Truva木马通信" name_en_US="Backdoor/Trojan Truva Communication " name_zh_CN="木马后门程序Truva木马通信" name_zh_TW="木馬後門程序Truva木馬通信" ruleid="40594" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网络爬虫Baidu抓取网页信息" name_en_US="Web Crawler Baidu Capture Page Information" name_zh_CN="网络爬虫Baidu抓取网页信息" name_zh_TW="網絡爬蟲Baidu抓取網頁信息" ruleid="50202" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网络爬虫iAsk抓取网页信息" name_en_US="Web Crawler iAsk Capture Page Information" name_zh_CN="网络爬虫iAsk抓取网页信息" name_zh_TW="網絡爬蟲iAsk抓取網頁信息" ruleid="50203" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具迅雷获取多点下载地址信息" name_en_US="P2P File Sharing Tool Xunlei Obtaining Multi-Point Download Address Information" name_zh_CN="P2P文件共享工具迅雷获取多点下载地址信息" name_zh_TW="P2P文件共享工具迅雷獲取多點下載地址信息" ruleid="50200" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="0" name="网络代理软件自由门数据通信" name_en_US="Network Agent Software Freedoor Data Communication" name_zh_CN="网络代理软件自由门数据通信" name_zh_TW="網絡代理軟件自由門數據通信" ruleid="50201" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ文件传输(UDP)通信" name_en_US="Instant Messaging Tool QQ File Transmission (UDP) Attempt" name_zh_CN="即时通信工具QQ文件传输(UDP)通信" name_zh_TW="即時通信工具QQ文件傳輸(UDP)通信" ruleid="50206" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="网络代理软件数据通信(UDP)" name_en_US="Network Agent Software Data Communication (UDP)" name_zh_CN="网络代理软件数据通信(UDP)" name_zh_TW="網絡代理軟件數據通信(UDP)" ruleid="50207" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件申银万国神网E通用户登录" name_en_US="Stock Market Analysis Software sw2000.com.cn User Login" name_zh_CN="股票行情分析操作软件申银万国神网E通用户登录" name_zh_TW="股票行情分析操作軟件申銀萬國神網E通用戶登錄" ruleid="50204" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="网络代理软件数据通信(TCP)" name_en_US="Network Agent Software Data Communication (TCP)" name_zh_CN="网络代理软件数据通信(TCP)" name_zh_TW="網絡代理軟件數據通信(TCP)" ruleid="50205" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体优酷-土豆网连接" name_en_US="Online Streaming Media Youku.com &amp;Tudou.com Connect" name_zh_CN="在线流媒体优酷-土豆网连接" name_zh_TW="在線流媒體優酷-土豆網連接" ruleid="50208" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体酷6网连接" name_en_US="Online Streaming Media ku6.com  Connect" name_zh_CN="在线流媒体酷6网连接" name_zh_TW="在線流媒體酷6網連接" ruleid="50209" visible="true" />
			<rule action=" db  screen " enabled="true" group="75563082" module="0" name="Microsoft Outlook Web Access恶意跨站脚本链接邮件传播" name_en_US="Microsoft Outlook Web Access Malicious Cross Site Scripting Mail Propagation" name_zh_CN="Microsoft Outlook Web Access恶意跨站脚本链接邮件传播" name_zh_TW="Microsoft Outlook Web Access惡意跨站腳本鏈接郵件傳播" ruleid="40783" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266490" module="0" name="通过Web服务访问.htpasswd文件" name_en_US="Access to .htpasswd File via Web Service" name_zh_CN="通过Web服务访问.htpasswd文件" name_zh_TW="通過Web服務訪問.htpasswd文件" ruleid="30378" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Ovidentia多个脚本远程文件包含攻击" name_en_US="Ovidentia multiple Scripts Remote File Inclusion" name_zh_CN="Ovidentia多个脚本远程文件包含攻击" name_zh_TW="Ovidentia多個腳本遠程文件包含攻擊" ruleid="20717" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序P2P_Iroffer_IRC_Bot帮助信息网络数据通信" name_en_US="Backdoor/Trojan P2P iroffer IRC Bot help message" name_zh_CN="木马后门程序P2P_Iroffer_IRC_Bot帮助信息网络数据通信" name_zh_TW="木馬後門程序P2P_Iroffer_IRC_Bot幫助信息網絡數據通信" ruleid="40861" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315179" module="0" name="iShopCart远程缓冲区溢出攻击" name_en_US="iShopCart Remote Buffer Overflow" name_zh_CN="iShopCart远程缓冲区溢出攻击" name_zh_TW="iShopCart遠程緩沖區溢出攻擊" ruleid="20716" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="扫描探测Sojourn sojourn.cgi脚本漏洞" name_en_US="Sojourn sojourn.cgi Script Vulnerability Detection" name_zh_CN="扫描探测Sojourn sojourn.cgi脚本漏洞" name_zh_TW="掃描探測Sojourn sojourn.cgi腳本漏洞" ruleid="30370" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="ROADS search.pl CGI漏洞远程察看系统文件" name_en_US="System File Disclosure via ROADS search.pl CGI Vulnerability" name_zh_CN="ROADS search.pl CGI漏洞远程察看系统文件" name_zh_TW="ROADS search.pl CGI漏洞遠程察看系統文件" ruleid="30371" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="search.pl脚本漏洞扫描探测" name_en_US="search.pl Script Vulnerability Detection" name_zh_CN="search.pl脚本漏洞扫描探测" name_zh_TW="search.pl腳本漏洞掃描探測" ruleid="30372" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="3COM OfficeConnect Router Web管理接口漏洞扫描探测" name_en_US="3COM OfficeConnect Router Web Management Interface Vulnerability Detection" name_zh_CN="3COM OfficeConnect Router Web管理接口漏洞扫描探测" name_zh_TW="3COM OfficeConnect Router Web管理接口漏洞掃描探測" ruleid="30373" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Big Brother bb-rep.sh脚本漏洞扫描利用" name_en_US="Big Brother bb-rep.sh Script Vulnerability Detection" name_zh_CN="Big Brother bb-rep.sh脚本漏洞扫描利用" name_zh_TW="Big Brother bb-rep.sh腳本漏洞掃描利用" ruleid="30374" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="SaPHPLesson add.php远程SQL注入攻击" name_en_US="SaPHPLesson add.php Remote SQL Injection" name_zh_CN="SaPHPLesson add.php远程SQL注入攻击" name_zh_TW="SaPHPLesson add.php遠程SQL注入攻擊" ruleid="20715" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Web Shopper shopper.cgi脚本漏洞远程浏览文件" name_en_US="Remote File Browsing via Web Shopper shopper.cgi Script Vulnerability" name_zh_CN="Web Shopper shopper.cgi脚本漏洞远程浏览文件" name_zh_TW="Web Shopper shopper.cgi腳本漏洞遠程浏覽文件" ruleid="30376" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Web Shopper shopper.cgi脚本漏洞扫描探测" name_en_US="Web Shopper shopper.cgi Script Vulnerability Detection" name_zh_CN="Web Shopper shopper.cgi脚本漏洞扫描探测" name_zh_TW="Web Shopper shopper.cgi腳本漏洞掃描探測" ruleid="30377" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Remote Revise木马通信" name_en_US="Backdoor/Trojan Remote Revise Communication " name_zh_CN="木马后门程序Remote Revise木马通信" name_zh_TW="木馬後門程序Remote Revise木馬通信" ruleid="40467" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Net Devil木马通信" name_en_US="Backdoor/Trojan Net Devil Communication " name_zh_CN="木马后门程序Net Devil木马通信" name_zh_TW="木馬後門程序Net Devil木馬通信" ruleid="40466" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="SelectaPix远程SQL注入攻击" name_en_US="SelectaPix Remote SQL Injection" name_zh_CN="SelectaPix远程SQL注入攻击" name_zh_TW="SelectaPix遠程SQL注入攻擊" ruleid="20714" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Unix Manual manual.php脚本漏洞扫描利用" name_en_US="Unix Manual manual.php Script Vulnerability Detection" name_zh_CN="Unix Manual manual.php脚本漏洞扫描利用" name_zh_TW="Unix Manual manual.php腳本漏洞掃描利用" ruleid="30000" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="DeluxeBB多个脚本远程文件包含攻击" name_en_US="DeluxeBB multiple Scripts Remote File Inclusion" name_zh_CN="DeluxeBB多个脚本远程文件包含攻击" name_zh_TW="DeluxeBB多個腳本遠程文件包含攻擊" ruleid="20713" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Windows资源管理器预览框脚本注入畸形文档邮件附件传播" name_en_US="Microsoft Windows Explorer Preview Pane Script Injection Malformed Document Attachment Propagation" name_zh_CN="Microsoft Windows资源管理器预览框脚本注入畸形文档邮件附件传播" name_zh_TW="Microsoft Windows資源管理器預覽框腳本注入畸形文檔郵件附件傳播" ruleid="40780" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Alvgus木马通信" name_en_US="Backdoor/Trojan Alvgus Communication " name_zh_CN="木马后门程序Alvgus木马通信" name_zh_TW="木馬後門程序Alvgus木馬通信" ruleid="40469" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Bee-hive远程文件包含攻击" name_en_US="Bee-hive Remote File Inclusion" name_zh_CN="Bee-hive远程文件包含攻击" name_zh_TW="Bee-hive遠程文件包含攻擊" ruleid="20712" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Allaire Forums GetFile.cfm脚本漏洞扫描探测" name_en_US="Allaire Forums GetFile.cfm Script Vulnerability Detection" name_zh_CN="Allaire Forums GetFile.cfm脚本漏洞扫描探测" name_zh_TW="Allaire Forums GetFile.cfm腳本漏洞掃描探測" ruleid="30396" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="NETCODE book.cgi脚本漏洞扫描探测" name_en_US="NETCODE book.cgi Script Vulnerability Detection" name_zh_CN="NETCODE book.cgi脚本漏洞扫描探测" name_zh_TW="NETCODE book.cgi腳本漏洞掃描探測" ruleid="30397" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="AlienForm2 af.cgi脚本漏洞遍历目录" name_en_US="Directory Traversal via AlienForm2 af.cgi Script Vulnerability" name_zh_CN="AlienForm2 af.cgi脚本漏洞遍历目录" name_zh_TW="AlienForm2 af.cgi腳本漏洞遍曆目錄" ruleid="30394" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="Allaire Forums GetFile.cfm远程读取文件" name_en_US="Remote File Reading via Allaire Forums GetFile.cfm" name_zh_CN="Allaire Forums GetFile.cfm远程读取文件" name_zh_TW="Allaire Forums GetFile.cfm遠程讀取文件" ruleid="30395" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Cart32 c32web.exe脚本漏洞扫描探测" name_en_US="Cart32 c32web.exe Script Vulnerability Detection" name_zh_CN="Cart32 c32web.exe脚本漏洞扫描探测" name_zh_TW="Cart32 c32web.exe腳本漏洞掃描探測" ruleid="30392" visible="true" />
			<rule action=" db  screen " enabled="false" group="203425835" module="0" name="MF Piadas admin.php远程文件包含攻击" name_en_US="MF Piadas admin.php Remote File Inclusion" name_zh_CN="MF Piadas admin.php远程文件包含攻击" name_zh_TW="MF Piadas admin.php遠程文件包含攻擊" ruleid="20711" visible="false" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="Ultimate PHP Board add.php脚本漏洞扫描利用" name_en_US="Ultimate PHP Board add.php Script Vulnerability Detection" name_zh_CN="Ultimate PHP Board add.php脚本漏洞扫描利用" name_zh_TW="Ultimate PHP Board add.php腳本漏洞掃描利用" ruleid="30390" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Ultimate PHP Board viewtopic.php脚本漏洞扫描探测" name_en_US="Ultimate PHP Board viewtopic.php Script Vulnerability Detection" name_zh_CN="Ultimate PHP Board viewtopic.php脚本漏洞扫描探测" name_zh_TW="Ultimate PHP Board viewtopic.php腳本漏洞掃描探測" ruleid="30391" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Galleria远程文件包含攻击" name_en_US="Galleria Remote File Inclusion" name_zh_CN="Galleria远程文件包含攻击" name_zh_TW="Galleria遠程文件包含攻擊" ruleid="20710" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498570" module="0" name="SMTP服务发送W32.Maslan.A蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Maslan.A" name_zh_CN="SMTP服务发送W32.Maslan.A蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Maslan.A蠕蟲病毒郵件" ruleid="40669" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Mugly蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Mugly" name_zh_CN="SMTP服务发送W32.Mugly蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Mugly蠕蟲病毒郵件" ruleid="40668" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="phpinfo.php脚本漏洞收集系统信息" name_en_US="System Information Disclosure via phpinfo.php Script Vulnerability" name_zh_CN="phpinfo.php脚本漏洞收集系统信息" name_zh_TW="phpinfo.php腳本漏洞收集系統信息" ruleid="30398" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898074" module="0" name="Oracle可疑数据库文件下载" name_en_US="Oracle Suspicious Data File Download" name_zh_CN="Oracle可疑数据库文件下载" name_zh_TW="Oracle可疑數據庫文件下載" ruleid="50448" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序tcsh" name_en_US="Access to Unix Shell Interpreter tcsh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序tcsh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序tcsh" ruleid="20143" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件中投证券卓越版用户登录" name_en_US="Stock Market Analysis Software Zhuoyue Version of China Jianyin Investment Securities User Login" name_zh_CN="股票行情分析操作软件中投证券卓越版用户登录" name_zh_TW="股票行情分析操作軟件中投證券卓越版用戶登錄" ruleid="50339" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="腾讯Web QQ用户登陆" name_en_US="Tencent Web QQ User Login" name_zh_CN="腾讯Web QQ用户登陆" name_zh_TW="騰訊Web QQ用戶登陸" ruleid="50336" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ2008 beta1离线文件传输通信" name_en_US="Instant Messaging Software QQ2008 beta1 File Offline Transmission Attempt" name_zh_CN="即时通信工具QQ2008 beta1离线文件传输通信" name_zh_TW="即時通信工具QQ2008 beta1離線文件傳輸通信" ruleid="50337" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497770" module="0" name="Microsoft Windows颜色管理模块畸形ICC配置文档邮件附件传播" name_en_US="Microsoft Windows Color Management Module Malformed ICC Configuration Document Attachment Propagation" name_zh_CN="Microsoft Windows颜色管理模块畸形ICC配置文档邮件附件传播" name_zh_TW="Microsoft Windows顔色管理模塊畸形ICC配置文檔郵件附件傳播" ruleid="40781" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="语音聊天工具腾讯和悦网络电话登录" name_en_US="Voice Chat Tools Tencent Heyyo VoIP Login" name_zh_CN="语音聊天工具腾讯和悦网络电话登录" name_zh_TW="語音聊天工具騰訊和悅網絡電話登錄" ruleid="50335" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件中信建投用户登录" name_en_US="Instant Messaging Software Zhongxinjiantou Channel User Login" name_zh_CN="股票行情分析操作软件中信建投用户登录" name_zh_TW="股票行情分析操作軟件中信建投用戶登錄" ruleid="50332" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具校内通用户登录" name_en_US="Instant Messaging Tool Xiaoneitong User Login" name_zh_CN="即时通信工具校内通用户登录" name_zh_TW="即時通信工具校內通用戶登錄" ruleid="50333" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Raketu用户登录" name_en_US="Instant Messaging Tool Raketu User Login" name_zh_CN="即时通信工具Raketu用户登录" name_zh_TW="即時通信工具Raketu用戶登錄" ruleid="50330" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件双子星绿色通道用户登录" name_en_US="Instant Messaging Software Gemini Green Channel User Login" name_zh_CN="股票行情分析操作软件双子星绿色通道用户登录" name_zh_TW="股票行情分析操作軟件雙子星綠色通道用戶登錄" ruleid="50331" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Ecava IntegraXor目录遍历漏洞" name_en_US="Ecava IntegraXor Directory Traversal Vulnerability Vulnerability" name_zh_CN="Ecava IntegraXor目录遍历漏洞" name_zh_TW="Ecava IntegraXor目錄遍曆漏洞" ruleid="22359" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Invensys Wonderware InBatch lm_tcp服务缓冲区溢出漏洞" name_en_US="Invensys Wonderware InBatch lm_tcp Service Buffer Overflow Vulnerability Vulnerability" name_zh_CN="Invensys Wonderware InBatch lm_tcp服务缓冲区溢出漏洞" name_zh_TW="Invensys Wonderware InBatch lm_tcp服務緩沖區溢出漏洞" ruleid="22358" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE Mshtml!CButton对象释放后重用代码执行漏洞" name_en_US="Microsoft Internet Explorer Mshtml!CButton Object Use-After-Free Vulnerability" name_zh_CN="Microsoft IE Mshtml!CButton对象释放后重用代码执行漏洞" name_zh_TW="Microsoft IE Mshtml!CButton對象釋放後重用代碼執行漏洞" ruleid="22609" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Ability Server 2.34 STOR Command Stack Buffer Overflow" name_en_US="Ability Server 2.34 STOR Command Stack Buffer Overflow" name_zh_CN="Ability Server 2.34 STOR Command Stack Buffer Overflow" name_zh_TW="Ability Server 2.34 STOR Command Stack Buffer Overflow" ruleid="22608" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Winlog Pro畸形报文栈缓冲区溢出漏洞" name_en_US="Winlog Pro Malformed Packets Stack Buffer Overflow Vulnerability Vulnerability" name_zh_CN="Winlog Pro畸形报文栈缓冲区溢出漏洞" name_zh_TW="Winlog Pro畸形報文棧緩沖區溢出漏洞" ruleid="22355" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="RealWin SCADA服务器远程栈溢出漏洞" name_en_US="RealWin SCADA Server Remote Stack Overflow Vulnerability Vulnerability" name_zh_CN="RealWin SCADA服务器远程栈溢出漏洞" name_zh_TW="RealWin SCADA服務器遠程棧溢出漏洞" ruleid="22354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="ClearSCADA堆溢出漏洞" name_en_US="ClearSCADA Heap Overflow Vulnerability Vulnerability" name_zh_CN="ClearSCADA堆溢出漏洞" name_zh_TW="ClearSCADA堆溢出漏洞" ruleid="22357" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="WonderWare SuiteLink slssvc.exe远程拒绝服务漏洞" name_en_US="WonderWare SuiteLink slssvc.exe Remote Denial of Service Vulnerability Vulnerability" name_zh_CN="WonderWare SuiteLink slssvc.exe远程拒绝服务漏洞" name_zh_TW="WonderWare SuiteLink slssvc.exe遠程拒絕服務漏洞" ruleid="22356" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft远程桌面协议漏洞(MS12-053)(CVE-2012-2526)" name_en_US="Microsoft Remote Desktop Protocol Vulnerability(MS12-053)(CVE-2012-2526)" name_zh_CN="Microsoft远程桌面协议漏洞(MS12-053)(CVE-2012-2526)" name_zh_TW="Microsoft遠程桌面協議漏洞(MS12-053)(CVE-2012-2526)" ruleid="22351" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE JavaScript 整数溢出远程代码执行漏洞(MS12-052)(CVE-2012-2523)" name_en_US="Microsoft IE JavaScript Integer Overflow Remote Code Execution Vulnerability(MS12-052)(CVE-2012-2523)" name_zh_CN="Microsoft IE JavaScript 整数溢出远程代码执行漏洞(MS12-052)(CVE-2012-2523)" name_zh_TW="Microsoft IE JavaScript 整數溢出遠程代碼執行漏洞(MS12-052)(CVE-2012-2523)" ruleid="22350" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Citect SCADA ODBC服务器远程栈溢出漏洞" name_en_US="Citect SCADA ODBC Server Remote Stack Overflow Vulnerability Vulnerability" name_zh_CN="Citect SCADA ODBC服务器远程栈溢出漏洞" name_zh_TW="Citect SCADA ODBC服務器遠程棧溢出漏洞" ruleid="22353" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="MSXML未初始化内存破坏漏洞(MS12-043)(CVE-2012-1889)" name_en_US="MSXML Uninitialized Memory Corruption Vulnerability(MS12-043)(CVE-2012-1889)" name_zh_CN="MSXML未初始化内存破坏漏洞(MS12-043)(CVE-2012-1889)" name_zh_TW="MSXML未初始化內存破壞漏洞(MS12-043)(CVE-2012-1889)" ruleid="22352" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序zxshell通信" name_en_US="Backdoor/Trojan zxshell Communication" name_zh_CN="木马后门程序zxshell通信" name_zh_TW="木馬後門程序zxshell通信" ruleid="41036" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具恒生通用版III" name_en_US="Stock Analyzing/Trading Software Hong Sheng General Edition III" name_zh_CN="证券分析交易工具恒生通用版III" name_zh_TW="證券分析交易工具恒生通用版III" ruleid="51005" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具-核新通用版" name_en_US="Stock Analyzing/Trading Software He Xin General Edition" name_zh_CN="证券分析交易工具-核新通用版" name_zh_TW="證券分析交易工具-核新通用版" ruleid="51004" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具恒生通用版II" name_en_US="Stock Analyzing/Trading Software Hong Sheng General Edition II" name_zh_CN="证券分析交易工具恒生通用版II" name_zh_TW="證券分析交易工具恒生通用版II" ruleid="51003" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序SRAT通信" name_en_US="Backdoor/Trojan SRAT Communication" name_zh_CN="木马后门程序SRAT通信" name_zh_TW="木馬後門程序SRAT通信" ruleid="41035" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具通达信通用版" name_en_US="Stock Analyzing/Trading Software Tong Da Xin General Edition" name_zh_CN="证券分析交易工具通达信通用版" name_zh_TW="證券分析交易工具通達信通用版" ruleid="51001" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序GHOST 2011通信" name_en_US="Backdoor/Trojan GHOST 2011 Communication" name_zh_CN="木马后门程序GHOST 2011通信" name_zh_TW="木馬後門程序GHOST 2011通信" ruleid="41034" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898053" module="1" name="统一认证系统暴力登录" name_en_US="United Authentication Sytem Brute Force Login" name_zh_CN="统一认证系统暴力登录" name_zh_TW="統一認證系統暴力登錄" ruleid="41048" visible="true" />
			<rule action=" db  screen " enabled="true" group="70320213" module="0" name="WinGate FTP代理服务开放" name_en_US="WinGate FTP Proxy Service Open" name_zh_CN="WinGate FTP代理服务开放" name_zh_TW="WinGate FTP代理服務開放" ruleid="50022" visible="true" />
			<rule action=" db  screen " enabled="true" group="72417365" module="0" name="WinGate POP3代理服务开放" name_en_US="WinGate POP3 Proxy Service Open" name_zh_CN="WinGate POP3代理服务开放" name_zh_TW="WinGate POP3代理服務開放" ruleid="50023" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="Windows系统下TrueType字体解析漏洞（Duqu 蠕虫,CVE-2011-3402）" name_en_US="Windows TrueType Font Parsing Vulnerability (Worm Duqu,CVE-2011-3402) " name_zh_CN="Windows系统下TrueType字体解析漏洞（Duqu 蠕虫,CVE-2011-3402）" name_zh_TW="Windows系統下TrueType字體解析漏洞（Duqu 蠕蟲,CVE-2011-3402）" ruleid="41032" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft Windows字体解析漏洞(MS12-075)(CVE-2012-2897)" name_en_US="Microsoft Windows Font Parsing Vulnerability(MS12-075)(CVE-2012-2897)" name_zh_CN="Microsoft Windows字体解析漏洞(MS12-075)(CVE-2012-2897)" name_zh_TW="Microsoft Windows字體解析漏洞(MS12-075)(CVE-2012-2897)" ruleid="22513" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft Excel栈溢出漏洞(MS12-076)(CVE-2012-2543)" name_en_US="Microsoft Excel Stack Overflow Vulnerability(MS12-076)(CVE-2012-2543)" name_zh_CN="Microsoft Excel栈溢出漏洞(MS12-076)(CVE-2012-2543)" name_zh_TW="Microsoft Excel棧溢出漏洞(MS12-076)(CVE-2012-2543)" ruleid="22512" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft Excel SST Invalid Length释放后重用漏洞(MS12-076)(CVE-2012-1887)" name_en_US="Microsoft Excel SST Invalid Length Use After Free Vulnerability(MS12-076)(CVE-2012-1887)" name_zh_CN="Microsoft Excel SST Invalid Length释放后重用漏洞(MS12-076)(CVE-2012-1887)" name_zh_TW="Microsoft Excel SST Invalid Length釋放後重用漏洞(MS12-076)(CVE-2012-1887)" ruleid="22511" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft Excel内存破坏漏洞(MS12-076)(CVE-2012-1886)" name_en_US="Microsoft Excel Memory Corruption Vulnerability(MS12-076)(CVE-2012-1886)" name_zh_CN="Microsoft Excel内存破坏漏洞(MS12-076)(CVE-2012-1886)" name_zh_TW="Microsoft Excel內存破壞漏洞(MS12-076)(CVE-2012-1886)" ruleid="22510" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Adobe PDF Embedded EXE社交工程" name_en_US="Adobe PDF Embedded EXE Social Engineering" name_zh_CN="Adobe PDF Embedded EXE社交工程" name_zh_TW="Adobe PDF Embedded EXE社交工程" ruleid="22516" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CCProxy v6.2 Telnet Proxy Ping溢出漏洞" name_en_US="CCProxy v6.2 Telnet Proxy Ping Overflow Vulnerability" name_zh_CN="CCProxy v6.2 Telnet Proxy Ping溢出漏洞" name_zh_TW="CCProxy v6.2 Telnet Proxy Ping溢出漏洞" ruleid="22515" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft IE CTreeNode释放后重用漏洞(MS12-071)(CVE-2012-4775 )" name_en_US="Microsoft Internet Explorer CTreeNode Use After Free Vulnerability(MS12-071))(CVE-2012-4775 )" name_zh_CN="Microsoft IE CTreeNode释放后重用漏洞(MS12-071)(CVE-2012-4775 )" name_zh_TW="Microsoft IE CTreeNode釋放後重用漏洞(MS12-071)(CVE-2012-4775 )" ruleid="22514" visible="true" />
			<rule action=" db  screen " enabled="true" group="146802726" module="0" name="FINGER服务“;”请求执行命令攻击" name_en_US="FINGER Service &quot;;&quot; Request Command Execution" name_zh_CN="FINGER服务“;”请求执行命令攻击" name_zh_TW="FINGER服務“;”請求執行命令攻擊" ruleid="40034" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务探测NULL用户攻击" name_en_US="FINGER Service NULL User Detection" name_zh_CN="FINGER服务探测NULL用户攻击" name_zh_TW="FINGER服務探測NULL用戶攻擊" ruleid="40035" visible="true" />
			<rule action=" db  screen " enabled="true" group="205586518" module="0" name="TELNET服务IRIX默认内置帐号登录" name_en_US="TELNET Service IRIX Default Built-in Account Login" name_zh_CN="TELNET服务IRIX默认内置帐号登录" name_zh_TW="TELNET服務IRIX默認內置帳號登錄" ruleid="50156" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477653" module="0" name="BSD Telnet服务器获取客户端信息" name_en_US="BSD Telnet Server Client Information Disclosure" name_zh_CN="BSD Telnet服务器获取客户端信息" name_zh_TW="BSD Telnet服務器獲取客戶端信息" ruleid="50157" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台黄金岛登录" name_en_US="Online Game Platform &quot;Treasure Island&quot; Login" name_zh_CN="网络游戏平台黄金岛登录" name_zh_TW="網絡遊戲平台黃金島登錄" ruleid="50154" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ文件传输(TCP)通信" name_en_US="Instant Messaging Tool QQ File Transmission (TCP) Attempt" name_zh_CN="即时通信工具QQ文件传输(TCP)通信" name_zh_TW="即時通信工具QQ文件傳輸(TCP)通信" ruleid="50155" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="0" name="SOCKS代理访问操作" name_en_US="SOCKS Agent Access Operation" name_zh_CN="SOCKS代理访问操作" name_zh_TW="SOCKS代理訪問操作" ruleid="50152" visible="true" />
			<rule action=" db  screen " enabled="true" group="146802726" module="0" name="FINGER服务pipe执行命令攻击" name_en_US="FINGER Service pipe Command Execution" name_zh_CN="FINGER服务pipe执行命令攻击" name_zh_TW="FINGER服務pipe執行命令攻擊" ruleid="40036" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体TVAnts电视蚂蚁连接" name_en_US="Online Streaming Media TVAnts Connect" name_zh_CN="在线流媒体TVAnts电视蚂蚁连接" name_zh_TW="在線流媒體TVAnts電視螞蟻連接" ruleid="50150" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体TVKoo网络电视连接" name_en_US="Online Streaming Media TVKoo Network TV Connect" name_zh_CN="在线流媒体TVKoo网络电视连接" name_zh_TW="在線流媒體TVKoo網絡電視連接" ruleid="50151" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务探测“.”用户" name_en_US="FINGER Service &quot;.&quot; User Detection" name_zh_CN="FINGER服务探测“.”用户" name_zh_TW="FINGER服務探測“.”用戶" ruleid="40037" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477654" module="0" name="Telnet服务IAC选项炸弹攻击" name_en_US="Telnet Service IAC Option Bomb" name_zh_CN="Telnet服务IAC选项炸弹攻击" name_zh_TW="Telnet服務IAC選項炸彈攻擊" ruleid="50158" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具AimExpress启动操作通信" name_en_US="Instant Messaging Tool AimExpress Launching Attempt" name_zh_CN="即时通信工具AimExpress启动操作通信" name_zh_TW="即時通信工具AimExpress啓動操作通信" ruleid="50159" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Y3K木马通信" name_en_US="Backdoor/Trojan Y3K Communication " name_zh_CN="木马后门程序Y3K木马通信" name_zh_TW="木馬後門程序Y3K木馬通信" ruleid="40611" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序rsh" name_en_US="Access to Unix Shell Interpreter rsh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序rsh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序rsh" ruleid="20145" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BackConstruction/Noknok木马通信" name_en_US="Backdoor/Trojan BackConstruction/Noknok Communication " name_zh_CN="木马后门程序BackConstruction/Noknok木马通信" name_zh_TW="木馬後門程序BackConstruction/Noknok木馬通信" ruleid="40342" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Netsky.Q@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.Q@mm" name_zh_CN="SMTP服务发送W32.Netsky.Q@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.Q@mm蠕蟲病毒郵件" ruleid="40616" visible="true" />
			<rule action=" db  screen " enabled="true" group="95421511" module="0" name="网络蠕虫Plexus病毒通过共享传播" name_en_US="Network Worm Plexus Propagation via Windows Sharing" name_zh_CN="网络蠕虫Plexus病毒通过共享传播" name_zh_TW="網絡蠕蟲Plexus病毒通過共享傳播" ruleid="40617" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159518" module="0" name="Microsoft IIS WebDAV超长请求远程拒绝服务攻击" name_en_US="Microsoft IIS WebDAV Over-long Request Remote Denial of Service" name_zh_CN="Microsoft IIS WebDAV超长请求远程拒绝服务攻击" name_zh_TW="Microsoft IIS WebDAV超長請求遠程拒絕服務攻擊" ruleid="10132" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Tron木马通信" name_en_US="Backdoor/Trojan Tron Communication " name_zh_CN="木马后门程序Tron木马通信" name_zh_TW="木馬後門程序Tron木馬通信" ruleid="40593" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Sober.E@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Sober.E@mm" name_zh_CN="SMTP服务发送W32.Sober.E@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.E@mm蠕蟲病毒郵件" ruleid="40619" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Mailers cgimail.exe CGI程序漏洞扫描探测" name_en_US="Mailers cgimail.exe CGI Vulnerability Detection" name_zh_CN="Mailers cgimail.exe CGI程序漏洞扫描探测" name_zh_TW="Mailers cgimail.exe CGI程序漏洞掃描探測" ruleid="40262" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="SAP AG WebViewer3D ActiveX控件栈溢出漏洞" name_en_US="SAP AG SAPgui EAI WebViewer3D Buffer Overflow Vulnerability" name_zh_CN="SAP AG WebViewer3D ActiveX控件栈溢出漏洞" name_zh_TW="SAP AG WebViewer3D ActiveX控件棧溢出漏洞" ruleid="21855" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420719" module="0" name="Samba 3.0.x至3.6.3版本ndr_pull_lsa_SidArray堆溢出漏洞(CVE-2012-1182)" name_en_US="Samba 3.0.x to 3.6.3 ndr_pull_lsa_SidArray Heap Overflow Vulnerability(CVE-2012-1182)" name_zh_CN="Samba 3.0.x至3.6.3版本ndr_pull_lsa_SidArray堆溢出漏洞(CVE-2012-1182)" name_zh_TW="Samba 3.0.x至3.6.3版本ndr_pull_lsa_SidArray堆溢出漏洞(CVE-2012-1182)" ruleid="21676" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft MSCOMCTL.OCX远程代码执行漏洞(MS12-027,CVE-2012-0158)" name_en_US="Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability(MS12-027,CVE-2012-0158)" name_zh_CN="Microsoft MSCOMCTL.OCX远程代码执行漏洞(MS12-027,CVE-2012-0158)" name_zh_TW="Microsoft MSCOMCTL.OCX遠程代碼執行漏洞(MS12-027,CVE-2012-0158)" ruleid="21675" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE OnReadyStateChange远程代码执行漏洞(MS12-023,CVE-2012-0170)" name_en_US="Microsoft IE OnReadyStateChange Remote Code Execution Vulnerability(MS12-023,CVE-2012-0170)" name_zh_CN="Microsoft IE OnReadyStateChange远程代码执行漏洞(MS12-023,CVE-2012-0170)" name_zh_TW="Microsoft IE OnReadyStateChange遠程代碼執行漏洞(MS12-023,CVE-2012-0170)" ruleid="21674" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE SelectAll远程代码执行漏洞(MS12-023,CVE-2012-0171)" name_en_US="Microsoft IE SelectAll Remote Code Execution Vulnerability(MS12-023,CVE-2012-0171)" name_zh_CN="Microsoft IE SelectAll远程代码执行漏洞(MS12-023,CVE-2012-0171)" name_zh_TW="Microsoft IE SelectAll遠程代碼執行漏洞(MS12-023,CVE-2012-0171)" ruleid="21673" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE VML Style远程代码执行漏洞(MS12-023,CVE-2012-0172)" name_en_US="Microsoft IE VML Style Remote Code Execution Vulnerability(MS12-023,CVE-2012-0172)" name_zh_CN="Microsoft IE VML Style远程代码执行漏洞(MS12-023,CVE-2012-0172)" name_zh_TW="Microsoft IE VML Style遠程代碼執行漏洞(MS12-023,CVE-2012-0172)" ruleid="21672" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Office WPS Converter堆溢出漏洞(MS12-028,CVE-2012-0177)" name_en_US="Microsoft Office WPS Converter Heap Overflow Vulnerability(MS12-028,CVE-2012-0177)" name_zh_CN="Microsoft Office WPS Converter堆溢出漏洞(MS12-028,CVE-2012-0177)" name_zh_TW="Microsoft Office WPS Converter堆溢出漏洞(MS12-028,CVE-2012-0177)" ruleid="21671" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Oracle Java SE i18n子组件远程安全漏洞(CVE-2012-0507)" name_en_US="Oracle in Java SE i18n sub-component remote vulnerability(CVE-2012-0507)" name_zh_CN="Oracle Java SE i18n子组件远程安全漏洞(CVE-2012-0507)" name_zh_TW="Oracle Java SE i18n子組件遠程安全漏洞(CVE-2012-0507)" ruleid="21670" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft WordPad文本转换器Word 97文件解析内存破坏漏洞" name_en_US="Microsoft WordPad Text Converter Word 97 File Parsing Memory Corruption Vulnerability" name_zh_CN="Microsoft WordPad文本转换器Word 97文件解析内存破坏漏洞" name_zh_TW="Microsoft WordPad文本轉換器Word 97文件解析內存破壞漏洞" ruleid="21079" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows CSRSS本地权限提升漏洞 (CVE-2010-1891) " name_en_US="Microsoft Windows CSRSS Local Privilege Escalation Vulnerability (CVE-2010-1891)" name_zh_CN="Microsoft Windows CSRSS本地权限提升漏洞 (CVE-2010-1891) " name_zh_TW="Microsoft Windows CSRSS本地權限提升漏洞 (CVE-2010-1891) " ruleid="21078" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft MPEG-4编解码器媒体文件解析远程代码执行漏洞" name_en_US="Microsoft MPEG-4 Codec Media File Parsing Remote Code Execution Vulnerability " name_zh_CN="Microsoft MPEG-4编解码器媒体文件解析远程代码执行漏洞" name_zh_TW="Microsoft MPEG-4編解碼器媒體文件解析遠程代碼執行漏洞" ruleid="21075" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422511" module="0" name="Microsoft Windows SMB池溢出远程代码执行漏洞(CVE-2010-2550)" name_en_US="Microsoft Windows SMB Pool Overflow Remote Code Execution Vulnerability(CVE-2010-2550)" name_zh_CN="Microsoft Windows SMB池溢出远程代码执行漏洞(CVE-2010-2550)" name_zh_TW="Microsoft Windows SMB池溢出遠程代碼執行漏洞(CVE-2010-2550)" ruleid="21074" visible="true" />
			<rule action=" db  screen " enabled="true" group="82837807" module="0" name="Microsoft Windows LSASS堆溢出漏洞" name_en_US="Microsoft Windows LSASS Heap Overflow Vulnerability" name_zh_CN="Microsoft Windows LSASS堆溢出漏洞" name_zh_TW="Microsoft Windows LSASS堆溢出漏洞" ruleid="21077" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows RPC请求内存分配远程代码执行漏洞(MS10-066)" name_en_US="Microsoft Windows RPC Request Memory Allocation Remote Code Execution Vulnerability (MS10-066)" name_zh_CN="Microsoft Windows RPC请求内存分配远程代码执行漏洞(MS10-066)" name_zh_TW="Microsoft Windows RPC請求內存分配遠程代碼執行漏洞(MS10-066)" ruleid="21076" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows帮助和支持中心绕过白名单限制漏洞" name_en_US="Microsoft Windows Help and Support Center Bypassing Whitelist Restriction Vulnerability" name_zh_CN="Microsoft Windows帮助和支持中心绕过白名单限制漏洞" name_zh_TW="Microsoft Windows幫助和支持中心繞過白名單限制漏洞" ruleid="21071" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint Server /_layouts/help.aspx跨站脚本漏洞" name_en_US="Microsoft SharePoint Server /_layouts/help.aspx Cross-Site Scripting Vulnerability" name_zh_CN="Microsoft SharePoint Server /_layouts/help.aspx跨站脚本漏洞" name_zh_TW="Microsoft SharePoint Server /_layouts/help.aspx跨站腳本漏洞" ruleid="21070" visible="true" />
			<rule action=" db  screen " enabled="false" group="203425839" module="0" name="XWork绕过安全限制执行任意命令漏洞" name_en_US="XWork Bypass Security Restrictions to Execute Arbitrary Code Vulnerability" name_zh_CN="XWork绕过安全限制执行任意命令漏洞" name_zh_TW="XWork繞過安全限制執行任意命令漏洞" ruleid="21073" visible="false" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Access ActiveX控件实例化远程代码执行漏洞" name_en_US="Microsoft Access ActiveX Control Instantiation Remote Code Execution Vulnerability" name_zh_CN="Microsoft Access ActiveX控件实例化远程代码执行漏洞" name_zh_TW="Microsoft Access ActiveX控件實例化遠程代碼執行漏洞" ruleid="21072" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序流光Sensor建立连接" name_en_US="Backdoor/Trojan Sensor Connection " name_zh_CN="木马后门程序流光Sensor建立连接" name_zh_TW="木馬後門程序流光Sensor建立連接" ruleid="40660" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834522" module="0" name="SSL重协商及资源消耗非对称性导致的分布式拒绝服务攻击" name_en_US="DDoS Attacks Caused by the Asymmetry Between SSL Renegotiation and Resource Consumption" name_zh_CN="SSL重协商及资源消耗非对称性导致的分布式拒绝服务攻击" name_zh_TW="SSL重協商及資源消耗非對稱性導致的分布式拒絕服務攻擊" ruleid="10321" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序rksh" name_en_US="Access to Unix Shell Interpreter rksh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序rksh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序rksh" ruleid="20142" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725671" module="0" name="DistCC守护程序远程命令执行攻击" name_en_US="DistCC Daemon Remote Command Execution" name_zh_CN="DistCC守护程序远程命令执行攻击" name_zh_TW="DistCC守護程序遠程命令執行攻擊" ruleid="20610" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643495" module="0" name="TFTPD服务超长文件名远程缓冲区溢出攻击" name_en_US="TFTPD Service Over-Long Filename Remote Buffer Overflow" name_zh_CN="TFTPD服务超长文件名远程缓冲区溢出攻击" name_zh_TW="TFTPD服務超長文件名遠程緩沖區溢出攻擊" ruleid="20611" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Symantec Sygate Management Server认证Applet远程SQL注入攻击" name_en_US="Symantec Sygate Management Server Authentication Applet Remote SQL Injection" name_zh_CN="Symantec Sygate Management Server认证Applet远程SQL注入攻击" name_zh_TW="Symantec Sygate Management Server認證Applet遠程SQL注入攻擊" ruleid="20616" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sentinel License Manager Lservnt服务远程缓冲区溢出攻击" name_en_US="Sentinel License Manager Lservnt Service Remote Buffer Overflow" name_zh_CN="Sentinel License Manager Lservnt服务远程缓冲区溢出攻击" name_zh_TW="Sentinel License Manager Lservnt服務遠程緩沖區溢出攻擊" ruleid="20617" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616799" module="0" name="Terminal Server拒绝服务漏洞(MS12-020,CVE-2012-0152)" name_en_US="Terminal Server Denial of Service Vulnerability(MS12-020,CVE-2012-0152)" name_zh_CN="Terminal Server拒绝服务漏洞(MS12-020,CVE-2012-0152)" name_zh_TW="Terminal Server拒絕服務漏洞(MS12-020,CVE-2012-0152)" ruleid="10327" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596703" module="0" name="DNS拒绝服务漏洞(MS12-017,CVE-2012-0006)" name_en_US="DNS Denial of Service Vulnerability(MS12-017,CVE-2012-0006)" name_zh_CN="DNS拒绝服务漏洞(MS12-017,CVE-2012-0006)" name_zh_TW="DNS拒絕服務漏洞(MS12-017,CVE-2012-0006)" ruleid="10326" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MyBB usercp.php获取管理用户权限攻击" name_en_US="MyBB usercp.php Admin Privilege Escalation" name_zh_CN="MyBB usercp.php获取管理用户权限攻击" name_zh_TW="MyBB usercp.php獲取管理用戶權限攻擊" ruleid="20618" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050471" module="0" name="Apple Mac OS X AppleFileServer预验证远程缓冲区溢出攻击" name_en_US="Apple Mac OS X AppleFileServer Pre-authentication Remote Buffer Overflow" name_zh_CN="Apple Mac OS X AppleFileServer预验证远程缓冲区溢出攻击" name_zh_TW="Apple Mac OS X AppleFileServer預驗證遠程緩沖區溢出攻擊" ruleid="20619" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Logbook logbook.pl脚本漏洞扫描探测" name_en_US="Logbook logbook.pl Script Vulnerability Detection" name_zh_CN="Logbook logbook.pl脚本漏洞扫描探测" name_zh_TW="Logbook logbook.pl腳本漏洞掃描探測" ruleid="30453" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office共享组件DLL加载任意代码执行漏洞(MS11-023)" name_en_US="Microsoft Office Shared Components Arbitrary Code Execution Vulnerability (MS11-023)" name_zh_CN="Microsoft Office共享组件DLL加载任意代码执行漏洞(MS11-023)" name_zh_TW="Microsoft Office共享組件DLL加載任意代碼執行漏洞(MS11-023)" ruleid="21219" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel图层悬空指针远程代码执行漏洞(MS11-023)" name_en_US="Microsoft Excel Drawing Layer Dangling Pointer Remote Code Execution Vulnerability (MS11-023)" name_zh_CN="Microsoft Excel图层悬空指针远程代码执行漏洞(MS11-023)" name_zh_TW="Microsoft Excel圖層懸空指針遠程代碼執行漏洞(MS11-023)" ruleid="21218" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序ksh" name_en_US="Access to Unix Shell Interpreter ksh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序ksh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序ksh" ruleid="20141" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Windows系统远程管理工具PcAnywhere管理员远程登录" name_en_US="Windows Remote Management Tool PcAnywhere Administrator Remote Login" name_zh_CN="Windows系统远程管理工具PcAnywhere管理员远程登录" name_zh_TW="Windows系統遠程管理工具PcAnywhere管理員遠程登錄" ruleid="50010" visible="true" />
			<rule action=" db  screen " enabled="true" group="156239915" module="0" name="SGI IRIX lpsched远程命令执行攻击" name_en_US="SGI IRIX lpsched Remote Command Execution" name_zh_CN="SGI IRIX lpsched远程命令执行攻击" name_zh_TW="SGI IRIX lpsched遠程命令執行攻擊" ruleid="20613" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)(CVE-2011-0980)" name_en_US="Microsoft Excel Heap-Based Buffer Overflow Vulnerability (MS11-021)(CVE-2011-0980)" name_zh_CN="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)(CVE-2011-0980)" name_zh_TW="Microsoft Excel堆緩沖區溢出漏洞(MS11-021)(CVE-2011-0980)" ruleid="21210" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Excel 远程代码执行漏洞" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution" name_zh_CN="Microsoft Excel 远程代码执行漏洞" name_zh_TW="Microsoft Excel 遠程代碼執行漏洞" ruleid="21213" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel内存破坏漏洞(MS11-021)" name_en_US="Microsoft Excel Memory Corruption Vulnerability (MS11-021)" name_zh_CN="Microsoft Excel内存破坏漏洞(MS11-021)" name_zh_TW="Microsoft Excel內存破壞漏洞(MS11-021)" ruleid="21212" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft PowerPoint无效&quot;PersistDirectoryEntry&quot;记录远程代码执行漏洞(MS11-022) (CVE-2011-0976)" name_en_US="Microsoft PowerPoint Invalid &quot;PersistDirectoryEntry&quot; Record Remote Code Execution Vulnerability (MS11-022) (CVE-2011-0976)" name_zh_CN="Microsoft PowerPoint无效&quot;PersistDirectoryEntry&quot;记录远程代码执行漏洞(MS11-022) (CVE-2011-0976)" name_zh_TW="Microsoft PowerPoint無效&quot;PersistDirectoryEntry&quot;記錄遠程代碼執行漏洞(MS11-022) (CVE-2011-0976)" ruleid="21215" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel数据验证记录解析缓冲区溢出漏洞(MS11-021)" name_en_US="Microsoft Excel Data Validation Record Parsing Buffer Overflow Vulnerability (MS11-021)" name_zh_CN="Microsoft Excel数据验证记录解析缓冲区溢出漏洞(MS11-021)" name_zh_TW="Microsoft Excel數據驗證記錄解析緩沖區溢出漏洞(MS11-021)" ruleid="21214" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft PowerPoint无效&quot;TimeColorBehaviorContainer&quot;记录远程代码执行漏洞(MS11-022)" name_en_US="Microsoft PowerPoint Invalid &quot;TimeColorBehaviorContainer&quot; Record Remote Code Execution Vulnerability (MS11-022)" name_zh_CN="Microsoft PowerPoint无效&quot;TimeColorBehaviorContainer&quot;记录远程代码执行漏洞(MS11-022)" name_zh_TW="Microsoft PowerPoint無效&quot;TimeColorBehaviorContainer&quot;記錄遠程代碼執行漏洞(MS11-022)" ruleid="21217" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft PowerPoint无效&quot;PersistDirectoryEntry&quot;记录远程代码执行漏洞(MS11-022) (CVE-2011-0656)" name_en_US="Microsoft PowerPoint Invalid &quot;PersistDirectoryEntry&quot; Record Remote Code Execution Vulnerability (MS11-022) (CVE-2011-0656)" name_zh_CN="Microsoft PowerPoint无效&quot;PersistDirectoryEntry&quot;记录远程代码执行漏洞(MS11-022) (CVE-2011-0656)" name_zh_TW="Microsoft PowerPoint無效&quot;PersistDirectoryEntry&quot;記錄遠程代碼執行漏洞(MS11-022) (CVE-2011-0656)" ruleid="21216" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0090)" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege(CVE-2011-0090)" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0090)" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞(CVE-2011-0090)" ruleid="21189" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0086)" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege(CVE-2011-0086)" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0086)" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞(CVE-2011-0086)" ruleid="21188" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序csh" name_en_US="Access to Unix Shell Interpreter csh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序csh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序csh" ruleid="20144" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户登录" name_en_US="Instant Messaging Tool ICQ User Login" name_zh_CN="即时通信工具ICQ用户登录" name_zh_TW="即時通信工具ICQ用戶登錄" ruleid="50074" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows OpenType Compact字体格式远程代码执行漏洞" name_en_US="Vulnerability in the OpenType Compact Font Format (CFF) Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Compact字体格式远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Compact字體格式遠程代碼執行漏洞" ruleid="21181" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio数据类型内存破坏远程代码执行漏洞" name_en_US="Microsoft Visio Data Type Memory Corruption Remote Code Execution Vulnerability" name_zh_CN="Microsoft Visio数据类型内存破坏远程代码执行漏洞" name_zh_TW="Microsoft Visio數據類型內存破壞遠程代碼執行漏洞" ruleid="21183" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio对象内存破坏远程代码执行漏洞" name_en_US="Microsoft Visio Object Memory Corruption Remote Code Execution Vulnerability" name_zh_CN="Microsoft Visio对象内存破坏远程代码执行漏洞" name_zh_TW="Microsoft Visio對象內存破壞遠程代碼執行漏洞" ruleid="21182" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows CSRSS本地权限提升漏洞 (CVE-2011-0030)" name_en_US="Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (CVE-2011-0030)" name_zh_CN="Microsoft Windows CSRSS本地权限提升漏洞 (CVE-2011-0030)" name_zh_TW="Microsoft Windows CSRSS本地權限提升漏洞 (CVE-2011-0030)" ruleid="21185" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft VBScript和JScript Scripting引擎信息泄露漏洞" name_en_US="Vulnerability in JScript and VBScript Scripting Engine Could Allow Information Disclosure" name_zh_CN="Microsoft VBScript和JScript Scripting引擎信息泄露漏洞" name_zh_TW="Microsoft VBScript和JScript Scripting引擎信息泄露漏洞" ruleid="21184" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows Kernel整数截断本地权限提升漏洞" name_en_US="Microsoft Windows Kernel Integer Truncation Local Privilege Escalation Vulnerability" name_zh_CN="Microsoft Windows Kernel整数截断本地权限提升漏洞" name_zh_TW="Microsoft Windows Kernel整數截斷本地權限提升漏洞" ruleid="21187" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft Windows User Access Control (UAC) 绕过本地权限提升漏洞" name_en_US="Microsoft Windows User Access Control (UAC) Bypass Local Privilege Escalation Vulnerability" name_zh_CN="Microsoft Windows User Access Control (UAC) 绕过本地权限提升漏洞" name_zh_TW="Microsoft Windows User Access Control (UAC) 繞過本地權限提升漏洞" ruleid="21186" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="PuTTy.exe v0.53 缓冲区溢出攻击" name_en_US="PuTTy.exe v0.53 Buffer Overflow" name_zh_CN="PuTTy.exe v0.53 缓冲区溢出攻击" name_zh_TW="PuTTy.exe v0.53 緩沖區溢出攻擊" ruleid="20854" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="RealNetworks RealPlayer .smil文件处理缓冲区溢出攻击" name_en_US="RealNetworks RealPlayer .smil File Prcocessing Buffer Overflow" name_zh_CN="RealNetworks RealPlayer .smil文件处理缓冲区溢出攻击" name_zh_TW="RealNetworks RealPlayer .smil文件處理緩沖區溢出攻擊" ruleid="20855" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Real Networks Helix Universal Server RTSP Describe字段远程缓冲区溢出攻击" name_en_US="Real Networks Helix Universal Server RTSP Describe Field Remote Buffer Overflow" name_zh_CN="Real Networks Helix Universal Server RTSP Describe字段远程缓冲区溢出攻击" name_zh_TW="Real Networks Helix Universal Server RTSP Describe字段遠程緩沖區溢出攻擊" ruleid="20856" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="WinVNC 客户程序缓冲区溢出攻击" name_en_US="WinVNC Client Buffer Overflow" name_zh_CN="WinVNC 客户程序缓冲区溢出攻击" name_zh_TW="WinVNC 客戶程序緩沖區溢出攻擊" ruleid="20857" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="Novell Netmail NMAP服务STOR命令远程溢出攻击" name_en_US="Novell Netmail NMAP Service STOR Command Remote Buffer Overflow" name_zh_CN="Novell Netmail NMAP服务STOR命令远程溢出攻击" name_zh_TW="Novell Netmail NMAP服務STOR命令遠程溢出攻擊" ruleid="20850" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472619" module="0" name="FTP服务器PASS命令超长参数缓冲区溢出攻击" name_en_US="FTP Server PASS Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务器PASS命令超长参数缓冲区溢出攻击" name_zh_TW="FTP服務器PASS命令超長參數緩沖區溢出攻擊" ruleid="20851" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254890" module="0" name="FTP服务器UNLOCK命令超长参数缓冲区溢出攻击" name_en_US="FTP Server UNLOCK Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务器UNLOCK命令超长参数缓冲区溢出攻击" name_zh_TW="FTP服務器UNLOCK命令超長參數緩沖區溢出攻擊" ruleid="20852" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Proxy-Pro Professional GateKeeper Web代理缓冲区溢出攻击" name_en_US="Proxy-Pro Professional GateKeeper Web Proxy Buffer Overflow" name_zh_CN="Proxy-Pro Professional GateKeeper Web代理缓冲区溢出攻击" name_zh_TW="Proxy-Pro Professional GateKeeper Web代理緩沖區溢出攻擊" ruleid="20853" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k连接服务器" name_en_US="P2P File Sharing Tool eDonkey/ed2k Server Connection" name_zh_CN="P2P文件共享工具eDonkey/ed2k连接服务器" name_zh_TW="P2P文件共享工具eDonkey/ed2k連接服務器" ruleid="50071" visible="true" />
			<rule action=" db  screen " enabled="true" group="72352042" module="0" name="POP3服务器PASS命令超长参数缓冲区溢出攻击" name_en_US="POP3 Server PASS Command Over-Long Parameter Buffer Overflow" name_zh_CN="POP3服务器PASS命令超长参数缓冲区溢出攻击" name_zh_TW="POP3服務器PASS命令超長參數緩沖區溢出攻擊" ruleid="20859" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223061" module="0" name="Web服务TRACK方法请求" name_en_US="Web Service TRACK Method Request" name_zh_CN="Web服务TRACK方法请求" name_zh_TW="Web服務TRACK方法請求" ruleid="50070" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Trillian aim:// URI处理器远程代码执行攻击" name_en_US="Trillian aim:// URI Processor Remote Code Execution Attack" name_zh_CN="Trillian aim:// URI处理器远程代码执行攻击" name_zh_TW="Trillian aim:// URI處理器遠程代碼執行攻擊" ruleid="20928" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="AOL Instant Messenger通知窗口远程脚本执行攻击" name_en_US="AOL Instant Messenger Remote Script Execution Attack" name_zh_CN="AOL Instant Messenger通知窗口远程脚本执行攻击" name_zh_TW="AOL Instant Messenger通知窗口遠程腳本執行攻擊" ruleid="20929" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="HP Software Update RulesEngine.dll控件远程文件覆盖攻击" name_en_US="HP Software Update RulesEngine.dll Control Remote File Coverage Attack" name_zh_CN="HP Software Update RulesEngine.dll控件远程文件覆盖攻击" name_zh_TW="HP Software Update RulesEngine.dll控件遠程文件覆蓋攻擊" ruleid="20924" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Asterisk SIP T.38 SDP解析远程栈溢出攻击" name_en_US="Asterisk SIP T.38 SDP Remote Stack Overflow Attack" name_zh_CN="Asterisk SIP T.38 SDP解析远程栈溢出攻击" name_zh_TW="Asterisk SIP T.38 SDP解析遠程棧溢出攻擊" ruleid="20925" visible="true" />
			<rule action=" db  screen " enabled="true" group="162531371" module="0" name="Samba MS-RPC远程Shell命令注入执行攻击" name_en_US="Samba MS-RPC Remote Shell Command Injection Attack" name_zh_CN="Samba MS-RPC远程Shell命令注入执行攻击" name_zh_TW="Samba MS-RPC遠程Shell命令注入執行攻擊" ruleid="20926" visible="true" />
			<rule action=" db  screen " enabled="true" group="162529579" module="0" name="Samba NDR MS-RPC请求远程堆溢出攻击" name_en_US="Samba NDR MS-RPC Remote Heap Overflow Attack" name_zh_CN="Samba NDR MS-RPC请求远程堆溢出攻击" name_zh_TW="Samba NDR MS-RPC請求遠程堆溢出攻擊" ruleid="20927" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="IMAP服务器SEARCH命令超长参数远程缓冲区溢出攻击" name_en_US="IMAP Server SEARCH Command Over-Long Parameter Remote Buffer Overflow Attack" name_zh_CN="IMAP服务器SEARCH命令超长参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務器SEARCH命令超長參數遠程緩沖區溢出攻擊" ruleid="20920" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft DirectX SAMI及WAV/AVI文件解析远程代码执行漏洞(MS07-064)" name_en_US="Microsoft DirectX SAMI and WAV/AVI File Parsing Stack Buffer Overflow Vulnerability(MS07-064)" name_zh_CN="Microsoft DirectX SAMI及WAV/AVI文件解析远程代码执行漏洞(MS07-064)" name_zh_TW="Microsoft DirectX SAMI及WAV/AVI文件解析遠程代碼執行漏洞(MS07-064)" ruleid="20921" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420714" module="0" name="Samba Send_MailSlot函数远程栈溢出攻击" name_en_US="Samba Send_MailSlot Remote Buffer Overflow Attack" name_zh_CN="Samba Send_MailSlot函数远程栈溢出攻击" name_zh_TW="Samba Send_MailSlot函數遠程棧溢出攻擊" ruleid="20922" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_en_US="CA ETrust Intrusion Detection Caller.dll Control Remote Code Execution Attack" name_zh_CN="CA ETrust Intrusion Detection Caller.dll控件远程代码执行攻击" name_zh_TW="CA ETrust Intrusion Detection Caller.dll控件遠程代碼執行攻擊" ruleid="20923" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2459)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2459)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2459)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2459)" ruleid="21325" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Adobe Flash Player 跨地域策略Bypass漏洞(仅限于IE，CVE-2011-2458)" name_en_US="Adobe Flash Player Cross-domain Policy Bypass Vulnerability(Internet Explorer-only,CVE-2011-2458)" name_zh_CN="Adobe Flash Player 跨地域策略Bypass漏洞(仅限于IE，CVE-2011-2458)" name_zh_TW="Adobe Flash Player 跨地域策略Bypass漏洞(僅限于IE，CVE-2011-2458)" ruleid="21324" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Adobe Reader U3D数据处理代码执行漏洞(CVE-2011-2462)" name_en_US="Adobe Acrobat and Reader U3D Data Processing Code Execution Vulnerability(CVE-2011-2462)" name_zh_CN="Adobe Reader U3D数据处理代码执行漏洞(CVE-2011-2462)" name_zh_TW="Adobe Reader U3D數據處理代碼執行漏洞(CVE-2011-2462)" ruleid="21327" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2460)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2460)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2460)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2460)" ruleid="21326" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616790" module="0" name="OOB带外紧急数据Winuke拒绝服务攻击" name_en_US="OOB Emergency Data Winuke Denial of Service" name_zh_CN="OOB带外紧急数据Winuke拒绝服务攻击" name_zh_TW="OOB帶外緊急數據Winuke拒絕服務攻擊" ruleid="10039" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2454)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2454)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2454)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2454)" ruleid="21320" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995239" module="0" name="Solaris rpc.sadmind远程缓冲区溢出攻击" name_en_US="Solaris rpc.sadmind Remote Buffer Overflow" name_zh_CN="Solaris rpc.sadmind远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.sadmind遠程緩沖區溢出攻擊" ruleid="20108" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.sadmind服务存在性TCP扫描探测" name_en_US="Solaris rpc.sadmind Service TCP Detection" name_zh_CN="Solaris rpc.sadmind服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.sadmind服務存在性TCP掃描探測" ruleid="20109" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="Stream ACK/FIN小数据包洪流拒绝服务攻击" name_en_US="Malformed Stream ACK/FIN Small Packets Flood Denial of Service" name_zh_CN="Stream ACK/FIN小数据包洪流拒绝服务攻击" name_zh_TW="Stream ACK/FIN小數據包洪流拒絕服務攻擊" ruleid="10035" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft FrontPage 2000 fp30reg.dll缓冲区溢出攻击" name_en_US="Microsoft FrontPage 2000 fp30reg.dll Buffer Overflow" name_zh_CN="Microsoft FrontPage 2000 fp30reg.dll缓冲区溢出攻击" name_zh_TW="Microsoft FrontPage 2000 fp30reg.dll緩沖區溢出攻擊" ruleid="20107" visible="true" />
			<rule action=" db  screen " enabled="true" group="68158539" module="0" name="网络蠕虫Code Red攻击" name_en_US="Network Worm Code Red Attack" name_zh_CN="网络蠕虫Code Red攻击" name_zh_TW="網絡蠕蟲Code Red攻擊" ruleid="20104" visible="true" />
			<rule action=" db  screen " enabled="true" group="68158539" module="0" name="网络蠕虫Code Red II攻击" name_en_US="Network Worm Code Red II Attack" name_zh_CN="网络蠕虫Code Red II攻击" name_zh_TW="網絡蠕蟲Code Red II攻擊" ruleid="20105" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256698" module="0" name="RhinoSoft Serv-U FTP Server远程目录遍历漏洞" name_en_US="RhinoSoft Serv-U FTP Server Remote Directory Traversal Vulnerability" name_zh_CN="RhinoSoft Serv-U FTP Server远程目录遍历漏洞" name_zh_TW="RhinoSoft Serv-U FTP Server遠程目錄遍曆漏洞" ruleid="21329" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Oracle Java远程代码执行攻击" name_en_US="Oracle Java Remote Code Execution Attack" name_zh_CN="Oracle Java远程代码执行攻击" name_zh_TW="Oracle Java遠程代碼執行攻擊" ruleid="21328" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft IIS 4.0 .htr ISAPI扩展远程缓冲区溢出攻击" name_en_US="Microsoft IIS 4.0 .htr ISAPI Extension Remote Buffer Overflow" name_zh_CN="Microsoft IIS 4.0 .htr ISAPI扩展远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 4.0 .htr ISAPI擴展遠程緩沖區溢出攻擊" ruleid="20100" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995243" module="0" name="Solaris ypbind UDP远程缓冲区溢出攻击" name_en_US="Solaris ypbind UDP Remote Buffer Overflow" name_zh_CN="Solaris ypbind UDP远程缓冲区溢出攻击" name_zh_TW="Solaris ypbind UDP遠程緩沖區溢出攻擊" ruleid="20101" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Computer Associates MLink超长数据缓冲区溢出攻击" name_en_US="Computer Associates MLink Over-Long Data Buffer Overflow" name_zh_CN="Computer Associates MLink超长数据缓冲区溢出攻击" name_zh_TW="Computer Associates MLink超長數據緩沖區溢出攻擊" ruleid="20780" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="McAfee ePolicy Orchestrator HTTP GET请求远程格式串攻击" name_en_US="McAfee ePolicy Orchestrator HTTP GET Request Remote Format String" name_zh_CN="McAfee ePolicy Orchestrator HTTP GET请求远程格式串攻击" name_zh_TW="McAfee ePolicy Orchestrator HTTP GET請求遠程格式串攻擊" ruleid="20781" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpSecurePages cfgProgDir变量远程文件包含攻击" name_en_US="phpSecurePages cfgProgDir Variable Remote File Inclusion" name_zh_CN="phpSecurePages cfgProgDir变量远程文件包含攻击" name_zh_TW="phpSecurePages cfgProgDir變量遠程文件包含攻擊" ruleid="20669" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析软件证券之星用户登录" name_en_US="Stock Market Analysis Software stockstar.com Uesr Login" name_zh_CN="股票行情分析软件证券之星用户登录" name_zh_TW="股票行情分析軟件證券之星用戶登錄" ruleid="50171" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Claroline scormExport.inc.php远程文件包含攻击" name_en_US="Claroline scormExport.inc.php Remote File Inclusion" name_zh_CN="Claroline scormExport.inc.php远程文件包含攻击" name_zh_TW="Claroline scormExport.inc.php遠程文件包含攻擊" ruleid="20582" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="VWAR远程文件包含攻击" name_en_US="VWAR Remote File Inclusion" name_zh_CN="VWAR远程文件包含攻击" name_zh_TW="VWAR遠程文件包含攻擊" ruleid="20583" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="PeerCast URL处理远程缓冲区溢出攻击" name_en_US="PeerCast URL Handling Remote Buffer Overflow" name_zh_CN="PeerCast URL处理远程缓冲区溢出攻击" name_zh_TW="PeerCast URL處理遠程緩沖區溢出攻擊" ruleid="20580" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="D2-Shoutbox load参数远程SQL注入攻击" name_en_US="D2-Shoutbox load Parameter Remote SQL Injection" name_zh_CN="D2-Shoutbox load参数远程SQL注入攻击" name_zh_TW="D2-Shoutbox load參數遠程SQL注入攻擊" ruleid="20581" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpWebSite hub_dir变量远程执行命令攻击" name_en_US="phpWebSite hub_dir Variable Remote Command Execution" name_zh_CN="phpWebSite hub_dir变量远程执行命令攻击" name_zh_TW="phpWebSite hub_dir變量遠程執行命令攻擊" ruleid="20586" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Simplog tid参数远程SQL注入攻击" name_en_US="Simplog tid Parameter Remote SQL Injection" name_zh_CN="Simplog tid参数远程SQL注入攻击" name_zh_TW="Simplog tid參數遠程SQL注入攻擊" ruleid="20587" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316975" module="0" name="Horde Help模块远程执行命令攻击" name_en_US="Horde Help Module Remote Command Execution" name_zh_CN="Horde Help模块远程执行命令攻击" name_zh_TW="Horde Help模塊遠程執行命令攻擊" ruleid="20584" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316967" module="0" name="Sysinfoscript sysinfo.cgi远程执行命令攻击" name_en_US="Sysinfoscript sysinfo.cgi Remote Command Execution" name_zh_CN="Sysinfoscript sysinfo.cgi远程执行命令攻击" name_zh_TW="Sysinfoscript sysinfo.cgi遠程執行命令攻擊" ruleid="20585" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Invision Power Board search.php远程脚本代码注入攻击" name_en_US="Invision Power Board search.php Remote Script Injection" name_zh_CN="Invision Power Board search.php远程脚本代码注入攻击" name_zh_TW="Invision Power Board search.php遠程腳本代碼注入攻擊" ruleid="20588" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Advanced GuestBook for phpBB远程文件包含攻击" name_en_US="Advanced GuestBook for phpBB Remote File Inclusion" name_zh_CN="Advanced GuestBook for phpBB远程文件包含攻击" name_zh_TW="Advanced GuestBook for phpBB遠程文件包含攻擊" ruleid="20589" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft Index Server .htw读取文件漏洞扫描探测" name_en_US="Microsoft Index Server .htw File Reading Vulnerability Detection" name_zh_CN="Microsoft Index Server .htw读取文件漏洞扫描探测" name_zh_TW="Microsoft Index Server .htw讀取文件漏洞掃描探測" ruleid="30149" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Matt Tourtillott maillist.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Matt Tourtillott maillist.pl Script Vulnerability" name_zh_CN="Matt Tourtillott maillist.pl脚本漏洞远程执行命令" name_zh_TW="Matt Tourtillott maillist.pl腳本漏洞遠程執行命令" ruleid="30148" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898069" module="0" name="ICMP路由请求消息" name_en_US="ICMP Route Request Message" name_zh_CN="ICMP路由请求消息" name_zh_TW="ICMP路由請求消息" ruleid="40059" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cachefsd服务存在性TCP扫描探测" name_en_US="Solaris rpc.cachefsd Service TCP Detection" name_zh_CN="Solaris rpc.cachefsd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.cachefsd服務存在性TCP掃描探測" ruleid="30143" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cachefsd服务存在性UDP扫描探测" name_en_US="Solaris rpc.cachefsd Service UDP Detection" name_zh_CN="Solaris rpc.cachefsd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.cachefsd服務存在性UDP掃描探測" ruleid="30142" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="ht://dig htsearch脚本漏洞读取系统文件" name_en_US=" ht://dig htsearch Script Vulneraility System File Reading" name_zh_CN="ht://dig htsearch脚本漏洞读取系统文件" name_zh_TW="ht://dig htsearch腳本漏洞讀取系統文件" ruleid="30493" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="Microsoft FrontPage 98 Extensions获取绝对路径信息攻击" name_en_US="Microsoft FrontPage 98 Extensions Absolute Path Information Disclosure" name_zh_CN="Microsoft FrontPage 98 Extensions获取绝对路径信息攻击" name_zh_TW="Microsoft FrontPage 98 Extensions獲取絕對路徑信息攻擊" ruleid="30495" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft IIS 5.0 .printer ISAPI扩展映射存在性扫描探测" name_en_US="Microsoft IIS 5.0 .printer ISAPI Extension Mapping Detection" name_zh_CN="Microsoft IIS 5.0 .printer ISAPI扩展映射存在性扫描探测" name_zh_TW="Microsoft IIS 5.0 .printer ISAPI擴展映射存在性掃描探測" ruleid="30146" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cmsd服务存在性TCP扫描探测" name_en_US="Solaris rpc.cmsd Service TCP Detection" name_zh_CN="Solaris rpc.cmsd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.cmsd服務存在性TCP掃描探測" ruleid="30145" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.cmsd服务存在性UDP扫描探测" name_en_US="Solaris rpc.cmsd Service UDP Detection" name_zh_CN="Solaris rpc.cmsd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.cmsd服務存在性UDP掃描探測" ruleid="30144" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Virtual Programming VP-ASP shopgiftregsearch.asp远程SQL注入攻击" name_en_US="Virtual Programming VP-ASP shopgiftregsearch.asp Remote SQL Injection" name_zh_CN="Virtual Programming VP-ASP shopgiftregsearch.asp远程SQL注入攻击" name_zh_TW="Virtual Programming VP-ASP shopgiftregsearch.asp遠程SQL注入攻擊" ruleid="20788" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0019)" name_en_US="Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015,CVE-2012-0019)" name_zh_CN="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0019)" name_zh_TW="Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015,CVE-2012-0019)" ruleid="21360" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647515" module="0" name="Microsoft Windows ASP.NET拒绝服务攻击" name_en_US="ASP.NET in Microsoft Windows Denial of Service" name_zh_CN="Microsoft Windows ASP.NET拒绝服务攻击" name_zh_TW="Microsoft Windows ASP.NET拒絕服務攻擊" ruleid="10251" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Windows TCP/IP零窗口拒绝服务攻击" name_en_US="Windows TCP/IP Zero Window Size Denial of Service Attack" name_zh_CN="Windows TCP/IP零窗口拒绝服务攻击" name_zh_TW="Windows TCP/IP零窗口拒絕服務攻擊" ruleid="10253" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616790" module="0" name="Windows TCP/IP最后ACK包小窗口拒绝服务攻击" name_en_US="Windows TCP/IP Small Sized Window On The Final ACK Denial of Service Attack" name_zh_CN="Windows TCP/IP最后ACK包小窗口拒绝服务攻击" name_zh_TW="Windows TCP/IP最後ACK包小窗口拒絕服務攻擊" ruleid="10252" visible="false" />
			<rule action=" db  screen " enabled="true" group="70287386" module="0" name="Microsoft IIS FTP服务拒绝服务攻击" name_en_US="Microsoft IIS FTP Service Denial of Service" name_zh_CN="Microsoft IIS FTP服务拒绝服务攻击" name_zh_TW="Microsoft IIS FTP服務拒絕服務攻擊" ruleid="10255" visible="true" />
			<rule action=" db  screen " enabled="true" group="95453211" module="0" name="SMB(sits in a loop)拒绝服务攻击" name_en_US="SMB(sits in a loop)Denial of Service Attack" name_zh_CN="SMB(sits in a loop)拒绝服务攻击" name_zh_TW="SMB(sits in a loop)拒絕服務攻擊" ruleid="10256" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Turkojan浏览驱动命令网络数据通信" name_en_US="Backdoor/Trojan Turkojan C&amp;C Browse Drive Command Response metin" name_zh_CN="木马后门程序Turkojan浏览驱动命令网络数据通信" name_zh_TW="木馬後門程序Turkojan浏覽驅動命令網絡數據通信" ruleid="40900" visible="true" />
			<rule action=" db  screen " enabled="true" group="233836618" module="0" name="Windows系统下CYG恶意代码活动" name_en_US="Windows CYG Malicious Code Activity" name_zh_CN="Windows系统下CYG恶意代码活动" name_zh_TW="Windows系統下CYG惡意代碼活動" ruleid="40724" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Turkojan Keepalive网络数据通信" name_en_US="Backdoor/Trojan Turkojan C&amp;C Keepalive BAGLANTI" name_zh_CN="木马后门程序Turkojan Keepalive网络数据通信" name_zh_TW="木馬後門程序Turkojan Keepalive網絡數據通信" ruleid="40903" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Turkojan日志解析网络数据通信" name_en_US="Backdoor/Trojan Turkojan C&amp;C Logs Parse Response Response LOGS1" name_zh_CN="木马后门程序Turkojan日志解析网络数据通信" name_zh_TW="木馬後門程序Turkojan日志解析網絡數據通信" ruleid="40904" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Turkojan nxt命令网络数据通信" name_en_US="Backdoor/Trojan Turkojan C&amp;C nxt Command Response nxt" name_zh_CN="木马后门程序Turkojan nxt命令网络数据通信" name_zh_TW="木馬後門程序Turkojan nxt命令網絡數據通信" ruleid="40905" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="LimeWire HTTP畸形请求访问系统文件攻击" name_en_US="LimeWire HTTP Malformed Request System File Access" name_zh_CN="LimeWire HTTP畸形请求访问系统文件攻击" name_zh_TW="LimeWire HTTP畸形請求訪問系統文件攻擊" ruleid="30549" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Oracle Web Listener批处理漏洞远程执行命令扫描利用" name_en_US="Oracle Web Listener Batch Vulnerability Remote Code Execution Detection" name_zh_CN="Oracle Web Listener批处理漏洞远程执行命令扫描利用" name_zh_TW="Oracle Web Listener批處理漏洞遠程執行命令掃描利用" ruleid="30379" visible="true" />
			<rule action=" db  screen " enabled="true" group="145754166" module="0" name="HP Ignite-UX TFTP访问口令文件攻击" name_en_US="HP Ignite-UX TFTP Password File Access" name_zh_CN="HP Ignite-UX TFTP访问口令文件攻击" name_zh_TW="HP Ignite-UX TFTP訪問口令文件攻擊" ruleid="30547" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Linksys Web Camera Software next_file参数非授权访问系统文件攻击" name_en_US="Linksys Web Camera Software next_file Parameter System File Unauthorized Access" name_zh_CN="Linksys Web Camera Software next_file参数非授权访问系统文件攻击" name_zh_TW="Linksys Web Camera Software next_file參數非授權訪問系統文件攻擊" ruleid="30546" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Logics Software LOG-FT远程读取系统文件攻击" name_en_US="Logics Software LOG-FT Remote System File Read" name_zh_CN="Logics Software LOG-FT远程读取系统文件攻击" name_zh_TW="Logics Software LOG-FT遠程讀取系統文件攻擊" ruleid="30545" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Javamail非授权访问系统文件攻击" name_en_US="Javamail System File Unauthorized Access" name_zh_CN="Javamail非授权访问系统文件攻击" name_zh_TW="Javamail非授權訪問系統文件攻擊" ruleid="30544" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="EMC Navisphere Manager目录遍历攻击" name_en_US="EMC Navisphere Manager Directory Traversal" name_zh_CN="EMC Navisphere Manager目录遍历攻击" name_zh_TW="EMC Navisphere Manager目錄遍曆攻擊" ruleid="30543" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="W-Agora site参数远程目录遍历攻击" name_en_US="W-Agora site Parameter Remote Directory Traversal" name_zh_CN="W-Agora site参数远程目录遍历攻击" name_zh_TW="W-Agora site參數遠程目錄遍曆攻擊" ruleid="30542" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="Barracuda Spam Firewall img.pl远程目录遍历攻击" name_en_US="Barracuda Spam Firewall img.pl Remote Directory Traversal" name_zh_CN="Barracuda Spam Firewall img.pl远程目录遍历攻击" name_zh_TW="Barracuda Spam Firewall img.pl遠程目錄遍曆攻擊" ruleid="30541" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="Subscribe Me Pro远程目录遍历攻击" name_en_US="Subscribe Me Pro Remote Directory Traversal" name_zh_CN="Subscribe Me Pro远程目录遍历攻击" name_zh_TW="Subscribe Me Pro遠程目錄遍曆攻擊" ruleid="30540" visible="true" />
			<rule action=" db  screen " enabled="true" group="209780821" module="0" name="SMTP服务邮件转发失败" name_en_US="SMTP Service Mail Transmit Failure" name_zh_CN="SMTP服务邮件转发失败" name_zh_TW="SMTP服務郵件轉發失敗" ruleid="40123" visible="true" />
			<rule action=" db  screen " enabled="true" group="142614582" module="0" name="SMTP服务EXPN命令获取root帐号信息" name_en_US="SMTP Service EXPN Command root Account Information Disclosure" name_zh_CN="SMTP服务EXPN命令获取root帐号信息" name_zh_TW="SMTP服務EXPN命令獲取root帳號信息" ruleid="40120" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序ZXShell通信" name_en_US="Backdoor/Trojan ZXShell Communication" name_zh_CN="木马后门程序ZXShell通信" name_zh_TW="木馬後門程序ZXShell通信" ruleid="40727" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PhotoPost PP_PATH远程文件包含攻击" name_en_US="PhotoPost PP_PATH Remote File Inclusion" name_zh_CN="PhotoPost PP_PATH远程文件包含攻击" name_zh_TW="PhotoPost PP_PATH遠程文件包含攻擊" ruleid="20665" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序NetAngel木马通信" name_en_US="Backdoor/Trojan NetAngel Communication " name_zh_CN="木马后门程序NetAngel木马通信" name_zh_TW="木馬後門程序NetAngel木馬通信" ruleid="40720" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Tagger LE PHP代码注入执行攻击" name_en_US="Tagger LE PHP Code Injection" name_zh_CN="Tagger LE PHP代码注入执行攻击" name_zh_TW="Tagger LE PHP代碼注入執行攻擊" ruleid="20664" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Peep木马通信" name_en_US="Backdoor/Trojan Peep Communication " name_zh_CN="木马后门程序Peep木马通信" name_zh_TW="木馬後門程序Peep木馬通信" ruleid="40721" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft IIS newdsn.exe脚本漏洞扫描探测" name_en_US="Microsoft IIS newdsn.exe Script Vulnerability Detection" name_zh_CN="Microsoft IIS newdsn.exe脚本漏洞扫描探测" name_zh_TW="Microsoft IIS newdsn.exe腳本漏洞掃描探測" ruleid="40278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Mithril木马通信" name_en_US="Backdoor/Trojan Mithril Communication " name_zh_CN="木马后门程序Mithril木马通信" name_zh_TW="木馬後門程序Mithril木馬通信" ruleid="40704" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序FallingStar木马通信" name_en_US="Backdoor/Trojan FallingStar Communication " name_zh_CN="木马后门程序FallingStar木马通信" name_zh_TW="木馬後門程序FallingStar木馬通信" ruleid="40722" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159542" module="0" name="Microsoft IIS 4.0 异常编码请求" name_en_US="Microsoft IIS 4.0 Abnormal Encoding Request" name_zh_CN="Microsoft IIS 4.0 异常编码请求" name_zh_TW="Microsoft IIS 4.0 異常編碼請求" ruleid="40273" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834570" module="0" name="ARP协议MAC地址欺骗攻击" name_en_US="ARP Protocl MAC Address Spoofing" name_zh_CN="ARP协议MAC地址欺骗攻击" name_zh_TW="ARP協議MAC地址欺騙攻擊" ruleid="40688" visible="true" />
			<rule action=" db  screen " enabled="true" group="69271622" module="0" name="Web服务执行getdrvs.exe程序" name_en_US="Web Service getdrvs.exe Program Execution " name_zh_CN="Web服务执行getdrvs.exe程序" name_zh_TW="Web服務執行getdrvs.exe程序" ruleid="40274" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序DAGGER通信" name_en_US="Backdoor/Trojan DAGGER Communication " name_zh_CN="木马后门程序DAGGER通信" name_zh_TW="木馬後門程序DAGGER通信" ruleid="40687" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体六间房连接" name_en_US="Online Streaming Media 6.cn Connect" name_zh_CN="在线流媒体六间房连接" name_zh_TW="在線流媒體六間房連接" ruleid="50239" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序BITS木马通信" name_en_US="Backdoor/Trojan BITS Communication " name_zh_CN="木马后门程序BITS木马通信" name_zh_TW="木馬後門程序BITS木馬通信" ruleid="40686" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏劲舞团用户登录" name_en_US="Online Game Jinwutuan User Login" name_zh_CN="网络游戏劲舞团用户登录" name_zh_TW="網絡遊戲勁舞團用戶登錄" ruleid="50237" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体Qvod网络连接" name_en_US="Online Streaming Media Qvod Network Connect" name_zh_CN="在线流媒体Qvod网络连接" name_zh_TW="在線流媒體Qvod網絡連接" ruleid="50236" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件财富证券用户登录" name_en_US="Stock Market Analtsis Software Fortune Securities User Login" name_zh_CN="股票行情分析操作软件财富证券用户登录" name_zh_TW="股票行情分析操作軟件財富證券用戶登錄" ruleid="50234" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="远航游戏大厅用户登录" name_en_US="Yuanhang Games Hall User Login " name_zh_CN="远航游戏大厅用户登录" name_zh_TW="遠航遊戲大廳用戶登錄" ruleid="50233" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.BG蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.BG" name_zh_CN="SMTP服务发送Mydoom.BG蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.BG蠕蟲病毒郵件" ruleid="40685" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件指南针用户登录" name_en_US="Stock Market Analtsis Software Compass User Login" name_zh_CN="股票行情分析操作软件指南针用户登录" name_zh_TW="股票行情分析操作軟件指南針用戶登錄" ruleid="50231" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件飞狐交易师用户登录" name_en_US="Stock Market Analtsis Software Feihu Trading Division User Login" name_zh_CN="股票行情分析操作软件飞狐交易师用户登录" name_zh_TW="股票行情分析操作軟件飛狐交易師用戶登錄" ruleid="50230" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.BK@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.BK@mm" name_zh_CN="SMTP服务发送W32.Beagle.BK@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.BK@mm蠕蟲病毒郵件" ruleid="40684" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.AX蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AX" name_zh_CN="SMTP服务发送Mydoom.AX蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AX蠕蟲病毒郵件" ruleid="40683" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Big Brother bb-replog.sh脚本漏洞扫描利用" name_en_US="Big Brother bb-replog.sh Script Vulnerability Detection" name_zh_CN="Big Brother bb-replog.sh脚本漏洞扫描利用" name_zh_TW="Big Brother bb-replog.sh腳本漏洞掃描利用" ruleid="30375" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序冬日之恋通信" name_en_US="Backdoor/Trojan WinterLove Communication " name_zh_CN="木马后门程序冬日之恋通信" name_zh_TW="木馬後門程序冬日之戀通信" ruleid="40698" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Spook 5.8木马通信" name_en_US="Backdoor/Trojan Spook 5.8 Communication " name_zh_CN="木马后门程序Spook 5.8木马通信" name_zh_TW="木馬後門程序Spook 5.8木馬通信" ruleid="40699" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.AZ@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AZ@mm" name_zh_CN="SMTP服务发送W32.Beagle.AZ@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AZ@mm蠕蟲病毒郵件" ruleid="40681" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Executor木马通信" name_en_US="Backdoor/Trojan Executor Communication " name_zh_CN="木马后门程序Executor木马通信" name_zh_TW="木馬後門程序Executor木馬通信" ruleid="40690" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Wow23木马通信" name_en_US="Backdoor/Trojan Wow23 Communication " name_zh_CN="木马后门程序Wow23木马通信" name_zh_TW="木馬後門程序Wow23木馬通信" ruleid="40691" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834522" module="0" name="ARP协议MAC地址请求回应淹没拒绝服务攻击" name_en_US="ARP Protocol MAC Address Request Flood Denial of Service" name_zh_CN="ARP协议MAC地址请求回应淹没拒绝服务攻击" name_zh_TW="ARP協議MAC地址請求回應淹沒拒絕服務攻擊" ruleid="40692" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Salga.B蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Salga.B" name_zh_CN="SMTP服务发送W32.Salga.B蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Salga.B蠕蟲病毒郵件" ruleid="40680" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序寿鼠 1.1木马通信" name_en_US="Backdoor/Trojan Shoushu 1.1 Communication " name_zh_CN="木马后门程序寿鼠 1.1木马通信" name_zh_TW="木馬後門程序壽鼠 1.1木馬通信" ruleid="40694" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序寿鼠 1.0木马通信" name_en_US="Backdoor/Trojan Shoushu 1.0 Communication " name_zh_CN="木马后门程序寿鼠 1.0木马通信" name_zh_TW="木馬後門程序壽鼠 1.0木馬通信" ruleid="40695" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序网络公牛木马通信" name_en_US="Backdoor/Trojan Netbull Communication " name_zh_CN="木马后门程序网络公牛木马通信" name_zh_TW="木馬後門程序網絡公牛木馬通信" ruleid="40696" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序MagicLink木马通信" name_en_US="Backdoor/Trojan MagicLink Communication " name_zh_CN="木马后门程序MagicLink木马通信" name_zh_TW="木馬後門程序MagicLink木馬通信" ruleid="40697" visible="true" />
			<rule action=" db  screen " enabled="true" group="211820598" module="0" name="DNS服务区信息传输请求操作" name_en_US="DNS Service Zone Information Transmission Request" name_zh_CN="DNS服务区信息传输请求操作" name_zh_TW="DNS服務區信息傳輸請求操作" ruleid="30033" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序AOL ADMIN木马通信" name_en_US="Backdoor/Trojan AOL ADMIN Communication " name_zh_CN="木马后门程序AOL ADMIN木马通信" name_zh_TW="木馬後門程序AOL ADMIN木馬通信" ruleid="40471" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Asylum木马通信" name_en_US="Backdoor/Trojan  Asylum Communication " name_zh_CN="木马后门程序Asylum木马通信" name_zh_TW="木馬後門程序Asylum木馬通信" ruleid="40472" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808886" module="0" name="FINGER服务查询敏感用户" name_en_US="FINGER Service Inquirie Sensitive User" name_zh_CN="FINGER服务查询敏感用户" name_zh_TW="FINGER服務查詢敏感用戶" ruleid="30030" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Backage木马通信" name_en_US="Backdoor/Trojan Backage Communication " name_zh_CN="木马后门程序Backage木马通信" name_zh_TW="木馬後門程序Backage木馬通信" ruleid="40474" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BACKDOOR木马通信" name_en_US="Backdoor/Trojan BACKDOOR Communication " name_zh_CN="木马后门程序BACKDOOR木马通信" name_zh_TW="木馬後門程序BACKDOOR木馬通信" ruleid="40475" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Balsitix木马通信" name_en_US="Backdoor/Trojan Balsitix Communication " name_zh_CN="木马后门程序Balsitix木马通信" name_zh_TW="木馬後門程序Balsitix木馬通信" ruleid="40476" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="Traceroute UDP探测网络拓扑操作" name_en_US="Traceroute UDP Network Topology Detection" name_zh_CN="Traceroute UDP探测网络拓扑操作" name_zh_TW="Traceroute UDP探測網絡拓撲操作" ruleid="30034" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BDDT木马通信" name_en_US="Backdoor/Trojan BDDT Communication " name_zh_CN="木马后门程序BDDT木马通信" name_zh_TW="木馬後門程序BDDT木馬通信" ruleid="40478" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Bigorna木马通信" name_en_US="Backdoor/Trojan Bigorna Communication " name_zh_CN="木马后门程序Bigorna木马通信" name_zh_TW="木馬後門程序Bigorna木馬通信" ruleid="40479" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840694" module="0" name="漏洞扫描器ISS Scanner PING操作" name_en_US="Vulnerability Scanner ISS PING Operation" name_zh_CN="漏洞扫描器ISS Scanner PING操作" name_zh_TW="漏洞掃描器ISS Scanner PING操作" ruleid="30039" visible="false" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="网络工具CyberKit PING操作" name_en_US="Network Tool CyberKit PING Operation" name_zh_CN="网络工具CyberKit PING操作" name_zh_TW="網絡工具CyberKit PING操作" ruleid="30038" visible="false" />
			<rule action=" db  screen " enabled="true" group="203424847" module="0" name="网络蠕虫Santy.C搜索目标主机" name_en_US="Worm Santy.C Searching Target Host" name_zh_CN="网络蠕虫Santy.C搜索目标主机" name_zh_TW="網絡蠕蟲Santy.C搜索目標主機" ruleid="40676" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424847" module="0" name="网络蠕虫Santy.A攻击目标主机" name_en_US="Worm Santy.A Attacking Target Host" name_zh_CN="网络蠕虫Santy.A攻击目标主机" name_zh_TW="網絡蠕蟲Santy.A攻擊目標主機" ruleid="40677" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Atak.G蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Atak.G" name_zh_CN="SMTP服务发送W32.Atak.G蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Atak.G蠕蟲病毒郵件" ruleid="40674" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Erkez.D蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Erkez.D" name_zh_CN="SMTP服务发送W32.Erkez.D蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Erkez.D蠕蟲病毒郵件" ruleid="40675" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498570" module="0" name="SMTP服务发送VBS.Junkmail蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with VBS.Junkmail" name_zh_CN="SMTP服务发送VBS.Junkmail蠕虫病毒邮件" name_zh_TW="SMTP服務發送VBS.Junkmail蠕蟲病毒郵件" ruleid="40672" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Atak.F蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Atak.F" name_zh_CN="SMTP服务发送W32.Atak.F蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Atak.F蠕蟲病毒郵件" ruleid="40673" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498570" module="0" name="SMTP服务发送W32.Maslan.C蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Maslan.C" name_zh_CN="SMTP服务发送W32.Maslan.C蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Maslan.C蠕蟲病毒郵件" ruleid="40670" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Acid Battery木马通信" name_en_US="Backdoor/Trojan Acid Battery Communication " name_zh_CN="木马后门程序Acid Battery木马通信" name_zh_TW="木馬後門程序Acid Battery木馬通信" ruleid="40671" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.AI蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AI" name_zh_CN="SMTP服务发送Mydoom.AI蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AI蠕蟲病毒郵件" ruleid="40678" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.AL蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AL" name_zh_CN="SMTP服务发送Mydoom.AL蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AL蠕蟲病毒郵件" ruleid="40679" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行中国招商银行个人专业版用户登录" name_en_US="Internet Banking China Merchants Bank Personal Professional Version User Login" name_zh_CN="网上银行中国招商银行个人专业版用户登录" name_zh_TW="網上銀行中國招商銀行個人專業版用戶登錄" ruleid="50309" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Lava-Lava用户登录（HTTPS）" name_en_US="Instant Messaging Tool Lava-Lava User Login（HTTPS）" name_zh_CN="即时通信工具Lava-Lava用户登录（HTTPS）" name_zh_TW="即時通信工具Lava-Lava用戶登錄（HTTPS）" ruleid="50308" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle@mm" name_zh_CN="SMTP服务发送W32.Beagle@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle@mm蠕蟲病毒郵件" ruleid="40461" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="水浒棋牌游戏用户登录" name_en_US="Card Games shuihu User Login" name_zh_CN="水浒棋牌游戏用户登录" name_zh_TW="水浒棋牌遊戲用戶登錄" ruleid="50303" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具慧聪发发用户登录" name_en_US="Instant Messaging Tool Huicongfafa User Login" name_zh_CN="即时通信工具慧聪发发用户登录" name_zh_TW="即時通信工具慧聰發發用戶登錄" ruleid="50302" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具阿里旺旺文件传输通信" name_en_US="Instant Messaging Tool aliwangwang File Transfer Attempt" name_zh_CN="即时通信工具阿里旺旺文件传输通信" name_zh_TW="即時通信工具阿裏旺旺文件傳輸通信" ruleid="50301" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Lava-Lava用户登录（UDP）" name_en_US="Instant Messaging Tool Lava-Lava User Login（UDP）" name_zh_CN="即时通信工具Lava-Lava用户登录（UDP）" name_zh_TW="即時通信工具Lava-Lava用戶登錄（UDP）" ruleid="50307" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具中国移动飞信用户登录" name_en_US="Instant Messaging Tool China Mobile Feition User Login" name_zh_CN="即时通信工具中国移动飞信用户登录" name_zh_TW="即時通信工具中國移動飛信用戶登錄" ruleid="50306" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 缓冲区溢出漏洞(CVE-2011-2456)" name_en_US="Adobe Flash Player Buffer Overflow Vulnerability(CVE-2011-2456)" name_zh_CN="Adobe Flash Player 缓冲区溢出漏洞(CVE-2011-2456)" name_zh_TW="Adobe Flash Player 緩沖區溢出漏洞(CVE-2011-2456)" ruleid="21322" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="唐人游游戏用户登录" name_en_US="Tangrenyou Games User Login" name_zh_CN="唐人游游戏用户登录" name_zh_TW="唐人遊遊戲用戶登錄" ruleid="50304" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Satans木马通信" name_en_US="Backdoor/Trojan Satans Communication " name_zh_CN="木马后门程序Satans木马通信" name_zh_TW="木馬後門程序Satans木馬通信" ruleid="40584" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Scarab木马通信" name_en_US="Backdoor/Trojan Scarab Communication " name_zh_CN="木马后门程序Scarab木马通信" name_zh_TW="木馬後門程序Scarab木馬通信" ruleid="40585" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080683" module="0" name="Microsoft SQL Server 2000 Resolution服务远程栈缓冲区溢出攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service Remote Stack Buffer Overflow" name_zh_CN="Microsoft SQL Server 2000 Resolution服务远程栈缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務遠程棧緩沖區溢出攻擊" ruleid="20151" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序SchoolBus木马通信" name_en_US="Backdoor/Trojan SchoolBus Communication " name_zh_CN="木马后门程序SchoolBus木马通信" name_zh_TW="木馬後門程序SchoolBus木馬通信" ruleid="40587" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Revenger木马通信" name_en_US="Backdoor/Trojan Revenger Communication " name_zh_CN="木马后门程序Revenger木马通信" name_zh_TW="木馬後門程序Revenger木馬通信" ruleid="40580" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序The Ripper木马通信" name_en_US="Backdoor/Trojan The Ripper Communication " name_zh_CN="木马后门程序The Ripper木马通信" name_zh_TW="木馬後門程序The Ripper木馬通信" ruleid="40581" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Ruler木马通信" name_en_US="Backdoor/Trojan Ruler Communication " name_zh_CN="木马后门程序Ruler木马通信" name_zh_TW="木馬後門程序Ruler木馬通信" ruleid="40582" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序RUX木马通信" name_en_US="Backdoor/Trojan RUX Communication " name_zh_CN="木马后门程序RUX木马通信" name_zh_TW="木馬後門程序RUX木馬通信" ruleid="40583" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序TCC木马通信" name_en_US="Backdoor/Trojan TCC Communication " name_zh_CN="木马后门程序TCC木马通信" name_zh_TW="木馬後門程序TCC木馬通信" ruleid="40588" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序The Flu木马通信" name_en_US="Backdoor/Trojan The Flu Communication " name_zh_CN="木马后门程序The Flu木马通信" name_zh_TW="木馬後門程序The Flu木馬通信" ruleid="40589" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="System Center Operations Manager Web Console XSS漏洞(MS13-003)" name_en_US="System Center Operations Manager Web Console XSS Vulnerability(MS13-003)" name_zh_CN="System Center Operations Manager Web Console XSS漏洞(MS13-003)" name_zh_TW="System Center Operations Manager Web Console XSS漏洞(MS13-003)" ruleid="22618" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="WordPress Asset-Manager PHP 文件上传漏洞" name_en_US="WordPress Asset-Manager PHP File Upload Vulnerability" name_zh_CN="WordPress Asset-Manager PHP 文件上传漏洞" name_zh_TW="WordPress Asset-Manager PHP 文件上傳漏洞" ruleid="22619" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Asynchronous NULL Object Access远程代码执行漏洞(MS12-052)(CVE-2012-2521)" name_en_US="Microsoft IE Asynchronous NULL Object Access Remote Code Execution Vulnerability(MS12-052)(CVE-2012-2521)" name_zh_CN="Microsoft IE Asynchronous NULL Object Access远程代码执行漏洞(MS12-052)(CVE-2012-2521)" name_zh_TW="Microsoft IE Asynchronous NULL Object Access遠程代碼執行漏洞(MS12-052)(CVE-2012-2521)" ruleid="22348" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE Virtual Function Table Corruption远程代码执行漏洞(MS12-052)(CVE-2012-2522)" name_en_US="Microsoft IE Virtual Function Table Corruption Remote Code Execution Vulnerability(MS12-052)(CVE-2012-2522)" name_zh_CN="Microsoft IE Virtual Function Table Corruption远程代码执行漏洞(MS12-052)(CVE-2012-2522)" name_zh_TW="Microsoft IE Virtual Function Table Corruption遠程代碼執行漏洞(MS12-052)(CVE-2012-2522)" ruleid="22349" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Windows Networking Components远程管理协议堆溢出漏洞(MS12-054)(CVE-2012-1852)" name_en_US="Windows Networking Components Remote Administration Protocol Heap Overflow Vulnerability(MS12-054)(CVE-2012-1852)" name_zh_CN="Windows Networking Components远程管理协议堆溢出漏洞(MS12-054)(CVE-2012-1852)" name_zh_TW="Windows Networking Components遠程管理協議堆溢出漏洞(MS12-054)(CVE-2012-1852)" ruleid="22346" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Windows Networking Components远程管理协议栈溢出漏洞(MS12-054)(CVE-2012-1853)" name_en_US="Windows Networking Components Remote Administration Protocol Stack Overflow Vulnerability(MS12-054)(CVE-2012-1853)" name_zh_CN="Windows Networking Components远程管理协议栈溢出漏洞(MS12-054)(CVE-2012-1853)" name_zh_TW="Windows Networking Components遠程管理協議棧溢出漏洞(MS12-054)(CVE-2012-1853)" ruleid="22347" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Windows Networking Components远程管理协议拒绝服务漏洞(MS12-054)(CVE-2012-1850)" name_en_US="Windows Networking Components Remote Administration Protocol Denial of Service Vulnerability(MS12-054)(CVE-2012-1850)" name_zh_CN="Windows Networking Components远程管理协议拒绝服务漏洞(MS12-054)(CVE-2012-1850)" name_zh_TW="Windows Networking Components遠程管理協議拒絕服務漏洞(MS12-054)(CVE-2012-1850)" ruleid="22344" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422507" module="0" name="Windows Networking Components Print Spooler服务格式化串漏洞(MS12-054)(CVE-2012-1851)" name_en_US="Windows Networking Components Print Spooler Service Format String Vulnerability(MS12-054)(CVE-2012-1851)" name_zh_CN="Windows Networking Components Print Spooler服务格式化串漏洞(MS12-054)(CVE-2012-1851)" name_zh_TW="Windows Networking Components Print Spooler服務格式化串漏洞(MS12-054)(CVE-2012-1851)" ruleid="22345" visible="false" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="华为路由器Http Server溢出漏洞" name_en_US="Huawei Router Http Server Overflow Vulnerability" name_zh_CN="华为路由器Http Server溢出漏洞" name_zh_TW="華爲路由器Http Server溢出漏洞" ruleid="22342" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE Layout内存破坏漏洞(MS12-052)(CVE-2012-1526)" name_en_US="Microsoft IE Layout Memory Corruption Vulnerability(MS12-052)(CVE-2012-1526)" name_zh_CN="Microsoft IE Layout内存破坏漏洞(MS12-052)(CVE-2012-1526)" name_zh_TW="Microsoft IE Layout內存破壞漏洞(MS12-052)(CVE-2012-1526)" ruleid="22343" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="Symantec Messaging Gateway任意文件下载漏洞" name_en_US="Symantec Messaging Gateway 9.5 Log File Download Vulnerability" name_zh_CN="Symantec Messaging Gateway任意文件下载漏洞" name_zh_TW="Symantec Messaging Gateway任意文件下載漏洞" ruleid="22616" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080683" module="0" name="Microsoft SQL Server 2000 Resolution服务远程堆缓冲区溢出攻击" name_en_US="Microsoft SQL Server 2000 Resolution Service Remote Heap Buffer Overflow" name_zh_CN="Microsoft SQL Server 2000 Resolution服务远程堆缓冲区溢出攻击" name_zh_TW="Microsoft SQL Server 2000 Resolution服務遠程堆緩沖區溢出攻擊" ruleid="20150" visible="true" />
			<rule action=" db  screen " enabled="true" group="69271622" module="0" name="Web服务执行root.exe程序" name_en_US="Web Service root.exe Program Execution" name_zh_CN="Web服务执行root.exe程序" name_zh_TW="Web服務執行root.exe程序" ruleid="40468" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Inzae.B蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Inzae.B" name_zh_CN="SMTP服务发送W32.Inzae.B蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Inzae.B蠕蟲病毒郵件" ruleid="40665" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680342" module="0" name="Windows系统远程管理工具PCAnywhere会话启动请求" name_en_US="Windows Remote Management Tool PCAnywhere Session Launch Request" name_zh_CN="Windows系统远程管理工具PCAnywhere会话启动请求" name_zh_TW="Windows系統遠程管理工具PCAnywhere會話啓動請求" ruleid="50011" visible="false" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Inzae.A蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Inzae.A" name_zh_CN="SMTP服务发送W32.Inzae.A蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Inzae.A蠕蟲病毒郵件" ruleid="40664" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具联合证券-易发活动" name_en_US="Securities Analyzing/Trading Software  HuaTai United Securities United Pro-prone Activity" name_zh_CN="证券分析交易工具联合证券-易发活动" name_zh_TW="證券分析交易工具聯合證券-易發活動" ruleid="51011" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具中投证券-卓越I1活动" name_en_US="Securities Analyzing/Trading Software  China Jianyin Investment Securities-Zhuoyue Edition I Activity" name_zh_CN="证券分析交易工具中投证券-卓越I1活动" name_zh_TW="證券分析交易工具中投證券-卓越I1活動" ruleid="51012" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具中投证券-卓越II活动" name_en_US="Securities Analyzing/Trading Software  China Jianyin Investment Securities-Zhuoyue Edition II Activity" name_zh_CN="证券分析交易工具中投证券-卓越II活动" name_zh_TW="證券分析交易工具中投證券-卓越II活動" ruleid="51013" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具安信证券交易I活动" name_en_US="Securities Analyzing/Trading Software Essence Securities Transaction I Activity" name_zh_CN="证券分析交易工具安信证券交易I活动" name_zh_TW="證券分析交易工具安信證券交易I活動" ruleid="51014" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Salga.A蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Salga.A" name_zh_CN="SMTP服务发送W32.Salga.A蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Salga.A蠕蟲病毒郵件" ruleid="40667" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序流光广外女生木马建立连接" name_en_US="Backdoor/Trojan Gwgirl Connection " name_zh_CN="木马后门程序流光广外女生木马建立连接" name_zh_TW="木馬後門程序流光廣外女生木馬建立連接" ruleid="40666" visible="true" />
			<rule action=" db  screen " enabled="true" group="99876943" module="0" name="木马后门程序Mydoom.AH/AI/AJ/AK及W32.Bofra蠕虫传播" name_en_US="Backdoor/Trojan Windows Mydoom.AH/AI/AJ/AK and W32.Bofra Propagation" name_zh_CN="木马后门程序Mydoom.AH/AI/AJ/AK及W32.Bofra蠕虫传播" name_zh_TW="木馬後門程序Mydoom.AH/AI/AJ/AK及W32.Bofra蠕蟲傳播" ruleid="40661" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="AlienForm2 alienform.cgi脚本漏洞遍历目录" name_en_US="Directory Traversal via AlienForm2 alienform.cgi Script Vulnerability" name_zh_CN="AlienForm2 alienform.cgi脚本漏洞遍历目录" name_zh_TW="AlienForm2 alienform.cgi腳本漏洞遍曆目錄" ruleid="30393" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="CA BrightStor ARCserve Backup远程缓冲区溢出及内存破坏攻击" name_en_US="CA BrightStor ARCserve Backup Remote Buffer Overflow and Memory Corruption Attack" name_zh_CN="CA BrightStor ARCserve Backup远程缓冲区溢出及内存破坏攻击" name_zh_TW="CA BrightStor ARCserve Backup遠程緩沖區溢出及內存破壞攻擊" ruleid="20915" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Invision Power Board le 3.3.4 unserialize() PHP代码执行漏洞" name_en_US="Invision Power Board le 3.3.4 unserialize () PHP Code Execution Vulnerability" name_zh_CN="Invision Power Board le 3.3.4 unserialize() PHP代码执行漏洞" name_zh_TW="Invision Power Board le 3.3.4 unserialize() PHP代碼執行漏洞" ruleid="22506" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft IE CFormElement释放后重用漏洞(MS12-071) (CVE-2012-1538)" name_en_US="Microsoft Internet Explorer CFormElement Use After Free Vulnerability(MS12-071) (CVE-2012-1538)" name_zh_CN="Microsoft IE CFormElement释放后重用漏洞(MS12-071) (CVE-2012-1538)" name_zh_TW="Microsoft IE CFormElement釋放後重用漏洞(MS12-071) (CVE-2012-1538)" ruleid="22507" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Scrutinizer默认密码安全限制绕过漏洞" name_en_US="Scrutinizer Default Password Security Restriction Bypass Vulnerability" name_zh_CN="Scrutinizer默认密码安全限制绕过漏洞" name_zh_TW="Scrutinizer默認密碼安全限制繞過漏洞" ruleid="22500" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Webmin /file/show.cgi远程命令执行漏洞" name_en_US="Webmin / file / show.cgi Remote Command Execution Vulnerability" name_zh_CN="Webmin /file/show.cgi远程命令执行漏洞" name_zh_TW="Webmin /file/show.cgi遠程命令執行漏洞" ruleid="22501" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="三星Kies2.3.2.12054_20版本多个漏洞" name_en_US="Samsung Kies 2.3.2.12054_20 Multiple Vulnerabilities" name_zh_CN="三星Kies2.3.2.12054_20版本多个漏洞" name_zh_TW="三星Kies2.3.2.12054_20版本多個漏洞" ruleid="22502" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="VLC媒体播放器axvlc.dll ActiveX控件内存破坏攻击" name_en_US="VLC axvlc.dll ActiveX Memory Corruption Attack" name_zh_CN="VLC媒体播放器axvlc.dll ActiveX控件内存破坏攻击" name_zh_TW="VLC媒體播放器axvlc.dll ActiveX控件內存破壞攻擊" ruleid="20914" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Sober.I@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Sober.I@mm" name_zh_CN="SMTP服务发送W32.Sober.I@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.I@mm蠕蟲病毒郵件" ruleid="40662" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050474" module="0" name="Microsoft IE CTreePos释放后重用漏洞(MS12-071) (CVE-2012-1539)" name_en_US="Microsoft Internet Explorer CTreePos Use After Free Vulnerability(MS12-071) (CVE-2012-1539)" name_zh_CN="Microsoft IE CTreePos释放后重用漏洞(MS12-071) (CVE-2012-1539)" name_zh_TW="Microsoft IE CTreePos釋放後重用漏洞(MS12-071) (CVE-2012-1539)" ruleid="22508" visible="true" />
			<rule action=" db  screen " enabled="false" group="99615019" module="0" name="Cisco Security Agent for Windows SMB报文远程栈溢出攻击" name_en_US="Cisco Security Agent for Windows SMB Remote Buffer Overflow Attack" name_zh_CN="Cisco Security Agent for Windows SMB报文远程栈溢出攻击" name_zh_TW="Cisco Security Agent for Windows SMB報文遠程棧溢出攻擊" ruleid="20917" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows柯达图像查看器远程代码执行攻击(MS07-055)" name_en_US="Microsoft Windows Kodak Image Viewer Remote Code Execution (MS07-055)" name_zh_CN="Microsoft Windows柯达图像查看器远程代码执行攻击(MS07-055)" name_zh_TW="Microsoft Windows柯達圖像查看器遠程代碼執行攻擊(MS07-055)" ruleid="20911" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft IE FirefoxURL协议处理器命令注入攻击" name_en_US="Microsoft IE FirefoxURL Protocol Handler Command Injection" name_zh_CN="Microsoft IE FirefoxURL协议处理器命令注入攻击" name_zh_TW="Microsoft IE FirefoxURL協議處理器命令注入攻擊" ruleid="20910" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Apple QuickTime RTSP响应头远程栈溢出攻击" name_en_US="Apple QuickTime RTSP Response Header Remote Stack Overflow" name_zh_CN="Apple QuickTime RTSP响应头远程栈溢出攻击" name_zh_TW="Apple QuickTime RTSP響應頭遠程棧溢出攻擊" ruleid="20913" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="paFileDB pafiledb_constants.php远程文件包含攻击" name_en_US="paFileDB pafiledb_constants.php Remote File Inclusion" name_zh_CN="paFileDB pafiledb_constants.php远程文件包含攻击" name_zh_TW="paFileDB pafiledb_constants.php遠程文件包含攻擊" ruleid="20726" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="0" name="P2P文件共享工具WinMX文件传输" name_en_US="P2P File Sharing Tool WinMX File Transmission" name_zh_CN="P2P文件共享工具WinMX文件传输" name_zh_TW="P2P文件共享工具WinMX文件傳輸" ruleid="50163" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="0" name="P2P文件共享工具DC++通信" name_en_US="P2P File Sharing Tool DC++ Communication" name_zh_CN="P2P文件共享工具DC++通信" name_zh_TW="P2P文件共享工具DC++通信" ruleid="50162" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="0" name="P2P文件共享工具Kazaa用户登录" name_en_US="P2P File Sharing Tool Kazaa User Login" name_zh_CN="P2P文件共享工具Kazaa用户登录" name_zh_TW="P2P文件共享工具Kazaa用戶登錄" ruleid="50161" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="0" name="P2P文件共享工具Ares通信" name_en_US="P2P File Sharing Tool Ares Communication" name_zh_CN="P2P文件共享工具Ares通信" name_zh_TW="P2P文件共享工具Ares通信" ruleid="50160" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger解析服务器地址通信" name_en_US="Instant Messaging tool Yahoo Messenger Server Address Parsing Attempt" name_zh_CN="即时通信工具Yahoo Messenger解析服务器地址通信" name_zh_TW="即時通信工具Yahoo Messenger解析服務器地址通信" ruleid="50167" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Pager解析升级站点地址通信" name_en_US="Instant Messaging Tool Yahoo Pager Upgrade Website Address Parsing Attempt" name_zh_CN="即时通信工具Yahoo Pager解析升级站点地址通信" name_zh_TW="即時通信工具Yahoo Pager解析升級站點地址通信" ruleid="50166" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger解析升级站点地址通信" name_en_US="Instant Messaging Tool  Yahoo Messenger Upgrade Website Address Parsing Attempt" name_zh_CN="即时通信工具Yahoo Messenger解析升级站点地址通信" name_zh_TW="即時通信工具Yahoo Messenger解析升級站點地址通信" ruleid="50165" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger文件传输通信" name_en_US="Instant Messaging Tool Yahoo Messenger File Transmission Attempt" name_zh_CN="即时通信工具Yahoo Messenger文件传输通信" name_zh_TW="即時通信工具Yahoo Messenger文件傳輸通信" ruleid="50164" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具ICQ文件传输通信" name_en_US="Instant Messaging Tool ICQ File Transmission Attempt" name_zh_CN="即时通信工具ICQ文件传输通信" name_zh_TW="即時通信工具ICQ文件傳輸通信" ruleid="50169" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN Messenger解析服务器地址通信" name_en_US="Instant Messaging Tool MSN Messenger Server Address Parsing Attempt" name_zh_CN="即时通信工具MSN Messenger解析服务器地址通信" name_zh_TW="即時通信工具MSN Messenger解析服務器地址通信" ruleid="50168" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="ICMPV6 Neighbor Advertisement操作检测" name_en_US="ICMPV6 Neighbor Advertisement Operation Check" name_zh_CN="ICMPV6 Neighbor Advertisement操作检测" name_zh_TW="ICMPV6 Neighbor Advertisement操作檢測" ruleid="41015" visible="false" />
			<rule action=" db  screen " enabled="true" group="68223065" module="0" name="ICMPV6 Neighbor Solicitation操作检测" name_en_US="ICMPV6 Neighbor Solicitation Operation Check" name_zh_CN="ICMPV6 Neighbor Solicitation操作检测" name_zh_TW="ICMPV6 Neighbor Solicitation操作檢測" ruleid="41014" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具证券之星活动" name_en_US="Securities Analyzing/Trading Software Securities Star Activity" name_zh_CN="证券分析交易工具证券之星活动" name_zh_TW="證券分析交易工具證券之星活動" ruleid="50440" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="虚拟局域网组建软件 VNN SoftEther 通信行为" name_en_US="VLAN Formation Software VNN SoftEther Communiction" name_zh_CN="虚拟局域网组建软件 VNN SoftEther 通信行为" name_zh_TW="虛擬局域網組建軟件 VNN SoftEther 通信行爲" ruleid="50441" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitTorrent解析种子文件" name_en_US="P2P File Sharing Tool BitTorrent Resolving Seeds Files" name_zh_CN="P2P文件共享工具BitTorrent解析种子文件" name_zh_TW="P2P文件共享工具BitTorrent解析種子文件" ruleid="50334" visible="true" />
			<rule action=" db  screen " enabled="true" group="222298415" module="0" name="Oracle 9i/10g XML组件存储过程缓冲区溢出攻击" name_en_US="Oracle 9i/10g XML Component Stored Procedure Buffer Overflow" name_zh_CN="Oracle 9i/10g XML组件存储过程缓冲区溢出攻击" name_zh_TW="Oracle 9i/10g XML組件存儲過程緩沖區溢出攻擊" ruleid="20569" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Joomla提升权限漏洞" name_en_US="Joomla upgrade privileges vulnerability" name_zh_CN="Joomla提升权限漏洞" name_zh_TW="Joomla提升權限漏洞" ruleid="21668" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Oracle Java SE JRE CORBA子组件远程安全漏洞(CVE-2012-0506)" name_en_US="Oracle Java SE Remote Java Runtime Environment Vulnerability(CVE-2012-0506)" name_zh_CN="Oracle Java SE JRE CORBA子组件远程安全漏洞(CVE-2012-0506)" name_zh_TW="Oracle Java SE JRE CORBA子組件遠程安全漏洞(CVE-2012-0506)" ruleid="21669" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="虚拟局域网组建软件 HTTP-Tunnel 通信行为" name_en_US="VLAN Formation Software HTTP-Tunnel Communiction" name_zh_CN="虚拟局域网组建软件 HTTP-Tunnel 通信行为" name_zh_TW="虛擬局域網組建軟件 HTTP-Tunnel 通信行爲" ruleid="50443" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288601" module="1" name="网游&quot;大冲锋&quot;用户登陆" name_en_US="Online Game &quot;Large Charge&quot; Network Communication Behavior" name_zh_CN="网游&quot;大冲锋&quot;用户登陆" name_zh_TW="網遊&quot;大沖鋒&quot;用戶登陸" ruleid="50444" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="SQL Server可疑数据库文件下载" name_en_US="SQL Server Suspicious File Download" name_zh_CN="SQL Server可疑数据库文件下载" name_zh_TW="SQL Server可疑數據庫文件下載" ruleid="50445" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Veritas NetBackup卷管理器守护程序溢出攻击" name_en_US="Veritas NetBackup Volume Manager Daemon Buffer Overflow" name_zh_CN="Veritas NetBackup卷管理器守护程序溢出攻击" name_zh_TW="Veritas NetBackup卷管理器守護程序溢出攻擊" ruleid="20564" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425866" module="0" name="Web服务&quot;../字串突破CGI脚本过滤访问上级目录" name_en_US="Web Service CGI Script Filter Bypass And Upper Directory Access via &quot;../ String" name_zh_CN="Web服务&quot;../字串突破CGI脚本过滤访问上级目录" name_zh_TW="Web服務&quot;../字串突破CGI腳本過濾訪問上級目錄" ruleid="40348" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Web MSN文件传送通信" name_en_US="Instant Messaging Tool Web MSN Sending File Attempt" name_zh_CN="即时通信工具Web MSN文件传送通信" name_zh_TW="即時通信工具Web MSN文件傳送通信" ruleid="50446" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE CStyleSheet对象内存破坏攻击" name_en_US="Microsoft Internet Explorer Object Of CStyleSheet Memory Corruption Attack" name_zh_CN="Microsoft IE CStyleSheet对象内存破坏攻击" name_zh_TW="Microsoft IE CStyleSheet對象內存破壞攻擊" ruleid="21068" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="Microsoft IE toStaticHTML跨域信息泄露漏洞" name_en_US="Microsoft IE toStaticHTML Cross-Domain Information Disclosure Vulnerability" name_zh_CN="Microsoft IE toStaticHTML跨域信息泄露漏洞" name_zh_TW="Microsoft IE toStaticHTML跨域信息泄露漏洞" ruleid="21069" visible="true" />
			<rule action=" db  screen " enabled="true" group="135268395" module="0" name="nginx文件路径处理远程命令执行漏洞" name_en_US="nginx File Path Processing Remote Command Execution Vulnerability" name_zh_CN="nginx文件路径处理远程命令执行漏洞" name_zh_TW="nginx文件路徑處理遠程命令執行漏洞" ruleid="21066" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="QQ旋风下载链接处理缓冲区溢出攻击" name_en_US="QQ XuanFeng Download Link Handling Buffer Overflow Attack" name_zh_CN="QQ旋风下载链接处理缓冲区溢出攻击" name_zh_TW="QQ旋風下載鏈接處理緩沖區溢出攻擊" ruleid="21064" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Windows Mail STAT命令回应值处理漏洞" name_en_US="Windows Mail STAT Command Response Value Processing Vulnerability" name_zh_CN="Windows Mail STAT命令回应值处理漏洞" name_zh_TW="Windows Mail STAT命令回應值處理漏洞" ruleid="21065" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows nsum.exe服务远程栈溢出漏洞（MS10-025）" name_en_US="Microsoft Windows nsum.exe Service Remote Stack Overflow(MS10-025)" name_zh_CN="Microsoft Windows nsum.exe服务远程栈溢出漏洞（MS10-025）" name_zh_TW="Microsoft Windows nsum.exe服務遠程棧溢出漏洞（MS10-025）" ruleid="21062" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint Server /_layouts/help.aspx跨站脚本漏洞(CVE-2010-0817)" name_en_US="Microsoft SharePoint Server /_layouts/help.aspx Cross-Site Scripting Vulnerability(CVE-2010-0817)" name_zh_CN="Microsoft SharePoint Server /_layouts/help.aspx跨站脚本漏洞(CVE-2010-0817)" name_zh_TW="Microsoft SharePoint Server /_layouts/help.aspx跨站腳本漏洞(CVE-2010-0817)" ruleid="21063" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE处理属性远程代码执行攻击" name_en_US="Microsoft IE Handle Attributes Remote Code Execution Attack" name_zh_CN="Microsoft IE处理属性远程代码执行攻击" name_zh_TW="Microsoft IE處理屬性遠程代碼執行攻擊" ruleid="21060" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425838" module="0" name="phpBB Style Changer\Viewer远程SQL注入攻击" name_en_US="phpBB Style Changer\Viewer Remote SQL Injection" name_zh_CN="phpBB Style Changer\Viewer远程SQL注入攻击" name_zh_TW="phpBB Style Changer\Viewer遠程SQL注入攻擊" ruleid="20567" visible="true" />
			<rule action=" db  screen " enabled="true" group="233865242" module="0" name="IGMP_拒绝服务" name_en_US="IGMP_ denial of service" name_zh_CN="IGMP_拒绝服务" name_zh_TW="IGMP_拒絕服務" ruleid="10331" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647514" module="0" name="Microsoft .NET Framework Open Data Protocol &quot;Replace()&quot;拒绝服务漏洞(MS13-007)(CVE-2013-0005)" name_en_US="Microsoft .NET Framework Open Data Protocol &quot;Replace()&quot; Denial of Service Vulnerability(MS13-007)(CVE-2013-0005)" name_zh_CN="Microsoft .NET Framework Open Data Protocol &quot;Replace()&quot;拒绝服务漏洞(MS13-007)(CVE-2013-0005)" name_zh_TW="Microsoft .NET Framework Open Data Protocol &quot;Replace()&quot;拒絕服務漏洞(MS13-007)(CVE-2013-0005)" ruleid="10337" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Randshop header.inc.php远程执行命令攻击" name_en_US="Randshop header.inc.php Remote Code Execution" name_zh_CN="Randshop header.inc.php远程执行命令攻击" name_zh_TW="Randshop header.inc.php遠程執行命令攻擊" ruleid="20629" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="IA WebMail Server超长GET请求远程缓冲区溢出攻击" name_en_US="IA WebMail Server Over-long GET Request Remote Buffer Overflow" name_zh_CN="IA WebMail Server超长GET请求远程缓冲区溢出攻击" name_zh_TW="IA WebMail Server超長GET請求遠程緩沖區溢出攻擊" ruleid="20628" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="ShixxNOTE 6.net远程缓冲区溢出攻击" name_en_US="ShixxNOTE 6.net Remote Buffer Overflow" name_zh_CN="ShixxNOTE 6.net远程缓冲区溢出攻击" name_zh_TW="ShixxNOTE 6.net遠程緩沖區溢出攻擊" ruleid="20627" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206311" module="0" name="SoftCart SoftCart.exe CGI远程缓冲区溢出攻击" name_en_US="SoftCart SoftCart.exe CGI Remote Buffer Overflow" name_zh_CN="SoftCart SoftCart.exe CGI远程缓冲区溢出攻击" name_zh_TW="SoftCart SoftCart.exe CGI遠程緩沖區溢出攻擊" ruleid="20626" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159518" module="0" name="Microsoft Windows SSL远程拒绝服务漏洞(MS04-011)" name_en_US="Microsoft Windows SSL Remote DoS Vulnerability(MS04-011)" name_zh_CN="Microsoft Windows SSL远程拒绝服务漏洞(MS04-011)" name_zh_TW="Microsoft Windows SSL遠程拒絕服務漏洞(MS04-011)" ruleid="10338" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Novell ZENworks Desktop/Server管理远程缓冲区溢出攻击" name_en_US="Novell ZENworks Desktop/Server Management Remote Buffer Overflow" name_zh_CN="Novell ZENworks Desktop/Server管理远程缓冲区溢出攻击" name_zh_TW="Novell ZENworks Desktop/Server管理遠程緩沖區溢出攻擊" ruleid="20624" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723879" module="0" name="BomberClone错误消息处理远程缓冲区溢出攻击" name_en_US="BomberClone Error Message Handling Remote Buffer Overflow" name_zh_CN="BomberClone错误消息处理远程缓冲区溢出攻击" name_zh_TW="BomberClone錯誤消息處理遠程緩沖區溢出攻擊" ruleid="20623" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="BakBone NetVault远程内存破坏执行指令攻击" name_en_US="BakBone NetVault Remote Memory Corruption Code Execution" name_zh_CN="BakBone NetVault远程内存破坏执行指令攻击" name_zh_TW="BakBone NetVault遠程內存破壞執行指令攻擊" ruleid="20622" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="BadBlue ext.dll mfcisapicommand远程缓冲区溢出攻击" name_en_US="BadBlue ext.dll mfcisapicommand Remote Buffer Overflow" name_zh_CN="BadBlue ext.dll mfcisapicommand远程缓冲区溢出攻击" name_zh_TW="BadBlue ext.dll mfcisapicommand遠程緩沖區溢出攻擊" ruleid="20621" visible="true" />
			<rule action=" db  screen " enabled="false" group="99615015" module="0" name="Sybase EAServer WebConsol远程缓冲区溢出攻击" name_en_US="Sybase EAServer WebConsol Remote Buffer Overflow" name_zh_CN="Sybase EAServer WebConsol远程缓冲区溢出攻击" name_zh_TW="Sybase EAServer WebConsol遠程緩沖區溢出攻擊" ruleid="20620" visible="false" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)(CVE-2011-0978)" name_en_US="Microsoft Excel Heap-Based Buffer Overflow Vulnerability (MS11-021)(CVE-2011-0978)" name_zh_CN="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)(CVE-2011-0978)" name_zh_TW="Microsoft Excel堆緩沖區溢出漏洞(MS11-021)(CVE-2011-0978)" ruleid="21208" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel Office Art远程代码执行漏洞(MS11-021)" name_en_US="Microsoft Excel Office Art Remote Code Execution Vulnerability (MS11-021)" name_zh_CN="Microsoft Excel Office Art远程代码执行漏洞(MS11-021)" name_zh_TW="Microsoft Excel Office Art遠程代碼執行漏洞(MS11-021)" ruleid="21209" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player &quot;SWF&quot;文件远程内存破坏漏洞" name_en_US="Adobe Flash Player &quot;SWF&quot; File Remote Memory Corruption Vulnerability" name_zh_CN="Adobe Flash Player &quot;SWF&quot;文件远程内存破坏漏洞" name_zh_TW="Adobe Flash Player &quot;SWF&quot;文件遠程內存破壞漏洞" ruleid="21202" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Integard Home和Pro HTTP请求远程栈溢出漏洞" name_en_US="Integard Home and Pro HTTP Request Remote Stack Overflow Vulnerabilities" name_zh_CN="Integard Home和Pro HTTP请求远程栈溢出漏洞" name_zh_TW="Integard Home和Pro HTTP請求遠程棧溢出漏洞" ruleid="21203" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Media 远程代码执行漏洞" name_en_US="Vulnerabilities in Windows Media Could Allow Remote Code Execution" name_zh_CN="Windows Media 远程代码执行漏洞" name_zh_TW="Windows Media 遠程代碼執行漏洞" ruleid="21200" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Media &quot;.dvr-ms&quot; 远程代码执行漏洞" name_en_US="Windows Media &quot;.dvr-ms&quot; Remote Code Execution Vulnerability" name_zh_CN="Windows Media &quot;.dvr-ms&quot; 远程代码执行漏洞" name_zh_TW="Windows Media &quot;.dvr-ms&quot; 遠程代碼執行漏洞" ruleid="21201" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615022" module="0" name="Microsoft Excel缓冲区分配整数溢出远程代码执行漏洞(MS11-021)" name_en_US="Microsoft Excel Buffer Allocation Integer Overflow Remote Code Execution Vulnerability (MS11-021)" name_zh_CN="Microsoft Excel缓冲区分配整数溢出远程代码执行漏洞(MS11-021)" name_zh_TW="Microsoft Excel緩沖區分配整數溢出遠程代碼執行漏洞(MS11-021)" ruleid="21206" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)(CVE-2011-0098)" name_en_US="Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution(MS11-021)(CVE-2011-0098)" name_zh_CN="Microsoft Excel堆缓冲区溢出漏洞(MS11-021)(CVE-2011-0098)" name_zh_TW="Microsoft Excel堆緩沖區溢出漏洞(MS11-021)(CVE-2011-0098)" ruleid="21207" visible="true" />
			<rule action=" db  screen " enabled="false" group="223346987" module="0" name="ActFax Server多个远程缓冲区溢出漏洞" name_en_US="ActFax Server Multiple Remote Buffer Overflow Vulnerabilities" name_zh_CN="ActFax Server多个远程缓冲区溢出漏洞" name_zh_TW="ActFax Server多個遠程緩沖區溢出漏洞" ruleid="21204" visible="false" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="WordPad Text Converters 远程代码执行漏洞" name_en_US="Vulnerability in WordPad Text Converters Could Allow Remote Code Execution" name_zh_CN="WordPad Text Converters 远程代码执行漏洞" name_zh_TW="WordPad Text Converters 遠程代碼執行漏洞" ruleid="21205" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Groove不安全库加载漏洞(MS11-016)" name_en_US="Microsoft Groove Insecure Library Loading Vulnerability (MS11-016)" name_zh_CN="Microsoft Groove不安全库加载漏洞(MS11-016)" name_zh_TW="Microsoft Groove不安全庫加載漏洞(MS11-016)" ruleid="21198" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows Remote Desktop Client不安全库加载漏洞（MS11-017)" name_en_US="Microsoft Windows Remote Desktop Client Insecure Library Loading Vulnerability (MS11-017)" name_zh_CN="Microsoft Windows Remote Desktop Client不安全库加载漏洞（MS11-017)" name_zh_TW="Microsoft Windows Remote Desktop Client不安全庫加載漏洞（MS11-017)" ruleid="21199" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0088)" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege(CVE-2011-0088)" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0088)" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞(CVE-2011-0088)" ruleid="21192" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kerberos 权限提升漏洞(MS11-031)" name_en_US="Microsoft Windows Kerberos Encryption Standard Spoofing Vulnerability (MS11-031)" name_zh_CN="Microsoft Windows Kerberos 权限提升漏洞(MS11-031)" name_zh_TW="Microsoft Windows Kerberos 權限提升漏洞(MS11-031)" ruleid="21193" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0089)" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege(CVE-2011-0089)" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0089)" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞(CVE-2011-0089)" ruleid="21190" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0087)" name_en_US="Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Elevation of Privilege(CVE-2011-0087)" name_zh_CN="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地权限提升漏洞(CVE-2011-0087)" name_zh_TW="Microsoft Windows Kernel &quot;Win32k.sys&quot;本地權限提升漏洞(CVE-2011-0087)" ruleid="21191" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="淘宝阿里旺旺ActiveX控件远程栈溢出漏洞" name_en_US="Taobaowangwang ActiveX Control Remote Stack Overflow" name_zh_CN="淘宝阿里旺旺ActiveX控件远程栈溢出漏洞" name_zh_TW="淘寶阿裏旺旺ActiveX控件遠程棧溢出漏洞" ruleid="21194" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft 恶意软件保护引擎允许特权提升漏洞(CVE-2011-0037)" name_en_US="Microsoft Malware Protection Engine Local Privilege Escalation Vulnerability(CVE-2011-0037)" name_zh_CN="Microsoft 恶意软件保护引擎允许特权提升漏洞(CVE-2011-0037)" name_zh_TW="Microsoft 惡意軟件保護引擎允許特權提升漏洞(CVE-2011-0037)" ruleid="21195" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Alt-N WebAdmin USER参数远程溢出攻击" name_en_US="Alt-N WebAdmin USER Parameter Remote Buffer Overflow" name_zh_CN="Alt-N WebAdmin USER参数远程溢出攻击" name_zh_TW="Alt-N WebAdmin USER參數遠程溢出攻擊" ruleid="20821" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft IIS 5.1远程缓冲区溢出攻击(MS07-041)" name_en_US="Microsoft IIS 5.1 Remote Buffer Overflow (MS07-041)" name_zh_CN="Microsoft IIS 5.1远程缓冲区溢出攻击(MS07-041)" name_zh_TW="Microsoft IIS 5.1遠程緩沖區溢出攻擊(MS07-041)" ruleid="20820" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Apple Quicktime RTSP畸形URL处理缓冲区溢出攻击" name_en_US="Apple Quicktime RTSP Malformed URL Processing Buffer Overflow" name_zh_CN="Apple Quicktime RTSP畸形URL处理缓冲区溢出攻击" name_zh_TW="Apple Quicktime RTSP畸形URL處理緩沖區溢出攻擊" ruleid="20823" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Apple iTunes m3u/pls播放列表远程缓冲区溢出攻击" name_en_US="Apple iTunes m3u/pls Playlist Remote Buffer Overflow" name_zh_CN="Apple iTunes m3u/pls播放列表远程缓冲区溢出攻击" name_zh_TW="Apple iTunes m3u/pls播放列表遠程緩沖區溢出攻擊" ruleid="20822" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472619" module="0" name="FTP服务器MKD命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server MKD Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器MKD命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器MKD命令超長參數遠程緩沖區溢出攻擊" ruleid="20824" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="NCTsoft NCTAudioFile2 ActiveX控件远程栈溢出攻击" name_en_US="NCTsoft NCTAudioFile2 ActiveX Control Remote Stack Overflow" name_zh_CN="NCTsoft NCTAudioFile2 ActiveX控件远程栈溢出攻击" name_zh_TW="NCTsoft NCTAudioFile2 ActiveX控件遠程棧溢出攻擊" ruleid="20827" visible="true" />
			<rule action=" db  screen " enabled="true" group="208666923" module="0" name="SSH Server Key Exchange Algorithm String缓冲区溢出攻击" name_en_US="SSH Server Key Exchange Algorithm String Buffer Overflow" name_zh_CN="SSH Server Key Exchange Algorithm String缓冲区溢出攻击" name_zh_TW="SSH Server Key Exchange Algorithm String緩沖區溢出攻擊" ruleid="20829" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="火狐浏览器location.QueryInterface()代码执行攻击" name_en_US="Firefox location.QueryInterface() Code Execution" name_zh_CN="火狐浏览器location.QueryInterface()代码执行攻击" name_zh_TW="火狐浏覽器location.QueryInterface()代碼執行攻擊" ruleid="20828" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="ActivePDF服务器报文处理远程堆溢出攻击" name_en_US="ActivePDF Server Message Handling Remote Heap Overflow" name_zh_CN="ActivePDF服务器报文处理远程堆溢出攻击" name_zh_TW="ActivePDF服務器報文處理遠程堆溢出攻擊" ruleid="20959" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHP-Nuke marks.php CGI脚本远程SQL注入攻击" name_en_US="PHP-Nuke marks.php CGI Script Remote SQL Injection" name_zh_CN="PHP-Nuke marks.php CGI脚本远程SQL注入攻击" name_zh_TW="PHP-Nuke marks.php CGI腳本遠程SQL注入攻擊" ruleid="20489" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL CREATE FUNCTION功能mysql.func表插入恶意函数库攻击" name_en_US="MySQL CREATE FUNCTION mysql.func Table Malicious Library Injection" name_zh_CN="MySQL CREATE FUNCTION功能mysql.func表插入恶意函数库攻击" name_zh_TW="MySQL CREATE FUNCTION功能mysql.func表插入惡意函數庫攻擊" ruleid="20488" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="雅虎Music Jukebox mediagrid.dll ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Music Jukebox mediagrid.dll ActiveX Control Remote Stack Overflow" name_zh_CN="雅虎Music Jukebox mediagrid.dll ActiveX控件远程栈溢出攻击" name_zh_TW="雅虎Music Jukebox mediagrid.dll ActiveX控件遠程棧溢出攻擊" ruleid="20951" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Apple QuickTime QTPlugin.ocx ActiveX控件栈溢出攻击" name_en_US="Apple QuickTime QTPlugin.ocx ActiveX Control Stack Overflow" name_zh_CN="Apple QuickTime QTPlugin.ocx ActiveX控件栈溢出攻击" name_zh_TW="Apple QuickTime QTPlugin.ocx ActiveX控件棧溢出攻擊" ruleid="20950" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="VBulletin misc.php CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via VBulletin misc.php CGI Script Vulnerability" name_zh_CN="VBulletin misc.php CGI脚本漏洞远程执行命令" name_zh_TW="VBulletin misc.php CGI腳本漏洞遠程執行命令" ruleid="20481" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="VBulletin forumdisplay.php CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via VBulletin forumdisplay.php CGI Script Vulnerability" name_zh_CN="VBulletin forumdisplay.php CGI脚本漏洞远程执行命令" name_zh_TW="VBulletin forumdisplay.php CGI腳本漏洞遠程執行命令" ruleid="20480" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="MySQL CREATE FUNCTION功能libc函数库插入执行代码攻击" name_en_US="MySQL CREATE FUNCTION libc Insert Operation Code Execution" name_zh_CN="MySQL CREATE FUNCTION功能libc函数库插入执行代码攻击" name_zh_TW="MySQL CREATE FUNCTION功能libc函數庫插入執行代碼攻擊" ruleid="20487" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Ipswitch IMAP超长EXAMINE命令参数缓冲区溢出攻击" name_en_US="Ipswitch IMAP Over-long EXAMINE Command Parameter Buffer Overflow" name_zh_CN="Ipswitch IMAP超长EXAMINE命令参数缓冲区溢出攻击" name_zh_TW="Ipswitch IMAP超長EXAMINE命令參數緩沖區溢出攻擊" ruleid="20486" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316975" module="0" name="UBB.threads editpost.php CGI脚本远程SQL注入攻击" name_en_US="UBB.threads editpost.php CGI Script Remote SQL Injection" name_zh_CN="UBB.threads editpost.php CGI脚本远程SQL注入攻击" name_zh_TW="UBB.threads editpost.php CGI腳本遠程SQL注入攻擊" ruleid="20485" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="WEBInsta Limbo CGI脚本远程执行命令攻击" name_en_US="Remote Code Execution via WEBInsta Limbo CGI Script" name_zh_CN="WEBInsta Limbo CGI脚本远程执行命令攻击" name_zh_TW="WEBInsta Limbo CGI腳本遠程執行命令攻擊" ruleid="20484" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Publisher内存破坏漏洞(MS11-091,CVE-2011-3412)" name_en_US="Microsoft Publisher Memory Corruption Vulnerability(MS11-091,CVE-2011-3412)" name_zh_CN="Microsoft Publisher内存破坏漏洞(MS11-091,CVE-2011-3412)" name_zh_TW="Microsoft Publisher內存破壞漏洞(MS11-091,CVE-2011-3412)" ruleid="21336" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft PowerPoint OfficeArt Shape 远程代码执行漏洞(MS11-094,CVE-2011-3413)" name_en_US="Microsoft PowerPoint OfficeArt Shape RCE Vulnerability(MS11-094,,CVE-2011-3413)" name_zh_CN="Microsoft PowerPoint OfficeArt Shape 远程代码执行漏洞(MS11-094,CVE-2011-3413)" name_zh_TW="Microsoft PowerPoint OfficeArt Shape 遠程代碼執行漏洞(MS11-094,CVE-2011-3413)" ruleid="21337" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="CdomainFree whois_raw.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CdomainFree whois_raw.cgi Script Vulnerability" name_zh_CN="CdomainFree whois_raw.cgi脚本漏洞远程执行命令" name_zh_TW="CdomainFree whois_raw.cgi腳本漏洞遠程執行命令" ruleid="20139" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="WebSPIRS webspirs.cgi脚本漏洞扫描探测" name_en_US="WebSPIRS webspirs.cgi Script Vulnerability Detection" name_zh_CN="WebSPIRS webspirs.cgi脚本漏洞扫描探测" name_zh_TW="WebSPIRS webspirs.cgi腳本漏洞掃描探測" ruleid="20138" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Media Player和Media Center &quot;.dvr-ms&quot;文件处理远程代码执行漏洞(MS11-092,CVE-2011-3401)" name_en_US="Microsoft  Windows Media  Player and Media Center &quot;.dvr-ms&quot; File Processing Remote Code Execution Vulnerability(MS11-092,CVE-2011-3401)" name_zh_CN="Microsoft Windows Media Player和Media Center &quot;.dvr-ms&quot;文件处理远程代码执行漏洞(MS11-092,CVE-2011-3401)" name_zh_TW="Microsoft Windows Media Player和Media Center &quot;.dvr-ms&quot;文件處理遠程代碼執行漏洞(MS11-092,CVE-2011-3401)" ruleid="21332" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows OLE32远程代码执行漏洞(MS11-093,CVE-2011-3400)" name_en_US="Microsoft Windows OLE32 Remote Code Execution Vulnerability(MS11-093,CVE-2011-3400)" name_zh_CN="Microsoft Windows OLE32远程代码执行漏洞(MS11-093,CVE-2011-3400)" name_zh_TW="Microsoft Windows OLE32遠程代碼執行漏洞(MS11-093,CVE-2011-3400)" ruleid="21333" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Time组件远程代码执行漏洞(MS11-090,CVE-2011-3397)" name_en_US="Microsoft Windows Time Module Remote Code Execution Vulnerability(MS11-090,CVE-2011-3397)" name_zh_CN="Microsoft Windows Time组件远程代码执行漏洞(MS11-090,CVE-2011-3397)" name_zh_TW="Microsoft Windows Time組件遠程代碼執行漏洞(MS11-090,CVE-2011-3397)" ruleid="21330" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Publisher无效指针远程代码执行漏洞(MS11-091,CVE-2011-3411)" name_en_US="Microsoft Publisher Invalid Pointer Remote Code Execution Vulnerability(MS11-091,CVE-2011-3411)" name_zh_CN="Microsoft Publisher无效指针远程代码执行漏洞(MS11-091,CVE-2011-3411)" name_zh_TW="Microsoft Publisher無效指針遠程代碼執行漏洞(MS11-091,CVE-2011-3411)" ruleid="21331" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="IGMP碎片包IGMPNuke拒绝服务攻击" name_en_US="IGMP Fragmented Packet IGMPNuke Denial of Service" name_zh_CN="IGMP碎片包IGMPNuke拒绝服务攻击" name_zh_TW="IGMP碎片包IGMPNuke拒絕服務攻擊" ruleid="10026" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159531" module="0" name="Microsoft IIS 4.0/5.0 Unicode解码漏洞攻击" name_en_US="Microsoft IIS 4.0/5.0 Unicode Decoding Vulnerability" name_zh_CN="Microsoft IIS 4.0/5.0 Unicode解码漏洞攻击" name_zh_TW="Microsoft IIS 4.0/5.0 Unicode解碼漏洞攻擊" ruleid="20132" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="NCSA test-cgi脚本获得目录内容列表" name_en_US="NCSA test-cgi Script Remote Directory Traversal" name_zh_CN="NCSA test-cgi脚本获得目录内容列表" name_zh_TW="NCSA test-cgi腳本獲得目錄內容列表" ruleid="20131" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316967" module="0" name="IRIX pfdispaly.cgi脚本漏洞远程执行命令或读取文件" name_en_US="IRIX pfdispaly.cgi Script Remote Code Execution or File Reading" name_zh_CN="IRIX pfdispaly.cgi脚本漏洞远程执行命令或读取文件" name_zh_TW="IRIX pfdispaly.cgi腳本漏洞遠程執行命令或讀取文件" ruleid="20137" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel远程代码执行漏洞(MS11-096,CVE-2011-3403)" name_en_US="Microsoft Excel Remote Code Execution Vulnerability(MS11-096,CVE-2011-3403)" name_zh_CN="Microsoft Excel远程代码执行漏洞(MS11-096,CVE-2011-3403)" name_zh_TW="Microsoft Excel遠程代碼執行漏洞(MS11-096,CVE-2011-3403)" ruleid="21338" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Publisher数组索引越界导致的远程代码执行漏洞(MS11-091,CVE-2011-3410)" name_en_US="Microsoft Publisher Array Index Out of Bounds Remote Code Execution Vulnerability(MS11-091,CVE-2011-3410 )" name_zh_CN="Microsoft Publisher数组索引越界导致的远程代码执行漏洞(MS11-091,CVE-2011-3410)" name_zh_TW="Microsoft Publisher數組索引越界導致的遠程代碼執行漏洞(MS11-091,CVE-2011-3410)" ruleid="21339" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHPCMS V9版poster_click函数SQL注入漏洞" name_en_US="PHPCMS V9 poster_click function SQL injection vulnerability" name_zh_CN="PHPCMS V9版poster_click函数SQL注入漏洞" name_zh_TW="PHPCMS V9版poster_click函數SQL注入漏洞" ruleid="22607" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="WordPress 1.2 及其以前版本文件上传漏洞" name_en_US="WordPress 1.2 File Upload Vulnerability" name_zh_CN="WordPress 1.2 及其以前版本文件上传漏洞" name_zh_TW="WordPress 1.2 及其以前版本文件上傳漏洞" ruleid="22606" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序Doly客户连接变种1" name_en_US="Backdoor/Trojan Doly Client Connection Variant 1" name_zh_CN="木马后门程序Doly客户连接变种1" name_zh_TW="木馬後門程序Doly客戶連接變種1" ruleid="40952" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS bdir.htr脚本漏洞浏览目录" name_en_US="Microsoft IIS bdir.htr Script Directory Browsing Vulnerability" name_zh_CN="Microsoft IIS bdir.htr脚本漏洞浏览目录" name_zh_TW="Microsoft IIS bdir.htr腳本漏洞浏覽目錄" ruleid="30488" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159542" module="0" name="Windows Apache服务器请求路径处理遍历目录攻击" name_en_US="Windows Apache Server Request Path Handling Directory Traversal" name_zh_CN="Windows Apache服务器请求路径处理遍历目录攻击" name_zh_TW="Windows Apache服務器請求路徑處理遍曆目錄攻擊" ruleid="30489" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316990" module="0" name="phpMyAdmin export.php脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via phpMyAdmin export.php Script Vulnerability" name_zh_CN="phpMyAdmin export.php脚本漏洞遍历目录攻击" name_zh_TW="phpMyAdmin export.php腳本漏洞遍曆目錄攻擊" ruleid="30482" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft Windows ASN.1库BER解码堆破坏漏洞扫描探测" name_en_US="Microsoft Windows ASN.1 Base BER Decoding Heap Corruption Vulnerability Detection" name_zh_CN="Microsoft Windows ASN.1库BER解码堆破坏漏洞扫描探测" name_zh_TW="Microsoft Windows ASN.1庫BER解碼堆破壞漏洞掃描探測" ruleid="30483" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315070" module="0" name="QuikStore Shopping Cart quikstore.cgi脚本漏洞远程读取任意文件" name_en_US="Remote Arbitrary File Reading via QuikStore Shopping Cart quikstore.cgi Script Vulnerability" name_zh_CN="QuikStore Shopping Cart quikstore.cgi脚本漏洞远程读取任意文件" name_zh_TW="QuikStore Shopping Cart quikstore.cgi腳本漏洞遠程讀取任意文件" ruleid="30480" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="MDaemon form2raw.cgi脚本漏洞扫描探测" name_en_US="MDaemon form2raw.cgi Script Vulnerability Detection" name_zh_CN="MDaemon form2raw.cgi脚本漏洞扫描探测" name_zh_TW="MDaemon form2raw.cgi腳本漏洞掃描探測" ruleid="30481" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Microsoft IIS ISM.DLL文件名截断漏洞获取文件内容攻击" name_en_US="File Content Disclosure via Microsoft IIS ISM.DLL Filename Truncation Vulnerability" name_zh_CN="Microsoft IIS ISM.DLL文件名截断漏洞获取文件内容攻击" name_zh_TW="Microsoft IIS ISM.DLL文件名截斷漏洞獲取文件內容攻擊" ruleid="30487" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680342" module="0" name="Netopia Timbuktu Pro用户名/口令明文传输" name_en_US="Netopia Timbuktu Pro Username/Passowrd Transmission in Plain Text" name_zh_CN="Netopia Timbuktu Pro用户名/口令明文传输" name_zh_TW="Netopia Timbuktu Pro用戶名/口令明文傳輸" ruleid="40065" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Oracle 9i XDB HTTP认证远程缓冲区溢出攻击" name_en_US="Oracle 9i XDB HTTP Authentication Remote Buffer Overflow" name_zh_CN="Oracle 9i XDB HTTP认证远程缓冲区溢出攻击" name_zh_TW="Oracle 9i XDB HTTP認證遠程緩沖區溢出攻擊" ruleid="20555" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="WebCalendar activity_log.php CGI脚本SQL注入攻击" name_en_US="WebCalendar activity_log.php CGI Script SQL Injection" name_zh_CN="WebCalendar activity_log.php CGI脚本SQL注入攻击" name_zh_TW="WebCalendar activity_log.php CGI腳本SQL注入攻擊" ruleid="20554" visible="true" />
			<rule action=" db  screen " enabled="true" group="144705562" module="0" name="BIND 9动态更新报文远程拒绝服务攻击" name_en_US="BIND 9 Dynamic Update Packet Remote Denial of Service" name_zh_CN="BIND 9动态更新报文远程拒绝服务攻击" name_zh_TW="BIND 9動態更新報文遠程拒絕服務攻擊" ruleid="10248" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Abe Timmerman zml.cgi脚本漏洞遍历目录" name_en_US="Directory Traversal via Abe Timmerman zml.cgi Script Vulnerability" name_zh_CN="Abe Timmerman zml.cgi脚本漏洞遍历目录" name_zh_TW="Abe Timmerman zml.cgi腳本漏洞遍曆目錄" ruleid="20004" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Mambo globals.php远程文件包含攻击" name_en_US="Mambo globals.php Remote File Inclusion" name_zh_CN="Mambo globals.php远程文件包含攻击" name_zh_TW="Mambo globals.php遠程文件包含攻擊" ruleid="20551" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHP-Nuke query功能SQL注入攻击" name_en_US="PHP-Nuke query function SQL Injection" name_zh_CN="PHP-Nuke query功能SQL注入攻击" name_zh_TW="PHP-Nuke query功能SQL注入攻擊" ruleid="20550" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows MSDTC写任意内存地址攻击" name_en_US="Microsoft Windows MSDTC Arbitrary Memory Address Overwriting" name_zh_CN="Microsoft Windows MSDTC写任意内存地址攻击" name_zh_TW="Microsoft Windows MSDTC寫任意內存地址攻擊" ruleid="20553" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="MailEnable IMAP超长邮箱名W3C日志记录溢出攻击" name_en_US="MailEnable IMAP Over-Long Mailbox Name W3C Log Buffer Overflow" name_zh_CN="MailEnable IMAP超长邮箱名W3C日志记录溢出攻击" name_zh_TW="MailEnable IMAP超長郵箱名W3C日志記錄溢出攻擊" ruleid="20552" visible="true" />
			<rule action=" db  screen " enabled="true" group="99647511" module="0" name="Land拒绝服务攻击" name_en_US="Land Denial of Service Attacks" name_zh_CN="Land拒绝服务攻击" name_zh_TW="Land拒絕服務攻擊" ruleid="10242" visible="true" />
			<rule action=" db  screen " enabled="true" group="82870299" module="0" name="LDAP特定类型请求拒绝服务攻击" name_en_US="LDAP Particular Type Request Denial of Service" name_zh_CN="LDAP特定类型请求拒绝服务攻击" name_zh_TW="LDAP特定類型請求拒絕服務攻擊" ruleid="10240" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="HP Data Protector DtbClsLogin函数远程栈溢出漏洞" name_en_US="HP Data Protector DtbClsLogin Buffer Overflow" name_zh_CN="HP Data Protector DtbClsLogin函数远程栈溢出漏洞" name_zh_TW="HP Data Protector DtbClsLogin函數遠程棧溢出漏洞" ruleid="22600" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpBB signature_bbcode_uid变量远程任意命令执行攻击" name_en_US="phpBB signature_bbcode_uid Variable Remote Arbitrary Command Execution" name_zh_CN="phpBB signature_bbcode_uid变量远程任意命令执行攻击" name_zh_TW="phpBB signature_bbcode_uid變量遠程任意命令執行攻擊" ruleid="20558" visible="true" />
			<rule action=" db  screen " enabled="true" group="137363751" module="0" name="AIX FTP Server远程缓冲区溢出攻击" name_en_US="AIX FTP Server Remote Buffer Overflow" name_zh_CN="AIX FTP Server远程缓冲区溢出攻击" name_zh_TW="AIX FTP Server遠程緩沖區溢出攻擊" ruleid="20009" visible="true" />
			<rule action=" db  screen " enabled="true" group="143655211" module="0" name="IMAP用户认证远程缓冲区溢出攻击" name_en_US="IMAP User Authentication Remote Buffer Overflow" name_zh_CN="IMAP用户认证远程缓冲区溢出攻击" name_zh_TW="IMAP用戶認證遠程緩沖區溢出攻擊" ruleid="20008" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="aBitWhizzy abitwhizzy.php远程目录遍历攻击" name_en_US="aBitWhizzy abitwhizzy.php Remote Directory Traversal" name_zh_CN="aBitWhizzy abitwhizzy.php远程目录遍历攻击" name_zh_TW="aBitWhizzy abitwhizzy.php遠程目錄遍曆攻擊" ruleid="30558" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="Active Directory Federation服务信息泄露攻击" name_en_US="Active Directory Federation Services Information Disclosure Attack" name_zh_CN="Active Directory Federation服务信息泄露攻击" name_zh_TW="Active Directory Federation服務信息泄露攻擊" ruleid="30559" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Novell NetMail Username Authentication 缓冲区溢出漏洞" name_en_US="HTTP: Novell NetMail Username Authentication Buffer Overflow" name_zh_CN="Novell NetMail Username Authentication 缓冲区溢出漏洞" name_zh_TW="Novell NetMail Username Authentication 緩沖區溢出漏洞" ruleid="29248" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="Minis month参数远程目录遍历攻击" name_en_US="Minis month Parameter Remote Directory Traversal" name_zh_CN="Minis month参数远程目录遍历攻击" name_zh_TW="Minis month參數遠程目錄遍曆攻擊" ruleid="30550" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="Fastream NETFile FTP/Web Server远程目录遍历攻击" name_en_US="Fastream NETFile FTP/Web Server Remote Directory Traversal" name_zh_CN="Fastream NETFile FTP/Web Server远程目录遍历攻击" name_zh_TW="Fastream NETFile FTP/Web Server遠程目錄遍曆攻擊" ruleid="30551" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="Nokia SGSN DX200远程SNMP信息攻击" name_en_US="Nokia SGSN DX200 Remote SNMP Request Information Disclosure" name_zh_CN="Nokia SGSN DX200远程SNMP信息攻击" name_zh_TW="Nokia SGSN DX200遠程SNMP信息攻擊" ruleid="30552" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="Nokia Electronic Documentation远程获取目录列表攻击" name_en_US="Nokia Electronic Documentation Remote Directory List Disclosure" name_zh_CN="Nokia Electronic Documentation远程获取目录列表攻击" name_zh_TW="Nokia Electronic Documentation遠程獲取目錄列表攻擊" ruleid="30553" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316985" module="0" name="WEB-INF目录远程获取信息攻击" name_en_US="WEB-INF Directory Remote Information Disclosure" name_zh_CN="WEB-INF目录远程获取信息攻击" name_zh_TW="WEB-INF目錄遠程獲取信息攻擊" ruleid="30554" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="MRTG CGI远程读取任意文件攻击" name_en_US="MRTG CGI Arbitrary Remote File Reading" name_zh_CN="MRTG CGI远程读取任意文件攻击" name_zh_TW="MRTG CGI遠程讀取任意文件攻擊" ruleid="30555" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHP 任意文件本地上传漏洞" name_en_US="HTTP: PHP Arbitrary File Location Upload Vulnerability" name_zh_CN="PHP 任意文件本地上传漏洞" name_zh_TW="PHP 任意文件本地上傳漏洞" ruleid="29240" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Apple CUPS SGI Image Format Decoding imagetops Filter 缓冲区溢出漏洞" name_en_US="HTTP:Apple CUPS SGI Image Format Decoding imagetops Filter Buffer Overflow" name_zh_CN="Apple CUPS SGI Image Format Decoding imagetops Filter 缓冲区溢出漏洞" name_zh_TW="Apple CUPS SGI Image Format Decoding imagetops Filter 緩沖區溢出漏洞" ruleid="29241" visible="true" />
			<rule action=" db  screen " enabled="true" group="142614582" module="0" name="SMTP服务decode帐号存在性探测" name_en_US="SMTP Service decode Account Detection" name_zh_CN="SMTP服务decode帐号存在性探测" name_zh_TW="SMTP服務decode帳號存在性探測" ruleid="40118" visible="true" />
			<rule action=" db  screen " enabled="true" group="142608423" module="0" name="Sendmail 5.x RCPT命令远程执行命令攻击" name_en_US="Sendmail 5.x RCPT Remote Command Execution" name_zh_CN="Sendmail 5.x RCPT命令远程执行命令攻击" name_zh_TW="Sendmail 5.x RCPT命令遠程執行命令攻擊" ruleid="40115" visible="true" />
			<rule action=" db  screen " enabled="true" group="142608423" module="0" name="Sendmail 5.58 DEBUG远程执行命令攻击" name_en_US="Sendmail 5.58 DEBUG Remote Command Execution" name_zh_CN="Sendmail 5.58 DEBUG远程执行命令攻击" name_zh_TW="Sendmail 5.58 DEBUG遠程執行命令攻擊" ruleid="40114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票交易分析工具申银万国神网E通活动" name_en_US="Stock Analyzing/Trading Software  Shenyin Wanguo Shenwang Etong Activity" name_zh_CN="股票交易分析工具申银万国神网E通活动" name_zh_TW="股票交易分析工具申銀萬國神網E通活動" ruleid="50436" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ用户登录（TCP）" name_en_US="Instant Messaging Tool QQ User Login (TCP)" name_zh_CN="即时通信工具QQ用户登录（TCP）" name_zh_TW="即時通信工具QQ用戶登錄（TCP）" ruleid="50076" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体迅雷看看(TCP)连接" name_en_US="Online Streaming Media Thunder kankan   (TCP) Connect" name_zh_CN="在线流媒体迅雷看看(TCP)连接" name_zh_TW="在線流媒體迅雷看看(TCP)連接" ruleid="50228" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体迅雷看看(UDP)连接" name_en_US="Online Streaming Media  (UDP)Thunder kankan Connect" name_zh_CN="在线流媒体迅雷看看(UDP)连接" name_zh_TW="在線流媒體迅雷看看(UDP)連接" ruleid="50229" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通讯工具QQ相关程序数据传输" name_en_US="Insant Messaging Tool QQ Super Tornado File Downloading" name_zh_CN="即时通讯工具QQ相关程序数据传输" name_zh_TW="即時通訊工具QQ相關程序數據傳輸" ruleid="50220" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体播播视频软件连接" name_en_US="Online Streaming media bobo Video Software Connect" name_zh_CN="在线流媒体播播视频软件连接" name_zh_TW="在線流媒體播播視頻軟件連接" ruleid="50222" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件华泰证券和江海证券用户登录" name_en_US="Stock Market Analtsis Software Huatai Securities and Jianghai Securities User Login" name_zh_CN="股票行情分析操作软件华泰证券和江海证券用户登录" name_zh_TW="股票行情分析操作軟件華泰證券和江海證券用戶登錄" ruleid="50223" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体UUSee网络电视连接" name_en_US="Online Streaming MediaUUSee Network TV Connect" name_zh_CN="在线流媒体UUSee网络电视连接" name_zh_TW="在線流媒體UUSee網絡電視連接" ruleid="50224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具阿里旺旺用户登录" name_en_US="Instant Messaging Tool Aliwangwang  Users Login " name_zh_CN="即时通信工具阿里旺旺用户登录" name_zh_TW="即時通信工具阿裏旺旺用戶登錄" ruleid="50226" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序W32.HLLW.Doomjuice网络数据通信" name_en_US="Backdoor/Trojan REGISTERED FREE BACKDOOR DoomJuice file upload attempt" name_zh_CN="木马后门程序W32.HLLW.Doomjuice网络数据通信" name_zh_TW="木馬後門程序W32.HLLW.Doomjuice網絡數據通信" ruleid="40835" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703783" module="0" name="BIND iquery远程缓冲区溢出攻击(TCP)" name_en_US="BIND iquery Remote Buffer Overflow(TCP)" name_zh_CN="BIND iquery远程缓冲区溢出攻击(TCP)" name_zh_TW="BIND iquery遠程緩沖區溢出攻擊(TCP)" ruleid="20313" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="Invision Board ipchat.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Invision Board ipchat.php Script Vulnerability" name_zh_CN="Invision Board ipchat.php脚本漏洞远程执行命令" name_zh_TW="Invision Board ipchat.php腳本漏洞遠程執行命令" ruleid="20311" visible="true" />
			<rule action=" db  screen " enabled="true" group="142606635" module="0" name="Sendmail 8.12 邮件头处理远程缓冲区溢出攻击" name_en_US="Sendmail 8.12 Mail Header Handling Remote Buffer Overflow" name_zh_CN="Sendmail 8.12 邮件头处理远程缓冲区溢出攻击" name_zh_TW="Sendmail 8.12 郵件頭處理遠程緩沖區溢出攻擊" ruleid="20310" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="phping脚本漏洞远程执行命令" name_en_US="Remote Code Execution via phping Script Vulnerability" name_zh_CN="phping脚本漏洞远程执行命令" name_zh_TW="phping腳本漏洞遠程執行命令" ruleid="20317" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472623" module="0" name="FTP服务器长路径名缓冲区溢出攻击" name_en_US="FTP Server Long Path Name Buffer Overflow" name_zh_CN="FTP服务器长路径名缓冲区溢出攻击" name_zh_TW="FTP服務器長路徑名緩沖區溢出攻擊" ruleid="20316" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="Webchat defines.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Webchat defines.php Script Vulnerability" name_zh_CN="Webchat defines.php脚本漏洞远程执行命令" name_zh_TW="Webchat defines.php腳本漏洞遠程執行命令" ruleid="20318" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="NCSA test-cgi脚本漏洞扫描探测" name_en_US="NCSA test-cgi Script Vulnerability Detection" name_zh_CN="NCSA test-cgi脚本漏洞扫描探测" name_zh_TW="NCSA test-cgi腳本漏洞掃描探測" ruleid="30154" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序无赖小子木马通信" name_en_US="Backdoor/Trojan Way2.5 Communication " name_zh_CN="木马后门程序无赖小子木马通信" name_zh_TW="木馬後門程序無賴小子木馬通信" ruleid="40706" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Skunkware view-source脚本漏洞扫描探测" name_en_US="Skunkware view-source Script Vulnerability Detection" name_zh_CN="Skunkware view-source脚本漏洞扫描探测" name_zh_TW="Skunkware view-source腳本漏洞掃描探測" ruleid="30156" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Skunkware view-source脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Skunkware view-source Script Vulnerability" name_zh_CN="Skunkware view-source脚本漏洞远程执行命令" name_zh_TW="Skunkware view-source腳本漏洞遠程執行命令" ruleid="30157" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Microsoft Index Server .htw漏洞远程读取文件" name_en_US="Microsoft Index Server .htw Remote File Reading Vulnerability" name_zh_CN="Microsoft Index Server .htw漏洞远程读取文件" name_zh_TW="Microsoft Index Server .htw漏洞遠程讀取文件" ruleid="30150" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="BNB survey.cgi脚本漏洞扫描探测" name_en_US="BNB survey.cgi Script Vulnerability Detection" name_zh_CN="BNB survey.cgi脚本漏洞扫描探测" name_zh_TW="BNB survey.cgi腳本漏洞掃描探測" ruleid="30152" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="BNBForm bnbform.cgi脚本漏洞扫描探测" name_en_US="BNBForm bnbform.cgi Script Vulnerability Detection" name_zh_CN="BNBForm bnbform.cgi脚本漏洞扫描探测" name_zh_TW="BNBForm bnbform.cgi腳本漏洞掃描探測" ruleid="30153" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="WinZip FileView ActiveX控件远程栈溢出攻击" name_en_US="WinZip FileView ActiveX Control Remote Stack Overflow" name_zh_CN="WinZip FileView ActiveX控件远程栈溢出攻击" name_zh_TW="WinZip FileView ActiveX控件遠程棧溢出攻擊" ruleid="40800" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft MDAC RDS.Dataspace ActiveX控件远程代码执行攻击" name_en_US="Microsoft MDAC RDS.Dataspace ActiveX Control Remote Code Execution" name_zh_CN="Microsoft MDAC RDS.Dataspace ActiveX控件远程代码执行攻击" name_zh_TW="Microsoft MDAC RDS.Dataspace ActiveX控件遠程代碼執行攻擊" ruleid="40803" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE ADODB.Connection对象Execute函数内存破坏攻击" name_en_US="Microsoft IE ADODB.Connection Object Execution Memory Corruption" name_zh_CN="Microsoft IE ADODB.Connection对象Execute函数内存破坏攻击" name_zh_TW="Microsoft IE ADODB.Connection對象Execute函數內存破壞攻擊" ruleid="40802" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="AnyForm AnyForm2脚本漏洞扫描探测" name_en_US="AnyForm AnyForm2 Script Vulnerability Detection" name_zh_CN="AnyForm AnyForm2脚本漏洞扫描探测" name_zh_TW="AnyForm AnyForm2腳本漏洞掃描探測" ruleid="30158" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="IRIX pfdispaly.cgi脚本漏洞扫描探测" name_en_US="IRIX pfdispaly.cgi Script Vulnerability Detection" name_zh_CN="IRIX pfdispaly.cgi脚本漏洞扫描探测" name_zh_TW="IRIX pfdispaly.cgi腳本漏洞掃描探測" ruleid="30159" visible="true" />
			<rule action=" db  screen " enabled="true" group="83888202" module="0" name="DCERPC协议通信数据编码异常" name_en_US="DCERPC Protocol Communication Data Abnormal Encoding" name_zh_CN="DCERPC协议通信数据编码异常" name_zh_TW="DCERPC協議通信數據編碼異常" ruleid="40807" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP Mercury Quality Center ActiveX控件远程栈溢出攻击" name_en_US="HP Mercury Quality Center ActiveX Control Remote Stack Overflow" name_zh_CN="HP Mercury Quality Center ActiveX控件远程栈溢出攻击" name_zh_TW="HP Mercury Quality Center ActiveX控件遠程棧溢出攻擊" ruleid="40806" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序网络神偷木马通信" name_en_US="Backdoor/Trojan NetThief Communication " name_zh_CN="木马后门程序网络神偷木马通信" name_zh_TW="木馬後門程序網絡神偷木馬通信" ruleid="40705" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Cafeini木马通信" name_en_US="Backdoor/Trojan Cafeini Communication " name_zh_CN="木马后门程序Cafeini木马通信" name_zh_TW="木馬後門程序Cafeini木馬通信" ruleid="40489" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="0" name="ICMP子网掩码请求消息" name_en_US="ICMP Netmask Request Message" name_zh_CN="ICMP子网掩码请求消息" name_zh_TW="ICMP子網掩碼請求消息" ruleid="30029" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="Avaya Cajun固件未公开SNMP共同体字符串访问攻击" name_en_US="Avaya Cajun Firmware Undocummented SNMP Community String Access" name_zh_CN="Avaya Cajun固件未公开SNMP共同体字符串访问攻击" name_zh_TW="Avaya Cajun固件未公開SNMP共同體字符串訪問攻擊" ruleid="30556" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Breach Pro木马通信" name_en_US="Backdoor/Trojan Breach Pro Communication " name_zh_CN="木马后门程序Breach Pro木马通信" name_zh_TW="木馬後門程序Breach Pro木馬通信" ruleid="40485" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Breach木马通信" name_en_US="Backdoor/Trojan Breach Communication " name_zh_CN="木马后门程序Breach木马通信" name_zh_TW="木馬後門程序Breach木馬通信" ruleid="40484" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Buschtrommel木马通信" name_en_US="Backdoor/Trojan Buschtrommel Communication " name_zh_CN="木马后门程序Buschtrommel木马通信" name_zh_TW="木馬後門程序Buschtrommel木馬通信" ruleid="40487" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Bugs木马通信" name_en_US="Backdoor/Trojan Bugs Communication " name_zh_CN="木马后门程序Bugs木马通信" name_zh_TW="木馬後門程序Bugs木馬通信" ruleid="40486" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Black Angel木马通信" name_en_US="Backdoor/Trojan Black Angel Communication " name_zh_CN="木马后门程序Black Angel木马通信" name_zh_TW="木馬後門程序Black Angel木馬通信" ruleid="40481" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Bla木马通信" name_en_US="Backdoor/Trojan Bla Communication " name_zh_CN="木马后门程序Bla木马通信" name_zh_TW="木馬後門程序Bla木馬通信" ruleid="40480" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Blazer/Sockets de Troie木马通信" name_en_US="Backdoor/Trojan Blazer/Sockets de Troie Communication " name_zh_CN="木马后门程序Blazer/Sockets de Troie木马通信" name_zh_TW="木馬後門程序Blazer/Sockets de Troie木馬通信" ruleid="40483" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Blade Runner木马通信" name_en_US="Backdoor/Trojan Blade Runner Communication " name_zh_CN="木马后门程序Blade Runner木马通信" name_zh_TW="木馬後門程序Blade Runner木馬通信" ruleid="40482" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.AR/AV/AVV/AU@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AR/AV/AVV/AU@mm" name_zh_CN="SMTP服务发送W32.Beagle.AR/AV/AVV/AU@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AR/AV/AVV/AU@mm蠕蟲病毒郵件" ruleid="40643" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Mexer.E蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Mexer.E" name_zh_CN="SMTP服务发送W32.Mexer.E蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Mexer.E蠕蟲病毒郵件" ruleid="40642" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.AB蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AB" name_zh_CN="SMTP服务发送Mydoom.AB蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AB蠕蟲病毒郵件" ruleid="40641" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.Y蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.Y" name_zh_CN="SMTP服务发送Mydoom.Y蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.Y蠕蟲病毒郵件" ruleid="40640" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="木马后门程序Worm.MSN.funny蠕虫通过MSN传播" name_en_US="Backdoor/Trojan Worm.MSN.funny Propagation via MSN " name_zh_CN="木马后门程序Worm.MSN.funny蠕虫通过MSN传播" name_zh_TW="木馬後門程序Worm.MSN.funny蠕蟲通過MSN傳播" ruleid="40647" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Bagz蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Bagz" name_zh_CN="SMTP服务发送W32.Bagz蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Bagz蠕蟲病毒郵件" ruleid="40646" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Fili蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Fili" name_zh_CN="SMTP服务发送W32.Fili蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Fili蠕蟲病毒郵件" ruleid="40645" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.AC蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AC" name_zh_CN="SMTP服务发送Mydoom.AC蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AC蠕蟲病毒郵件" ruleid="40644" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Netsky.AD@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.AD@mm" name_zh_CN="SMTP服务发送W32.Netsky.AD@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.AD@mm蠕蟲病毒郵件" ruleid="40649" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.AF蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.AF" name_zh_CN="SMTP服务发送Mydoom.AF蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.AF蠕蟲病毒郵件" ruleid="40648" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="网上银行中国兴业银行用户登录" name_en_US="Internet Banking China's Industrial Bank User Login" name_zh_CN="网上银行中国兴业银行用户登录" name_zh_TW="網上銀行中國興業銀行用戶登錄" ruleid="50318" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="RFC1867标准上传文件" name_en_US="RFC1867 File Uploading" name_zh_CN="RFC1867标准上传文件" name_zh_TW="RFC1867標准上傳文件" ruleid="50319" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="PowerPlay ppdscgi.exe脚本漏洞获取信息" name_en_US="Information Disclosure via PowerPlay ppdscgi.exe Script Vulnerability" name_zh_CN="PowerPlay ppdscgi.exe脚本漏洞获取信息" name_zh_TW="PowerPlay ppdscgi.exe腳本漏洞獲取信息" ruleid="40243" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="WINS Service 代码执行漏洞(CVE-2011-1248)" name_en_US="WINS Service Code Execution Vulnerability(CVE-2011-1248)" name_zh_CN="WINS Service 代码执行漏洞(CVE-2011-1248)" name_zh_TW="WINS Service 代碼執行漏洞(CVE-2011-1248)" ruleid="21237" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="IGSS SCADA RMS Report Template Delete Command缓冲区溢出漏洞" name_en_US="IGSS SCADA RMS Report Template Delete Command Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA RMS Report Template Delete Command缓冲区溢出漏洞" name_zh_TW="IGSS SCADA RMS Report Template Delete Command緩沖區溢出漏洞" ruleid="22379" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="IGSS SCADA RMS Report Template Rename Command缓冲区溢出漏洞" name_en_US="IGSS SCADA RMS Report Template Rename Command Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA RMS Report Template Rename Command缓冲区溢出漏洞" name_zh_TW="IGSS SCADA RMS Report Template Rename Command緩沖區溢出漏洞" ruleid="22378" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Adobe Flash Player对象处理远程代码执行漏洞(CVE-2011-0611)" name_en_US="Adobe Flash Player 'SWF' File Remote Memory Corruption Vulnerability(CVE-2011-0611)" name_zh_CN="Adobe Flash Player对象处理远程代码执行漏洞(CVE-2011-0611)" name_zh_TW="Adobe Flash Player對象處理遠程代碼執行漏洞(CVE-2011-0611)" ruleid="21236" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA RenameFile Function缓冲区溢出漏洞" name_en_US="IGSS SCADA RenameFile Function Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA RenameFile Function缓冲区溢出漏洞" name_zh_TW="IGSS SCADA RenameFile Function緩沖區溢出漏洞" ruleid="22372" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA Delete Function缓冲区溢出漏洞" name_en_US="IGSS SCADA Delete Function Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA Delete Function缓冲区溢出漏洞" name_zh_TW="IGSS SCADA Delete Function緩沖區溢出漏洞" ruleid="22371" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA ReadFile Function缓冲区溢出漏洞" name_en_US="IGSS SCADA ReadFile Function Buffer Overflow  Vulnerability" name_zh_CN="IGSS SCADA ReadFile Function缓冲区溢出漏洞" name_zh_TW="IGSS SCADA ReadFile Function緩沖區溢出漏洞" ruleid="22370" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA RMS Report Template WriteFile Command缓冲区溢出漏洞" name_en_US="IGSS SCADA RMS Report Template WriteFile Command Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA RMS Report Template WriteFile Command缓冲区溢出漏洞" name_zh_TW="IGSS SCADA RMS Report Template WriteFile Command緩沖區溢出漏洞" ruleid="22377" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA RMS Report Template ReadFile Command缓冲区溢出漏洞" name_en_US="IGSS SCADA RMS Report Template ReadFile Command Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA RMS Report Template ReadFile Command缓冲区溢出漏洞" name_zh_TW="IGSS SCADA RMS Report Template ReadFile Command緩沖區溢出漏洞" ruleid="22376" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA RMS Report Add Command缓冲区溢出漏洞" name_en_US="IGSS SCADA RMS Report Add Command Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA RMS Report Add Command缓冲区溢出漏洞" name_zh_TW="IGSS SCADA RMS Report Add Command緩沖區溢出漏洞" ruleid="22375" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA FileInfo Function缓冲区溢出漏洞" name_en_US="IGSS SCADA FileInfo Function Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA FileInfo Function缓冲区溢出漏洞" name_zh_TW="IGSS SCADA FileInfo Function緩沖區溢出漏洞" ruleid="22374" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端从服务器端获取文件" name_en_US="Server Files Disclosure to TFTP Service Client" name_zh_CN="TFTP服务客户端从服务器端获取文件" name_zh_TW="TFTP服務客戶端從服務器端獲取文件" ruleid="50000" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端企图获取服务器上一级目录文件" name_en_US="TFTP Service Client Attempting to Obtain Files of Upper Level Server Directory" name_zh_CN="TFTP服务客户端企图获取服务器上一级目录文件" name_zh_TW="TFTP服務客戶端企圖獲取服務器上一級目錄文件" ruleid="50001" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端企图获取服务器根目录文件" name_en_US="TFTP Service Client Attempting to Obtain Files in the Server Root Directory" name_zh_CN="TFTP服务客户端企图获取服务器根目录文件" name_zh_TW="TFTP服務客戶端企圖獲取服務器根目錄文件" ruleid="50002" visible="true" />
			<rule action=" db  screen " enabled="true" group="227606621" module="0" name="SNMP服务访问使用默认private口令" name_en_US="SNMP Service Access with Default private Password" name_zh_CN="SNMP服务访问使用默认private口令" name_zh_TW="SNMP服務訪問使用默認private口令" ruleid="50003" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务ftp匿名用户认证" name_en_US="FTP Service ftp Anonymous User Authentication" name_zh_CN="FTP服务ftp匿名用户认证" name_zh_TW="FTP服務ftp匿名用戶認證" ruleid="50004" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477654" module="0" name="TELNET服务客户端使用ld_library_path环境变量" name_en_US="TELNET Service Client Using ld_library_path Environment Variable" name_zh_CN="TELNET服务客户端使用ld_library_path环境变量" name_zh_TW="TELNET服務客戶端使用ld_library_path環境變量" ruleid="50006" visible="true" />
			<rule action=" db  screen " enabled="true" group="138477654" module="0" name="TELNET服务客户端使用ld_preload环境变量" name_en_US="TELNET Service Client Using ld_preload Environment" name_zh_CN="TELNET服务客户端使用ld_preload环境变量" name_zh_TW="TELNET服務客戶端使用ld_preload環境變量" ruleid="50007" visible="true" />
			<rule action="" enabled="true" group="300943434" module="0" name="Cisco可疑拒绝服务攻击协议包" name_en_US="Cisco Suspicious DoS IP Protocol Packets " name_zh_CN="Cisco可疑拒绝服务攻击协议包" name_zh_TW="Cisco可疑拒絕服務攻擊協議包" ruleid="70082" visible="false" />
			<rule action="" enabled="true" group="233898061" module="0" name="TCP端口3连接请求" name_en_US="TCP Port 3 Connection Request " name_zh_CN="TCP端口3连接请求" name_zh_TW="TCP端口3連接請求" ruleid="70083" visible="false" />
			<rule action=" db  screen " enabled="false" group="99680345" module="1" name="证券分析交易工具证券之星活动" name_en_US="Securities Analyzing/Trading Software Securities Star Activity" name_zh_CN="证券分析交易工具证券之星活动" name_zh_TW="證券分析交易工具證券之星活動" ruleid="50439" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="证券分析交易工具中投证券卓越版活动" name_en_US="Securities Analyzing/Trading Software China Investment Securities Zhuoyue Edition Activity" name_zh_CN="证券分析交易工具中投证券卓越版活动" name_zh_TW="證券分析交易工具中投證券卓越版活動" ruleid="50438" visible="true" />
			<rule action=" db  screen " enabled="true" group="95421519" module="0" name="网络蠕虫Conficker 变种A网络数据通信" name_en_US="Network Worm Conficker.a Shellcode" name_zh_CN="网络蠕虫Conficker 变种A网络数据通信" name_zh_TW="網絡蠕蟲Conficker 變種A網絡數據通信" ruleid="40830" visible="true" />
			<rule action="" enabled="true" group="73408589" module="0" name="Windows系统NETBIOS 137端口扫描" name_en_US="Scan on Port 137 for Windows NETBIOS " name_zh_CN="Windows系统NETBIOS 137端口扫描" name_zh_TW="Windows系統NETBIOS 137端口掃描" ruleid="70081" visible="false" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具东兴证券活动 " name_en_US="Securities Analyzing/Trading Software Dongxing Securities Activity" name_zh_CN="证券分析交易工具东兴证券活动 " name_zh_TW="證券分析交易工具東興證券活動 " ruleid="50385" visible="true" />
			<rule action=" db  screen " enabled="true" group="95421519" module="0" name="网络蠕虫Conficker 变种B网络数据通信" name_en_US="Network Worm Conficker.b Shellcode" name_zh_CN="网络蠕虫Conficker 变种B网络数据通信" name_zh_TW="網絡蠕蟲Conficker 變種B網絡數據通信" ruleid="40831" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网络游戏QQ农场建立连接" name_en_US="Online Game QQ Farm Establish Connection" name_zh_CN="网络游戏QQ农场建立连接" name_zh_TW="網絡遊戲QQ農場建立連接" ruleid="50384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="Veritas Backup Exec For Windows/NetWare使用内置口令访问攻击" name_en_US="Veritas Backup Exec For Windows/NetWare Access via Built-in Password" name_zh_CN="Veritas Backup Exec For Windows/NetWare使用内置口令访问攻击" name_zh_TW="Veritas Backup Exec For Windows/NetWare使用內置口令訪問攻擊" ruleid="30516" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpMyAdmin grab_globals.lib.php CGI脚本远程文件包含攻击" name_en_US="phpMyAdmin grab_globals.lib.php CGI Script Remote File Inclusion" name_zh_CN="phpMyAdmin grab_globals.lib.php CGI脚本远程文件包含攻击" name_zh_TW="phpMyAdmin grab_globals.lib.php CGI腳本遠程文件包含攻擊" ruleid="30517" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH远程缓冲区溢出攻击" name_en_US="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH Remote Buffer Overflow" name_zh_CN="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH远程缓冲区溢出攻击" name_zh_TW="Veritas Backup Exec Remote Agent for Windows CONNECT_CLIENT_AUTH遠程緩沖區溢出攻擊" ruleid="20636" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="SQuery gore.php远程执行命令攻击" name_en_US="SQuery gore.php Remote Code Execution" name_zh_CN="SQuery gore.php远程执行命令攻击" name_zh_TW="SQuery gore.php遠程執行命令攻擊" ruleid="20637" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="Orinoco OEM Residential Gateway远程获取SNMP口令攻击" name_en_US="Orinoco OEM Residential Gateway Remote SNMP Password Disclosure" name_zh_CN="Orinoco OEM Residential Gateway远程获取SNMP口令攻击" name_zh_TW="Orinoco OEM Residential Gateway遠程獲取SNMP口令攻擊" ruleid="30557" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Turkojan信息命令网络数据通信" name_en_US="Backdoor/Trojan Turkojan C&amp;C Info Command Response MINFO" name_zh_CN="木马后门程序Turkojan信息命令网络数据通信" name_zh_TW="木馬後門程序Turkojan信息命令網絡數據通信" ruleid="40901" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="Zeroboard多个CGI脚本目录遍历攻击" name_en_US="Zeroboard multiple CGI Scripts Directory Traversal" name_zh_CN="Zeroboard多个CGI脚本目录遍历攻击" name_zh_TW="Zeroboard多個CGI腳本目錄遍曆攻擊" ruleid="30511" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行中国银行用户登录" name_en_US="Banking Bank Internet of China User Login" name_zh_CN="网上银行中国银行用户登录" name_zh_TW="網上銀行中國銀行用戶登錄" ruleid="50388" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS 5.0 &quot;Translate: f&quot;头标记获取源码攻击" name_en_US="Microsoft IIS 5.0 &quot;Translate: f&quot; Header Tag Source Code Execution" name_zh_CN="Microsoft IIS 5.0 &quot;Translate: f&quot;头标记获取源码攻击" name_zh_TW="Microsoft IIS 5.0 &quot;Translate: f&quot;頭標記獲取源碼攻擊" ruleid="30512" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具中信证券至信版活动" name_en_US="Securities Analyzing/Trading Software  Zhongxin Securities Zhixin Online Trading System activity" name_zh_CN="证券分析交易工具中信证券至信版活动" name_zh_TW="證券分析交易工具中信證券至信版活動" ruleid="50430" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件大策略下载股票信息" name_en_US="Stock Market Analysis Software dcl Stock Information Downloading" name_zh_CN="股票行情分析操作软件大策略下载股票信息" name_zh_TW="股票行情分析操作軟件大策略下載股票信息" ruleid="50178" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件盘口王用户登录" name_en_US="Stock Market Analysis Software Pankouwang User Login" name_zh_CN="股票行情分析操作软件盘口王用户登录" name_zh_TW="股票行情分析操作軟件盤口王用戶登錄" ruleid="50179" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件大智慧用户登录" name_en_US="Stock Market Analysis Software Dazhihui User Login" name_zh_CN="股票行情分析操作软件大智慧用户登录" name_zh_TW="股票行情分析操作軟件大智慧用戶登錄" ruleid="50174" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件龙卷风用户登录" name_en_US="Stock Market Analysis Software Tornado User Login" name_zh_CN="股票行情分析操作软件龙卷风用户登录" name_zh_TW="股票行情分析操作軟件龍卷風用戶登錄" ruleid="50175" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件分析家用户登录" name_en_US="Stock Market Analysis Software Analyst User Login" name_zh_CN="股票行情分析操作软件分析家用户登录" name_zh_TW="股票行情分析操作軟件分析家用戶登錄" ruleid="50176" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件中国银河证券海王星用户登录" name_en_US="Stock Market Analysis Software China Galaxy Securities Neptune User Login" name_zh_CN="股票行情分析操作软件中国银河证券海王星用户登录" name_zh_TW="股票行情分析操作軟件中國銀河證券海王星用戶登錄" ruleid="50177" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="远程控制管理工具PcAnywhere登录连接" name_en_US="Remote Management Tool PcAnywhere Login Connection" name_zh_CN="远程控制管理工具PcAnywhere登录连接" name_zh_TW="遠程控制管理工具PcAnywhere登錄連接" ruleid="50170" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Trinoo主控端连接建立" name_en_US="DDOS Tool Trinoo Console Connection" name_zh_CN="DDOS工具Trinoo主控端连接建立" name_zh_TW="DDOS工具Trinoo主控端連接建立" ruleid="40388" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件同花顺用户登录" name_en_US="Stock Market Analysis Software 10jqka.com.cn User Login" name_zh_CN="股票行情分析操作软件同花顺用户登录" name_zh_TW="股票行情分析操作軟件同花順用戶登錄" ruleid="50172" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件钱龙旗舰用户登录" name_en_US="Stock Market Analysis Software qianlong.com.cn User Login" name_zh_CN="股票行情分析操作软件钱龙旗舰用户登录" name_zh_TW="股票行情分析操作軟件錢龍旗艦用戶登錄" ruleid="50173" visible="true" />
			<rule action=" db  screen " enabled="false" group="166727755" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Tinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40389" visible="false" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 从授权 / 未授权客户端冷启动" name_en_US="DNP3 – Cold Restart From Authorized / Unauthorized Clien" name_zh_CN="DNP3 – 从授权 / 未授权客户端冷启动" name_zh_TW="DNP3 – 從授權 / 未授權客戶端冷啓動" ruleid="22409" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 未经请求的响应泛洪 " name_en_US="DNP3 – Unsolicited Response Storm" name_zh_CN="DNP3 – 未经请求的响应泛洪 " name_zh_TW="DNP3 – 未經請求的響應泛洪 " ruleid="22408" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="网络蠕虫熊猫烧香下载恶意代码" name_en_US="Network Worm Panda Burn Incense Download Malicious Code" name_zh_CN="网络蠕虫熊猫烧香下载恶意代码" name_zh_TW="網絡蠕蟲熊貓燒香下載惡意代碼" ruleid="22405" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="MODBUS TCP-应答异常代码延迟" name_en_US="Modbus TCP Acknowledge Exception Code Delay" name_zh_CN="MODBUS TCP-应答异常代码延迟" name_zh_TW="MODBUS TCP-應答異常代碼延遲" ruleid="22404" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 非DNP3协议在一个DNP3端口上通信 " name_en_US="DNP3 – Non-DNP3 Communication on a DNP3 Port" name_zh_CN="DNP3 – 非DNP3协议在一个DNP3端口上通信 " name_zh_TW="DNP3 – 非DNP3協議在一個DNP3端口上通信 " ruleid="22407" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 禁用未经请求的回应" name_en_US="DNP3 – Disable Unsolicited Responses" name_zh_CN="DNP3 – 禁用未经请求的回应" name_zh_TW="DNP3 – 禁用未經請求的回應" ruleid="22406" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="MODBUS TCP-强制监听模式" name_en_US="Modbus TCP Force Listen Only Mode" name_zh_CN="MODBUS TCP-强制监听模式" name_zh_TW="MODBUS TCP-強制監聽模式" ruleid="22401" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Siemens Tecnomatix FactoryLink CSService GetFileInfo path缓冲区溢出漏洞" name_en_US="Siemens Tecnomatix FactoryLink CSService GetFileInfo path Buffer Overflow Vulnerability " name_zh_CN="Siemens Tecnomatix FactoryLink CSService GetFileInfo path缓冲区溢出漏洞" name_zh_TW="Siemens Tecnomatix FactoryLink CSService GetFileInfo path緩沖區溢出漏洞" ruleid="22400" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840693" module="0" name="MODBUS TCP-点列表扫描" name_en_US="Modbus TCP Points List Scan" name_zh_CN="MODBUS TCP-点列表扫描" name_zh_TW="MODBUS TCP-點列表掃描" ruleid="22403" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="MODBUS TCP-功能代码扫描" name_en_US="Modbus TCP Function Code Scan" name_zh_CN="MODBUS TCP-功能代码扫描" name_zh_TW="MODBUS TCP-功能代碼掃描" ruleid="22402" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Iconics GENESIS32 version 9.21.201.01整数溢出漏洞" name_en_US="Iconics GENESIS32 V9.21.201.01 Integer Overflow Vulnerability" name_zh_CN="Iconics GENESIS32 version 9.21.201.01整数溢出漏洞" name_zh_TW="Iconics GENESIS32 version 9.21.201.01整數溢出漏洞" ruleid="21830" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Sambar Server CGI程序远程获取信息攻击" name_en_US="Information Disclosure via Sambar Server CGI Program" name_zh_CN="Sambar Server CGI程序远程获取信息攻击" name_zh_TW="Sambar Server CGI程序遠程獲取信息攻擊" ruleid="30455" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE winhlp32.exe服务远程代码执行漏洞" name_en_US="Microsoft IE winhlp32.exe Service Remote Code Execution Vulnerability" name_zh_CN="Microsoft IE winhlp32.exe服务远程代码执行漏洞" name_zh_TW="Microsoft IE winhlp32.exe服務遠程代碼執行漏洞" ruleid="21059" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420715" module="0" name="Microsoft Windows SMB路径名远程溢出漏洞" name_en_US="Microsoft Windows SMB Path Name Remote Overflow Vulnerability" name_zh_CN="Microsoft Windows SMB路径名远程溢出漏洞" name_zh_TW="Microsoft Windows SMB路徑名遠程溢出漏洞" ruleid="21058" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="通过Web服务访问Cyber-Cats Chitchat口令文件" name_en_US="Access to Cyber-Cats Chitchat File via Web Service" name_zh_CN="通过Web服务访问Cyber-Cats Chitchat口令文件" name_zh_TW="通過Web服務訪問Cyber-Cats Chitchat口令文件" ruleid="30454" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE mergeAttributes内存破坏攻击" name_en_US="Microsoft IE mergeAttributes Memory Corruption Attack" name_zh_CN="Microsoft IE mergeAttributes内存破坏攻击" name_zh_TW="Microsoft IE mergeAttributes內存破壞攻擊" ruleid="21053" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE DOM操作内存破坏攻击" name_en_US="Microsoft IE DOM Operation Memory Corruption Attack" name_zh_CN="Microsoft IE DOM操作内存破坏攻击" name_zh_TW="Microsoft IE DOM操作內存破壞攻擊" ruleid="21052" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE CSS处理漏洞远程执行代码" name_en_US="Microsoft IE CSS Handle Remote Code Execution" name_zh_CN="Microsoft IE CSS处理漏洞远程执行代码" name_zh_TW="Microsoft IE CSS處理漏洞遠程執行代碼" ruleid="21051" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE处理特定表格操作内存破坏攻击" name_en_US="Microsoft IE Handling Certain Table Operations Memory Corruption Vulnerability" name_zh_CN="Microsoft IE处理特定表格操作内存破坏攻击" name_zh_TW="Microsoft IE處理特定表格操作內存破壞攻擊" ruleid="21057" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="CGI脚本对Sambar Server进行目录遍历攻击" name_en_US="Directory Traversal against Sambar Server via CGI Script" name_zh_CN="CGI脚本对Sambar Server进行目录遍历攻击" name_zh_TW="CGI腳本對Sambar Server進行目錄遍曆攻擊" ruleid="30457" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE表格对象释放内存破坏攻击" name_en_US="Microsoft IE TableCell Object Remove Memory Corruption Attack" name_zh_CN="Microsoft IE表格对象释放内存破坏攻击" name_zh_TW="Microsoft IE表格對象釋放內存破壞攻擊" ruleid="21054" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="MDaemon 9.6.4 IMAPD FETCH命令缓冲区溢出漏洞" name_en_US="MDaemon 9.6.4 IMAPD FETCH Command Buffer Overflow Vulnerability" name_zh_CN="MDaemon 9.6.4 IMAPD FETCH命令缓冲区溢出漏洞" name_zh_TW="MDaemon 9.6.4 IMAPD FETCH命令緩沖區溢出漏洞" ruleid="21921" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Sambar Server目录遍历脚本漏洞扫描探测" name_en_US="Sambar Server Directory Traversal Script Vulnerability Detection" name_zh_CN="Sambar Server目录遍历脚本漏洞扫描探测" name_zh_TW="Sambar Server目錄遍曆腳本漏洞掃描探測" ruleid="30456" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715782" module="0" name="SMTP服务EXPN命令暴力猜测用户名攻击" name_en_US="SMTP Service EXPN Command Username Brute Force" name_zh_CN="SMTP服务EXPN命令暴力猜测用户名攻击" name_zh_TW="SMTP服務EXPN命令暴力猜測用戶名攻擊" ruleid="30451" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Vipdataend网络数据通信" name_en_US="Backdoor/Trojan Vipdataend C&amp;C Traffic - Checkin FYWL" name_zh_CN="木马后门程序Vipdataend网络数据通信" name_zh_TW="木馬後門程序Vipdataend網絡數據通信" ruleid="40906" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Hylafax faxsurvey脚本漏洞扫描探测" name_en_US="Hylafax faxsurvey Script Vulnerability Detection" name_zh_CN="Hylafax faxsurvey脚本漏洞扫描探测" name_zh_TW="Hylafax faxsurvey腳本漏洞掃描探測" ruleid="30101" visible="true" />
			<rule action=" db  screen " enabled="true" group="209715782" module="0" name="SMTP服务VRFY命令暴力猜测用户名攻击" name_en_US="SMTP Service VRFY Command Username Brute Force" name_zh_CN="SMTP服务VRFY命令暴力猜测用户名攻击" name_zh_TW="SMTP服務VRFY命令暴力猜測用戶名攻擊" ruleid="30452" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Phorum pm.php本地文件包含执行命令攻击" name_en_US="Phorum pm.php Local File Inclusion Remote Code Execution" name_zh_CN="Phorum pm.php本地文件包含执行命令攻击" name_zh_TW="Phorum pm.php本地文件包含執行命令攻擊" ruleid="20638" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="SimpleBoard sbp参数远程执行命令攻击" name_en_US="SimpleBoard sbp Parameter Remote Code Execution" name_zh_CN="SimpleBoard sbp参数远程执行命令攻击" name_zh_TW="SimpleBoard sbp參數遠程執行命令攻擊" ruleid="20639" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE Multiple Unspecified 远程代码执行漏洞" name_en_US="Microsoft Internet Explorer Multiple Unspecified Remote Code Execution Vulnerabilities" name_zh_CN="Microsoft IE Multiple Unspecified 远程代码执行漏洞" name_zh_TW="Microsoft IE Multiple Unspecified 遠程代碼執行漏洞" ruleid="21235" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Vulnerability in JScript and VBScript Scripting Engines 远程代码执行漏洞" name_en_US="Vulnerability in JScript and VBScript Scripting Engines Could Allow Remote Code Execution" name_zh_CN="Vulnerability in JScript and VBScript Scripting Engines 远程代码执行漏洞" name_zh_TW="Vulnerability in JScript and VBScript Scripting Engines 遠程代碼執行漏洞" ruleid="21234" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422507" module="0" name="Microsoft Windows SMB客户端远程代码执行漏洞" name_en_US="Vulnerabilities in SMB Client Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows SMB客户端远程代码执行漏洞" name_zh_TW="Microsoft Windows SMB客戶端遠程代碼執行漏洞" ruleid="21233" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows 'BROWSER ELECTION' 缓冲区溢出漏洞" name_en_US="Microsoft Windows 'BROWSER ELECTION' Buffer Overflow Vulnerability" name_zh_CN="Microsoft Windows 'BROWSER ELECTION' 缓冲区溢出漏洞" name_zh_TW="Microsoft Windows 'BROWSER ELECTION' 緩沖區溢出漏洞" ruleid="21232" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596719" module="0" name="Microsoft Windows DNS解析远程代码执行漏洞（MS11-030）" name_en_US="Vulnerability in Microsoft Windows DNS Client Service Could Allow Remote Code Execution（MS11-030）" name_zh_CN="Microsoft Windows DNS解析远程代码执行漏洞（MS11-030）" name_zh_TW="Microsoft Windows DNS解析遠程代碼執行漏洞（MS11-030）" ruleid="21231" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422511" module="0" name="Microsoft Windows SMB操作解析远程代码执行漏洞(MS11-020)" name_en_US="Vulnerabilities in Microsoft Windows SMB Server Could Allow Remote Code Execution(MS11-020)" name_zh_CN="Microsoft Windows SMB操作解析远程代码执行漏洞(MS11-020)" name_zh_TW="Microsoft Windows SMB操作解析遠程代碼執行漏洞(MS11-020)" ruleid="21230" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="PoPToP PPTP read()参数负值远程缓冲区溢出攻击" name_en_US="PoPToP PPTP read() Negative Parameter Remote Buffer Overflow" name_zh_CN="PoPToP PPTP read()参数负值远程缓冲区溢出攻击" name_zh_TW="PoPToP PPTP read()參數負值遠程緩沖區溢出攻擊" ruleid="20630" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Subversion日期解析函数缓冲区溢出攻击" name_en_US="Subversion Date Field Parsing Function Buffer Overflow" name_zh_CN="Subversion日期解析函数缓冲区溢出攻击" name_zh_TW="Subversion日期解析函數緩沖區溢出攻擊" ruleid="20631" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve Backup发现服务远程缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup Discovery Service Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup发现服务远程缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup發現服務遠程緩沖區溢出攻擊" ruleid="20632" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCserve Backup UniversalAgent缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup UniversalAgent Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup UniversalAgent缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup UniversalAgent緩沖區溢出攻擊" ruleid="20633" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA License Server GETCONFIG请求缓冲区溢出攻击" name_en_US="CA License Server GETCONFIG Request Buffer Overflow" name_zh_CN="CA License Server GETCONFIG请求缓冲区溢出攻击" name_zh_TW="CA License Server GETCONFIG請求緩沖區溢出攻擊" ruleid="20634" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA License Client GETCONFIG请求缓冲区溢出攻击" name_en_US="CA License Client GETCONFIG Request Buffer Overflow" name_zh_CN="CA License Client GETCONFIG请求缓冲区溢出攻击" name_zh_TW="CA License Client GETCONFIG請求緩沖區溢出攻擊" ruleid="20635" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office PowerPoint 2003 执行任意代码漏洞" name_en_US="Microsoft Office PowerPoint 2003 Execute Arbitrary Code Vulnerability" name_zh_CN="Microsoft Office PowerPoint 2003 执行任意代码漏洞" name_zh_TW="Microsoft Office PowerPoint 2003 執行任意代碼漏洞" ruleid="21239" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office PowerPoint 2007 执行任意代码漏洞" name_en_US="Microsoft Office PowerPoint 2007 Execute Arbitrary Code Vulnerability" name_zh_CN="Microsoft Office PowerPoint 2007 执行任意代码漏洞" name_zh_TW="Microsoft Office PowerPoint 2007 執行任意代碼漏洞" ruleid="21238" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Vipdataend XY网络数据通信" name_en_US="Backdoor/Trojan Vipdataend C&amp;C Traffic - Checkin XY" name_zh_CN="木马后门程序Vipdataend XY网络数据通信" name_zh_TW="木馬後門程序Vipdataend XY網絡數據通信" ruleid="40907" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Novell NetMail IMAP SUBSCRIBE命令缓冲区溢出漏洞" name_en_US="Novell NetMail IMAP SUBSCRIBE Command Buffer Overflow Vulnerability" name_zh_CN="Novell NetMail IMAP SUBSCRIBE命令缓冲区溢出漏洞" name_zh_TW="Novell NetMail IMAP SUBSCRIBE命令緩沖區溢出漏洞" ruleid="21932" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Vipdataend XYLL网络数据通信" name_en_US="Backdoor/Trojan Vipdataend C&amp;C Traffic - Checkin XYLL" name_zh_CN="木马后门程序Vipdataend XYLL网络数据通信" name_zh_TW="木馬後門程序Vipdataend XYLL網絡數據通信" ruleid="40908" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE对象类型属性缓冲区溢出攻击(MS03-020)" name_en_US="Microsoft IE Object Type Attribute Buffer Overflow (MS03-020)" name_zh_CN="Microsoft IE对象类型属性缓冲区溢出攻击(MS03-020)" name_zh_TW="Microsoft IE對象類型屬性緩沖區溢出攻擊(MS03-020)" ruleid="20832" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="HTTP协议认证字段超长溢出攻击" name_en_US="HTTP Protocol Over-Long Authentication Field Buffer Overflow" name_zh_CN="HTTP协议认证字段超长溢出攻击" name_zh_TW="HTTP協議認證字段超長溢出攻擊" ruleid="20833" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206311" module="0" name="Ipswitch WhatsUp Gold远程缓冲区溢出攻击" name_en_US="Ipswitch WhatsUp Gold Remote Buffer Overflow" name_zh_CN="Ipswitch WhatsUp Gold远程缓冲区溢出攻击" name_zh_TW="Ipswitch WhatsUp Gold遠程緩沖區溢出攻擊" ruleid="20830" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="Novell NetMail IMAP AUTHENTICATE命令缓冲区溢出漏洞" name_en_US="Novell NetMail IMAP AUTHENTICATE Command Buffer Overflow Vulnerability" name_zh_CN="Novell NetMail IMAP AUTHENTICATE命令缓冲区溢出漏洞" name_zh_TW="Novell NetMail IMAP AUTHENTICATE命令緩沖區溢出漏洞" ruleid="21933" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="IMAP服务器LOGIN命令超长参数缓冲区溢出攻击" name_en_US="IMAP Server LOGIN Command Over-Long Parameter Buffer Overflow" name_zh_CN="IMAP服务器LOGIN命令超长参数缓冲区溢出攻击" name_zh_TW="IMAP服務器LOGIN命令超長參數緩沖區溢出攻擊" ruleid="20836" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="SAP-DB/MaxDB WebDBM远程缓冲区溢出攻击" name_en_US="SAP-DB/MaxDB WebDBM Remote Buffer Overflow" name_zh_CN="SAP-DB/MaxDB WebDBM远程缓冲区溢出攻击" name_zh_TW="SAP-DB/MaxDB WebDBM遠程緩沖區溢出攻擊" ruleid="20834" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="GoodTech Telnet Server缓冲区溢出攻击" name_en_US="GoodTech Telnet Server Buffer Overflow" name_zh_CN="GoodTech Telnet Server缓冲区溢出攻击" name_zh_TW="GoodTech Telnet Server緩沖區溢出攻擊" ruleid="20838" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="Hummingbird InetD组件远程缓冲区溢出攻击" name_en_US="Hummingbird InetD Component Remote Buffer Overflow" name_zh_CN="Hummingbird InetD组件远程缓冲区溢出攻击" name_zh_TW="Hummingbird InetD組件遠程緩沖區溢出攻擊" ruleid="20839" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703783" module="0" name="ISC Bind 8 TSIG远程缓冲区溢出攻击" name_en_US="ISC Bind 8 TSIG Remote Buffer Overflow" name_zh_CN="ISC Bind 8 TSIG远程缓冲区溢出攻击" name_zh_TW="ISC Bind 8 TSIG遠程緩沖區溢出攻擊" ruleid="20124" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Matt Tourtillott maillist.pl脚本漏洞扫描探测" name_en_US="Matt Tourtillott maillist.pl Script Vulnerability Detection" name_zh_CN="Matt Tourtillott maillist.pl脚本漏洞扫描探测" name_zh_TW="Matt Tourtillott maillist.pl腳本漏洞掃描探測" ruleid="20125" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="McAfee E-Business Server认证前远程代码执行攻击" name_en_US="McAfee E-Business Server Pre-authentication Remote Code Execution" name_zh_CN="McAfee E-Business Server认证前远程代码执行攻击" name_zh_TW="McAfee E-Business Server認證前遠程代碼執行攻擊" ruleid="20948" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Aurigma Image Uploader ImageUploader4.ocx ActiveX控件栈溢出攻击" name_en_US="Aurigma Image Uploader ImageUploader4.ocx ActiveX Control Stack Overflow" name_zh_CN="Aurigma Image Uploader ImageUploader4.ocx ActiveX控件栈溢出攻击" name_zh_TW="Aurigma Image Uploader ImageUploader4.ocx ActiveX控件棧溢出攻擊" ruleid="20949" visible="true" />
			<rule action=" db  screen " enabled="true" group="156238123" module="0" name="Linux系统LPRng远程格式化串溢出攻击" name_en_US="Linux LPRng Remote Format String Overflow" name_zh_CN="Linux系统LPRng远程格式化串溢出攻击" name_zh_TW="Linux系統LPRng遠程格式化串溢出攻擊" ruleid="20122" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="BitDefender OScan.OCX ActiveX控件堆溢出攻击" name_en_US="BitDefender OScan.OCX ActiveX Control Heap Overflow Attack" name_zh_CN="BitDefender OScan.OCX ActiveX控件堆溢出攻击" name_zh_TW="BitDefender OScan.OCX ActiveX控件堆溢出攻擊" ruleid="20942" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Lycos文件上传组件FileUploader.dll ActiveX控件堆溢出攻击" name_en_US="Lycos FileUploader.dll ActiveX Control Heap Overflow Attack" name_zh_CN="Lycos文件上传组件FileUploader.dll ActiveX控件堆溢出攻击" name_zh_TW="Lycos文件上傳組件FileUploader.dll ActiveX控件堆溢出攻擊" ruleid="20943" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="AOL YGPPicEdit.dll ActiveX控件远程溢出攻击" name_en_US="AOL YGPPicEdit.dll ActiveX Control Remote Overflow Attack" name_zh_CN="AOL YGPPicEdit.dll ActiveX控件远程溢出攻击" name_zh_TW="AOL YGPPicEdit.dll ActiveX控件遠程溢出攻擊" ruleid="20940" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IBM Lotus Domino Web Access上传模块ActiveX控件栈溢出攻击" name_en_US="IBM Lotus Domino Web Access ActiveX Control Stack Overflow Attack" name_zh_CN="IBM Lotus Domino Web Access上传模块ActiveX控件栈溢出攻击" name_zh_TW="IBM Lotus Domino Web Access上傳模塊ActiveX控件棧溢出攻擊" ruleid="20941" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Toshiba Surveillix MeIpCamX.DLL ActiveX控件远程栈溢出攻击" name_en_US="Toshiba Surveillix MeIpCamX.DLL ActiveX Control Remote Stack Overflow" name_zh_CN="Toshiba Surveillix MeIpCamX.DLL ActiveX控件远程栈溢出攻击" name_zh_TW="Toshiba Surveillix MeIpCamX.DLL ActiveX控件遠程棧溢出攻擊" ruleid="20946" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="RTS Sentry PTZCamPanelCtrl ActiveX控件远程栈溢出攻击" name_en_US="RTS Sentry PTZCamPanelCtrl ActiveX Control Remote Stack Overflow" name_zh_CN="RTS Sentry PTZCamPanelCtrl ActiveX控件远程栈溢出攻击" name_zh_TW="RTS Sentry PTZCamPanelCtrl ActiveX控件遠程棧溢出攻擊" ruleid="20947" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP Virtual Rooms hpvirtualrooms14.dll控件缓冲区溢出攻击" name_en_US="HP Virtual Rooms hpvirtualrooms14.dll Control Buffer Overflow Attack" name_zh_CN="HP Virtual Rooms hpvirtualrooms14.dll控件缓冲区溢出攻击" name_zh_TW="HP Virtual Rooms hpvirtualrooms14.dll控件緩沖區溢出攻擊" ruleid="20944" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Microsoft Visual FoxPro vfp6r.dll ActiveX控件任意代码执行攻击" name_en_US="Microsoft Visual FoxPro vfp6r.dll ActiveX Control Arbitrary Code Execution Attack" name_zh_CN="Microsoft Visual FoxPro vfp6r.dll ActiveX控件任意代码执行攻击" name_zh_TW="Microsoft Visual FoxPro vfp6r.dll ActiveX控件任意代碼執行攻擊" ruleid="20945" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208102" module="0" name="Microsoft ExcelTable Response Splitting 跨站脚本攻击漏洞(CVE-2011-1895)" name_en_US="Microsoft ExcelTable Response Splitting XSS Vulnerability(CVE-2011-1895)" name_zh_CN="Microsoft ExcelTable Response Splitting 跨站脚本攻击漏洞(CVE-2011-1895)" name_zh_TW="Microsoft ExcelTable Response Splitting 跨站腳本攻擊漏洞(CVE-2011-1895)" ruleid="21303" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Font Library File 缓冲区溢出漏洞(cve-2011-2003)" name_en_US="Font Library File Buffer Overflow Vulnerability(cve-2011-2003)" name_zh_CN="Font Library File 缓冲区溢出漏洞(cve-2011-2003)" name_zh_TW="Font Library File 緩沖區溢出漏洞(cve-2011-2003)" ruleid="21302" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Virtual Function Table Corruption 远程代码执行漏洞(CVE-2011-2001)" name_en_US="Virtual Function Table Corruption Remote Code Execution Vulnerability(CVE-2011-2001)" name_zh_CN="Virtual Function Table Corruption 远程代码执行漏洞(CVE-2011-2001)" name_zh_TW="Virtual Function Table Corruption 遠程代碼執行漏洞(CVE-2011-2001)" ruleid="21301" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Body Element 远程代码执行漏洞(CVE-2011-2000)" name_en_US="Body Element Remote Code Execution Vulnerability(CVE-2011-2000)" name_zh_CN="Body Element 远程代码执行漏洞(CVE-2011-2000)" name_zh_TW="Body Element 遠程代碼執行漏洞(CVE-2011-2000)" ruleid="21300" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="SNMP NetPower NetServer远程读取任意文件漏洞" name_en_US="SNMP NetPower NetServer Remote Read Arbitrary Files Vulnerability" name_zh_CN="SNMP NetPower NetServer远程读取任意文件漏洞" name_zh_TW="SNMP NetPower NetServer遠程讀取任意文件漏洞" ruleid="21307" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sunway ForceControl AngelServer栈溢出漏洞" name_en_US="Sunway ForceControl AngelServer Stack Overflow Vulnerability" name_zh_CN="Sunway ForceControl AngelServer栈溢出漏洞" name_zh_TW="Sunway ForceControl AngelServer棧溢出漏洞" ruleid="21306" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Default Reflected 跨站脚本攻击漏洞(CVE-2011-1897)" name_en_US="Default Reflected XSS Vulnerability(CVE-2011-1897)" name_zh_CN="Default Reflected 跨站脚本攻击漏洞(CVE-2011-1897)" name_zh_TW="Default Reflected 跨站腳本攻擊漏洞(CVE-2011-1897)" ruleid="21305" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft ExcelTable Reflected 跨站脚本攻击漏洞(CVE-2011-1896)" name_en_US="Microsoft ExcelTable Reflected XSS Vulnerability(CVE-2011-1896)" name_zh_CN="Microsoft ExcelTable Reflected 跨站脚本攻击漏洞(CVE-2011-1896)" name_zh_TW="Microsoft ExcelTable Reflected 跨站腳本攻擊漏洞(CVE-2011-1896)" ruleid="21304" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Microsoft IIS WebDAV PROPFIND拒绝服务漏洞攻击" name_en_US="Microsoft IIS WebDAV PROPFIND Denial of Service" name_zh_CN="Microsoft IIS WebDAV PROPFIND拒绝服务漏洞攻击" name_zh_TW="Microsoft IIS WebDAV PROPFIND拒絕服務漏洞攻擊" ruleid="10013" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Sunway ForceControl httpsvr目录穿越漏洞" name_en_US="Sunway ForceControl httpsvr Directory Traversal Vulnerability" name_zh_CN="Sunway ForceControl httpsvr目录穿越漏洞" name_zh_TW="Sunway ForceControl httpsvr目錄穿越漏洞" ruleid="21308" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256662" module="0" name="Microsoft FTP服务器STAT命令glob()扩展拒绝服务攻击" name_en_US="Microsoft FTP Server STAT Command Globbing Denial of Service" name_zh_CN="Microsoft FTP服务器STAT命令glob()扩展拒绝服务攻击" name_zh_TW="Microsoft FTP服務器STAT命令glob()擴展拒絕服務攻擊" ruleid="10017" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="ExAir示例脚本advsearch.asp拒绝服务攻击" name_en_US="ExAir Sample Script advsearch.asp Denial of Service" name_zh_CN="ExAir示例脚本advsearch.asp拒绝服务攻击" name_zh_TW="ExAir示例腳本advsearch.asp拒絕服務攻擊" ruleid="10016" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214261" module="0" name="Microsoft IIS fpcount.exe程序漏洞扫描探测" name_en_US="Microsoft IIS fpcount.exe Vulnerability Detection" name_zh_CN="Microsoft IIS fpcount.exe程序漏洞扫描探测" name_zh_TW="Microsoft IIS fpcount.exe程序漏洞掃描探測" ruleid="10015" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="OmniHTTPd visadmin.exe程序漏洞拒绝服务攻击" name_en_US="Denial of Service via OmniHTTPd visadmin.exe Vulnerability" name_zh_CN="OmniHTTPd visadmin.exe程序漏洞拒绝服务攻击" name_zh_TW="OmniHTTPd visadmin.exe程序漏洞拒絕服務攻擊" ruleid="10014" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.W蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.W" name_zh_CN="SMTP服务发送Mydoom.W蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.W蠕蟲病毒郵件" ruleid="40639" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="迅雷HTTP协议文件下载" name_en_US="Thunder Downloading Files via HTTP Protocol" name_zh_CN="迅雷HTTP协议文件下载" name_zh_TW="迅雷HTTP協議文件下載" ruleid="50260" visible="true" />
			<rule action=" db  screen " enabled="true" group="77660233" module="0" name="DNS解析请求可疑域名" name_en_US="DNS Resolution Suspicious Domain Name" name_zh_CN="DNS解析请求可疑域名" name_zh_TW="DNS解析請求可疑域名" ruleid="50261" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Windows NetLogon Service拒绝服务攻击 " name_en_US="Windows NetLogon Service Denial Of Service Vulnerability" name_zh_CN="Windows NetLogon Service拒绝服务攻击 " name_zh_TW="Windows NetLogon Service拒絕服務攻擊 " ruleid="10277" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Real VNC Server CutText拒绝服务攻击" name_en_US="Real VNC Server CutText Denial of Service" name_zh_CN="Real VNC Server CutText拒绝服务攻击" name_zh_TW="Real VNC Server CutText拒絕服務攻擊" ruleid="10276" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="Smurf拒绝服务攻击" name_en_US="Smurf denial of service" name_zh_CN="Smurf拒绝服务攻击" name_zh_TW="Smurf拒絕服務攻擊" ruleid="10274" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows TLSv1拒绝服务漏洞" name_en_US="Microsoft Windows TLSv1 Denial of Service Vulnerability" name_zh_CN="Microsoft Windows TLSv1拒绝服务漏洞" name_zh_TW="Microsoft Windows TLSv1拒絕服務漏洞" ruleid="10272" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159518" module="0" name="Microsoft IIS重复请求参数拒绝服务漏洞" name_en_US="Microsoft IIS Repeated Parameter Request Denial of Service Vulnerability" name_zh_CN="Microsoft IIS重复请求参数拒绝服务漏洞" name_zh_TW="Microsoft IIS重複請求參數拒絕服務漏洞" ruleid="10271" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体皮皮连接" name_en_US="Online Streaming Media PiPi Connect" name_zh_CN="在线流媒体皮皮连接" name_zh_TW="在線流媒體皮皮連接" ruleid="50348" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616798" module="0" name="Microsoft Exchange Server 2007无限循环远程拒绝服务漏洞(MS10-106)" name_en_US="Microsoft Exchange Server 2007 Infinite Loop Remote Denial of Service Vulnerability (MS10-106)" name_zh_CN="Microsoft Exchange Server 2007无限循环远程拒绝服务漏洞(MS10-106)" name_zh_TW="Microsoft Exchange Server 2007無限循環遠程拒絕服務漏洞(MS10-106)" ruleid="10279" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616798" module="0" name="Microsoft Hyper-v VMBus拒绝服务攻击" name_en_US="Microsoft Hyper-V VMBus Denial of Service Vulnerability" name_zh_CN="Microsoft Hyper-v VMBus拒绝服务攻击" name_zh_TW="Microsoft Hyper-v VMBus拒絕服務攻擊" ruleid="10278" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="XML-RPC for PHP远程代码注入攻击" name_en_US="XML-RPC for PHP Remote Code Injection" name_zh_CN="XML-RPC for PHP远程代码注入攻击" name_zh_TW="XML-RPC for PHP遠程代碼注入攻擊" ruleid="20546" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="CuteNews远程PHP代码注入攻击" name_en_US="CuteNews Remote PHP Code Injection" name_zh_CN="CuteNews远程PHP代码注入攻击" name_zh_TW="CuteNews遠程PHP代碼注入攻擊" ruleid="20547" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208102" module="0" name="Microsoft IIS .htw远程跨站脚本攻击" name_en_US="Microsoft IIS .htw Remote Cross-site Scripting" name_zh_CN="Microsoft IIS .htw远程跨站脚本攻击" name_zh_TW="Microsoft IIS .htw遠程跨站腳本攻擊" ruleid="20544" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Mantis bug_sponsorship_list_view_inc.php远程文件包含攻击" name_en_US="Mantis bug_sponsorship_list_view_inc.php Remote File Inclusion" name_zh_CN="Mantis bug_sponsorship_list_view_inc.php远程文件包含攻击" name_zh_TW="Mantis bug_sponsorship_list_view_inc.php遠程文件包含攻擊" ruleid="20545" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE HRAlign客户端缓冲区溢出攻击" name_en_US="Microsoft IE HRAlign Client Buffer Overflow" name_zh_CN="Microsoft IE HRAlign客户端缓冲区溢出攻击" name_zh_TW="Microsoft IE HRAlign客戶端緩沖區溢出攻擊" ruleid="20542" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE Object客户端数据远程命令执行攻击" name_en_US="Microsoft IE Object Client Data Remote Code Execution" name_zh_CN="Microsoft IE Object客户端数据远程命令执行攻击" name_zh_TW="Microsoft IE Object客戶端數據遠程命令執行攻擊" ruleid="20543" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows即插即用UMPNPMGR.DLL wsprintfW远程溢出攻击" name_en_US="Microsoft Windows Plug and Play UMPNPMGR.DLL wsprintfW Remote Buffer Overflow" name_zh_CN="Microsoft Windows即插即用UMPNPMGR.DLL wsprintfW远程溢出攻击" name_zh_TW="Microsoft Windows即插即用UMPNPMGR.DLL wsprintfW遠程溢出攻擊" ruleid="20540" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE Object Tag客户端缓冲区溢出攻击" name_en_US="Microsoft IE Object Tag Client Buffer Overflow" name_zh_CN="Microsoft IE Object Tag客户端缓冲区溢出攻击" name_zh_TW="Microsoft IE Object Tag客戶端緩沖區溢出攻擊" ruleid="20541" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网上彩票投注软件ok178彩票用户登录" name_en_US="Online Betting Lottery Software ok178 Lottery User Login" name_zh_CN="网上彩票投注软件ok178彩票用户登录" name_zh_TW="網上彩票投注軟件ok178彩票用戶登錄" ruleid="50345" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723879" module="0" name="Snort Back Orifice预处理器远程栈溢出攻击" name_en_US="Snort Back Orifice Preprocessor Remote Stack Overflow" name_zh_CN="Snort Back Orifice预处理器远程栈溢出攻击" name_zh_TW="Snort Back Orifice預處理器遠程棧溢出攻擊" ruleid="20548" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Phorum search.php CGI脚本SQL注入攻击" name_en_US="Phorum search.php CGI Script SQL Injection" name_zh_CN="Phorum search.php CGI脚本SQL注入攻击" name_zh_TW="Phorum search.php CGI腳本SQL注入攻擊" ruleid="20549" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ2009 beta2离线文件传输通信" name_en_US="Instant Messaging Tool QQ2009 Beta2 File Offline Transmission Attempt" name_zh_CN="即时通信工具QQ2009 beta2离线文件传输通信" name_zh_TW="即時通信工具QQ2009 beta2離線文件傳輸通信" ruleid="50344" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="WEBgais websendmail脚本漏洞远程执行命令" name_en_US="Remote Code Execution via WEBgais websendmail Script Vulnerability" name_zh_CN="WEBgais websendmail脚本漏洞远程执行命令" name_zh_TW="WEBgais websendmail腳本漏洞遠程執行命令" ruleid="20089" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="HTTP访问URL" name_en_US="HTTP Access URL" name_zh_CN="HTTP访问URL" name_zh_TW="HTTP訪問URL" ruleid="50268" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943386" module="0" name="H.225协议Destination AliasAddress Choice扩展选项数据畸形" name_en_US="H.225 Protocol Destination AliasAddress Choice Extended Option Malformed Data" name_zh_CN="H.225协议Destination AliasAddress Choice扩展选项数据畸形" name_zh_TW="H.225協議Destination AliasAddress Choice擴展選項數據畸形" ruleid="10155" visible="true" />
			<rule action=" db  screen " enabled="true" group="206635097" module="0" name="POP服务邮件收取操作" name_en_US="POP Service Mail Receiving " name_zh_CN="POP服务邮件收取操作" name_zh_TW="POP服務郵件收取操作" ruleid="50269" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Invision Power Board index.php st参数远程SQL注入攻击" name_en_US="Invision Power Board index.php st Parameter Remote SQL Injection" name_zh_CN="Invision Power Board index.php st参数远程SQL注入攻击" name_zh_TW="Invision Power Board index.php st參數遠程SQL注入攻擊" ruleid="20494" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpBB kb.php CGI脚本SQL注入攻击" name_en_US="phpBB kb.php CGI Script SQL Injection" name_zh_CN="phpBB kb.php CGI脚本SQL注入攻击" name_zh_TW="phpBB kb.php CGI腳本SQL注入攻擊" ruleid="20495" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="UBB.threads printthread.php CGI脚本SQL注入攻击" name_en_US="UBB.threads printthread.php CGI Script SQL Injection" name_zh_CN="UBB.threads printthread.php CGI脚本SQL注入攻击" name_zh_TW="UBB.threads printthread.php CGI腳本SQL注入攻擊" ruleid="20496" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="Microsoft Exchange Server SMTP服务畸形X-LINK2STATE命令远程溢出攻击" name_en_US="Microsoft Exchange Server SMTP Service Malformed X-LINK2STATE Command Remote Buffer Overflow" name_zh_CN="Microsoft Exchange Server SMTP服务畸形X-LINK2STATE命令远程溢出攻击" name_zh_TW="Microsoft Exchange Server SMTP服務畸形X-LINK2STATE命令遠程溢出攻擊" ruleid="20497" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="phpCoin auxpage.php CGI脚本远程执行命令攻击" name_en_US="Remote Code Execution via phpCoin auxpage.php CGI Script" name_zh_CN="phpCoin auxpage.php CGI脚本远程执行命令攻击" name_zh_TW="phpCoin auxpage.php CGI腳本遠程執行命令攻擊" ruleid="20490" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PunBB profile.php CGI脚本远程SQL注入攻击" name_en_US="PunBB profile.php CGI Script Remote SQL Injection" name_zh_CN="PunBB profile.php CGI脚本远程SQL注入攻击" name_zh_TW="PunBB profile.php CGI腳本遠程SQL注入攻擊" ruleid="20491" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PostNuke News模块CGI脚本SQL注入攻击" name_en_US="PostNuke News Module CGI Script Remote SQL Injection" name_zh_CN="PostNuke News模块CGI脚本SQL注入攻击" name_zh_TW="PostNuke News模塊CGI腳本SQL注入攻擊" ruleid="20492" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423919" module="0" name="PHP-Nuke querylang参数CGI漏洞攻击" name_en_US="PHP-Nuke querylang Parameter CGI Vulnerability" name_zh_CN="PHP-Nuke querylang参数CGI漏洞攻击" name_zh_TW="PHP-Nuke querylang參數CGI漏洞攻擊" ruleid="20493" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Transmission Scout木马通信" name_en_US="Backdoor/Trojan Transmission Scout Communication " name_zh_CN="木马后门程序Transmission Scout木马通信" name_zh_TW="木馬後門程序Transmission Scout木馬通信" ruleid="40590" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Bugbear.M蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Bugbear.M" name_zh_CN="SMTP服务发送W32.Bugbear.M蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Bugbear.M蠕蟲病毒郵件" ruleid="40635" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PhotoPost member.php CGI脚本SQL注入攻击" name_en_US="PhotoPost member.php CGI Script SQL Injection" name_zh_CN="PhotoPost member.php CGI脚本SQL注入攻击" name_zh_TW="PhotoPost member.php CGI腳本SQL注入攻擊" ruleid="20498" visible="true" />
			<rule action=" db  screen " enabled="true" group="78645275" module="0" name="TFTPD32远程格式串文件名拒绝服务攻击" name_en_US="TFTPD32 Username Remote Format String Denial of Service" name_zh_CN="TFTPD32远程格式串文件名拒绝服务攻击" name_zh_TW="TFTPD32遠程格式串文件名拒絕服務攻擊" ruleid="10158" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具Vagaa用户登录" name_en_US="P2P File Sharing Tool Vagaa User Login" name_zh_CN="P2P文件共享工具Vagaa用户登录" name_zh_TW="P2P文件共享工具Vagaa用戶登錄" ruleid="50153" visible="true" />
			<rule action=" db  screen " enabled="true" group="294651962" module="0" name="H3C及Huawei SNMP访问控制信息泄露漏洞" name_en_US="HP/H3C and Huawei SNMP Weak Access to Critical Data" name_zh_CN="H3C及Huawei SNMP访问控制信息泄露漏洞" name_zh_TW="H3C及Huawei SNMP訪問控制信息泄露漏洞" ruleid="30582" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425849" module="0" name="Apache HTTP Expect头选项跨站脚本执行漏洞" name_en_US="Apache httpd Expect header Cross-Site Scripting Vulnerabilitie" name_zh_CN="Apache HTTP Expect头选项跨站脚本执行漏洞" name_zh_TW="Apache HTTP Expect頭選項跨站腳本執行漏洞" ruleid="30581" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315034" module="0" name="Simple PHP Blog comment_delete_cgi.php远程文件删除攻击" name_en_US="Simple PHP Blog comment_delete_cgi.php Remote File Deletion" name_zh_CN="Simple PHP Blog comment_delete_cgi.php远程文件删除攻击" name_zh_TW="Simple PHP Blog comment_delete_cgi.php遠程文件刪除攻擊" ruleid="10159" visible="true" />
			<rule action=" db  screen " enabled="true" group="209723446" module="0" name="漏洞扫描器Cybercop Scanner EXPN命令探测SMTP服务" name_en_US="Vulnerability Scanner Cybercop EXPN Command Detecting SMTP Service" name_zh_CN="漏洞扫描器Cybercop Scanner EXPN命令探测SMTP服务" name_zh_TW="漏洞掃描器Cybercop Scanner EXPN命令探測SMTP服務" ruleid="30239" visible="true" />
			<rule action=" db  screen " enabled="true" group="356517946" module="0" name="BigAnt IM Server SHU请求SQL注入漏洞" name_en_US="BigAnt IM Server SHU request SQL injection vulnerability" name_zh_CN="BigAnt IM Server SHU请求SQL注入漏洞" name_zh_TW="BigAnt IM Server SHU請求SQL注入漏洞" ruleid="30586" visible="true" />
			<rule action=" db  screen " enabled="false" group="233898073" module="0" name="Traceroute ICMP/IPOPT探测网络拓扑操作" name_en_US="Traceroute ICMP/IPOPT Network Topology Detection" name_zh_CN="Traceroute ICMP/IPOPT探测网络拓扑操作" name_zh_TW="Traceroute ICMP/IPOPT探測網絡拓撲操作" ruleid="30234" visible="false" />
			<rule action=" db  screen " enabled="true" group="202383414" module="0" name="漏洞扫描器Cybercop Scanner Web服务探测" name_en_US="Vulnerability Scanner Cybercop Web Service Detection" name_zh_CN="漏洞扫描器Cybercop Scanner Web服务探测" name_zh_TW="漏洞掃描器Cybercop Scanner Web服務探測" ruleid="30237" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="Traceroute ICMP探测网络拓扑操作" name_en_US="Traceroute ICMP Network Topology Detection" name_zh_CN="Traceroute ICMP探测网络拓扑操作" name_zh_TW="Traceroute ICMP探測網絡拓撲操作" ruleid="30236" visible="true" />
			<rule action=" db  screen " enabled="true" group="137363751" module="0" name="Wu-ftpd SITE EXEC命令远程格式串漏洞攻击" name_en_US="Wu-ftpd SITE EXEC Command Remote Format String Vulnerability" name_zh_CN="Wu-ftpd SITE EXEC命令远程格式串漏洞攻击" name_zh_TW="Wu-ftpd SITE EXEC命令遠程格式串漏洞攻擊" ruleid="20129" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Ultors木马通信" name_en_US="Backdoor/Trojan Ultors Communication " name_zh_CN="木马后门程序Ultors木马通信" name_zh_TW="木馬後門程序Ultors木馬通信" ruleid="40597" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="DotBr exec.php3脚本漏洞远程执行命令" name_en_US="Remote Code Execution via DotBr exec.php3 Script Vulnerability" name_zh_CN="DotBr exec.php3脚本漏洞远程执行命令" name_zh_TW="DotBr exec.php3腳本漏洞遠程執行命令" ruleid="20308" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="DotBr system.php3脚本漏洞远程执行命令" name_en_US="Remote Code Execution via DotBr system.php3 Script Vulnerability" name_zh_CN="DotBr system.php3脚本漏洞远程执行命令" name_zh_TW="DotBr system.php3腳本漏洞遠程執行命令" ruleid="20309" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="emailreader_execute_on_each_page.inc.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via emailreader_execute_on_each_page.inc.php Script Vulnerability" name_zh_CN="emailreader_execute_on_each_page.inc.php脚本漏洞远程执行命令" name_zh_TW="emailreader_execute_on_each_page.inc.php腳本漏洞遠程執行命令" ruleid="20304" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="email.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via email.php Script Vulnerability" name_zh_CN="email.php脚本漏洞远程执行命令" name_zh_TW="email.php腳本漏洞遠程執行命令" ruleid="20305" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="PHP-Nuke modules.php脚本漏洞获取口令HASH攻击" name_en_US="Password HASH Disclosure via PHP-Nuke modules.php Script Vulnerability" name_zh_CN="PHP-Nuke modules.php脚本漏洞获取口令HASH攻击" name_zh_TW="PHP-Nuke modules.php腳本漏洞獲取口令HASH攻擊" ruleid="20306" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="D-Forum CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via D-Forum CGI Script Vulnerability" name_zh_CN="D-Forum CGI脚本漏洞远程执行命令" name_zh_TW="D-Forum CGI腳本漏洞遠程執行命令" ruleid="20307" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="YABB SE news.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via YABB SE news.php Script Vulnerability" name_zh_CN="YABB SE news.php脚本漏洞远程执行命令" name_zh_TW="YABB SE news.php腳本漏洞遠程執行命令" ruleid="20301" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="YABB SE packages.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via YABB SE packages.php Script Vulnerability" name_zh_CN="YABB SE packages.php脚本漏洞远程执行命令" name_zh_TW="YABB SE packages.php腳本漏洞遠程執行命令" ruleid="20302" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="myphpPageTool CGI脚本漏洞远程执行命令" name_en_US="Remote Code Execution via myphpPageTool CGI Script Vulnerability" name_zh_CN="myphpPageTool CGI脚本漏洞远程执行命令" name_zh_TW="myphpPageTool CGI腳本漏洞遠程執行命令" ruleid="20303" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Matt Wright textcounter.pl脚本漏洞扫描探测" name_en_US="Matt Wright textcounter.pl Script Vulnerability Detection" name_zh_CN="Matt Wright textcounter.pl脚本漏洞扫描探测" name_zh_TW="Matt Wright textcounter.pl腳本漏洞掃描探測" ruleid="30121" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="Guestbook wguest.exe程序漏洞读取文件" name_en_US="File Reading via Guestbook wguest.exe Vulnerability" name_zh_CN="Guestbook wguest.exe程序漏洞读取文件" name_zh_TW="Guestbook wguest.exe程序漏洞讀取文件" ruleid="30120" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="WEBgais websendmail脚本漏洞扫描探测" name_en_US="WEBgais websendmail Script Vulnerability Detection" name_zh_CN="WEBgais websendmail脚本漏洞扫描探测" name_zh_TW="WEBgais websendmail腳本漏洞掃描探測" ruleid="30123" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="WEBgais webgais脚本漏洞扫描探测" name_en_US="WEBgais webgais Script Vulnerability Detection" name_zh_CN="WEBgais webgais脚本漏洞扫描探测" name_zh_TW="WEBgais webgais腳本漏洞掃描探測" ruleid="30122" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="IRIX wrap脚本漏洞扫描探测" name_en_US="IRIX wrap Script Vulnerability Detection" name_zh_CN="IRIX wrap脚本漏洞扫描探测" name_zh_TW="IRIX wrap腳本漏洞掃描探測" ruleid="30125" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="IRIX wrap脚本漏洞远程浏览服务器目录" name_en_US="Remote Server Direcotry Browsing via IRIX wrap Script Vulnerability" name_zh_CN="IRIX wrap脚本漏洞远程浏览服务器目录" name_zh_TW="IRIX wrap腳本漏洞遠程浏覽服務器目錄" ruleid="30124" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Zeroboard _head.php脚本漏洞扫描探测" name_en_US="Zeroboard _head.php Script Vulnerability Detection" name_zh_CN="Zeroboard _head.php脚本漏洞扫描探测" name_zh_TW="Zeroboard _head.php腳本漏洞掃描探測" ruleid="30126" visible="true" />
			<rule action=" db  screen " enabled="false" group="69214265" module="0" name="Microsoft IIS 4.0 .htr ISAPI映射扫描探测" name_en_US="Microsoft IIS 4.0 .htr ISAPI Mapping Detection" name_zh_CN="Microsoft IIS 4.0 .htr ISAPI映射扫描探测" name_zh_TW="Microsoft IIS 4.0 .htr ISAPI映射掃描探測" ruleid="30128" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="2" name="阻止用户访问可疑网页" name_en_US="Block User Browsing Suspicious Web Page" name_zh_CN="阻止用户访问可疑网页" name_zh_TW="阻止用戶訪問可疑網頁" ruleid="40816" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="2" name="用户访问可疑网页" name_en_US="User Browsing Suspicious Web Page" name_zh_CN="用户访问可疑网页" name_zh_TW="用戶訪問可疑網頁" ruleid="40817" visible="true" />
			<rule action=" db  screen " enabled="false" group="202440777" module="0" name="HTTP协议可疑命令请求" name_en_US="HTTP Protocol Request With Suspicious Command" name_zh_CN="HTTP协议可疑命令请求" name_zh_TW="HTTP協議可疑命令請求" ruleid="40814" visible="false" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rusersd服务存在性TCP扫描探测" name_en_US="Solaris rpc.rusersd Service Existence TCP Detection" name_zh_CN="Solaris rpc.rusersd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rusersd服務存在性TCP掃描探測" ruleid="30059" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Dark Connection Inside木马通信" name_en_US="Backdoor/Trojan Dark Connection Inside Communication " name_zh_CN="木马后门程序Dark Connection Inside木马通信" name_zh_TW="木馬後門程序Dark Connection Inside木馬通信" ruleid="40498" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序DFch木马通信" name_en_US="Backdoor/Trojan DFch Communication " name_zh_CN="木马后门程序DFch木马通信" name_zh_TW="木馬後門程序DFch木馬通信" ruleid="40499" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.admind服务存在性UDP扫描探测" name_en_US="Solaris rpc.admind Service UDP Detection" name_zh_CN="Solaris rpc.admind服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.admind服務存在性UDP掃描探測" ruleid="30051" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003194" module="0" name="Solaris rpc.rstatd服务存在性UDP扫描探测" name_en_US="Solaris rpc.rstatd Service UDP Detection" name_zh_CN="Solaris rpc.rstatd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rstatd服務存在性UDP掃描探測" ruleid="30050" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Connection木马通信" name_en_US="Backdoor/Trojan Connection Communication " name_zh_CN="木马后门程序Connection木马通信" name_zh_TW="木馬後門程序Connection木馬通信" ruleid="40494" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Crack Down木马通信" name_en_US="Backdoor/Trojan Crack Down Communication " name_zh_CN="木马后门程序Crack Down木马通信" name_zh_TW="木馬後門程序Crack Down木馬通信" ruleid="40495" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Bionet木马通信" name_en_US="Backdoor/Trojan Bionet Communication " name_zh_CN="木马后门程序Bionet木马通信" name_zh_TW="木馬後門程序Bionet木馬通信" ruleid="40492" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Chupacabra木马通信" name_en_US="Backdoor/Trojan Chupacabra Communication " name_zh_CN="木马后门程序Chupacabra木马通信" name_zh_TW="木馬後門程序Chupacabra木馬通信" ruleid="40493" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypupdated服务存在性UDP扫描探测" name_en_US="Solaris rpc.ypupdated Service UDP Detection" name_zh_CN="Solaris rpc.ypupdated服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.ypupdated服務存在性UDP掃描探測" ruleid="30057" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypserv服务存在性UDP扫描探测" name_en_US="Solaris rpc.ypserv Service UDP Detection" name_zh_CN="Solaris rpc.ypserv服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.ypserv服務存在性UDP掃描探測" ruleid="30056" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="QQ超级旋风HTTP协议文件下载" name_en_US="QQ Downloading Files From HTTP Protocol" name_zh_CN="QQ超级旋风HTTP协议文件下载" name_zh_TW="QQ超級旋風HTTP協議文件下載" ruleid="50360" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486030" module="0" name="Windows SMB协议用户认证失败" name_en_US="Windows SMB User Authentication Failed" name_zh_CN="Windows SMB协议用户认证失败" name_zh_TW="Windows SMB協議用戶認證失敗" ruleid="50363" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Spook建立连接" name_en_US="Backdoor/Trojan Spook Connection " name_zh_CN="木马后门程序Spook建立连接" name_zh_TW="木馬後門程序Spook建立連接" ruleid="40658" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序风雪木马客户端与服务端建立连接" name_en_US="Backdoor/Trojan Snowdoor Client Connection to Server " name_zh_CN="木马后门程序风雪木马客户端与服务端建立连接" name_zh_TW="木馬後門程序風雪木馬客戶端與服務端建立連接" ruleid="40659" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963609" module="1" name="P2P 文件共享工具LimeWire文件下载" name_en_US="P2P File Sharing Tool LimeWire File Downloading" name_zh_CN="P2P 文件共享工具LimeWire文件下载" name_zh_TW="P2P 文件共享工具LimeWire文件下載" ruleid="50367" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具Winny通过TCP协议进行文件传输" name_en_US="Winny Downloading files Through TCP Protocol" name_zh_CN="P2P文件共享工具Winny通过TCP协议进行文件传输" name_zh_TW="P2P文件共享工具Winny通過TCP協議進行文件傳輸" ruleid="50366" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序灰鸽子木马MINI版客户端连接服务器" name_en_US="Backdoor/Trojan Huigezi MINI Client Connnection to Server " name_zh_CN="木马后门程序灰鸽子木马MINI版客户端连接服务器" name_zh_TW="木馬後門程序灰鴿子木馬MINI版客戶端連接服務器" ruleid="40654" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615787" module="0" name="Windows系统下Worm.Agobot蠕虫通过ISA防火墙活动" name_en_US="Worm.Agobot on Windows Breaching ISA Firewall" name_zh_CN="Windows系统下Worm.Agobot蠕虫通过ISA防火墙活动" name_zh_TW="Windows系統下Worm.Agobot蠕蟲通過ISA防火牆活動" ruleid="40655" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序网络神偷木马通过80端口通信" name_en_US="Backdoor/Trojan Nethief Communication on Port 80 " name_zh_CN="木马后门程序网络神偷木马通过80端口通信" name_zh_TW="木馬後門程序網絡神偷木馬通過80端口通信" ruleid="40656" visible="true" />
			<rule action=" db  screen " enabled="true" group="206569771" module="0" name="POP3服务畸形邮件溢出客户端攻击" name_en_US="POP3 Service Malformed Mail Overflow on Client" name_zh_CN="POP3服务畸形邮件溢出客户端攻击" name_zh_TW="POP3服務畸形郵件溢出客戶端攻擊" ruleid="40657" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Darby蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Darby" name_zh_CN="SMTP服务发送W32.Darby蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Darby蠕蟲病毒郵件" ruleid="40650" visible="true" />
			<rule action=" db  screen " enabled="false" group="203425870" module="0" name="Web服务CGI程序执行SQL注入攻击" name_en_US="Web Service CGI Program SQL Injection Execution" name_zh_CN="Web服务CGI程序执行SQL注入攻击" name_zh_TW="Web服務CGI程序執行SQL注入攻擊" ruleid="40651" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序灰鸽子木马VIP专业版客户端连接服务器" name_en_US="Backdoor/Trojan Huigezi VIP Professional Client and Server Connection" name_zh_CN="木马后门程序灰鸽子木马VIP专业版客户端连接服务器" name_zh_TW="木馬後門程序灰鴿子木馬VIP專業版客戶端連接服務器" ruleid="40652" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序灰鸽子木马辐射版客户端连接服务器" name_en_US="Backdoor/Trojan Huigezi Radiation Client Connection to Server " name_zh_CN="木马后门程序灰鸽子木马辐射版客户端连接服务器" name_zh_TW="木馬後門程序灰鴿子木馬輻射版客戶端連接服務器" ruleid="40653" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Netspy木马通信" name_en_US="Backdoor/Trojan Netspy Trojan Communication " name_zh_CN="木马后门程序Netspy木马通信" name_zh_TW="木馬後門程序Netspy木馬通信" ruleid="40337" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Subseven木马通信" name_en_US="Backdoor/Trojan Subseven Communication " name_zh_CN="木马后门程序Subseven木马通信" name_zh_TW="木馬後門程序Subseven木馬通信" ruleid="40336" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序wollf木马建立连接" name_en_US="Backdoor/Trojan wollf Connection " name_zh_CN="木马后门程序wollf木马建立连接" name_zh_TW="木馬後門程序wollf木馬建立連接" ruleid="40335" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASP Rootkit Webshell检测" name_en_US="Backdoor/Trojan ASP Rootkit Webshell Detection" name_zh_CN="木马后门程序ASP Rootkit Webshell检测" name_zh_TW="木馬後門程序ASP Rootkit Webshell檢測" ruleid="40955" visible="true" />
			<rule action=" db  screen " enabled="true" group="69271622" module="0" name="Web服务执行.cmd程序" name_en_US="Web Service .cmd Program Execution " name_zh_CN="Web服务执行.cmd程序" name_zh_TW="Web服務執行.cmd程序" ruleid="40250" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序xtcp木马建立连接" name_en_US="Backdoor/Trojan xtcp Connection " name_zh_CN="木马后门程序xtcp木马建立连接" name_zh_TW="木馬後門程序xtcp木馬建立連接" ruleid="40334" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="iCat Managers carbo.dll脚本漏洞扫描探测" name_en_US="iCat Managers carbo.dll Script Vulnerability Detection" name_zh_CN="iCat Managers carbo.dll脚本漏洞扫描探测" name_zh_TW="iCat Managers carbo.dll腳本漏洞掃描探測" ruleid="40256" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Microsoft IIS 4.0 ism.dll脚本漏洞扫描探测" name_en_US="Microsoft IIS 4.0 ism.dll Script Vulnerability Detection" name_zh_CN="Microsoft IIS 4.0 ism.dll脚本漏洞扫描探测" name_zh_TW="Microsoft IIS 4.0 ism.dll腳本漏洞掃描探測" ruleid="40258" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序WinShell木马建立连接" name_en_US="Backdoor/Trojan WinShell Connection " name_zh_CN="木马后门程序WinShell木马建立连接" name_zh_TW="木馬後門程序WinShell木馬建立連接" ruleid="40331" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序tini木马连接建立" name_en_US="Backdoor/Trojan tini Connection " name_zh_CN="木马后门程序tini木马连接建立" name_zh_TW="木馬後門程序tini木馬連接建立" ruleid="40330" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序蓝色火焰通信" name_en_US="Backdoor/Trojan BlueFlame Communication " name_zh_CN="木马后门程序蓝色火焰通信" name_zh_TW="木馬後門程序藍色火焰通信" ruleid="40755" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Win32.Inject.zy网络数据通信" name_en_US="Backdoor/Trojan Win32.Inject.zy Checkin Post" name_zh_CN="木马后门程序Win32.Inject.zy网络数据通信" name_zh_TW="木馬後門程序Win32.Inject.zy網絡數據通信" ruleid="40879" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="VxWorks信息泄露漏洞" name_en_US="VxWorks Information Disclosure Vulnerability Vulnerability" name_zh_CN="VxWorks信息泄露漏洞" name_zh_TW="VxWorks信息泄露漏洞" ruleid="22364" visible="false" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Automated Solutions Modbus/TCP Master OPC Server堆缓冲区溢出漏洞" name_en_US="Automated Solutions Modbus/TCP Master OPC Server Heap Buffer Overflow Vulnerability Vulnerability" name_zh_CN="Automated Solutions Modbus/TCP Master OPC Server堆缓冲区溢出漏洞" name_zh_TW="Automated Solutions Modbus/TCP Master OPC Server堆緩沖區溢出漏洞" ruleid="22365" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA系统目录遍历和下载漏洞" name_en_US="IGSS SCADA System Directory Traversal and Download Vulnerability" name_zh_CN="IGSS SCADA系统目录遍历和下载漏洞" name_zh_TW="IGSS SCADA系統目錄遍曆和下載漏洞" ruleid="22366" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA系统目录遍历上传和覆盖漏洞" name_en_US="IGSS SCADA System Directory Traversal Upload and Overwrite Vulnerability" name_zh_CN="IGSS SCADA系统目录遍历上传和覆盖漏洞" name_zh_TW="IGSS SCADA系統目錄遍曆上傳和覆蓋漏洞" ruleid="22367" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="RealWin特制报文处理多个栈溢出漏洞" name_en_US="RealWin Specially Crafted Packet Processing Stack Overflow Vulnerability Vulnerability" name_zh_CN="RealWin特制报文处理多个栈溢出漏洞" name_zh_TW="RealWin特制報文處理多個棧溢出漏洞" ruleid="22360" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Intellicom HMS HICP协议Hostname字段缓冲区溢出漏洞" name_en_US="Intellicom HMS HICP Agreement Hostname Field Buffer Overflow Vulnerability Vulnerability" name_zh_CN="Intellicom HMS HICP协议Hostname字段缓冲区溢出漏洞" name_zh_TW="Intellicom HMS HICP協議Hostname字段緩沖區溢出漏洞" ruleid="22361" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="WellinTech KingView HistorySvr.exe堆缓冲区溢出漏洞" name_en_US="WellinTech KingView HistorySvr.exe Heap Buffer Overflow Vulnerability Vulnerability" name_zh_CN="WellinTech KingView HistorySvr.exe堆缓冲区溢出漏洞" name_zh_TW="WellinTech KingView HistorySvr.exe堆緩沖區溢出漏洞" ruleid="22362" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="NetBiter webSCADA目录遍历漏洞" name_en_US="NetBiter webSCADA Directory Traversal Vulnerability Vulnerability" name_zh_CN="NetBiter webSCADA目录遍历漏洞" name_zh_TW="NetBiter webSCADA目錄遍曆漏洞" ruleid="22363" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏泡泡堂客户端连接服务器" name_en_US="Online Game &quot;paopaotang&quot;  Client Connect Server " name_zh_CN="网络游戏泡泡堂客户端连接服务器" name_zh_TW="網絡遊戲泡泡堂客戶端連接服務器" ruleid="50101" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台浩方对战登录" name_en_US="Online Game Platform &quot;cga.com.cn&quot; Login" name_zh_CN="网络游戏平台浩方对战登录" name_zh_TW="網絡遊戲平台浩方對戰登錄" ruleid="50100" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏传奇世界客户端连接服务器" name_en_US="Online Game &quot;The Legend&quot;  Client Connect Server " name_zh_CN="网络游戏传奇世界客户端连接服务器" name_zh_TW="網絡遊戲傳奇世界客戶端連接服務器" ruleid="50103" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="即时通信工具QQ访问游戏平台通信" name_en_US="Instant Messaging Tool QQ Game Access Platform Attempt" name_zh_CN="即时通信工具QQ访问游戏平台通信" name_zh_TW="即時通信工具QQ訪問遊戲平台通信" ruleid="50102" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA ListAll Function缓冲区溢出漏洞" name_en_US="IGSS SCADA ListAll Function Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA ListAll Function缓冲区溢出漏洞" name_zh_TW="IGSS SCADA ListAll Function緩沖區溢出漏洞" ruleid="22368" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IGSS SCADA Write File Function缓冲区溢出漏洞" name_en_US="IGSS SCADA Write File Function Buffer Overflow Vulnerability" name_zh_CN="IGSS SCADA Write File Function缓冲区溢出漏洞" name_zh_TW="IGSS SCADA Write File Function緩沖區溢出漏洞" ruleid="22369" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台联众游戏登录" name_en_US="Online Game Platform &quot;Ourgame&quot; Login" name_zh_CN="网络游戏平台联众游戏登录" name_zh_TW="網絡遊戲平台聯衆遊戲登錄" ruleid="50107" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏剑侠情缘客户端连接服务器" name_en_US="Online Game &quot;Knights' Affection&quot; Client Connect Server " name_zh_CN="网络游戏剑侠情缘客户端连接服务器" name_zh_TW="網絡遊戲劍俠情緣客戶端連接服務器" ruleid="50106" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 热启动 " name_en_US="DNP3 – Warm Restart" name_zh_CN="DNP3 – 热启动 " name_zh_TW="DNP3 – 熱啓動 " ruleid="22414" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 来自于授权/未授权客户端的广播请求" name_en_US="DNP3 – Broadcast Request from Authorized/Unauthorized  Client" name_zh_CN="DNP3 – 来自于授权/未授权客户端的广播请求" name_zh_TW="DNP3 – 來自于授權/未授權客戶端的廣播請求" ruleid="22415" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 对PLC的未授权混合请求" name_en_US="DNP3 – Unauthorized Miscellaneous Request to a PLC" name_zh_CN="DNP3 – 对PLC的未授权混合请求" name_zh_TW="DNP3 – 對PLC的未授權混合請求" ruleid="22412" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 停止应用 " name_en_US="DNP3 – Stop Application" name_zh_CN="DNP3 – 停止应用 " name_zh_TW="DNP3 – 停止應用 " ruleid="22413" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – PLC的未授权读请求 " name_en_US="DNP3 – Unauthorized Read Request to a PLC" name_zh_CN="DNP3 – PLC的未授权读请求 " name_zh_TW="DNP3 – PLC的未授權讀請求 " ruleid="22410" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – PLC的未授权写请求 " name_en_US="Unauthorized Write Request to a PLC" name_zh_CN="DNP3 – PLC的未授权写请求 " name_zh_TW="DNP3 – PLC的未授權寫請求 " ruleid="22411" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体PPTV网络电视(UDP)连接" name_en_US="Online Streaming Media PPTV Network TV (UDP) Connect" name_zh_CN="在线流媒体PPTV网络电视(UDP)连接" name_zh_TW="在線流媒體PPTV網絡電視(UDP)連接" ruleid="50193" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Microsoft IIS FTPd服务NLST命令远程栈溢出攻击" name_en_US="Microsoft IIS FTPd NLST Remote Buffer Overflow Attack " name_zh_CN="Microsoft IIS FTPd服务NLST命令远程栈溢出攻击" name_zh_TW="Microsoft IIS FTPd服務NLST命令遠程棧溢出攻擊" ruleid="21045" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725675" module="0" name="Hewlett-Packard Linux Imaging和Printing Project远程命令注入漏洞" name_en_US="hplip hpssd.py From Address Arbitrary Command Execution Vulnerability" name_zh_CN="Hewlett-Packard Linux Imaging和Printing Project远程命令注入漏洞" name_zh_TW="Hewlett-Packard Linux Imaging和Printing Project遠程命令注入漏洞" ruleid="21828" visible="true" />
			<rule action=" db  screen " enabled="true" group="229640239" module="0" name="SMB错误命令绕过检查远程代码执行攻击" name_en_US="SMB Incorrect Command Bypasses Checks Remote Code Execution Attack" name_zh_CN="SMB错误命令绕过检查远程代码执行攻击" name_zh_TW="SMB錯誤命令繞過檢查遠程代碼執行攻擊" ruleid="21047" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Visual Studio ATL库COM对象初始化远程代码执行攻击" name_en_US="Visual Studio ATL Library COM Object Initialize Remote Code Execution" name_zh_CN="Visual Studio ATL库COM对象初始化远程代码执行攻击" name_zh_TW="Visual Studio ATL庫COM對象初始化遠程代碼執行攻擊" ruleid="21040" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft 活动模板库(ATL) ReadFromStream函数远程代码执行攻击" name_en_US="Microsoft Active Template Library (ATL) ReadFromStream Function Remote Code Execution" name_zh_CN="Microsoft 活动模板库(ATL) ReadFromStream函数远程代码执行攻击" name_zh_TW="Microsoft 活動模板庫(ATL) ReadFromStream函數遠程代碼執行攻擊" ruleid="21041" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft 活动模板库(ATL) Load方法远程代码执行攻击" name_en_US="Microsoft Active Template Library (ATL) Load method Remote Code Execution" name_zh_CN="Microsoft 活动模板库(ATL) Load方法远程代码执行攻击" name_zh_TW="Microsoft 活動模板庫(ATL) Load方法遠程代碼執行攻擊" ruleid="21042" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="WINS未验证整数溢出远程代码执行攻击" name_en_US="WINS Unauthenticated Integer Overflow Remote Code Execution" name_zh_CN="WINS未验证整数溢出远程代码执行攻击" name_zh_TW="WINS未驗證整數溢出遠程代碼執行攻擊" ruleid="21043" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159531" module="0" name="Microsoft IIS FTP服务远程代码执行攻击" name_en_US="Microsoft IIS FTP Service Cause Remote Code Execution Attack" name_zh_CN="Microsoft IIS FTP服务远程代码执行攻击" name_zh_TW="Microsoft IIS FTP服務遠程代碼執行攻擊" ruleid="21048" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="WSDAPI服务远程代码执行攻击" name_en_US="WSDAPI Service Remote Code Execution Attack" name_zh_CN="WSDAPI服务远程代码执行攻击" name_zh_TW="WSDAPI服務遠程代碼執行攻擊" ruleid="21049" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Backdoor.Win32.VB.brg Reporting Version网络数据通信" name_en_US="Backdoor/Trojan Backdoor.Win32.VB.brg C&amp;C Reporting Version" name_zh_CN="木马后门程序Backdoor.Win32.VB.brg Reporting Version网络数据通信" name_zh_TW="木馬後門程序Backdoor.Win32.VB.brg Reporting Version網絡數據通信" ruleid="40888" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft GDI+ EMF图形处理整数溢出内存破坏漏洞（MS11-029）" name_en_US="Microsoft GDI+ EMF Image Processing Integer Overflow Memory Corruption Vulnerability (MS11-029)（MS11-029）" name_zh_CN="Microsoft GDI+ EMF图形处理整数溢出内存破坏漏洞（MS11-029）" name_zh_TW="Microsoft GDI+ EMF圖形處理整數溢出內存破壞漏洞（MS11-029）" ruleid="21220" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Fax Cover Page Editor 远程代码执行漏洞" name_en_US="Vulnerability in Windows Fax Cover Page Editor Could Allow Remote Code Execution" name_zh_CN="Windows Fax Cover Page Editor 远程代码执行漏洞" name_zh_TW="Windows Fax Cover Page Editor 遠程代碼執行漏洞" ruleid="21221" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="SCADA 3S CoDeSys CmpWebServer SP4 Patch 2栈缓冲区漏洞" name_en_US="SCADA 3S CoDeSys CmpWebServer SP4 Patch 2 Stack Buffer Overflow Vulnerability" name_zh_CN="SCADA 3S CoDeSys CmpWebServer SP4 Patch 2栈缓冲区漏洞" name_zh_TW="SCADA 3S CoDeSys CmpWebServer SP4 Patch 2棧緩沖區漏洞" ruleid="21954" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE布局处理释放后重用远程内存破坏漏洞(MS11-018)(CVE-2011-0346)" name_en_US="Microsoft IE Layout Handling User-After-Free Remote Memory Corruption Vulnerability (MS11-018)(CVE-2011-0346)" name_zh_CN="Microsoft IE布局处理释放后重用远程内存破坏漏洞(MS11-018)(CVE-2011-0346)" name_zh_TW="Microsoft IE布局處理釋放後重用遠程內存破壞漏洞(MS11-018)(CVE-2011-0346)" ruleid="21223" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="GoldenFTP PASS栈缓冲区溢出漏洞" name_en_US="GoldenFTP PASS Stack Buffer Overflow Vulnerability" name_zh_CN="GoldenFTP PASS栈缓冲区溢出漏洞" name_zh_TW="GoldenFTP PASS棧緩沖區溢出漏洞" ruleid="21952" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254891" module="0" name="Ipswitch WS_FTP Server 5.05 XMD5溢出漏洞" name_en_US="Ipswitch WS_FTP Server 5.05 XMD5 Overflow Vulnerability" name_zh_CN="Ipswitch WS_FTP Server 5.05 XMD5溢出漏洞" name_zh_TW="Ipswitch WS_FTP Server 5.05 XMD5溢出漏洞" ruleid="21953" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows OpenType Compact Font Format (CFF) Driver 远程代码执行漏洞" name_en_US="Vulnerability in the Microsoft Windows OpenType Compact Font Format (CFF) Driver Could Allow Remote Code Execution" name_zh_CN="Microsoft Windows OpenType Compact Font Format (CFF) Driver 远程代码执行漏洞" name_zh_TW="Microsoft Windows OpenType Compact Font Format (CFF) Driver 遠程代碼執行漏洞" ruleid="21226" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE Developer Tools ActiveX控件远程内存破坏漏洞（MS10-034）" name_en_US="Microsoft IE Developer Tools ActiveX Control Remote Memory Corruption Vulnerability（MS10-034）" name_zh_CN="Microsoft IE Developer Tools ActiveX控件远程内存破坏漏洞（MS10-034）" name_zh_TW="Microsoft IE Developer Tools ActiveX控件遠程內存破壞漏洞（MS10-034）" ruleid="21227" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="ActiveX Kill Bits安全漏洞" name_en_US="Cumulative Security Update for ActiveX Kill Bits" name_zh_CN="ActiveX Kill Bits安全漏洞" name_zh_TW="ActiveX Kill Bits安全漏洞" ruleid="21228" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows Messenger ActiveX控件远程代码执行漏洞（MS11-027）" name_en_US="Microsoft Windows Messenger ActiveX Control Remote Code Execution Vulnerability（MS11-027）" name_zh_CN="Microsoft Windows Messenger ActiveX控件远程代码执行漏洞（MS11-027）" name_zh_TW="Microsoft Windows Messenger ActiveX控件遠程代碼執行漏洞（MS11-027）" ruleid="21229" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="NullSession畸形Cookie数据拒绝服务漏洞(CVE-2011-2012)" name_en_US="NullSession Malformed Cookie Data Crash Vulnerability(CVE-2011-2012)" name_zh_CN="NullSession畸形Cookie数据拒绝服务漏洞(CVE-2011-2012)" name_zh_TW="NullSession畸形Cookie數據拒絕服務漏洞(CVE-2011-2012)" ruleid="10313" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Snabase.exe 死循环拒绝服务攻击漏洞(CVE-2011-2007)" name_en_US="Snabase.exe Endless Loop DoS Vulnerability(CVE-2011-2007)" name_zh_CN="Snabase.exe 死循环拒绝服务攻击漏洞(CVE-2011-2007)" name_zh_TW="Snabase.exe 死循環拒絕服務攻擊漏洞(CVE-2011-2007)" ruleid="10314" visible="false" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Sunway ForceControl AngelServer Type 6拒绝服务漏洞" name_en_US="Sunway ForceControl AngelServer Type 6 Denial of Service Vulnerability" name_zh_CN="Sunway ForceControl AngelServer Type 6拒绝服务漏洞" name_zh_TW="Sunway ForceControl AngelServer Type 6拒絕服務漏洞" ruleid="10315" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Sunway ForceControl AngelServer Type 7 重启拒绝服务漏洞" name_en_US="Sunway ForceControl AngelServer Type 7 Reboot Denial of Service Vulnerability" name_zh_CN="Sunway ForceControl AngelServer Type 7 重启拒绝服务漏洞" name_zh_TW="Sunway ForceControl AngelServer Type 7 重啓拒絕服務漏洞" ruleid="10316" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Contacy.info网络数据通信" name_en_US="Backdoor/Trojan contacy.info Checkin User agent clk_jdfhid" name_zh_CN="木马后门程序Contacy.info网络数据通信" name_zh_TW="木馬後門程序Contacy.info網絡數據通信" ruleid="40881" visible="true" />
			<rule action=" db  screen " enabled="true" group="233865242" module="0" name="DDOS工具攻击告警" name_en_US="DDOS tool attacking detection" name_zh_CN="DDOS工具攻击告警" name_zh_TW="DDOS工具攻擊告警" ruleid="10341" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Win32.Small.dvs网络数据通信 " name_en_US="Backdoor/Trojan Win32.Small.dvs or Related DDOS Checkin" name_zh_CN="木马后门程序Win32.Small.dvs网络数据通信 " name_zh_TW="木馬後門程序Win32.Small.dvs網絡數據通信 " ruleid="40880" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="木马后门程序Sality Virus网络数据通信" name_en_US="Backdoor/Trojan Sality Virus User Agent Detected KUKU" name_zh_CN="木马后门程序Sality Virus网络数据通信" name_zh_TW="木馬後門程序Sality Virus網絡數據通信" ruleid="40882" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序ASPAdmin文件操作" name_en_US="Backdoor/Trojan ASPAdmin Files Operation" name_zh_CN="木马后门程序ASPAdmin文件操作" name_zh_TW="木馬後門程序ASPAdmin文件操作" ruleid="40971" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="LanDesk管理套件Alert服务AOLSRVR.EXE缓冲区溢出攻击" name_en_US="LanDesk Management Suite Alert Service AOLSRVR.EXE Buffer Overflow" name_zh_CN="LanDesk管理套件Alert服务AOLSRVR.EXE缓冲区溢出攻击" name_zh_TW="LanDesk管理套件Alert服務AOLSRVR.EXE緩沖區溢出攻擊" ruleid="20809" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Agent URI解析远程代码执行攻击" name_en_US="Microsoft Agent URI Resolution Remote Code Execution" name_zh_CN="Microsoft Agent URI解析远程代码执行攻击" name_zh_TW="Microsoft Agent URI解析遠程代碼執行攻擊" ruleid="20808" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Windows UPnP远程栈溢出攻击" name_en_US="Microsoft Windows UPnP Remote Stack Overflow" name_zh_CN="Microsoft Windows UPnP远程栈溢出攻击" name_zh_TW="Microsoft Windows UPnP遠程棧溢出攻擊" ruleid="20807" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows DNS服务器RPC接口远程缓冲区溢出攻击" name_en_US="Microsoft Windows DNS Server RPC Interface Remote Buffer Overflow" name_zh_CN="Microsoft Windows DNS服务器RPC接口远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows DNS服務器RPC接口遠程緩沖區溢出攻擊" ruleid="20804" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHPWind passport_client.php文件UPDATE参数远程SQL注入攻击" name_en_US="PHPWind passport_client.php File UPDATE Parameter Remote SQL Injection" name_zh_CN="PHPWind passport_client.php文件UPDATE参数远程SQL注入攻击" name_zh_TW="PHPWind passport_client.php文件UPDATE參數遠程SQL注入攻擊" ruleid="20803" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546351" module="0" name="IMAP服务器SUBSCRIBE命令超长参数远程缓冲区溢出攻击" name_en_US="IMAP Server SUBSCRIBE Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="IMAP服务器SUBSCRIBE命令超长参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務器SUBSCRIBE命令超長參數遠程緩沖區溢出攻擊" ruleid="20802" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="CA Brightstor Backup Mediasvr.exe远程指令执行攻击" name_en_US="CA Brightstor Backup Mediasvr.exe Remote Code Execution" name_zh_CN="CA Brightstor Backup Mediasvr.exe远程指令执行攻击" name_zh_TW="CA Brightstor Backup Mediasvr.exe遠程指令執行攻擊" ruleid="20801" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Windows动画光标畸形ANI头结构远程栈溢出攻击" name_en_US="Microsoft Windows Cartoon Cursor Malformed ANI Header Structure Remote Stack Overflow" name_zh_CN="Microsoft Windows动画光标畸形ANI头结构远程栈溢出攻击" name_zh_TW="Microsoft Windows動畫光標畸形ANI頭結構遠程棧溢出攻擊" ruleid="20800" visible="true" />
			<rule action=" db  screen " enabled="false" group="368082966" module="0" name="ICMP消息指令Modem挂起攻击" name_en_US="ICMP Message Signal Modem Hang" name_zh_CN="ICMP消息指令Modem挂起攻击" name_zh_TW="ICMP消息指令Modem挂起攻擊" ruleid="10004" visible="false" />
			<rule action=" db  screen " enabled="true" group="150997014" module="0" name="Solaris rpc.ttdbserverd远程拒绝服务攻击" name_en_US="Solaris rpc.ttdbserverd Remote Denial of Service" name_zh_CN="Solaris rpc.ttdbserverd远程拒绝服务攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程拒絕服務攻擊" ruleid="10005" visible="true" />
			<rule action=" db  screen " enabled="true" group="165675307" module="0" name="Cassandra NNTPServer v1.10远程缓冲区溢出攻击" name_en_US="Cassandra NNTPServer v1.10 Remote Buffer Overflow" name_zh_CN="Cassandra NNTPServer v1.10远程缓冲区溢出攻击" name_zh_TW="Cassandra NNTPServer v1.10遠程緩沖區溢出攻擊" ruleid="10006" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="IP重叠分片包Teardrop拒绝服务攻击" name_en_US="IP Fragment Overlap Teardrop Denial of Service Attacks" name_zh_CN="IP重叠分片包Teardrop拒绝服务攻击" name_zh_TW="IP重疊分片包Teardrop拒絕服務攻擊" ruleid="10000" visible="false" />
			<rule action=" db  screen " enabled="true" group="146802710" module="0" name="FINGER服务代理递归查询拒绝服务攻击" name_en_US="FINGER Service Agent Recursive Query Denial of Service" name_zh_CN="FINGER服务代理递归查询拒绝服务攻击" name_zh_TW="FINGER服務代理遞歸查詢拒絕服務攻擊" ruleid="10001" visible="true" />
			<rule action=" db  screen " enabled="true" group="142608423" module="0" name="Sendmail 5.x MAIL命令远程执行命令攻击" name_en_US="Sendmail 5.x MAIL Remote Command Execution" name_zh_CN="Sendmail 5.x MAIL命令远程执行命令攻击" name_zh_TW="Sendmail 5.x MAIL命令遠程執行命令攻擊" ruleid="20157" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Allaire ColdFusion startstop.html页面访问操作" name_en_US="Allaire ColdFusion startstop.html Page Access" name_zh_CN="Allaire ColdFusion startstop.html页面访问操作" name_zh_TW="Allaire ColdFusion startstop.html頁面訪問操作" ruleid="10009" visible="true" />
			<rule action=" db  screen " enabled="true" group="142606635" module="0" name="Exim auth_spa_server()缓冲区溢出攻击" name_en_US="Exim auth_spa_server() Buffer Overflow" name_zh_CN="Exim auth_spa_server()缓冲区溢出攻击" name_zh_TW="Exim auth_spa_server()緩沖區溢出攻擊" ruleid="20797" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Snort DCE/RPC预处理器远程缓冲区溢出攻击" name_en_US="Snort DCE/RPC Preprocessor Remote Buffer Overflow" name_zh_CN="Snort DCE/RPC预处理器远程缓冲区溢出攻击" name_zh_TW="Snort DCE/RPC預處理器遠程緩沖區溢出攻擊" ruleid="20796" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Wordpress 2.1.1远程命令执行后门攻击" name_en_US="Wordpress 2.1.1 Remote Command Execution Backdoor" name_zh_CN="Wordpress 2.1.1远程命令执行后门攻击" name_zh_TW="Wordpress 2.1.1遠程命令執行後門攻擊" ruleid="20795" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="PollMentor pollmentorres.asp远程SQL注入攻击" name_en_US="PollMentor pollmentorres.asp Remote SQL Injection" name_zh_CN="PollMentor pollmentorres.asp远程SQL注入攻击" name_zh_TW="PollMentor pollmentorres.asp遠程SQL注入攻擊" ruleid="20794" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2452)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2452)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2452)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2452)" ruleid="21318" visible="true" />
			<rule action=" db  screen " enabled="true" group="138414119" module="0" name="SunOS 5.10/5.11 TELNET服务远程绕过认证访问攻击" name_en_US="SunOS 5.10/5.11 TELNET Service Remote Authentication Bypass" name_zh_CN="SunOS 5.10/5.11 TELNET服务远程绕过认证访问攻击" name_zh_TW="SunOS 5.10/5.11 TELNET服務遠程繞過認證訪問攻擊" ruleid="20792" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="CM68 News oldnews.inc.php远程文件包含攻击" name_en_US="CM68 News oldnews.inc.php Remote File Inclusion" name_zh_CN="CM68 News oldnews.inc.php远程文件包含攻击" name_zh_TW="CM68 News oldnews.inc.php遠程文件包含攻擊" ruleid="20791" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Blog:CMS NP_UserSharing.php远程文件包含攻击" name_en_US="Blog:CMS NP_UserSharing.php Remote File Inclusion" name_zh_CN="Blog:CMS NP_UserSharing.php远程文件包含攻击" name_zh_TW="Blog:CMS NP_UserSharing.php遠程文件包含攻擊" ruleid="20790" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Adobe Acrobat 和 Adobe Reader U3D  Tiff 栈溢出漏洞(CVE-2011-2432)" name_en_US="Adobe Acrobat and Reader U3D Tiff Remote Buffer Overflow Vulnerability(CVE-2011-2432)" name_zh_CN="Adobe Acrobat 和 Adobe Reader U3D  Tiff 栈溢出漏洞(CVE-2011-2432)" name_zh_TW="Adobe Acrobat 和 Adobe Reader U3D  Tiff 棧溢出漏洞(CVE-2011-2432)" ruleid="21314" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player ActionScript 3.0 内存破坏漏洞(CVE-2011-2445)" name_en_US="Adobe Flash Player ActionScript 3.0  Memory Corruption Vulnerability(CVE-2011-2445)" name_zh_CN="Adobe Flash Player ActionScript 3.0 内存破坏漏洞(CVE-2011-2445)" name_zh_TW="Adobe Flash Player ActionScript 3.0 內存破壞漏洞(CVE-2011-2445)" ruleid="21315" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 栈溢出漏洞(CVE-2011-2450)" name_en_US="Adobe Flash Player Heap Corruption Vulnerability(CVE-2011-2450)" name_zh_CN="Adobe Flash Player 栈溢出漏洞(CVE-2011-2450)" name_zh_TW="Adobe Flash Player 棧溢出漏洞(CVE-2011-2450)" ruleid="21316" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2451)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2451)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2451)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2451)" ruleid="21317" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sunway ForceControl AngelServer 2001/TCP Type 0X53 栈溢出漏洞" name_en_US="Sunway ForceControl AngelServer 2001/TCP Type 0X53 Stack Overflow Vulnerability" name_zh_CN="Sunway ForceControl AngelServer 2001/TCP Type 0X53 栈溢出漏洞" name_zh_TW="Sunway ForceControl AngelServer 2001/TCP Type 0X53 棧溢出漏洞" ruleid="21310" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="miniBB bb_func_usernfo.php远程SQL注入攻击" name_en_US="miniBB bb_func_usernfo.php Remote SQL Injection" name_zh_CN="miniBB bb_func_usernfo.php远程SQL注入攻击" name_zh_TW="miniBB bb_func_usernfo.php遠程SQL注入攻擊" ruleid="20463" visible="true" />
			<rule action=" db  screen " enabled="true" group="93323563" module="0" name="SNMP NetPower NetServer 内存破坏漏洞" name_en_US="SNMP NetPower NetServer Memory Corruption Vulnerability" name_zh_CN="SNMP NetPower NetServer 内存破坏漏洞" name_zh_TW="SNMP NetPower NetServer 內存破壞漏洞" ruleid="21312" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="MailEnable APPEND命令畸形参数远程缓冲区溢出攻击" name_en_US="MailEnable APPEND Command Malformed Parameter Remote Buffer Overflow" name_zh_CN="MailEnable APPEND命令畸形参数远程缓冲区溢出攻击" name_zh_TW="MailEnable APPEND命令畸形參數遠程緩沖區溢出攻擊" ruleid="20798" visible="true" />
			<rule action=" db  screen " enabled="true" group="162529579" module="0" name="Samba QFILEPATHINFO请求应答构造缓冲区溢出攻击" name_en_US="Samba QFILEPATHINFO Request Response Structure Buffer Overflow" name_zh_CN="Samba QFILEPATHINFO请求应答构造缓冲区溢出攻击" name_zh_TW="Samba QFILEPATHINFO請求應答構造緩沖區溢出攻擊" ruleid="20464" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Invision Power Board index.php远程SQL注入攻击" name_en_US="Invision Power Board index.php Remote SQL Injection" name_zh_CN="Invision Power Board index.php远程SQL注入攻击" name_zh_TW="Invision Power Board index.php遠程SQL注入攻擊" ruleid="20467" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316975" module="0" name="AwStates Referer字段处理远程执行任意命令攻击" name_en_US="AwStates Referer Field Handling Remote Arbitrary Command Execution" name_zh_CN="AwStates Referer字段处理远程执行任意命令攻击" name_zh_TW="AwStates Referer字段處理遠程執行任意命令攻擊" ruleid="20573" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MyBB showteam.php远程SQL注入攻击" name_en_US="MyBB showteam.php Remote SQL Injection" name_zh_CN="MyBB showteam.php远程SQL注入攻击" name_zh_TW="MyBB showteam.php遠程SQL注入攻擊" ruleid="20572" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Invision Power Board Army Mod远程SQL注入攻击" name_en_US="Invision Power Board Army Mod Remote SQL Injection" name_zh_CN="Invision Power Board Army Mod远程SQL注入攻击" name_zh_TW="Invision Power Board Army Mod遠程SQL注入攻擊" ruleid="20571" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="RunCMS远程及本地文件包含攻击" name_en_US="RunCMS Remote and Local File Inclusion" name_zh_CN="RunCMS远程及本地文件包含攻击" name_zh_TW="RunCMS遠程及本地文件包含攻擊" ruleid="20570" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425838" module="0" name="Mambo task参数远程SQL注入攻击" name_en_US="Mambo task Parameter Remote SQL Injection" name_zh_CN="Mambo task参数远程SQL注入攻击" name_zh_TW="Mambo task參數遠程SQL注入攻擊" ruleid="20577" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHP-Nuke Your_Account模块远程SQL注入攻击" name_en_US="PHP-Nuke Your_Account Module Remote SQL Injection" name_zh_CN="PHP-Nuke Your_Account模块远程SQL注入攻击" name_zh_TW="PHP-Nuke Your_Account模塊遠程SQL注入攻擊" ruleid="20576" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PLUME CMS prepend.php远程任意命令执行攻击" name_en_US="PLUME CMS prepend.php Remote Arbitrary Command Execution" name_zh_CN="PLUME CMS prepend.php远程任意命令执行攻击" name_zh_TW="PLUME CMS prepend.php遠程任意命令執行攻擊" ruleid="20574" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Apache Tomcat Snoop Servlet远程获取信息攻击" name_en_US="Apache Tomcat Snoop Servlet Remote Information Disclosure" name_zh_CN="Apache Tomcat Snoop Servlet远程获取信息攻击" name_zh_TW="Apache Tomcat Snoop Servlet遠程獲取信息攻擊" ruleid="30406" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Guestbook Script本地文件包含执行命令攻击" name_en_US="Guestbook Script Local File Inclusion Command Execution" name_zh_CN="Guestbook Script本地文件包含执行命令攻击" name_zh_TW="Guestbook Script本地文件包含執行命令攻擊" ruleid="20579" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="WEBInsta Limbo Itemid变量远程执行命令攻击" name_en_US="WEBInsta Limbo Itemid Variable Remote Command Execution" name_zh_CN="WEBInsta Limbo Itemid变量远程执行命令攻击" name_zh_TW="WEBInsta Limbo Itemid變量遠程執行命令攻擊" ruleid="20578" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BackOrifice木马通信" name_en_US="Backdoor/Trojan BackOrifice Communication " name_zh_CN="木马后门程序BackOrifice木马通信" name_zh_TW="木馬後門程序BackOrifice木馬通信" ruleid="40693" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows GDI32内核组件远程代码执行攻击" name_en_US="Microsoft Windows GDI32 Polylines Rendering Remote Code Execution Attack" name_zh_CN="Microsoft Windows GDI32内核组件远程代码执行攻击" name_zh_TW="Microsoft Windows GDI32內核組件遠程代碼執行攻擊" ruleid="20977" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="MW6 Barcode ActiveX控件远程缓冲区溢出攻击" name_en_US="MW6 Technologies Barcode ActiveX Control Supplement Heap Buffer Overflow Attack" name_zh_CN="MW6 Barcode ActiveX控件远程缓冲区溢出攻击" name_zh_TW="MW6 Barcode ActiveX控件遠程緩沖區溢出攻擊" ruleid="20976" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP Instant Support HPISDataManager.dll ActiveX控件GetFileTime函数缓冲区溢出攻击" name_en_US="HP Instant Support HPISDataManager.dll ActiveX Control Buffer Overflow Attack" name_zh_CN="HP Instant Support HPISDataManager.dll ActiveX控件GetFileTime函数缓冲区溢出攻击" name_zh_TW="HP Instant Support HPISDataManager.dll ActiveX控件GetFileTime函數緩沖區溢出攻擊" ruleid="20975" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE 对XML象处理远程代码执行攻击" name_en_US="Microsoft IE XML Handling Remote Code Execution Attack" name_zh_CN="Microsoft IE 对XML象处理远程代码执行攻击" name_zh_TW="Microsoft IE 對XML象處理遠程代碼執行攻擊" ruleid="20974" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Facebook PhotoUploader ActiveX控件超长属性参数栈溢出攻击" name_en_US="Facebook Photo Uploader ImageUploader FileMask Method ActiveX Buffer Overflow Attack" name_zh_CN="Facebook PhotoUploader ActiveX控件超长属性参数栈溢出攻击" name_zh_TW="Facebook PhotoUploader ActiveX控件超長屬性參數棧溢出攻擊" ruleid="20973" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="Windows Server服务RPC请求缓冲区溢出攻击(MS08-067)" name_en_US="Microsoft Windows Server Service RPC Handling Remote Code Execution Attack(MS08-067)" name_zh_CN="Windows Server服务RPC请求缓冲区溢出攻击(MS08-067)" name_zh_TW="Windows Server服務RPC請求緩沖區溢出攻擊(MS08-067)" ruleid="20972" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Borland InterBase ibserver.exe服务远程缓冲区溢出攻击" name_en_US="Borland InterBase IBServer Remote Buffer Overflow Attack" name_zh_CN="Borland InterBase ibserver.exe服务远程缓冲区溢出攻击" name_zh_TW="Borland InterBase ibserver.exe服務遠程緩沖區溢出攻擊" ruleid="20970" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431989" module="0" name="Trend Micro Interscan Viruswall CGI程序缓冲区溢出漏洞扫描探测" name_en_US="Trend Micro Interscan Viruswall CGI Buffer Overflow Detection" name_zh_CN="Trend Micro Interscan Viruswall CGI程序缓冲区溢出漏洞扫描探测" name_zh_TW="Trend Micro Interscan Viruswall CGI程序緩沖區溢出漏洞掃描探測" ruleid="30408" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596714" module="0" name="Microsoft Windows WINS WPAD Registration欺骗攻击" name_en_US="Microsoft Windows WINS WPAD Registration Spoof Attack" name_zh_CN="Microsoft Windows WINS WPAD Registration欺骗攻击" name_zh_TW="Microsoft Windows WINS WPAD Registration欺騙攻擊" ruleid="20979" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596746" module="0" name="Microsoft Windows DNS WPAD Registration欺骗攻击" name_en_US="Microsoft Windows DNS WPAD Registration Spoof Attack" name_zh_CN="Microsoft Windows DNS WPAD Registration欺骗攻击" name_zh_TW="Microsoft Windows DNS WPAD Registration欺騙攻擊" ruleid="20978" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="Microsoft SharePoint /_layouts/ScriptResx.ashx目录遍历漏洞(CVE-2013-0084)(MS13-024)" name_en_US="Microsoft SharePoint /_layouts/ScriptResx.ashx Directory Traversal(CVE-2013-0084)(MS13-024)" name_zh_CN="Microsoft SharePoint /_layouts/ScriptResx.ashx目录遍历漏洞(CVE-2013-0084)(MS13-024)" name_zh_TW="Microsoft SharePoint /_layouts/ScriptResx.ashx目錄遍曆漏洞(CVE-2013-0084)(MS13-024)" ruleid="30598" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616829" module="0" name="Microsoft OneNote 信息泄露漏洞(CVE-2013-0086) (MS13-025)" name_en_US="Microsoft OneNote Information Disclosure(CVE-2013-0086) (MS13-025)" name_zh_CN="Microsoft OneNote 信息泄露漏洞(CVE-2013-0086) (MS13-025)" name_zh_TW="Microsoft OneNote 信息泄露漏洞(CVE-2013-0086) (MS13-025)" ruleid="30599" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ttdbserverd服务存在性TCP扫描探测" name_en_US="Solaris rpc.ttdbserverd Service TCP Detection" name_zh_CN="Solaris rpc.ttdbserverd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.ttdbserverd服務存在性TCP掃描探測" ruleid="30228" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486041" module="0" name="Windows NT SMB建立连接" name_en_US="Windows NT SMB Connection Establishment" name_zh_CN="Windows NT SMB建立连接" name_zh_TW="Windows NT SMB建立連接" ruleid="30226" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ttdbserverd服务存在性UDP扫描探测" name_en_US="Solaris rpc.ttdbserverd Service UDP Detection" name_zh_CN="Solaris rpc.ttdbserverd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.ttdbserverd服務存在性UDP掃描探測" ruleid="30227" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="OmniHTTPd visadmin.exe程序漏洞扫描探测" name_en_US="OmniHTTPd visadmin.exe Vulnerability Detection" name_zh_CN="OmniHTTPd visadmin.exe程序漏洞扫描探测" name_zh_TW="OmniHTTPd visadmin.exe程序漏洞掃描探測" ruleid="30224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序广外男生木马通信" name_en_US="Backdoor/Trojan gwboy Communication " name_zh_CN="木马后门程序广外男生木马通信" name_zh_TW="木馬後門程序廣外男生木馬通信" ruleid="40716" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS 5.0 +.htr文件泄漏漏洞获取源代码攻击" name_en_US="Source Code Disclosure from Microsoft IIS 5.0 +.htr File" name_zh_CN="Microsoft IIS 5.0 +.htr文件泄漏漏洞获取源代码攻击" name_zh_TW="Microsoft IIS 5.0 +.htr文件泄漏漏洞獲取源代碼攻擊" ruleid="30222" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage orders.htm文件获取服务器信息" name_en_US="Server Information Disclosure from Frontpage orders.htm File" name_zh_CN="访问Frontpage orders.htm文件获取服务器信息" name_zh_TW="訪問Frontpage orders.htm文件獲取服務器信息" ruleid="30223" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件service.stp获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File service.stp" name_zh_CN="访问Frontpage配置文件service.stp获取服务器信息" name_zh_TW="訪問Frontpage配置文件service.stp獲取服務器信息" ruleid="30220" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件registrations.txt获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File registrations.txt" name_zh_CN="访问Frontpage配置文件registrations.txt获取服务器信息" name_zh_TW="訪問Frontpage配置文件registrations.txt獲取服務器信息" ruleid="30221" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Mdaemon Mail Server FORM2RAW.exe 缓冲区溢出漏洞" name_en_US="HTTP: Mdaemon Mail Server FORM2RAW.exe Buffer Overflow" name_zh_CN="Mdaemon Mail Server FORM2RAW.exe 缓冲区溢出漏洞" name_zh_TW="Mdaemon Mail Server FORM2RAW.exe 緩沖區溢出漏洞" ruleid="29194" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="Apache Tomcat Servlet  Engine 目录遍历漏洞" name_en_US="HTTP: Apache Tomcat Servlet  Engine Directory Traversal Vulnerability" name_zh_CN="Apache Tomcat Servlet  Engine 目录遍历漏洞" name_zh_TW="Apache Tomcat Servlet  Engine 目錄遍曆漏洞" ruleid="29195" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316971" module="0" name="HP OpenView Network Node Manager 远程命令执行漏洞" name_en_US="HP OpenView Network Node Manager Remote Command Execution" name_zh_CN="HP OpenView Network Node Manager 远程命令执行漏洞" name_zh_TW="HP OpenView Network Node Manager 遠程命令執行漏洞" ruleid="29198" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206311" module="0" name="Windows Media服务nsiislog.dll远程缓冲区溢出攻击" name_en_US="Windows Media Service nsiislog.dll Remote Buffer Overflow" name_zh_CN="Windows Media服务nsiislog.dll远程缓冲区溢出攻击" name_zh_TW="Windows Media服務nsiislog.dll遠程緩沖區溢出攻擊" ruleid="20379" visible="true" />
			<rule action=" db  screen " enabled="false" group="166727755" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Trinoo Client Sending Default Password to the Console" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40390" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="远程控制工具波尔建立连接" name_en_US="Remote Control Tool Boer Connection" name_zh_CN="远程控制工具波尔建立连接" name_zh_TW="遠程控制工具波爾建立連接" ruleid="40825" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Trinoo客户端向主控端发送默认口令" name_en_US="DDOS Tool Trinoo Client Sending Default Password to Master" name_zh_CN="DDOS工具Trinoo客户端向主控端发送默认口令" name_zh_TW="DDOS工具Trinoo客戶端向主控端發送默認口令" ruleid="40392" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="远程控制工具NetOp建立连接(TCP)" name_en_US="Remote Control Tool NetOp Connection(TCP)" name_zh_CN="远程控制工具NetOp建立连接(TCP)" name_zh_TW="遠程控制工具NetOp建立連接(TCP)" ruleid="40823" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序灰鸽子火狐版客户端连接服务器" name_en_US="Backdoor/Trojan Huigezi Firefox Client Connnection to Server " name_zh_CN="木马后门程序灰鸽子火狐版客户端连接服务器" name_zh_TW="木馬後門程序灰鴿子火狐版客戶端連接服務器" ruleid="40822" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898069" module="0" name="ICMP路由通告消息" name_en_US="ICMP Route Notification Message" name_zh_CN="ICMP路由通告消息" name_zh_TW="ICMP路由通告消息" ruleid="40397" visible="true" />
			<rule action=" db  screen " enabled="false" group="166727755" module="0" name="DDOS工具Shaft SynFlood攻击" name_en_US="DDOS Tool Shaft SynFlood" name_zh_CN="DDOS工具Shaft SynFlood攻击" name_zh_TW="DDOS工具Shaft SynFlood攻擊" ruleid="40109" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Doly Trojan 1.5木马建立连接" name_en_US="Backdoor/Trojan Doly Trojan 1.5 Connection " name_zh_CN="木马后门程序Doly Trojan 1.5木马建立连接" name_zh_TW="木馬後門程序Doly Trojan 1.5木馬建立連接" ruleid="40399" visible="true" />
			<rule action=" db  screen " enabled="true" group="150997035" module="0" name="Solaris rpc.sadmind弱认证远程执行命令攻击" name_en_US="Solaris rpc.sadmind Weak Authentication Remote Command Execution" name_zh_CN="Solaris rpc.sadmind弱认证远程执行命令攻击" name_zh_TW="Solaris rpc.sadmind弱認證遠程執行命令攻擊" ruleid="20370" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="Windows RPC DCOM接口长路径名远程堆缓冲区溢出攻击" name_en_US="Windows RPC DCOM Interface Long Path Name Remote Stack Buffer Overflow" name_zh_CN="Windows RPC DCOM接口长路径名远程堆缓冲区溢出攻击" name_zh_TW="Windows RPC DCOM接口長路徑名遠程堆緩沖區溢出攻擊" ruleid="20372" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows Messenger服务远程堆溢出攻击" name_en_US="Microsoft Windows Messenger Service Remote Heap Overflow" name_zh_CN="Microsoft Windows Messenger服务远程堆溢出攻击" name_zh_TW="Microsoft Windows Messenger服務遠程堆溢出攻擊" ruleid="20377" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412331" module="0" name="System V系统Login远程缓冲区溢出攻击" name_en_US="System V Login Remote Buffer Overflow" name_zh_CN="System V系统Login远程缓冲区溢出攻击" name_zh_TW="System V系統Login遠程緩沖區溢出攻擊" ruleid="20376" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.sadmind服务存在性UDP扫描探测" name_en_US="Solaris rpc.sadmind Service UDP Detection" name_zh_CN="Solaris rpc.sadmind服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.sadmind服務存在性UDP掃描探測" ruleid="30133" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425866" module="0" name="Web服务请求URL中使用%00恶意编码" name_en_US="Malicious %00 Encoding in Web Service Request URL" name_zh_CN="Web服务请求URL中使用%00恶意编码" name_zh_TW="Web服務請求URL中使用%00惡意編碼" ruleid="40003" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Microsoft FrontPage fp30reg.dll漏洞扫描探测" name_en_US="Microsoft FrontPage fp30reg.dll Vulnerability Detection" name_zh_CN="Microsoft FrontPage fp30reg.dll漏洞扫描探测" name_zh_TW="Microsoft FrontPage fp30reg.dll漏洞掃描探測" ruleid="30131" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序MastersParadise木马建立连接" name_en_US="Backdoor/Trojan MastersParadise Connection " name_zh_CN="木马后门程序MastersParadise木马建立连接" name_zh_TW="木馬後門程序MastersParadise木馬建立連接" ruleid="40004" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.snmpXdmid服务存在性TCP扫描探测" name_en_US="Solaris rpc.snmpXdmid Service TCP Detection" name_zh_CN="Solaris rpc.snmpXdmid服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.snmpXdmid服務存在性TCP掃描探測" ruleid="30134" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.snmpXdmid服务存在性UDP扫描探测" name_en_US="Solaris rpc.snmpXdmid Service UDP Detection" name_zh_CN="Solaris rpc.snmpXdmid服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.snmpXdmid服務存在性UDP掃描探測" ruleid="30135" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.pcnfsd服务存在性UDP扫描探测" name_en_US="Solaris rpc.pcnfsd Service Existence UDP Detection" name_zh_CN="Solaris rpc.pcnfsd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.pcnfsd服務存在性UDP掃描探測" ruleid="30048" visible="true" />
			<rule action=" db  screen " enabled="true" group="135268382" module="0" name="lighttpd畸形HTTP Connection域处理拒绝服务漏洞" name_en_US="Encryption detect the lighttpd malformed HTTP Connection Domain Processing Denial of Service Vulnerability" name_zh_CN="lighttpd畸形HTTP Connection域处理拒绝服务漏洞" name_zh_TW="lighttpd畸形HTTP Connection域處理拒絕服務漏洞" ruleid="22543" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="SunOS rpc.selection_svc服务存在性UDP扫描探测" name_en_US="SunOS rpc.selection_svc Service UDP Detection" name_zh_CN="SunOS rpc.selection_svc服务存在性UDP扫描探测" name_zh_TW="SunOS rpc.selection_svc服務存在性UDP掃描探測" ruleid="30042" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.automountd服务存在性UDP扫描探测" name_en_US="Solaris rpc.automountd Service UDP Detection" name_zh_CN="Solaris rpc.automountd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.automountd服務存在性UDP掃描探測" ruleid="30043" visible="true" />
			<rule action=" db  screen " enabled="false" group="233840694" module="0" name="端口扫描器Nmap PING操作" name_en_US="Port Scanner Nmap PING Operation" name_zh_CN="端口扫描器Nmap PING操作" name_zh_TW="端口掃描器Nmap PING操作" ruleid="30040" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="SunRPC服务信息DUMP查询" name_en_US="SunRPC Service Information DUMP Query" name_zh_CN="SunRPC服务信息DUMP查询" name_zh_TW="SunRPC服務信息DUMP查詢" ruleid="30041" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365543" module="0" name="FTP服务转换功能远程执行命令攻击" name_en_US="FTP Service Switch Feature Remote Command Execution" name_zh_CN="FTP服务转换功能远程执行命令攻击" name_zh_TW="FTP服務轉換功能遠程執行命令攻擊" ruleid="40069" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.nisd服务存在性UDP扫描探测" name_en_US="Solaris rpc.nisd Service existence UDP Detection" name_zh_CN="Solaris rpc.nisd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.nisd服務存在性UDP掃描探測" ruleid="30047" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.bootparamd服务存在性UDP扫描探测" name_en_US="Solaris rpc.bootparamd Service UDP Detection" name_zh_CN="Solaris rpc.bootparamd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.bootparamd服務存在性UDP掃描探測" ruleid="30044" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Saros蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Saros" name_zh_CN="SMTP服务发送W32.Saros蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Saros蠕蟲病毒郵件" ruleid="40629" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Lovgate.AN/AO蠕虫变种病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Lovgate.AN/AO Variant" name_zh_CN="SMTP服务发送W32.Lovgate.AN/AO蠕虫变种病毒邮件" name_zh_TW="SMTP服務發送W32.Lovgate.AN/AO蠕蟲變種病毒郵件" ruleid="40628" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通讯工具腾讯通RTX用户登陆" name_en_US="Instant Messaging Tool Tencent RTX User Login" name_zh_CN="即时通讯工具腾讯通RTX用户登陆" name_zh_TW="即時通訊工具騰訊通RTX用戶登陸" ruleid="50370" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="Msn网络爬虫抓取网页信息" name_en_US="Msn Web Crawlers Capture Page Information" name_zh_CN="Msn网络爬虫抓取网页信息" name_zh_TW="Msn網絡爬蟲抓取網頁信息" ruleid="50371" visible="true" />
			<rule action=" db  screen " enabled="false" group="68159558" module="0" name="HTTP协议Content Length头选项字段超长" name_en_US="HTTP Protocol Content Length Header Over Long" name_zh_CN="HTTP协议Content Length头选项字段超长" name_zh_TW="HTTP協議Content Length頭選項字段超長" ruleid="50376" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="1" name="PaperBus VPN代理软件通信" name_en_US="PaperBus VPN Proxy Software Communication" name_zh_CN="PaperBus VPN代理软件通信" name_zh_TW="PaperBus VPN代理軟件通信" ruleid="50374" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377286" module="0" name="HTTP 协议Content Encoding头选项字段超长" name_en_US="HTTP Protocol Content Encoding Header Over Long" name_zh_CN="HTTP 协议Content Encoding头选项字段超长" name_zh_TW="HTTP 協議Content Encoding頭選項字段超長" ruleid="50375" visible="true" />
			<rule action=" db  screen " enabled="true" group="69210187" module="0" name="Yesadvertising Banking间谍软件活动" name_en_US="Yesadvertising Banking Spyware Activity" name_zh_CN="Yesadvertising Banking间谍软件活动" name_zh_TW="Yesadvertising Banking間諜軟件活動" ruleid="40621" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Sober.D@mm蠕虫病毒邮件" name_en_US="SMTP Servicec Sending Mails with W32.Sober.D@mm" name_zh_CN="SMTP服务发送W32.Sober.D@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.D@mm蠕蟲病毒郵件" ruleid="40620" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.AB/AX@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AB/AX@mm" name_zh_CN="SMTP服务发送W32.Beagle.AB/AX@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AB/AX@mm蠕蟲病毒郵件" ruleid="40623" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Lovgate蠕虫变种五毒虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Lovgate Variant Worm.Supnot" name_zh_CN="SMTP服务发送W32.Lovgate蠕虫变种五毒虫病毒邮件" name_zh_TW="SMTP服務發送W32.Lovgate蠕蟲變種五毒蟲病毒郵件" ruleid="40625" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.AG@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AG@mm" name_zh_CN="SMTP服务发送W32.Beagle.AG@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AG@mm蠕蟲病毒郵件" ruleid="40624" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.P蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.P" name_zh_CN="SMTP服务发送Mydoom.P蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.P蠕蟲病毒郵件" ruleid="40627" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.M蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.M" name_zh_CN="SMTP服务发送Mydoom.M蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.M蠕蟲病毒郵件" ruleid="40626" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="calendar_admin.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via calendar_admin.pl Script Vulnerability" name_zh_CN="calendar_admin.pl脚本漏洞远程执行命令" name_zh_TW="calendar_admin.pl腳本漏洞遠程執行命令" ruleid="20205" visible="true" />
			<rule action=" db  screen " enabled="true" group="88082475" module="0" name="Microsoft SQL Server xp_cmdshell存储过程执行命令攻击" name_en_US="Microsoft SQL Server xp_cmdshell Stored Procedure Command Execution" name_zh_CN="Microsoft SQL Server xp_cmdshell存储过程执行命令攻击" name_zh_TW="Microsoft SQL Server xp_cmdshell存儲過程執行命令攻擊" ruleid="20207" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="calendar_admin.pl脚本漏洞扫描探测" name_en_US="calendar_admin.pl Script Vulnerability Detection" name_zh_CN="calendar_admin.pl脚本漏洞扫描探测" name_zh_TW="calendar_admin.pl腳本漏洞掃描探測" ruleid="20206" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412331" module="0" name="IRIX telnetd远程格式化串溢出攻击" name_en_US="IRIX telnetd Remote Format String Buffer Overflow" name_zh_CN="IRIX telnetd远程格式化串溢出攻击" name_zh_TW="IRIX telnetd遠程格式化串溢出攻擊" ruleid="20201" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="Oracle Web Listener snork.bat批处理漏洞扫描利用" name_en_US="Oracle Web Listener snork.bat Vulnerability Detection" name_zh_CN="Oracle Web Listener snork.bat批处理漏洞扫描利用" name_zh_TW="Oracle Web Listener snork.bat批處理漏洞掃描利用" ruleid="20200" visible="true" />
			<rule action=" db  screen " enabled="true" group="144703787" module="0" name="BIND NXT远程缓冲区溢出攻击" name_en_US="BIND NXT Remote Buffer Overflow" name_zh_CN="BIND NXT远程缓冲区溢出攻击" name_zh_TW="BIND NXT遠程緩沖區溢出攻擊" ruleid="20202" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Trinoo主控端回应" name_en_US="DDOS Tool Trinoo Console Response" name_zh_CN="DDOS工具Trinoo主控端回应" name_zh_TW="DDOS工具Trinoo主控端回應" ruleid="40104" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Phorum admin.php3脚本漏洞扫描利用" name_en_US="Phorum admin.php3 Script Vulnerability Detection" name_zh_CN="Phorum admin.php3脚本漏洞扫描利用" name_zh_TW="Phorum admin.php3腳本漏洞掃描利用" ruleid="20209" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="PHP-Nuke index.php脚本漏洞远程执行命令" name_en_US="PHP-Nuke index.php Script Remote Code Execution Vulnerability" name_zh_CN="PHP-Nuke index.php脚本漏洞远程执行命令" name_zh_TW="PHP-Nuke index.php腳本漏洞遠程執行命令" ruleid="20208" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="GrayCMS error.php CGI脚本远程执行命令攻击" name_en_US="GrayCMS error.php CGI Script Remote Command Execution" name_zh_CN="GrayCMS error.php CGI脚本远程执行命令攻击" name_zh_TW="GrayCMS error.php CGI腳本遠程執行命令攻擊" ruleid="20499" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序M2 Trojan木马通信" name_en_US="Backdoor/Trojan M2 Communication " name_zh_CN="木马后门程序M2 Trojan木马通信" name_zh_TW="木馬後門程序M2 Trojan木馬通信" ruleid="40535" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Lithium木马通信" name_en_US="Backdoor/Trojan Lithium Communication " name_zh_CN="木马后门程序Lithium木马通信" name_zh_TW="木馬後門程序Lithium木馬通信" ruleid="40534" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Massaker木马通信" name_en_US="Backdoor/Trojan Massaker Communication " name_zh_CN="木马后门程序Massaker木马通信" name_zh_TW="木馬後門程序Massaker木馬通信" ruleid="40537" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Shopex Cookie选项SQL注入漏洞" name_en_US="Shopex Cookie Option SQL Injection Vulnerability " name_zh_CN="Shopex Cookie选项SQL注入漏洞" name_zh_TW="Shopex Cookie選項SQL注入漏洞" ruleid="30580" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Latinus/Pest木马通信" name_en_US="Backdoor/Trojan Latinus/Pest Communication " name_zh_CN="木马后门程序Latinus/Pest木马通信" name_zh_TW="木馬後門程序Latinus/Pest木馬通信" ruleid="40531" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Last 2000木马通信" name_en_US="Backdoor/Trojan Last 2000 Communication " name_zh_CN="木马后门程序Last 2000木马通信" name_zh_TW="木馬後門程序Last 2000木馬通信" ruleid="40530" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Leszcz木马通信" name_en_US="Backdoor/Trojan Leszcz Communication " name_zh_CN="木马后门程序Leszcz木马通信" name_zh_TW="木馬後門程序Leszcz木馬通信" ruleid="40533" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Le Guardien木马通信" name_en_US="Backdoor/Trojan Le Guardien Communication " name_zh_CN="木马后门程序Le Guardien木马通信" name_zh_TW="木馬後門程序Le Guardien木馬通信" ruleid="40532" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Mavericks Matrix木马通信" name_en_US="Backdoor/Trojan Mavericks Matrix Communication " name_zh_CN="木马后门程序Mavericks Matrix木马通信" name_zh_TW="木馬後門程序Mavericks Matrix木馬通信" ruleid="40539" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Masters Paradise木马通信" name_en_US="Backdoor/Trojan Masters Paradise Communication " name_zh_CN="木马后门程序Masters Paradise木马通信" name_zh_TW="木馬後門程序Masters Paradise木馬通信" ruleid="40538" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序ButtMan木马通信" name_en_US="Backdoor/Trojan ButtMan Communication " name_zh_CN="木马后门程序ButtMan木马通信" name_zh_TW="木馬後門程序ButtMan木馬通信" ruleid="40488" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Web应用漏洞扫描器W3AF扫描操作" name_en_US="Web Application Vulnerability Scanner W3AF Scan Operation" name_zh_CN="Web应用漏洞扫描器W3AF扫描操作" name_zh_TW="Web應用漏洞掃描器W3AF掃描操作" ruleid="30589" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423934" module="0" name="Web应用漏洞扫描器WVS 2012扫描操作" name_en_US="Web Application Vulnerability Scanner WVS 2012 Scan Operation" name_zh_CN="Web应用漏洞扫描器WVS 2012扫描操作" name_zh_TW="Web應用漏洞掃描器WVS 2012掃描操作" ruleid="30588" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户发送可疑文件通信" name_en_US="Instant Messaging Tool ICQ User Sending Suspicious Files Attempt" name_zh_CN="即时通信工具ICQ用户发送可疑文件通信" name_zh_TW="即時通信工具ICQ用戶發送可疑文件通信" ruleid="50124" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377259" module="0" name="mod_ssl mod_proxy 格式字符串漏洞" name_en_US="HTTP: mod_ssl mod_proxy Format String Vulnerability" name_zh_CN="mod_ssl mod_proxy 格式字符串漏洞" name_zh_TW="mod_ssl mod_proxy 格式字符串漏洞" ruleid="29236" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户下线通信" name_en_US="Instant Messaging Tool  ICQ User Offline Attempt" name_zh_CN="即时通信工具ICQ用户下线通信" name_zh_TW="即時通信工具ICQ用戶下線通信" ruleid="50118" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户状态改变为离开通信" name_en_US="Instant Messaging Tool ICQ User State Changed into &quot;Leave&quot; Attempt" name_zh_CN="即时通信工具ICQ用户状态改变为离开通信" name_zh_TW="即時通信工具ICQ用戶狀態改變爲離開通信" ruleid="50119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger用户接收消息通信" name_en_US="Instant Messaging Tool Yahoo Messenger User Receiving Messages Attempt" name_zh_CN="即时通信工具Yahoo Messenger用户接收消息通信" name_zh_TW="即時通信工具Yahoo Messenger用戶接收消息通信" ruleid="50112" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger用户下线通信" name_en_US="Instant Messaging Tool Yahoo Messenger User Offline Attempt" name_zh_CN="即时通信工具Yahoo Messenger用户下线通信" name_zh_TW="即時通信工具Yahoo Messenger用戶下線通信" ruleid="50113" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger用户登录" name_en_US="Instant Messaging Tool Yahoo Messenger User Login" name_zh_CN="即时通信工具Yahoo Messenger用户登录" name_zh_TW="即時通信工具Yahoo Messenger用戶登錄" ruleid="50110" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger用户发送消息通信" name_en_US="Instant Messaging Tool Yahoo Messenger User Sending Messages Attempt" name_zh_CN="即时通信工具Yahoo Messenger用户发送消息通信" name_zh_TW="即時通信工具Yahoo Messenger用戶發送消息通信" ruleid="50111" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户发送消息通信" name_en_US="Instant Messaging Tool ICQ User Sending Messages Attempt" name_zh_CN="即时通信工具ICQ用户发送消息通信" name_zh_TW="即時通信工具ICQ用戶發送消息通信" ruleid="50116" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户接收消息通信" name_en_US="Instant Messaging Tool ICQ User Receiving Messages Attempt" name_zh_CN="即时通信工具ICQ用户接收消息通信" name_zh_TW="即時通信工具ICQ用戶接收消息通信" ruleid="50117" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger传送文件通信" name_en_US="Instant Messaging Tool Yahoo Messenger File Transmission Attempt" name_zh_CN="即时通信工具Yahoo Messenger传送文件通信" name_zh_TW="即時通信工具Yahoo Messenger傳送文件通信" ruleid="50114" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Yahoo Messenger用户状态改变为离开通信" name_en_US="Instant Messaging Tool Yahoo Messenger User State Changed into &quot;Leave&quot; Attempt" name_zh_CN="即时通信工具Yahoo Messenger用户状态改变为离开通信" name_zh_TW="即時通信工具Yahoo Messenger用戶狀態改變爲離開通信" ruleid="50115" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="TrackerCam PHP参数远程缓冲区溢出攻击" name_en_US="TrackerCam PHP Parameter Remote Buffer Overflow" name_zh_CN="TrackerCam PHP参数远程缓冲区溢出攻击" name_zh_TW="TrackerCam PHP參數遠程緩沖區溢出攻擊" ruleid="20612" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序CyberNetic木马通信" name_en_US="Backdoor/Trojan CyberNetic Communication " name_zh_CN="木马后门程序CyberNetic木马通信" name_zh_TW="木馬後門程序CyberNetic木馬通信" ruleid="40714" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="ExAir示例脚本query.asp拒绝服务攻击" name_en_US="ExAir Sample Script query.asp Denial of Service" name_zh_CN="ExAir示例脚本query.asp拒绝服务攻击" name_zh_TW="ExAir示例腳本query.asp拒絕服務攻擊" ruleid="10049" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616795" module="0" name="Microsoft ASP.NET哈希冲突远程拒绝服务漏洞(MS11-100,CVE-2011-3414)" name_en_US="Microsoft ASP.NET Hashe Collision Denial Of Service Vulnerability(MS11-100,CVE-2011-3414)" name_zh_CN="Microsoft ASP.NET哈希冲突远程拒绝服务漏洞(MS11-100,CVE-2011-3414)" name_zh_TW="Microsoft ASP.NET哈希沖突遠程拒絕服務漏洞(MS11-100,CVE-2011-3414)" ruleid="10322" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Chopper Webshell检测" name_en_US="Backdoor/Trojan Chopper Webshell Detection" name_zh_CN="木马后门程序Chopper Webshell检测" name_zh_TW="木馬後門程序Chopper Webshell檢測" ruleid="40958" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643495" module="0" name="FutureSoft TFTP Server 2000远程缓冲区溢出攻击" name_en_US="FutureSoft TFTP Server 2000 Remote Buffer Overflow" name_zh_CN="FutureSoft TFTP Server 2000远程缓冲区溢出攻击" name_zh_TW="FutureSoft TFTP Server 2000遠程緩沖區溢出攻擊" ruleid="20614" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PAJAX pajax_call_dispatcher.php远程执行命令攻击" name_en_US="PAJAX pajax_call_dispatcher.php Remote Code Execution" name_zh_CN="PAJAX pajax_call_dispatcher.php远程执行命令攻击" name_zh_TW="PAJAX pajax_call_dispatcher.php遠程執行命令攻擊" ruleid="20615" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint Inplview.aspx远程XSS漏洞(MS12-011,CVE-2012-0017)" name_en_US="Microsoft SharePoint inplview.aspx Remote XSS Vulnerability(MS12-011,CVE-2012-0017)" name_zh_CN="Microsoft SharePoint Inplview.aspx远程XSS漏洞(MS12-011,CVE-2012-0017)" name_zh_TW="Microsoft SharePoint Inplview.aspx遠程XSS漏洞(MS12-011,CVE-2012-0017)" ruleid="21359" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Visual Studio ATL VariantClear()远程代码执行攻击" name_en_US="Visual Studio ATL VariantClear() Remote Code Execution" name_zh_CN="Visual Studio ATL VariantClear()远程代码执行攻击" name_zh_TW="Visual Studio ATL VariantClear()遠程代碼執行攻擊" ruleid="21039" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE内存破坏远程代码执行攻击" name_en_US="Microsoft IE Memory Corruption Remote Code Execution" name_zh_CN="Microsoft IE内存破坏远程代码执行攻击" name_zh_TW="Microsoft IE內存破壞遠程代碼執行攻擊" ruleid="21038" visible="true" />
			<rule action=" db  screen " enabled="true" group="166789210" module="0" name="协议隧道工具Ptunnel连接" name_en_US="Protocol Tunnel Tool Ptunnel Connect" name_zh_CN="协议隧道工具Ptunnel连接" name_zh_TW="協議隧道工具Ptunnel連接" ruleid="50454" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643499" module="0" name="TFTPDWIN v0.4.2 Long Filename缓冲区溢出漏洞" name_en_US="TFTPDWIN v0.4.2 Long Filename Buffer Overflow Vulnerability" name_zh_CN="TFTPDWIN v0.4.2 Long Filename缓冲区溢出漏洞" name_zh_TW="TFTPDWIN v0.4.2 Long Filename緩沖區溢出漏洞" ruleid="21963" visible="true" />
			<rule action=" db  screen " enabled="true" group="212861227" module="0" name="TFTP服务器长文件名缓冲区溢出漏洞" name_en_US="TFTP Server Long Filename Buffer Overflow Vulnerability" name_zh_CN="TFTP服务器长文件名缓冲区溢出漏洞" name_zh_TW="TFTP服務器長文件名緩沖區溢出漏洞" ruleid="21962" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="UoW IMAP Server LSUB缓冲区溢出漏洞" name_en_US="UoW IMAP Server LSUB Buffer Overflow Vulnerability" name_zh_CN="UoW IMAP Server LSUB缓冲区溢出漏洞" name_zh_TW="UoW IMAP Server LSUB緩沖區溢出漏洞" ruleid="21967" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680346" module="0" name="协议隧道工具dns2tcp连接" name_en_US="Protocol Tunnel Tool dns2tcp Connect" name_zh_CN="协议隧道工具dns2tcp连接" name_zh_TW="協議隧道工具dns2tcp連接" ruleid="50453" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN用户接收消息通信" name_en_US="Instant Messaging Tool MSN User Receiving Messages Attempt" name_zh_CN="即时通信工具MSN用户接收消息通信" name_zh_TW="即時通信工具MSN用戶接收消息通信" ruleid="50085" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Excel &quot;RealTimeData&quot;记录解析远程代码执行漏洞(MS11-021)" name_en_US="Microsoft Excel &quot;RealTimeData&quot; Record Parsing Remote Code Execution Vulnerability (MS11-021)" name_zh_CN="Microsoft Excel &quot;RealTimeData&quot;记录解析远程代码执行漏洞(MS11-021)" name_zh_TW="Microsoft Excel &quot;RealTimeData&quot;記錄解析遠程代碼執行漏洞(MS11-021)" ruleid="21211" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3951)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(CVE-2010-3951)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3951)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(CVE-2010-3951)" ruleid="21149" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞(CVE-2010-3956)" name_en_US="Microsoft Windows OpenType Font (OTF) Format Driver Remote Code Execution Vulnerabilities(CVE-2010-3956)" name_zh_CN="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞(CVE-2010-3956)" name_zh_TW="Microsoft Windows OpenType Font (OTF) Format Driver遠程代碼執行漏洞(CVE-2010-3956)" ruleid="21148" visible="true" />
			<rule action=" db  screen " enabled="true" group="145817685" module="0" name="TFTP服务客户端在服务器端创建文件" name_en_US="TFTP Service Client File Creation On the Server" name_zh_CN="TFTP服务客户端在服务器端创建文件" name_zh_TW="TFTP服務客戶端在服務器端創建文件" ruleid="40066" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Internet Connection Wizard DLL加载任意代码执行漏洞(MS10-097)" name_en_US="Microsoft Internet Connection Wizard DLL Loading Arbitrary Code Execution Vulnerability (MS10-097)" name_zh_CN="Microsoft Internet Connection Wizard DLL加载任意代码执行漏洞(MS10-097)" name_zh_TW="Microsoft Internet Connection Wizard DLL加載任意代碼執行漏洞(MS10-097)" ruleid="21145" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Consent User Interface本地权限提升漏洞(MS10-100)" name_en_US="Microsoft Windows Consent User Interface Local Privilege Escalation Vulnerability (MS10-100)" name_zh_CN="Microsoft Windows Consent User Interface本地权限提升漏洞(MS10-100)" name_zh_TW="Microsoft Windows Consent User Interface本地權限提升漏洞(MS10-100)" ruleid="21144" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft SharePoint远程代码执行漏洞(CVE-2010-3964)" name_en_US="Microsoft SharePoint Remote Code Execution Vulnerability(CVE-2010-3964)" name_zh_CN="Microsoft SharePoint远程代码执行漏洞(CVE-2010-3964)" name_zh_TW="Microsoft SharePoint遠程代碼執行漏洞(CVE-2010-3964)" ruleid="21147" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Media Encoder远程代码执行漏洞(CVE-2010-3965)" name_en_US="Windows Media Encoder Remote Code Execution Vulnerability(CVE-2010-3965)" name_zh_CN="Windows Media Encoder远程代码执行漏洞(CVE-2010-3965)" name_zh_TW="Windows Media Encoder遠程代碼執行漏洞(CVE-2010-3965)" ruleid="21146" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Movie Maker远程代码执行漏洞" name_en_US="Windows Movie Maker Remote Code Execution Vulnerability" name_zh_CN="Windows Movie Maker远程代码执行漏洞" name_zh_TW="Windows Movie Maker遠程代碼執行漏洞" ruleid="21141" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Address Book远程代码执行漏洞" name_en_US="Windows Address Book Remote Code Execution Vulnerability" name_zh_CN="Windows Address Book远程代码执行漏洞" name_zh_TW="Windows Address Book遠程代碼執行漏洞" ruleid="21140" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Kernel NDProxy本地权限提升漏洞(MS10-099)" name_en_US="Microsoft Windows Kernel NDProxy Local Privilege Escalation Vulnerability (MS10-099)" name_zh_CN="Microsoft Windows Kernel NDProxy本地权限提升漏洞(MS10-099)" name_zh_TW="Microsoft Windows Kernel NDProxy本地權限提升漏洞(MS10-099)" ruleid="21143" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Windows Kernel-Mode Drivers Privilege Elevation Vulnerabilities" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21142" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序Donald Dick客户连接" name_en_US="Backdoor/Trojan Donald Dick Client Connection" name_zh_CN="木马后门程序Donald Dick客户连接" name_zh_TW="木馬後門程序Donald Dick客戶連接" ruleid="40953" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="Ping of Death拒绝服务攻击" name_en_US="Ping of Death Denial of Service Attacks" name_zh_CN="Ping of Death拒绝服务攻击" name_zh_TW="Ping of Death拒絕服務攻擊" ruleid="40075" visible="true" />
			<rule action=" db  screen " enabled="true" group="99876938" module="3" name="网络数据中发现病毒文件" name_en_US="Virus File Found in Network Data" name_zh_CN="网络数据中发现病毒文件" name_zh_TW="網絡數據中發現病毒文件" ruleid="40818" visible="true" />
			<rule action=" db  screen " enabled="true" group="78643499" module="0" name="3Com TFTP超长传输模式字段远程缓冲区溢出攻击" name_en_US="3Com TFTP Over-Long Transporting Mode Field Remote Buffer Overflow" name_zh_CN="3Com TFTP超长传输模式字段远程缓冲区溢出攻击" name_zh_TW="3Com TFTP超長傳輸模式字段遠程緩沖區溢出攻擊" ruleid="20818" visible="true" />
			<rule action=" db  screen " enabled="false" group="202375467" module="0" name="Apache Tomcat JK Web Server Connector超长URL栈溢出攻击" name_en_US="Apache Tomcat JK Web Server Connector Over-Long URL Stack Overflow" name_zh_CN="Apache Tomcat JK Web Server Connector超长URL栈溢出攻击" name_zh_TW="Apache Tomcat JK Web Server Connector超長URL棧溢出攻擊" ruleid="20819" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680330" module="3" name="用户限制类文件传输" name_en_US="Restricted Files Transmitting" name_zh_CN="用户限制类文件传输" name_zh_TW="用戶限制類文件傳輸" ruleid="40819" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="IMAP服务器畸形CRAM-MD5认证请求缓冲区溢出攻击" name_en_US="IMAP Server Malformed CRAM-MD5 Authentication Request Buffer Overflow" name_zh_CN="IMAP服务器畸形CRAM-MD5认证请求缓冲区溢出攻击" name_zh_TW="IMAP服務器畸形CRAM-MD5認證請求緩沖區溢出攻擊" ruleid="20810" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886379" module="0" name="Microsoft Windows路由和远程访问服务溢出攻击(MS06-025)" name_en_US="Microsoft Windows Route and Remote Access Service Buffer Overflow (MS06-025)" name_zh_CN="Microsoft Windows路由和远程访问服务溢出攻击(MS06-025)" name_zh_TW="Microsoft Windows路由和遠程訪問服務溢出攻擊(MS06-025)" ruleid="20811" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615818" module="0" name="网络蠕虫MSN相册发送photos.zip可疑文件" name_en_US="Network Worm MSN Album Sending Suspicious photos.zip Files" name_zh_CN="网络蠕虫MSN相册发送photos.zip可疑文件" name_zh_TW="網絡蠕蟲MSN相冊發送photos.zip可疑文件" ruleid="20812" visible="true" />
			<rule action=" db  screen " enabled="true" group="147849514" module="0" name="Kerberos 5 KAdminD服务程序远程栈溢出攻击" name_en_US="Kerberos 5 KAdminD Server Remote Stack Overflow" name_zh_CN="Kerberos 5 KAdminD服务程序远程栈溢出攻击" name_zh_TW="Kerberos 5 KAdminD服務程序遠程棧溢出攻擊" ruleid="20813" visible="true" />
			<rule action=" db  screen " enabled="true" group="138414122" module="0" name="MIT Kerberos 5 Telnet守护程序绕过认证访问攻击" name_en_US="MIT Kerberos 5 Telnet Daemon Authentication Bypass" name_zh_CN="MIT Kerberos 5 Telnet守护程序绕过认证访问攻击" name_zh_TW="MIT Kerberos 5 Telnet守護程序繞過認證訪問攻擊" ruleid="20814" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE恶意数据编码指令执行攻击" name_en_US="Microsoft IE Malicious Data Encoding Code Execution" name_zh_CN="Microsoft IE恶意数据编码指令执行攻击" name_zh_TW="Microsoft IE惡意數據編碼指令執行攻擊" ruleid="20815" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="Netscape Enterprise HTTP协议Accept字段远程缓冲区溢出漏洞" name_en_US="Netscape Enterprise HTTP Protocol Accept Field Remote Buffer Overflow" name_zh_CN="Netscape Enterprise HTTP协议Accept字段远程缓冲区溢出漏洞" name_zh_TW="Netscape Enterprise HTTP協議Accept字段遠程緩沖區溢出漏洞" ruleid="20816" visible="true" />
			<rule action=" db  screen " enabled="true" group="203424043" module="0" name="Oracle 9iAS/10g应用服务器WEB缓冲远程堆溢出攻击" name_en_US="Oracle 9iAS/10g Application Server WEB Buffer Remote Heap Overflow" name_zh_CN="Oracle 9iAS/10g应用服务器WEB缓冲远程堆溢出攻击" name_zh_TW="Oracle 9iAS/10g應用服務器WEB緩沖遠程堆溢出攻擊" ruleid="20817" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="SalesLogix Eviewer slxweb.dll程序漏洞扫描探测" name_en_US="SalesLogix Eviewer slxweb.dll Vulnerability Detection" name_zh_CN="SalesLogix Eviewer slxweb.dll程序漏洞扫描探测" name_zh_TW="SalesLogix Eviewer slxweb.dll程序漏洞掃描探測" ruleid="10071" visible="true" />
			<rule action=" db  screen " enabled="true" group="144705558" module="0" name="ISC BIND OPT资源记录远程拒绝服务攻击" name_en_US="ISC BIND OPT Resource Record Remote Denial of Service" name_zh_CN="ISC BIND OPT资源记录远程拒绝服务攻击" name_zh_TW="ISC BIND OPT資源記錄遠程拒絕服務攻擊" ruleid="10070" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序bash" name_en_US="Access to Unix Shell Interpreter bash via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序bash" name_zh_TW="通過Web服務訪問Unix Shell解釋程序bash" ruleid="20140" visible="true" />
			<rule action=" db  screen " enabled="true" group="337643542" module="0" name="3COM OfficeConnect Router Web管理接口漏洞拒绝服务攻击" name_en_US="Denial of Service via 3COM OfficeConnect Router Web Management Interface Vulnerability" name_zh_CN="3COM OfficeConnect Router Web管理接口漏洞拒绝服务攻击" name_zh_TW="3COM OfficeConnect Router Web管理接口漏洞拒絕服務攻擊" ruleid="10072" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问Unix Shell解释程序zsh" name_en_US="Access to Unix Shell Interpreter zsh via Web Service" name_zh_CN="通过Web服务访问Unix Shell解释程序zsh" name_zh_TW="通過Web服務訪問Unix Shell解釋程序zsh" ruleid="20146" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Microsoft JET catalog_type.asp脚本漏洞扫描探测" name_en_US="Microsoft JET catalog_type.asp Script Vulnerability Detection" name_zh_CN="Microsoft JET catalog_type.asp脚本漏洞扫描探测" name_zh_TW="Microsoft JET catalog_type.asp腳本漏洞掃描探測" ruleid="20147" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="Behold! Software Counter.exe CGI漏洞拒绝服务攻击" name_en_US="Denial of Service via Behold! Software Counter.exe CGI Vulnerability" name_zh_CN="Behold! Software Counter.exe CGI漏洞拒绝服务攻击" name_zh_TW="Behold! Software Counter.exe CGI漏洞拒絕服務攻擊" ruleid="10077" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Behold! Software Counter.exe CGI程序漏洞扫描探测" name_en_US="Behold! Software Counter.exe CGI Vulnerability Detection" name_zh_CN="Behold! Software Counter.exe CGI程序漏洞扫描探测" name_zh_TW="Behold! Software Counter.exe CGI程序漏洞掃描探測" ruleid="10076" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Microsoft JET catalog_type.asp脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Microsoft JET catalog_type.asp Script Vulnerability" name_zh_CN="Microsoft JET catalog_type.asp脚本漏洞远程执行命令" name_zh_TW="Microsoft JET catalog_type.asp腳本漏洞遠程執行命令" ruleid="20148" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="扫描利用PERL工具远程执行命令" name_en_US="Remote Code Execution via PERL Scan" name_zh_CN="扫描利用PERL工具远程执行命令" name_zh_TW="掃描利用PERL工具遠程執行命令" ruleid="20149" visible="true" />
			<rule action=" db  screen " enabled="true" group="233833034" module="0" name="MySQL用户验证暴力猜测" name_en_US="MySQL User Authentication Brute Force" name_zh_CN="MySQL用户验证暴力猜测" name_zh_TW="MySQL用戶驗證暴力猜測" ruleid="21369" visible="true" />
			<rule action=" db  screen " enabled="true" group="227541574" module="0" name="SNMP暴力猜测用户口令" name_en_US="SNMP User Password Brute Force" name_zh_CN="SNMP暴力猜测用户口令" name_zh_TW="SNMP暴力猜測用戶口令" ruleid="21368" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor ARCServe BackUp LGServer远程栈缓冲区溢出攻击" name_en_US="CA BrightStor ARCServe BackUp LGServer Remote Buffer Overflow" name_zh_CN="CA BrightStor ARCServe BackUp LGServer远程栈缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCServe BackUp LGServer遠程棧緩沖區溢出攻擊" ruleid="20782" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Aigaion远程文件包含攻击" name_en_US="Aigaion Remote File Inclusion" name_zh_CN="Aigaion远程文件包含攻击" name_zh_TW="Aigaion遠程文件包含攻擊" ruleid="20783" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="ComVironment grab_globals.lib.php脚本远程文件包含攻击" name_en_US="ComVironment grab_globals.lib.php Script Remote File Inclusion" name_zh_CN="ComVironment grab_globals.lib.php脚本远程文件包含攻击" name_zh_TW="ComVironment grab_globals.lib.php腳本遠程文件包含攻擊" ruleid="20784" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Uberghey frontpage.php远程文件包含攻击" name_en_US="Uberghey frontpage.php Remote File Inclusion" name_zh_CN="Uberghey frontpage.php远程文件包含攻击" name_zh_TW="Uberghey frontpage.php遠程文件包含攻擊" ruleid="20785" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHPMyphorum frame.php远程文件包含攻击" name_en_US="PHPMyphorum frame.php Remote File Inclusion" name_zh_CN="PHPMyphorum frame.php远程文件包含攻击" name_zh_TW="PHPMyphorum frame.php遠程文件包含攻擊" ruleid="20786" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="webSPELL gallery.php远程SQL注入攻击" name_en_US="webSPELL gallery.php Remote SQL Injection" name_zh_CN="webSPELL gallery.php远程SQL注入攻击" name_zh_TW="webSPELL gallery.php遠程SQL注入攻擊" ruleid="20787" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0020)" name_en_US="Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015,CVE-2012-0020)" name_zh_CN="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0020)" name_zh_TW="Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015,CVE-2012-0020)" ruleid="21361" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Jshop Server远程文件包含攻击" name_en_US="Jshop Server Remote File Inclusion" name_zh_CN="Jshop Server远程文件包含攻击" name_zh_TW="Jshop Server遠程文件包含攻擊" ruleid="20789" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0138)" name_en_US="Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015,CVE-2012-0138)" name_zh_CN="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0138)" name_zh_TW="Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015,CVE-2012-0138)" ruleid="21363" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0137)" name_en_US="Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015,CVE-2012-0137)" name_zh_CN="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0137)" name_zh_TW="Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015,CVE-2012-0137)" ruleid="21362" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint Wizardlist.aspx 远程XSS漏洞(MS12-011,CVE-2012-0145)" name_en_US="Microsoft SharePoint Wizardlist.aspx Remote XSS Vulnerability(MS12-011,CVE-2012-0145)" name_zh_CN="Microsoft SharePoint Wizardlist.aspx 远程XSS漏洞(MS12-011,CVE-2012-0145)" name_zh_TW="Microsoft SharePoint Wizardlist.aspx 遠程XSS漏洞(MS12-011,CVE-2012-0145)" ruleid="21365" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint Themeweb.aspx中XSS远程代码执行漏洞(MS12-011,CVE-2012-0144)" name_en_US="Microsoft SharePoint XSS in themeweb.aspx Remote Code Execution Vulnerability(MS12-011,CVE-2012-0144)" name_zh_CN="Microsoft SharePoint Themeweb.aspx中XSS远程代码执行漏洞(MS12-011,CVE-2012-0144)" name_zh_TW="Microsoft SharePoint Themeweb.aspx中XSS遠程代碼執行漏洞(MS12-011,CVE-2012-0144)" ruleid="21364" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0136)" name_en_US="Microsoft Visio Viewer 2010 VSD File Format Memory Corruption Vulnerability(MS12-015,CVE-2012-0136)" name_zh_CN="Microsoft Visio Viewer 2010 VSD文件格式内存破坏漏洞(MS12-015,CVE-2012-0136)" name_zh_TW="Microsoft Visio Viewer 2010 VSD文件格式內存破壞漏洞(MS12-015,CVE-2012-0136)" ruleid="21367" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE VML远程代码执行漏洞(MS12-010,CVE-2012-0155)" name_en_US="Microsoft  IE VML Remote Code Execution Vulnerability(MS12-010,CVE-2012-0155)" name_zh_CN="Microsoft IE VML远程代码执行漏洞(MS12-010,CVE-2012-0155)" name_zh_TW="Microsoft IE VML遠程代碼執行漏洞(MS12-010,CVE-2012-0155)" ruleid="21366" visible="true" />
			<rule action=" db  screen " enabled="true" group="227606622" module="0" name="SNMP操作使用弱口令" name_en_US="SNMP Operation Use Weak Passwords" name_zh_CN="SNMP操作使用弱口令" name_zh_TW="SNMP操作使用弱口令" ruleid="50450" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Oracle Reports Server获取任意文件部分内容攻击" name_en_US="Oracle Reports Server Partial File Content Disclosure" name_zh_CN="Oracle Reports Server获取任意文件部分内容攻击" name_zh_TW="Oracle Reports Server獲取任意文件部分內容攻擊" ruleid="30535" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834554" module="0" name="Arkeia Client默认root用户口令访问" name_en_US="Arkeia Client Default root Account Password" name_zh_CN="Arkeia Client默认root用户口令访问" name_zh_TW="Arkeia Client默認root用戶口令訪問" ruleid="30532" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="Webmin/Usermin远程访问任意文件攻击" name_en_US="Webmin/Usermin Remote Arbitrary File Access" name_zh_CN="Webmin/Usermin远程访问任意文件攻击" name_zh_TW="Webmin/Usermin遠程訪問任意文件攻擊" ruleid="30533" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体PPTV网络电视(TCP)连接" name_en_US="Online  Streaming Media PPTV Network TV (TCP) Connect" name_zh_CN="在线流媒体PPTV网络电视(TCP)连接" name_zh_TW="在線流媒體PPTV網絡電視(TCP)連接" ruleid="50140" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="Windows系统下Spyware Spytech下载安装程序" name_en_US="Spyware Spytech Downloading Installer on Windows" name_zh_CN="Windows系统下Spyware Spytech下载安装程序" name_zh_TW="Windows系統下Spyware Spytech下載安裝程序" ruleid="40771" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="Caucho Resin Windows远程目录遍历攻击" name_en_US="Caucho Resin Windows Remote Directory Traversal" name_zh_CN="Caucho Resin Windows远程目录遍历攻击" name_zh_TW="Caucho Resin Windows遠程目錄遍曆攻擊" ruleid="30531" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Site@School远程文件包含攻击" name_en_US="Site@School Remote File Inclusion" name_zh_CN="Site@School远程文件包含攻击" name_zh_TW="Site@School遠程文件包含攻擊" ruleid="20668" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Hop-by-Hop Options Header 检测" name_en_US="Hop-by-Hop Options Header Check" name_zh_CN="Hop-by-Hop Options Header 检测" name_zh_TW="Hop-by-Hop Options Header 檢測" ruleid="41019" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Redirect Message 检测" name_en_US="Redirect Message Check" name_zh_CN="Redirect Message 检测" name_zh_TW="Redirect Message 檢測" ruleid="41018" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Nirvana木马通信" name_en_US="Backdoor/Trojan Nirvana Communication " name_zh_CN="木马后门程序Nirvana木马通信" name_zh_TW="木馬後門程序Nirvana木馬通信" ruleid="40556" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序甲壳虫 Gh0st 系统管理" name_en_US="Remote Control Program Beetle System Management" name_zh_CN="远程控制程序甲壳虫 Gh0st 系统管理" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 系統管理" ruleid="41011" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序甲壳虫 Gh0st 终端操作" name_en_US="Remote Control Program Beetle Terminal Operation" name_zh_CN="远程控制程序甲壳虫 Gh0st 终端操作" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 終端操作" ruleid="41010" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="WebHancer 间谍软件" name_en_US="Foistware/Spyware: WebHancer" name_zh_CN="WebHancer 间谍软件" name_zh_TW="WebHancer 間諜軟件" ruleid="41013" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序甲壳虫 Gh0st 视频监控" name_en_US="Remote Control Program Beetle Video Monitor" name_zh_CN="远程控制程序甲壳虫 Gh0st 视频监控" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 視頻監控" ruleid="41012" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377246" module="0" name="Apache HTTP Server畸形Range选项处理远程拒绝服务漏洞" name_en_US="Apache HTTP Server Range Denial Of Service Vulnerability" name_zh_CN="Apache HTTP Server畸形Range选项处理远程拒绝服务漏洞" name_zh_TW="Apache HTTP Server畸形Range選項處理遠程拒絕服務漏洞" ruleid="10291" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows TCP/IP QOS远程拒绝服务漏洞（MS11-064,CVE-2011-1965)" name_en_US="Microsoft Windows TCP/IP QOS Remote Denial Of Service Vulnerability（MS11-064,CVE-2011-1965)" name_zh_CN="Microsoft Windows TCP/IP QOS远程拒绝服务漏洞（MS11-064,CVE-2011-1965)" name_zh_TW="Microsoft Windows TCP/IP QOS遠程拒絕服務漏洞（MS11-064,CVE-2011-1965)" ruleid="10290" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Router Advertisement 检测" name_en_US="Router Advertisement Check" name_zh_CN="Router Advertisement 检测" name_zh_TW="Router Advertisement 檢測" ruleid="41017" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="ICMPv6 Router Solicitation操作检测" name_en_US="ICMPv6 Router Solicitation Operation Check" name_zh_CN="ICMPv6 Router Solicitation操作检测" name_zh_TW="ICMPv6 Router Solicitation操作檢測" ruleid="41016" visible="false" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="LoudBlog backend_settings.php远程任意命令执行攻击" name_en_US="LoudBlog backend_settings.php Remote Arbitrary Command Execution" name_zh_CN="LoudBlog backend_settings.php远程任意命令执行攻击" name_zh_TW="LoudBlog backend_settings.php遠程任意命令執行攻擊" ruleid="20568" visible="true" />
			<rule action=" db  screen " enabled="false" group="83888150" module="0" name="Microsoft Windows 2000 RPC DCOM接口拒绝服务攻击" name_en_US="Microsoft Windows 2000 RPC DCOM Interface Denial of Service" name_zh_CN="Microsoft Windows 2000 RPC DCOM接口拒绝服务攻击" name_zh_TW="Microsoft Windows 2000 RPC DCOM接口拒絕服務攻擊" ruleid="10108" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Nullsoft SHOUTcast文件请求远程格式串攻击" name_en_US="Nullsoft SHOUTcast File Request Remote Format String Vulnerability" name_zh_CN="Nullsoft SHOUTcast文件请求远程格式串攻击" name_zh_TW="Nullsoft SHOUTcast文件請求遠程格式串攻擊" ruleid="20565" visible="true" />
			<rule action=" db  screen " enabled="true" group="222300207" module="0" name="Oracle DBMS绕过登录访问控制攻击" name_en_US="Oracle DBMS Login Access Control Bypass" name_zh_CN="Oracle DBMS绕过登录访问控制攻击" name_zh_TW="Oracle DBMS繞過登錄訪問控制攻擊" ruleid="20566" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943390" module="0" name="Cisco IOS IPv4报文处理拒绝服务攻击" name_en_US="Cisco IOS IPv4 Message Handling Denial of Service" name_zh_CN="Cisco IOS IPv4报文处理拒绝服务攻击" name_zh_TW="Cisco IOS IPv4報文處理拒絕服務攻擊" ruleid="10106" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316967" module="0" name="CuteNews show_archives.php远程任意命令执行攻击" name_en_US="CuteNews show_archives.php Remote Arbitrary Command Execution" name_zh_CN="CuteNews show_archives.php远程任意命令执行攻击" name_zh_TW="CuteNews show_archives.php遠程任意命令執行攻擊" ruleid="20560" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="CubeCart orderSuccess.inc.php远程任意命令执行攻击" name_en_US="CubeCart orderSuccess.inc.php Remote Arbitrary Command Execution" name_zh_CN="CubeCart orderSuccess.inc.php远程任意命令执行攻击" name_zh_TW="CubeCart orderSuccess.inc.php遠程任意命令執行攻擊" ruleid="20561" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="Valdersoft Shopping Cart远程任意命令执行攻击" name_en_US="Valdersoft Shopping Cart Remote Arbitrary Command Execution" name_zh_CN="Valdersoft Shopping Cart远程任意命令执行攻击" name_zh_TW="Valdersoft Shopping Cart遠程任意命令執行攻擊" ruleid="20562" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows图形渲染引擎WMF格式文件执行指令攻击" name_en_US="Microsoft Windows Graphics Rendering Engine WMF Format File Code Execution" name_zh_CN="Microsoft Windows图形渲染引擎WMF格式文件执行指令攻击" name_zh_TW="Microsoft Windows圖形渲染引擎WMF格式文件執行指令攻擊" ruleid="20563" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Net Raider木马通信" name_en_US="Backdoor/Trojan Net Raider Communication " name_zh_CN="木马后门程序Net Raider木马通信" name_zh_TW="木馬後門程序Net Raider木馬通信" ruleid="40550" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpMyAdmin setup.php脚本PHP代码注入漏洞" name_en_US="PhpMyAdmin Config File Code Injection Vulnerability" name_zh_CN="phpMyAdmin setup.php脚本PHP代码注入漏洞" name_zh_TW="phpMyAdmin setup.php腳本PHP代碼注入漏洞" ruleid="21769" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="HP OpenView网络节点管理器ovspmd远程堆溢出攻击" name_en_US="HP OpenView Network Node Manager Ovspmd Remote Heap Overflow" name_zh_CN="HP OpenView网络节点管理器ovspmd远程堆溢出攻击" name_zh_TW="HP OpenView網絡節點管理器ovspmd遠程堆溢出攻擊" ruleid="20960" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序CrazzyNet木马通信" name_en_US="Backdoor/Trojan CrazzyNet Communication " name_zh_CN="木马后门程序CrazzyNet木马通信" name_zh_TW="木馬後門程序CrazzyNet木馬通信" ruleid="40496" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="RealNetworks RealPlayer rmoc3260.dll ActiveX控件内存破坏攻击" name_en_US="RealNetworks RealPlayer rmoc3260.dll ActiveX Control Memory Corruption" name_zh_CN="RealNetworks RealPlayer rmoc3260.dll ActiveX控件内存破坏攻击" name_zh_TW="RealNetworks RealPlayer rmoc3260.dll ActiveX控件內存破壞攻擊" ruleid="20963" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="联众世界GLIEDown2.dll Active控件任意代码执行攻击" name_en_US="OurGame GLIEDown2.dll Active Control Of Arbitrary Code Execution" name_zh_CN="联众世界GLIEDown2.dll Active控件任意代码执行攻击" name_zh_TW="聯衆世界GLIEDown2.dll Active控件任意代碼執行攻擊" ruleid="20964" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Yahoo!助手yNotifier.dll ActiveX控件内存破坏攻击" name_en_US="Yahoo! Assistant yNotifier.dll ActiveX Control Memory Corruption" name_zh_CN="Yahoo!助手yNotifier.dll ActiveX控件内存破坏攻击" name_zh_TW="Yahoo!助手yNotifier.dll ActiveX控件內存破壞攻擊" ruleid="20965" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315179" module="0" name="PeerCast getAuthUserPass函数栈溢出攻击" name_en_US="PeerCast getAuthUserPass Function Stack Overflow" name_zh_CN="PeerCast getAuthUserPass函数栈溢出攻击" name_zh_TW="PeerCast getAuthUserPass函數棧溢出攻擊" ruleid="20966" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="HP HPeDiag ActiveX控件信息泄露及远程代码执行攻击" name_en_US="HP HPeDiag ActiveX Controls Information Disclosure And Remote Code Execution" name_zh_CN="HP HPeDiag ActiveX控件信息泄露及远程代码执行攻击" name_zh_TW="HP HPeDiag ActiveX控件信息泄露及遠程代碼執行攻擊" ruleid="20967" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Creative软件自动升级引擎ActiveX控件栈溢出攻击" name_en_US="Creative Software AutoUpdate Engine ActiveX Control Stack Overflow" name_zh_CN="Creative软件自动升级引擎ActiveX控件栈溢出攻击" name_zh_TW="Creative軟件自動升級引擎ActiveX控件棧溢出攻擊" ruleid="20968" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="Borland InterBase畸形报文远程栈溢出攻击" name_en_US="Borland InterBase Malformed Packet Remote Stack Based Buffer Overflow Attack" name_zh_CN="Borland InterBase畸形报文远程栈溢出攻击" name_zh_TW="Borland InterBase畸形報文遠程棧溢出攻擊" ruleid="20969" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件registrations.htm获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File registrations.htm" name_zh_CN="访问Frontpage配置文件registrations.htm获取服务器信息" name_zh_TW="訪問Frontpage配置文件registrations.htm獲取服務器信息" ruleid="30219" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件register.txt获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File register.txt" name_zh_CN="访问Frontpage配置文件register.txt获取服务器信息" name_zh_TW="訪問Frontpage配置文件register.txt獲取服務器信息" ruleid="30218" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序彩虹兽人木马通信" name_en_US="Backdoor/Trojan Bifrost Communication " name_zh_CN="木马后门程序彩虹兽人木马通信" name_zh_TW="木馬後門程序彩虹獸人木馬通信" ruleid="40708" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序byshell木马通信" name_en_US="Backdoor/Trojan byshell Communication " name_zh_CN="木马后门程序byshell木马通信" name_zh_TW="木馬後門程序byshell木馬通信" ruleid="40709" visible="true" />
			<rule action=" db  screen " enabled="true" group="83894326" module="0" name="Solaris rpc.rwalld服务存在性TCP扫描探测" name_en_US="Solaris rpc.rwalld Service Existence TCP Detection" name_zh_CN="Solaris rpc.rwalld服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rwalld服務存在性TCP掃描探測" ruleid="30213" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208118" module="0" name="iCat Managers carbo.dll脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via iCat Managers carbo.dll Script Vulnerability" name_zh_CN="iCat Managers carbo.dll脚本漏洞远程遍历目录" name_zh_TW="iCat Managers carbo.dll腳本漏洞遠程遍曆目錄" ruleid="30212" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.pcnfsd服务存在性TCP扫描探测" name_en_US="Solaris rpc.pcnfsd Service Existence TCP Detection" name_zh_CN="Solaris rpc.pcnfsd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.pcnfsd服務存在性TCP掃描探測" ruleid="30211" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.nisd服务存在性TCP扫描探测" name_en_US="Solaris rpc.nisd Service Existence TCP Detection" name_zh_CN="Solaris rpc.nisd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.nisd服務存在性TCP掃描探測" ruleid="30210" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage配置文件orders.txt获取服务器信息" name_en_US="Server Information Disclosure from Frontpage Config File orders.txt" name_zh_CN="访问Frontpage配置文件orders.txt获取服务器信息" name_zh_TW="訪問Frontpage配置文件orders.txt獲取服務器信息" ruleid="30217" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206197" module="0" name="访问Frontpage .cnf配置文件获取服务器信息" name_en_US="Server Information Disclosure from Frontpage .cnf File" name_zh_CN="访问Frontpage .cnf配置文件获取服务器信息" name_zh_TW="訪問Frontpage .cnf配置文件獲取服務器信息" ruleid="30216" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="通过Web服务访问site.csc文件获取数据信息" name_en_US="Data Disclosure from site.csc file via Web Service" name_zh_CN="通过Web服务访问site.csc文件获取数据信息" name_zh_TW="通過Web服務訪問site.csc文件獲取數據信息" ruleid="30215" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS .idq ISAPI扩展获取绝对路径攻击" name_en_US="Microsoft IIS .idq ISAPI Extension Absolute Path Disclosure" name_zh_CN="Microsoft IIS .idq ISAPI扩展获取绝对路径攻击" name_zh_TW="Microsoft IIS .idq ISAPI擴展獲取絕對路徑攻擊" ruleid="30214" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Celine木马通信" name_en_US="Backdoor/Trojan Celine Communication " name_zh_CN="木马后门程序Celine木马通信" name_zh_TW="木馬後門程序Celine木馬通信" ruleid="40490" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Beast木马通信" name_en_US="Backdoor/Trojan Beast Communication " name_zh_CN="木马后门程序Beast木马通信" name_zh_TW="木馬後門程序Beast木馬通信" ruleid="40707" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Cero木马通信" name_en_US="Backdoor/Trojan Cero Communication " name_zh_CN="木马后门程序Cero木马通信" name_zh_TW="木馬後門程序Cero木馬通信" ruleid="40491" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Mstream主控端探测分布端" name_en_US="DDOS Tool Mstream Console and Distributed End Detection" name_zh_CN="DDOS工具Mstream主控端探测分布端" name_zh_TW="DDOS工具Mstream主控端探測分布端" ruleid="40382" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Mstream分布端回应主控端" name_en_US="DDOS Tool Mstream Distributed End Responding to the Console" name_zh_CN="DDOS工具Mstream分布端回应主控端" name_zh_TW="DDOS工具Mstream分布端回應主控端" ruleid="40383" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Real Networks Helix Universal Server远程缓冲区溢出攻击" name_en_US="Real Networks Helix Universal Server Remote Buffer Overflow" name_zh_CN="Real Networks Helix Universal Server远程缓冲区溢出攻击" name_zh_TW="Real Networks Helix Universal Server遠程緩沖區溢出攻擊" ruleid="20368" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Mstream主分布端连接分布端" name_en_US="Connection Between DDOS Tool Mstream Main Distributed End and Distributed End" name_zh_CN="DDOS工具Mstream主分布端连接分布端" name_zh_TW="DDOS工具Mstream主分布端連接分布端" ruleid="40381" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Mydoom.a网络数据通信" name_en_US="Backdoor/Trojan REGISTERED FREE BACKDOOR mydoom.a backdoor upload/execute attempt" name_zh_CN="木马后门程序Mydoom.a网络数据通信" name_zh_TW="木馬後門程序Mydoom.a網絡數據通信" ruleid="40834" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Trinoo主控端发送指令" name_en_US="DDOS Tool Trinoo Console Sending Command" name_zh_CN="DDOS工具Trinoo主控端发送指令" name_zh_TW="DDOS工具Trinoo主控端發送指令" ruleid="40387" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Mstream分布端回应主控端" name_en_US="DDOS Tool Mstream Distributed End Responding to the Console" name_zh_CN="DDOS工具Mstream分布端回应主控端" name_zh_TW="DDOS工具Mstream分布端回應主控端" ruleid="40384" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序MALWARE Speed-runner.com B类网络数据通信" name_en_US="Backdoor/Trojan MALWARE Speed-runner.com Fake Speed Test User-Agent SpeedRunner" name_zh_CN="木马后门程序MALWARE Speed-runner.com B类网络数据通信" name_zh_TW="木馬後門程序MALWARE Speed-runner.com B類網絡數據通信" ruleid="40837" visible="true" />
			<rule action=" db  screen " enabled="true" group="83886383" module="0" name="Microsoft Windows DCOM RPC接口长主机名远程缓冲区溢出攻击" name_en_US="Microsoft Windows DCOM RPC Interface Long Host Name Remote Buffer Overflow" name_zh_CN="Microsoft Windows DCOM RPC接口长主机名远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows DCOM RPC接口長主機名遠程緩沖區溢出攻擊" ruleid="20363" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="HappyMall E-Commerce normal_html.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via HappyMall E-Commerce normal_html.cgi Script Vulnerability" name_zh_CN="HappyMall E-Commerce normal_html.cgi脚本漏洞远程执行命令" name_zh_TW="HappyMall E-Commerce normal_html.cgi腳本漏洞遠程執行命令" ruleid="20360" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="shoutbox脚本漏洞远程执行命令" name_en_US="Remote Code Execution via shoutbox Script Vulnerability" name_zh_CN="shoutbox脚本漏洞远程执行命令" name_zh_TW="shoutbox腳本漏洞遠程執行命令" ruleid="20361" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615819" module="0" name="网络蠕虫SDBot蠕虫传播操作" name_en_US="Network Worm SDBot Propagation " name_zh_CN="网络蠕虫SDBot蠕虫传播操作" name_zh_TW="網絡蠕蟲SDBot蠕蟲傳播操作" ruleid="20366" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="0" name="Windows icmpsendecho函数发送ICMP包" name_en_US="Windows icmpsendecho Sending ICMP Packet" name_zh_CN="Windows icmpsendecho函数发送ICMP包" name_zh_TW="Windows icmpsendecho函數發送ICMP包" ruleid="20367" visible="false" />
			<rule action=" db  screen " enabled="true" group="83887179" module="0" name="网络蠕虫MSBLAST（冲击波）传播" name_en_US="Network Worm MSBLAST Spread" name_zh_CN="网络蠕虫MSBLAST（冲击波）传播" name_zh_TW="網絡蠕蟲MSBLAST（沖擊波）傳播" ruleid="20365" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615787" module="0" name="Windows系统下熊猫烧香蠕虫病毒下载恶意代码" name_en_US="Nimaya Downloading Malicious Code on Windows" name_zh_CN="Windows系统下熊猫烧香蠕虫病毒下载恶意代码" name_zh_TW="Windows系統下熊貓燒香蠕蟲病毒下載惡意代碼" ruleid="40796" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Alt-N WebAdmin WebAdmin.dll脚本漏洞扫描探测" name_en_US="Alt-N WebAdmin WebAdmin.dll Script Vulnerability Detection" name_zh_CN="Alt-N WebAdmin WebAdmin.dll脚本漏洞扫描探测" name_zh_TW="Alt-N WebAdmin WebAdmin.dll腳本漏洞掃描探測" ruleid="30459" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208118" module="0" name="AN HTTPd count.pl脚本漏洞遍历目录" name_en_US="Directory Traversal via AN HTTPd count.pl Script Vulnerability" name_zh_CN="AN HTTPd count.pl脚本漏洞遍历目录" name_zh_TW="AN HTTPd count.pl腳本漏洞遍曆目錄" ruleid="30458" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Roar Smith info2www脚本漏洞扫描探测" name_en_US="Roar Smith info2www Script Vulnerability Detection" name_zh_CN="Roar Smith info2www脚本漏洞扫描探测" name_zh_TW="Roar Smith info2www腳本漏洞掃描探測" ruleid="30109" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Miva htmlscript脚本漏洞扫描探测" name_en_US="Miva htmlscript Script Vulnerability Detection" name_zh_CN="Miva htmlscript脚本漏洞扫描探测" name_zh_TW="Miva htmlscript腳本漏洞掃描探測" ruleid="30108" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Miva htmlscript脚本漏洞远程遍历目录读取文件" name_en_US="Remote Directory Traversal File Reading via Miva htmlscript Script Vulnerability" name_zh_CN="Miva htmlscript脚本漏洞远程遍历目录读取文件" name_zh_TW="Miva htmlscript腳本漏洞遠程遍曆目錄讀取文件" ruleid="30107" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="IRIX handler脚本漏洞扫描探测" name_en_US="IRIX handler Script Vulnerability Detection" name_zh_CN="IRIX handler脚本漏洞扫描探测" name_zh_TW="IRIX handler腳本漏洞掃描探測" ruleid="30106" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="GuestBook guestbook.pl脚本漏洞扫描探测" name_en_US="GuestBook guestbook.pl Script Vulnerability Detection" name_zh_CN="GuestBook guestbook.pl脚本漏洞扫描探测" name_zh_TW="GuestBook guestbook.pl腳本漏洞掃描探測" ruleid="30105" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Feartech ftp.pl脚本漏洞扫描探测" name_en_US="Feartech ftp.pl Script Vulnerability Detection" name_zh_CN="Feartech ftp.pl脚本漏洞扫描探测" name_zh_TW="Feartech ftp.pl腳本漏洞掃描探測" ruleid="30104" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Feartech ftp.pl脚本漏洞远程获取主机目录攻击" name_en_US="Remote Host Directory Disclosure via Feartech ftp.pl Script Vulnerability" name_zh_CN="Feartech ftp.pl脚本漏洞远程获取主机目录攻击" name_zh_TW="Feartech ftp.pl腳本漏洞遠程獲取主機目錄攻擊" ruleid="30103" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="FormMail formmail.pl脚本漏洞扫描探测" name_en_US="FormMail formmail.pl Script Vulnerability Detection" name_zh_CN="FormMail formmail.pl脚本漏洞扫描探测" name_zh_TW="FormMail formmail.pl腳本漏洞掃描探測" ruleid="30102" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316975" module="0" name="paFileDB CGI脚本远程SQL注入攻击" name_en_US="paFileDB CGI Script Remote SQL Injection" name_zh_CN="paFileDB CGI脚本远程SQL注入攻击" name_zh_TW="paFileDB CGI腳本遠程SQL注入攻擊" ruleid="20483" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CVSWeb cvsweb.cgi脚本漏洞扫描探测" name_en_US="CVSWeb cvsweb.cgi Script Vulnerability Detection" name_zh_CN="CVSWeb cvsweb.cgi脚本漏洞扫描探测" name_zh_TW="CVSWeb cvsweb.cgi腳本漏洞掃描探測" ruleid="30100" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows即插即用功能远程拒绝服务攻击" name_en_US="Microsoft Windows Plug and Play Feature Remote Denial of Service" name_zh_CN="Microsoft Windows即插即用功能远程拒绝服务攻击" name_zh_TW="Microsoft Windows即插即用功能遠程拒絕服務攻擊" ruleid="10134" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Amanda木马通信" name_en_US="Backdoor/Trojan Amanda Communication " name_zh_CN="木马后门程序Amanda木马通信" name_zh_TW="木馬後門程序Amanda木馬通信" ruleid="40470" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Windows畸形IGMPv3报文远程拒绝服务攻击" name_en_US="Microsoft Windows Malformed IGMPv3 Message Remote Denial of Service" name_zh_CN="Microsoft Windows畸形IGMPv3报文远程拒绝服务攻击" name_zh_TW="Microsoft Windows畸形IGMPv3報文遠程拒絕服務攻擊" ruleid="10135" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="传奇克星拒绝服务攻击" name_en_US="Legend Terminator Denial of Service" name_zh_CN="传奇克星拒绝服务攻击" name_zh_TW="傳奇克星拒絕服務攻擊" ruleid="10136" visible="true" />
			<rule action=" db  screen " enabled="true" group="202506333" module="1" name="在线流媒体新浪视频连接" name_en_US="Online Streaming Media Sina Video Connect" name_zh_CN="在线流媒体新浪视频连接" name_zh_TW="在線流媒體新浪視頻連接" ruleid="50369" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Blackmal.C蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Blackmal.C" name_zh_CN="SMTP服务发送W32.Blackmal.C蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Blackmal.C蠕蟲病毒郵件" ruleid="40638" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422494" module="0" name="Microsoft Windows SMB srv.sys空指针引用远程拒绝服务攻击" name_en_US="Microsoft Windows SMB srv.sys Null Pointer Reference Remote Denial of Service" name_zh_CN="Microsoft Windows SMB srv.sys空指针引用远程拒绝服务攻击" name_zh_TW="Microsoft Windows SMB srv.sys空指針引用遠程拒絕服務攻擊" ruleid="10137" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="木马后门程序W32.Bropia蠕虫通过MSN传播" name_en_US="Backdoor/Trojan W32.Bropia Propagation via MSN " name_zh_CN="木马后门程序W32.Bropia蠕虫通过MSN传播" name_zh_TW="木馬後門程序W32.Bropia蠕蟲通過MSN傳播" ruleid="40682" visible="true" />
			<rule action=" db  screen " enabled="true" group="68288605" module="1" name="在线流媒体风行网络电视连接" name_en_US="Online Streaming Media Funshion Network TV Connect" name_zh_CN="在线流媒体风行网络电视连接" name_zh_TW="在線流媒體風行網絡電視連接" ruleid="50349" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具新浪UC用户登录" name_en_US="Instant Messaging Tool Sina UC User Login" name_zh_CN="即时通信工具新浪UC用户登录" name_zh_TW="即時通信工具新浪UC用戶登錄" ruleid="50081" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具Web网页MSN用户登录" name_en_US="Instant Messaging Tool Web MSN User Login" name_zh_CN="即时通信工具Web网页MSN用户登录" name_zh_TW="即時通信工具Web網頁MSN用戶登錄" ruleid="50347" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="多家厂商TCP/IP协议栈实现ICMP重置TCP连接拒绝服务攻击" name_en_US="Many Vendors TCP/IP Protocol Stack Implementation ICMP Reset TCP Connection Denial of Service" name_zh_CN="多家厂商TCP/IP协议栈实现ICMP重置TCP连接拒绝服务攻击" name_zh_TW="多家廠商TCP/IP協議棧實現ICMP重置TCP連接拒絕服務攻擊" ruleid="10130" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Beagle.AO@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Beagle.AO@mm" name_zh_CN="SMTP服务发送W32.Beagle.AO@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Beagle.AO@mm蠕蟲病毒郵件" ruleid="40630" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.Q蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.Q" name_zh_CN="SMTP服务发送Mydoom.Q蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.Q蠕蟲病毒郵件" ruleid="40631" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.S/T蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.S/T" name_zh_CN="SMTP服务发送Mydoom.S/T蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.S/T蠕蟲病毒郵件" ruleid="40636" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Mydoom.V蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Mydoom.V" name_zh_CN="SMTP服务发送Mydoom.V蠕虫病毒邮件" name_zh_TW="SMTP服務發送Mydoom.V蠕蟲病毒郵件" ruleid="40637" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Neveg蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Neveg" name_zh_CN="SMTP服务发送W32.Neveg蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Neveg蠕蟲病毒郵件" ruleid="40634" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764075" module="0" name="IMAP服务器SELECT命令超长参数缓冲区溢出攻击" name_en_US="IMAP Server SELECT Command Over-Long Parameter Buffer Overflow" name_zh_CN="IMAP服务器SELECT命令超长参数缓冲区溢出攻击" name_zh_TW="IMAP服務器SELECT命令超長參數緩沖區溢出攻擊" ruleid="10131" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CSM Alibaba Web Server get32.exe脚本漏洞扫描探测" name_en_US="CSM Alibaba Web Server get32.exe Script Vulnerability Detection" name_zh_CN="CSM Alibaba Web Server get32.exe脚本漏洞扫描探测" name_zh_TW="CSM Alibaba Web Server get32.exe腳本漏洞掃描探測" ruleid="20216" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Web Portal customize.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Web Portal customize.php Script Vulnerability" name_zh_CN="Web Portal customize.php脚本漏洞远程执行命令" name_zh_TW="Web Portal customize.php腳本漏洞遠程執行命令" ruleid="20217" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="FreeNews aff_news.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via FreeNews aff_news.php Script Vulnerability" name_zh_CN="FreeNews aff_news.php脚本漏洞远程执行命令" name_zh_TW="FreeNews aff_news.php腳本漏洞遠程執行命令" ruleid="20214" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="FreeNews screen.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via FreeNews screen.php Script Vulnerability" name_zh_CN="FreeNews screen.php脚本漏洞远程执行命令" name_zh_TW="FreeNews screen.php腳本漏洞遠程執行命令" ruleid="20215" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="FreeNews aff_news.php脚本漏洞扫描探测" name_en_US="FreeNews aff_news.php Script Vulnerability Detection" name_zh_CN="FreeNews aff_news.php脚本漏洞扫描探测" name_zh_TW="FreeNews aff_news.php腳本漏洞掃描探測" ruleid="20212" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="FreeNews screen.php脚本漏洞扫描探测" name_en_US="FreeNews screen.php Script Vulnerability Detection" name_zh_CN="FreeNews screen.php脚本漏洞扫描探测" name_zh_TW="FreeNews screen.php腳本漏洞掃描探測" ruleid="20213" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="Talentsoft Web+例子脚本执行命令攻击" name_en_US="Remote Code Execution via Talentsoft Web+ Sample Script" name_zh_CN="Talentsoft Web+例子脚本执行命令攻击" name_zh_TW="Talentsoft Web+例子腳本執行命令攻擊" ruleid="20210" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Phorum 3.0.7 auth.php3脚本漏洞扫描利用" name_en_US="Phorum 3.0.7 auth.php3 Script Vulnerability Detection" name_zh_CN="Phorum 3.0.7 auth.php3脚本漏洞扫描利用" name_zh_TW="Phorum 3.0.7 auth.php3腳本漏洞掃描利用" ruleid="20211" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN用户发送消息通信" name_en_US="Instant Messaging Tool MSN User Sending Messages Attempt" name_zh_CN="即时通信工具MSN用户发送消息通信" name_zh_TW="即時通信工具MSN用戶發送消息通信" ruleid="50084" visible="true" />
			<rule action=" db  screen " enabled="true" group="156239899" module="0" name="Sun Solaris LPD删除系统文件攻击" name_en_US="Sun Solaris LPD System File Deletion" name_zh_CN="Sun Solaris LPD删除系统文件攻击" name_zh_TW="Sun Solaris LPD刪除系統文件攻擊" ruleid="10133" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Web Portal index.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Web Portal index.php Script Vulnerability" name_zh_CN="Web Portal index.php脚本漏洞远程执行命令" name_zh_TW="Web Portal index.php腳本漏洞遠程執行命令" ruleid="20218" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723887" module="0" name="OpenSSL远程缓冲区溢出攻击" name_en_US="OpenSSL Remote Buffer Overflow" name_zh_CN="OpenSSL远程缓冲区溢出攻击" name_zh_TW="OpenSSL遠程緩沖區溢出攻擊" ruleid="20219" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Pennumbra木马通信" name_en_US="Backdoor/Trojan Pennumbra Communication  " name_zh_CN="木马后门程序Pennumbra木马通信" name_zh_TW="木馬後門程序Pennumbra木馬通信" ruleid="40702" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN发现传送可疑文件通信" name_en_US="Instant Messaging Tool MSN Sending Suspicious Files Attempt" name_zh_CN="即时通信工具MSN发现传送可疑文件通信" name_zh_TW="即時通信工具MSN發現傳送可疑文件通信" ruleid="50087" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Spook 6.0木马通信" name_en_US="Backdoor/Trojan Spook 6.0 Communication " name_zh_CN="木马后门程序Spook 6.0木马通信" name_zh_TW="木馬後門程序Spook 6.0木馬通信" ruleid="40703" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Intruzzo木马通信" name_en_US="Backdoor/Trojan Intruzzo Communication " name_zh_CN="木马后门程序Intruzzo木马通信" name_zh_TW="木馬後門程序Intruzzo木馬通信" ruleid="40526" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Kid Terror木马通信" name_en_US="Backdoor/Trojan Kid Terror Communication " name_zh_CN="木马后门程序Kid Terror木马通信" name_zh_TW="木馬後門程序Kid Terror木馬通信" ruleid="40527" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Insane Network木马通信" name_en_US="Backdoor/Trojan Insane Network Communication " name_zh_CN="木马后门程序Insane Network木马通信" name_zh_TW="木馬後門程序Insane Network木馬通信" ruleid="40524" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Intruder木马通信" name_en_US="Backdoor/Trojan Intruder Communication " name_zh_CN="木马后门程序Intruder木马通信" name_zh_TW="木馬後門程序Intruder木馬通信" ruleid="40525" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Infector木马通信" name_en_US="Backdoor/Trojan Infector Communication " name_zh_CN="木马后门程序Infector木马通信" name_zh_TW="木馬後門程序Infector木馬通信" ruleid="40522" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Infra木马通信" name_en_US="Backdoor/Trojan Infra Communication " name_zh_CN="木马后门程序Infra木马通信" name_zh_TW="木馬後門程序Infra木馬通信" ruleid="40523" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序HydroLeak木马通信" name_en_US="Backdoor/Trojan HydroLeak Communication " name_zh_CN="木马后门程序HydroLeak木马通信" name_zh_TW="木馬後門程序HydroLeak木馬通信" ruleid="40520" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序InCommand木马通信" name_en_US="Backdoor/Trojan InCommand Communication " name_zh_CN="木马后门程序InCommand木马通信" name_zh_TW="木馬後門程序InCommand木馬通信" ruleid="40521" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Konik木马通信" name_en_US="Backdoor/Trojan Konik Communication " name_zh_CN="木马后门程序Konik木马通信" name_zh_TW="木馬後門程序Konik木馬通信" ruleid="40528" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Kuang木马通信" name_en_US="Backdoor/Trojan Kuang Communication " name_zh_CN="木马后门程序Kuang木马通信" name_zh_TW="木馬後門程序Kuang木馬通信" ruleid="40529" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序流萤 2.3木马通信" name_en_US="Backdoor/Trojan FireFly 2.3 Communication " name_zh_CN="木马后门程序流萤 2.3木马通信" name_zh_TW="木馬後門程序流螢 2.3木馬通信" ruleid="40700" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件仟家信黄金分析用户登录" name_en_US="Stock Market Analysis Software Qianjiaxin Gold User Login" name_zh_CN="股票行情分析操作软件仟家信黄金分析用户登录" name_zh_TW="股票行情分析操作軟件仟家信黃金分析用戶登錄" ruleid="50299" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="通过Web服务执行finger程序" name_en_US="finger Program Execution via Web Service" name_zh_CN="通过Web服务执行finger程序" name_zh_TW="通過Web服務執行finger程序" ruleid="30076" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器ADM-FTP扫描FTP服务" name_en_US="Vulnerability Scanner ADM-FTP Scanning FTP Service" name_zh_CN="漏洞扫描器ADM-FTP扫描FTP服务" name_zh_TW="漏洞掃描器ADM-FTP掃描FTP服務" ruleid="30075" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="网络嗅探工具Sniffer Pro/NetXRay PING操作" name_en_US="Sniffer Pro/NetXRay PING Operation" name_zh_CN="网络嗅探工具Sniffer Pro/NetXRay PING操作" name_zh_TW="網絡嗅探工具Sniffer Pro/NetXRay PING操作" ruleid="30073" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="通过FTP协议下载文件" name_en_US="Downloading Files Through FTP Protocol" name_zh_CN="通过FTP协议下载文件" name_zh_TW="通過FTP協議下載文件" ruleid="50291" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 内存破坏漏洞(CVE-2011-2455)" name_en_US="Adobe Flash Player Memory Corruption Vulnerability(CVE-2011-2455)" name_zh_CN="Adobe Flash Player 内存破坏漏洞(CVE-2011-2455)" name_zh_TW="Adobe Flash Player 內存破壞漏洞(CVE-2011-2455)" ruleid="21321" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户登录（HTTP代理）" name_en_US="Instant Messaging Tool ICQ User Login（HTTP Proxy）" name_zh_CN="即时通信工具ICQ用户登录（HTTP代理）" name_zh_TW="即時通信工具ICQ用戶登錄（HTTP代理）" ruleid="50293" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="通过HTTP协议下载文件" name_en_US="Downloading Files Through HTTP Protocol" name_zh_CN="通过HTTP协议下载文件" name_zh_TW="通過HTTP協議下載文件" ruleid="50292" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具TM2008用户登录（UDP）" name_en_US="Instant Messaging Tool TM2008 User Login（UDP）" name_zh_CN="即时通信工具TM2008用户登录（UDP）" name_zh_TW="即時通信工具TM2008用戶登錄（UDP）" ruleid="50295" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN-[i]菜单回显通信" name_en_US="Instant Messaging 工具 MSN-[i] Menu Echo Attempt" name_zh_CN="即时通信工具MSN-[i]菜单回显通信" name_zh_TW="即時通信工具MSN-[i]菜單回顯通信" ruleid="50294" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏边锋进入游戏房间" name_en_US="Online Game BianFeng Network Game World Entering Game Room" name_zh_CN="网络游戏边锋进入游戏房间" name_zh_TW="網絡遊戲邊鋒進入遊戲房間" ruleid="50297" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具迅雷通过DNS查询资源服务器IP地址" name_en_US="P2P File Sharing Tool Xunlei Searching The IP Address of Source Server Through DNS Protocol" name_zh_CN="P2P文件共享工具迅雷通过DNS查询资源服务器IP地址" name_zh_TW="P2P文件共享工具迅雷通過DNS查詢資源服務器IP地址" ruleid="50296" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ收发消息通信" name_en_US="Instant Messaging Tool QQ Send/Receive Messages Attempt" name_zh_CN="即时通信工具QQ收发消息通信" name_zh_TW="即時通信工具QQ收發消息通信" ruleid="50245" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 栈溢出漏洞(CVE-2011-2457)" name_en_US="Adobe Flash Player Stack Overflow Vulnerability(CVE-2011-2457)" name_zh_CN="Adobe Flash Player 栈溢出漏洞(CVE-2011-2457)" name_zh_TW="Adobe Flash Player 棧溢出漏洞(CVE-2011-2457)" ruleid="21323" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序远程控制任我行木马通信" name_en_US="Backdoor/Trojan Control Software Trojan.LetMein.a Communication " name_zh_CN="木马后门程序远程控制任我行木马通信" name_zh_TW="木馬後門程序遠程控制任我行木馬通信" ruleid="40701" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA ARCserve Backup LGServer 握手请求缓冲区溢出漏洞" name_en_US="CA ARCserve Backup for Laptops and Desktops LGServer Handshake Buffer Overflow Vulnerability" name_zh_CN="CA ARCserve Backup LGServer 握手请求缓冲区溢出漏洞" name_zh_TW="CA ARCserve Backup LGServer 握手請求緩沖區溢出漏洞" ruleid="21450" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995243" module="0" name="Solaris rpc.snmpXdmid远程缓冲区溢出攻击" name_en_US="Solaris rpc.snmpXdmid Remote Buffer Overflow" name_zh_CN="Solaris rpc.snmpXdmid远程缓冲区溢出攻击" name_zh_TW="Solaris rpc.snmpXdmid遠程緩沖區溢出攻擊" ruleid="20106" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Excel畸形STYLE格式文档邮件附件传播" name_en_US="Microsoft Excel Malformed STYLE Format Document Attachemtn Propagation" name_zh_CN="Microsoft Excel畸形STYLE格式文档邮件附件传播" name_zh_TW="Microsoft Excel畸形STYLE格式文檔郵件附件傳播" ruleid="40778" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834517" module="0" name="IP/ICMP畸形分片包Jolt2拒绝服务攻击" name_en_US="IP/ICMP Malformed Packet Jolt2 Denial of Service" name_zh_CN="IP/ICMP畸形分片包Jolt2拒绝服务攻击" name_zh_TW="IP/ICMP畸形分片包Jolt2拒絕服務攻擊" ruleid="10037" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏星际争霸（Starcraft）网络对战客户端连接服务器" name_en_US=" Online Game &quot;Starcraft&quot; Online Fight Client Connect Server" name_zh_CN="网络游戏星际争霸（Starcraft）网络对战客户端连接服务器" name_zh_TW="網絡遊戲星際爭霸（Starcraft）網絡對戰客戶端連接服務器" ruleid="50127" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏反恐精英（CS）网络对战客户端连接服务器" name_en_US="Online Game CS Online Fight Client Connect Server" name_zh_CN="网络游戏反恐精英（CS）网络对战客户端连接服务器" name_zh_TW="網絡遊戲反恐精英（CS）網絡對戰客戶端連接服務器" ruleid="50126" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ发现非法信息通信" name_en_US="Instant Messaging Tool ICQ Illegal Information Attempt" name_zh_CN="即时通信工具ICQ发现非法信息通信" name_zh_TW="即時通信工具ICQ發現非法信息通信" ruleid="50125" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="mstream ACK/FIN小数据包洪流拒绝服务攻击" name_en_US="mstream ACK/FIN Small Packets Flood Denial of Service" name_zh_CN="mstream ACK/FIN小数据包洪流拒绝服务攻击" name_zh_TW="mstream ACK/FIN小數據包洪流拒絕服務攻擊" ruleid="10036" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户视频聊天通信" name_en_US="Instant Messaging Tool ICQ User Video Chatting Attempt" name_zh_CN="即时通信工具ICQ用户视频聊天通信" name_zh_TW="即時通信工具ICQ用戶視頻聊天通信" ruleid="50123" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ用户音频聊天通信" name_en_US="Instant Messaging Tool ICQ User Audio Chatting Attempt" name_zh_CN="即时通信工具ICQ用户音频聊天通信" name_zh_TW="即時通信工具ICQ用戶音頻聊天通信" ruleid="50122" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通信工具ICQ传送文件企图通信" name_en_US="Instant Messaging Tool ICQ Sending File Attempt" name_zh_CN="即时通信工具ICQ传送文件企图通信" name_zh_TW="即時通信工具ICQ傳送文件企圖通信" ruleid="50121" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏魔兽争霸客户端连接服务器" name_en_US=" Online Game &quot;Warcraft&quot; Client Connect Server" name_zh_CN="网络游戏魔兽争霸客户端连接服务器" name_zh_TW="網絡遊戲魔獸爭霸客戶端連接服務器" ruleid="50120" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157739" module="0" name="Microsoft IIS .ida/.idq ISAPI扩展远程缓冲区溢出攻击" name_en_US="Microsoft IIS .ida/.idq ISAPI Extension Remote Buffer Overflow" name_zh_CN="Microsoft IIS .ida/.idq ISAPI扩展远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS .ida/.idq ISAPI擴展遠程緩沖區溢出攻擊" ruleid="20102" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitTorrent通过UDP协议获取文件信息" name_en_US="P2P File Sharing Tool BitTorrent Obtainning Files via UDP Protocol" name_zh_CN="P2P文件共享工具BitTorrent通过UDP协议获取文件信息" name_zh_TW="P2P文件共享工具BitTorrent通過UDP協議獲取文件信息" ruleid="50129" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏魔兽争霸（Warcraft）网络对战客户端连接服务器" name_en_US="Online Game &quot;Warcraft&quot; Client Connect Server" name_zh_CN="网络游戏魔兽争霸（Warcraft）网络对战客户端连接服务器" name_zh_TW="網絡遊戲魔獸爭霸（Warcraft）網絡對戰客戶端連接服務器" ruleid="50128" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375343" module="0" name="phpcms 2008多个漏洞" name_en_US="phpcms 2008 Multiple Vulnerabilities" name_zh_CN="phpcms 2008多个漏洞" name_zh_TW="phpcms 2008多個漏洞" ruleid="22302" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Windows恶意.lnk文件邮件附件传播" name_en_US="Microsoft Windows Malicious .lnk Document Attachment Propagation" name_zh_CN="Microsoft Windows恶意.lnk文件邮件附件传播" name_zh_TW="Microsoft Windows惡意.lnk文件郵件附件傳播" ruleid="40777" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="RDP协议远程代码执行漏洞(MS12-020,CVE-2012-0002)" name_en_US="RDP Protocol Remote Code Execution Vulnerability(MS12-020,CVE-2012-0002)" name_zh_CN="RDP协议远程代码执行漏洞(MS12-020,CVE-2012-0002)" name_zh_TW="RDP協議遠程代碼執行漏洞(MS12-020,CVE-2012-0002)" ruleid="21458" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="TinyBrowser Plugin for Joomla! upload.php folder参数任意文件上传漏洞" name_en_US="Joomla 1.5.12 TinyBrowser File Upload Code Execution" name_zh_CN="TinyBrowser Plugin for Joomla! upload.php folder参数任意文件上传漏洞" name_zh_TW="TinyBrowser Plugin for Joomla! upload.php folder參數任意文件上傳漏洞" ruleid="22434" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 结点列表扫描 " name_en_US="DNP3 – Points List Scan " name_zh_CN="DNP3 – 结点列表扫描 " name_zh_TW="DNP3 – 結點列表掃描 " ruleid="22435" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840709" module="0" name="DNP3 – 功能代码扫描 " name_en_US="DNP3 – Function Code Scan" name_zh_CN="DNP3 – 功能代码扫描 " name_zh_TW="DNP3 – 功能代碼掃描 " ruleid="22436" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834543" module="0" name="Java 7 Applet远程代码执行 (MetaSploit)" name_en_US="Java 7 Applet Remote Code Execution (MetaSploit)" name_zh_CN="Java 7 Applet远程代码执行 (MetaSploit)" name_zh_TW="Java 7 Applet遠程代碼執行 (MetaSploit)" ruleid="22431" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Apache Struts2 Skill名称远程代码执行漏洞" name_en_US="Apache Struts2 Skill Name Remote Code Execution Vulnerability" name_zh_CN="Apache Struts2 Skill名称远程代码执行漏洞" name_zh_TW="Apache Struts2 Skill名稱遠程代碼執行漏洞" ruleid="22432" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832751" module="0" name="Adobe Flash Player 11.3 Kern Table Parsing整数溢出漏洞" name_en_US="Adobe Flash Player 11.3 Kern Table Parsing Integer Overflow Vulnerability" name_zh_CN="Adobe Flash Player 11.3 Kern Table Parsing整数溢出漏洞" name_zh_TW="Adobe Flash Player 11.3 Kern Table Parsing整數溢出漏洞" ruleid="22433" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Adware Speedbar网络通信" name_en_US="Backdoor/Trojan Windows Adware Speedbar Network Communication" name_zh_CN="木马后门程序Adware Speedbar网络通信" name_zh_TW="木馬後門程序Adware Speedbar網絡通信" ruleid="40776" visible="true" />
			<rule action=" db  screen " enabled="true" group="231800925" module="0" name="DHCP服务器Offer配置信息操作" name_en_US="DHCP Server Offer Information Configuration Operation" name_zh_CN="DHCP服务器Offer配置信息操作" name_zh_TW="DHCP服務器Offer配置信息操作" ruleid="50097" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="pagelog.cgi脚本漏洞扫描探测" name_en_US="pagelog.cgi Script Vulnerability Detection" name_zh_CN="pagelog.cgi脚本漏洞扫描探测" name_zh_TW="pagelog.cgi腳本漏洞掃描探測" ruleid="30338" visible="true" />
			<rule action=" db  screen " enabled="true" group="71307337" module="0" name="Microsoft Windows 2000 telnet执行NTLM认证" name_en_US="Microsoft Windows 2000 telnet NTLM Authentication" name_zh_CN="Microsoft Windows 2000 telnet执行NTLM认证" name_zh_TW="Microsoft Windows 2000 telnet執行NTLM認證" ruleid="40775" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏QUAKE客户端连接服务器" name_en_US="Online Game &quot;QUAKE&quot;  Client Connect Server " name_zh_CN="网络游戏QUAKE客户端连接服务器" name_zh_TW="網絡遊戲QUAKE客戶端連接服務器" ruleid="50096" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680330" module="0" name="Windows系统下Adware P2PNetworking网络通信" name_en_US="Windows Adware P2PNetworking Network Communication" name_zh_CN="Windows系统下Adware P2PNetworking网络通信" name_zh_TW="Windows系統下Adware P2PNetworking網絡通信" ruleid="40774" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="VUPlayer M3U缓冲区溢出漏洞" name_en_US="VUPlayer M3U Buffer Overflow Vulnerability" name_zh_CN="VUPlayer M3U缓冲区溢出漏洞" name_zh_TW="VUPlayer M3U緩沖區溢出漏洞" ruleid="22054" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="IP/ICMP畸形分片包Jolt拒绝服务攻击" name_en_US="Malformed IP/ICMP Fragmented Packet Jolt Denial of Service" name_zh_CN="IP/ICMP畸形分片包Jolt拒绝服务攻击" name_zh_TW="IP/ICMP畸形分片包Jolt拒絕服務攻擊" ruleid="10032" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具QQ用户登录（UDP）" name_en_US="Instant Messaging Tool QQ User Login (UDP)" name_zh_CN="即时通信工具QQ用户登录（UDP）" name_zh_TW="即時通信工具QQ用戶登錄（UDP）" ruleid="50095" visible="true" />
			<rule action=" db  screen " enabled="true" group="368054347" module="0" name="SyGate未公开远程管理端口通信" name_en_US="SyGate Inpublic Remote Management Port Communication" name_zh_CN="SyGate未公开远程管理端口通信" name_zh_TW="SyGate未公開遠程管理端口通信" ruleid="40769" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Adware Conspy下载更新" name_en_US="Backdoor/Trojan Windows Adware Conspy Download Upgrade" name_zh_CN="木马后门程序Adware Conspy下载更新" name_zh_TW="木馬後門程序Adware Conspy下載更新" ruleid="40773" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务请求数字用户获取列表攻击" name_en_US="FINGER Service Request List Disclosure with Numeric Username" name_zh_CN="FINGER服务请求数字用户获取列表攻击" name_zh_TW="FINGER服務請求數字用戶獲取列表攻擊" ruleid="40032" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680334" module="0" name="Windows系统下Adware Superbar下载安装程序" name_en_US="Adware Superbar Downloading Installer on Windows" name_zh_CN="Windows系统下Adware Superbar下载安装程序" name_zh_TW="Windows系統下Adware Superbar下載安裝程序" ruleid="40772" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2569)" name_en_US="Microsoft Office Publisher Remote Code Execution Vulnerabilities(CVE-2010-2569)" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2569)" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞(CVE-2010-2569)" ruleid="21158" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞 (CVE-2010-3957)" name_en_US="Microsoft Windows OpenType Font (OTF) Format Driver Remote Code Execution Vulnerabilities (CVE-2010-3957)" name_zh_CN="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞 (CVE-2010-3957)" name_zh_TW="Microsoft Windows OpenType Font (OTF) Format Driver遠程代碼執行漏洞 (CVE-2010-3957)" ruleid="21159" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2571)" name_en_US="Microsoft Office Publisher Remote Code Execution Vulnerabilities(CVE-2010-2571)" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2571)" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞(CVE-2010-2571)" ruleid="21156" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2570)" name_en_US="Microsoft Office Publisher Remote Code Execution Vulnerabilities(CVE-2010-2570)" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2570)" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞(CVE-2010-2570)" ruleid="21157" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3945)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(CVE-2010-3945)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3945)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(CVE-2010-3945)" ruleid="21154" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2571)" name_en_US="Microsoft Office Publisher Remote Code Execution Vulnerabilities(CVE-2010-2571)" name_zh_CN="Microsoft Office Publisher远程代码执行漏洞(CVE-2010-2571)" name_zh_TW="Microsoft Office Publisher遠程代碼執行漏洞(CVE-2010-2571)" ruleid="21155" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3947)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(CVE-2010-3947)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3947)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(CVE-2010-3947)" ruleid="21152" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3946)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(CVE-2010-3946)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3946)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(CVE-2010-3946)" ruleid="21153" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3951)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(CVE-2010-3951)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3951)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(CVE-2010-3951)" ruleid="21150" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616814" module="0" name="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3949)" name_en_US="Microsoft Office Graphics Filters Remote Code Execution Vulnerabilities(CVE-2010-3949)" name_zh_CN="Microsoft Office Graphics Filters远程代码执行漏洞(CVE-2010-3949)" name_zh_TW="Microsoft Office Graphics Filters遠程代碼執行漏洞(CVE-2010-3949)" ruleid="21151" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Dagger 1.4.0木马客户端发送控制信号" name_en_US="Backdoor/Trojan Dagger 1.4.0 Client Sending Control Signals " name_zh_CN="木马后门程序Dagger 1.4.0木马客户端发送控制信号" name_zh_TW="木馬後門程序Dagger 1.4.0木馬客戶端發送控制信號" ruleid="40426" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208086" module="0" name="WebSphere helpout.exe程序漏洞拒绝服务攻击" name_en_US="Denial of Service via WebSphere helpout.exe Vulnerability" name_zh_CN="WebSphere helpout.exe程序漏洞拒绝服务攻击" name_zh_TW="WebSphere helpout.exe程序漏洞拒絕服務攻擊" ruleid="10062" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616790" module="0" name="Microsoft Windows 2000域控制器拒绝服务攻击(CVE-2001-0018)" name_en_US="Microsoft Windows 2000 Domain Controller Denial of Service(CVE-2001-0018)" name_zh_CN="Microsoft Windows 2000域控制器拒绝服务攻击(CVE-2001-0018)" name_zh_TW="Microsoft Windows 2000域控制器拒絕服務攻擊(CVE-2001-0018)" ruleid="10063" visible="false" />
			<rule action=" db  screen " enabled="false" group="222300186" module="0" name="Oracle 9i TNS单字节包拒绝服务攻击" name_en_US="Oracle 9i TNS Single Byte Denial of Service" name_zh_CN="Oracle 9i TNS单字节包拒绝服务攻击" name_zh_TW="Oracle 9i TNS單字節包拒絕服務攻擊" ruleid="10060" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616794" module="0" name="Microsoft Windows 2000 RPC服务远程拒绝服务攻击(CVE-2002-1561)" name_en_US="Microsoft Windows 2000 RPC Service Remote Denial of Service(CVE-2002-1561)" name_zh_CN="Microsoft Windows 2000 RPC服务远程拒绝服务攻击(CVE-2002-1561)" name_zh_TW="Microsoft Windows 2000 RPC服務遠程拒絕服務攻擊(CVE-2002-1561)" ruleid="10061" visible="false" />
			<rule action=" db  screen " enabled="true" group="222300182" module="0" name="Oracle TNS Listener Service_CurLoad远程拒绝服务攻击" name_en_US="Oracle TNS Listener Service_CurLoad Remote Denial of Service" name_zh_CN="Oracle TNS Listener Service_CurLoad远程拒绝服务攻击" name_zh_TW="Oracle TNS Listener Service_CurLoad遠程拒絕服務攻擊" ruleid="10066" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Netscape Enterprise Server REVLOG请求远程拒绝服务攻击" name_en_US="Netscape Enterprise Server REVLOG Request Remote Denial of Service" name_zh_CN="Netscape Enterprise Server REVLOG请求远程拒绝服务攻击" name_zh_TW="Netscape Enterprise Server REVLOG請求遠程拒絕服務攻擊" ruleid="10067" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理页面admin_forum.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Page admin_forum.php" name_zh_CN="Ultimate PHP Board远程管理页面admin_forum.php访问" name_zh_TW="Ultimate PHP Board遠程管理頁面admin_forum.php訪問" ruleid="20179" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422486" module="0" name="Windows 9x SMB_COM_SEND_SINGLE_BLOCK操作拒绝服务攻击" name_en_US="Windows 9x SMB_COM_SEND_SINGLE_BLOCK Denial of Service" name_zh_CN="Windows 9x SMB_COM_SEND_SINGLE_BLOCK操作拒绝服务攻击" name_zh_TW="Windows 9x SMB_COM_SEND_SINGLE_BLOCK操作拒絕服務攻擊" ruleid="10065" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理页面admin_config.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Page admin_config.php" name_zh_CN="Ultimate PHP Board远程管理页面admin_config.php访问" name_zh_TW="Ultimate PHP Board遠程管理頁面admin_config.php訪問" ruleid="20177" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理脚本admin_members.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Script admin_members.php" name_zh_CN="Ultimate PHP Board远程管理脚本admin_members.php访问" name_zh_TW="Ultimate PHP Board遠程管理腳本admin_members.php訪問" ruleid="20176" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377238" module="0" name="Allaire JRun Servlet畸形请求远程拒绝服务攻击" name_en_US="Allaire JRun Servlet Malformed Requests Remote Denial of Service" name_zh_CN="Allaire JRun Servlet畸形请求远程拒绝服务攻击" name_zh_TW="Allaire JRun Servlet畸形請求遠程拒絕服務攻擊" ruleid="10068" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425814" module="0" name="Unify eWave ServletExec远程拒绝服务攻击" name_en_US="Unify eWave ServletExec Remote Denial of Service" name_zh_CN="Unify eWave ServletExec远程拒绝服务攻击" name_zh_TW="Unify eWave ServletExec遠程拒絕服務攻擊" ruleid="10069" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157734" module="0" name="Savant Webserver cgitest.exe远程缓冲区溢出攻击" name_en_US="Savant Webserver cgitest.exe Remote Buffer Overflow" name_zh_CN="Savant Webserver cgitest.exe远程缓冲区溢出攻击" name_zh_TW="Savant Webserver cgitest.exe遠程緩沖區溢出攻擊" ruleid="20173" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="vBulletin Calendar.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via vBulletin Calendar.php Script Vulnerability" name_zh_CN="vBulletin Calendar.php脚本漏洞远程执行命令" name_zh_TW="vBulletin Calendar.php腳本漏洞遠程執行命令" ruleid="20172" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159531" module="0" name="Microsoft IIS 4.0/5.0 CGI文件名错误解码攻击" name_en_US="Microsoft IIS 4.0/5.0 CGI Filename Incorrect Decoding Vulnerability" name_zh_CN="Microsoft IIS 4.0/5.0 CGI文件名错误解码攻击" name_zh_TW="Microsoft IIS 4.0/5.0 CGI文件名錯誤解碼攻擊" ruleid="20171" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Millenium木马通信" name_en_US="Backdoor/Trojan Millenium Communication " name_zh_CN="木马后门程序Millenium木马通信" name_zh_TW="木馬後門程序Millenium木馬通信" ruleid="40543" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Squid Cache FTP代理URL缓冲区溢出攻击" name_en_US="Squid Cache FTP Proxy URL Buffer Overflow" name_zh_CN="Squid Cache FTP代理URL缓冲区溢出攻击" name_zh_TW="Squid Cache FTP代理URL緩沖區溢出攻擊" ruleid="20779" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Microsoft SQLXML ISAPI远程缓冲区溢出攻击" name_en_US="Microsoft SQLXML ISAPI Remote Buffer Overflow" name_zh_CN="Microsoft SQLXML ISAPI远程缓冲区溢出攻击" name_zh_TW="Microsoft SQLXML ISAPI遠程緩沖區溢出攻擊" ruleid="20778" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206314" module="0" name="SAP DB Webagent远程缓冲区溢出攻击" name_en_US="SAP DB Webagent Remote Buffer Overflow" name_zh_CN="SAP DB Webagent远程缓冲区溢出攻击" name_zh_TW="SAP DB Webagent遠程緩沖區溢出攻擊" ruleid="20775" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="HP OpenView NNM webappmon.exe参数远程代码执行漏洞" name_en_US="HP OpenView NNM webappmon.exe Parameter Remote Code Execution Vulnerability" name_zh_CN="HP OpenView NNM webappmon.exe参数远程代码执行漏洞" name_zh_TW="HP OpenView NNM webappmon.exe參數遠程代碼執行漏洞" ruleid="21373" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PHP php_register_variable_ex()函数任意代码执行漏洞" name_en_US="PHP php_register_variable_ex() Function Execute Arbitrary Programs Vulnerability" name_zh_CN="PHP php_register_variable_ex()函数任意代码执行漏洞" name_zh_TW="PHP php_register_variable_ex()函數任意代碼執行漏洞" ruleid="21370" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206314" module="0" name="Kerio MailServer远程用户名缓冲区溢出攻击" name_en_US="Kerio MailServer Username Remote Buffer Overflow" name_zh_CN="Kerio MailServer远程用户名缓冲区溢出攻击" name_zh_TW="Kerio MailServer遠程用戶名緩沖區溢出攻擊" ruleid="20776" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Adobe Acrobat和READER内存破坏漏洞(CVE-2011-4369)" name_en_US="Adobe Acrobat and Reader Memory Corruption Vulnerability(CVE-2011-4369)" name_zh_CN="Adobe Acrobat和READER内存破坏漏洞(CVE-2011-4369)" name_zh_TW="Adobe Acrobat和READER內存破壞漏洞(CVE-2011-4369)" ruleid="21376" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="MetaCart2 intCatalogID参数远程SQL注入攻击" name_en_US="MetaCart2 intCatalogID Parameter Remote SQL Injection" name_zh_CN="MetaCart2 intCatalogID参数远程SQL注入攻击" name_zh_TW="MetaCart2 intCatalogID參數遠程SQL注入攻擊" ruleid="20770" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Apache Struts远程命令执行和任意文件覆盖漏洞" name_en_US="Apache Struts Remote Command Execution and Arbitrary File Overwrite Vulnerability" name_zh_CN="Apache Struts远程命令执行和任意文件覆盖漏洞" name_zh_TW="Apache Struts遠程命令執行和任意文件覆蓋漏洞" ruleid="21374" visible="true" />
			<rule action=" db  screen " enabled="true" group="272631850" module="0" name="Bay Technical Associates RPC3 Telnet访问认证绕过攻击" name_en_US="Bay Technical Associates RPC3 Telnet Authentication Bypass" name_zh_CN="Bay Technical Associates RPC3 Telnet访问认证绕过攻击" name_zh_TW="Bay Technical Associates RPC3 Telnet訪問認證繞過攻擊" ruleid="20772" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615815" module="0" name="木马后门程序iraq_oil蠕虫活动" name_en_US="Backdoor/Trojan Worm iraq_oil " name_zh_CN="木马后门程序iraq_oil蠕虫活动" name_zh_TW="木馬後門程序iraq_oil蠕蟲活動" ruleid="40428" visible="true" />
			<rule action="" enabled="true" group="138477657" module="0" name="TELNET服务TTYPROMPT环境变量内部事件" name_en_US="TELNET Service Environmental Variable TTYPROMPT Internal Event" name_zh_CN="TELNET服务TTYPROMPT环境变量内部事件" name_zh_TW="TELNET服務TTYPROMPT環境變量內部事件" ruleid="70051" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序甲壳虫 Gh0st 屏幕监控" name_en_US="Remote Control Program Beetle Gh0st Screen Monitor" name_zh_CN="远程控制程序甲壳虫 Gh0st 屏幕监控" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 屏幕監控" ruleid="41008" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序甲壳虫 Gh0st 键盘记录" name_en_US="Remote Control Program Beetle Gh0st Keylogger" name_zh_CN="远程控制程序甲壳虫 Gh0st 键盘记录" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 鍵盤記錄" ruleid="41009" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Server Message Block Protocol Software 拒绝服务攻击漏洞" name_en_US="Microsoft Server Message Block Protocol Software Denial of Service Vulnerability" name_zh_CN="Microsoft Server Message Block Protocol Software 拒绝服务攻击漏洞" name_zh_TW="Microsoft Server Message Block Protocol Software 拒絕服務攻擊漏洞" ruleid="10288" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Distributed File System (DFS) 拒绝服务攻击漏洞" name_en_US="Microsoft Distributed File System (DFS) Denial of Service Vulnerability" name_zh_CN="Microsoft Distributed File System (DFS) 拒绝服务攻击漏洞" name_zh_TW="Microsoft Distributed File System (DFS) 拒絕服務攻擊漏洞" ruleid="10289" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 DRAT （暗组）屏幕监控" name_en_US="Remote Control Program DRAT(AnZu) Screen Monitor" name_zh_CN="远程控制程序 DRAT （暗组）屏幕监控" name_zh_TW="遠程控制程序 DRAT （暗組）屏幕監控" ruleid="41002" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序上兴远控屏幕监控" name_en_US="Remote Control Program ShangXing Remote Control Screen Monitor" name_zh_CN="远程控制程序上兴远控屏幕监控" name_zh_TW="遠程控制程序上興遠控屏幕監控" ruleid="41003" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377246" module="0" name="Apache Tomcat Transfer-Encoding头处理拒绝服务漏洞" name_en_US="Apache Tomcat Remote Denial Of Service Vulnerability" name_zh_CN="Apache Tomcat Transfer-Encoding头处理拒绝服务漏洞" name_zh_TW="Apache Tomcat Transfer-Encoding頭處理拒絕服務漏洞" ruleid="10284" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 DRAT （暗组）文件下发" name_en_US="Remote Control Program DRAT(AnZu) Files Issue" name_zh_CN="远程控制程序 DRAT （暗组）文件下发" name_zh_TW="遠程控制程序 DRAT （暗組）文件下發" ruleid="41001" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814426" module="0" name="DNS Request Flood 拒绝服务攻击" name_en_US="DNS Request Flood Denial of Service" name_zh_CN="DNS Request Flood 拒绝服务攻击" name_zh_TW="DNS Request Flood 拒絕服務攻擊" ruleid="10282" visible="true" />
			<rule action=" db  screen " enabled="true" group="211814426" module="0" name="DNS Reply Flood 拒绝服务攻击" name_en_US="DNS Reply Flood Denial of Service" name_zh_CN="DNS Reply Flood 拒绝服务攻击" name_zh_TW="DNS Reply Flood 拒絕服務攻擊" ruleid="10283" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616794" module="0" name="Microsoft Active Directory Service Principal Names验证拒绝服务漏洞(MS11-005)" name_en_US="Microsoft Active Directory Service Principal Names Validation Denial of Service Vulnerability (MS11-005)" name_zh_CN="Microsoft Active Directory Service Principal Names验证拒绝服务漏洞(MS11-005)" name_zh_TW="Microsoft Active Directory Service Principal Names驗證拒絕服務漏洞(MS11-005)" ruleid="10280" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834522" module="0" name="ICMP 多播地址ping请求伪造攻击" name_en_US="ICMP Multicast Address Ping Request Spoof Attack" name_zh_CN="ICMP 多播地址ping请求伪造攻击" name_zh_TW="ICMP 多播地址ping請求僞造攻擊" ruleid="10281" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206319" module="0" name="CA BrightStor ARCserve Backup for MS SQL缓冲区溢出攻击" name_en_US="CA BrightStor ARCserve Backup for MS SQL Buffer Overflow" name_zh_CN="CA BrightStor ARCserve Backup for MS SQL缓冲区溢出攻击" name_zh_TW="CA BrightStor ARCserve Backup for MS SQL緩沖區溢出攻擊" ruleid="20519" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="MySQL Eventum远程SQL注入攻击" name_en_US="MySQL Eventum Script SQL Injection" name_zh_CN="MySQL Eventum远程SQL注入攻击" name_zh_TW="MySQL Eventum遠程SQL注入攻擊" ruleid="20518" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="UDP畸形数据包PING-PONG拒绝服务攻击" name_en_US="Malformed UDP Packet PING-PONG Denial of Service" name_zh_CN="UDP畸形数据包PING-PONG拒绝服务攻击" name_zh_TW="UDP畸形數據包PING-PONG拒絕服務攻擊" ruleid="10118" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="IGMP畸形包拒绝服务攻击" name_en_US="Malformed IGMP Packet Denial of Service" name_zh_CN="IGMP畸形包拒绝服务攻击" name_zh_TW="IGMP畸形包拒絕服務攻擊" ruleid="10119" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft Outlook Express NNTP LIST命令响应解析溢出攻击" name_en_US="Microsoft Outlook Express NNTP LIST Command Response Resolution Overflow" name_zh_CN="Microsoft Outlook Express NNTP LIST命令响应解析溢出攻击" name_zh_TW="Microsoft Outlook Express NNTP LIST命令響應解析溢出攻擊" ruleid="20511" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="IP畸形分片包拒绝服务攻击" name_en_US="Malformed IP Fragmented Packet Denial of Service" name_zh_CN="IP畸形分片包拒绝服务攻击" name_zh_TW="IP畸形分片包拒絕服務攻擊" ruleid="10117" visible="false" />
			<rule action=" db  screen " enabled="true" group="70256671" module="0" name="Serv-U FTP服务器设备文件名远程拒绝服务攻击" name_en_US="Serv-U FTP Server Device Filename Remote Denial of Service" name_zh_CN="Serv-U FTP服务器设备文件名远程拒绝服务攻击" name_zh_TW="Serv-U FTP服務器設備文件名遠程拒絕服務攻擊" ruleid="10114" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="UDP-Flood淹没拒绝服务攻击" name_en_US="UDP-Flood Denial of Service Attacks" name_zh_CN="UDP-Flood淹没拒绝服务攻击" name_zh_TW="UDP-Flood淹沒拒絕服務攻擊" ruleid="10115" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="Microsoft IIS超长畸形请求拒绝服务攻击" name_en_US="Microsoft IIS Over-long Malformed Request Denial of Service" name_zh_CN="Microsoft IIS超长畸形请求拒绝服务攻击" name_zh_TW="Microsoft IIS超長畸形請求拒絕服務攻擊" ruleid="10112" visible="true" />
			<rule action=" db  screen " enabled="true" group="337643547" module="0" name="Linksys Gozila.cgi脚本漏洞远程拒绝服务攻击" name_en_US="Remote Denial of Service via Linksys Gozila.cgi Script Vulnerability" name_zh_CN="Linksys Gozila.cgi脚本漏洞远程拒绝服务攻击" name_zh_TW="Linksys Gozila.cgi腳本漏洞遠程拒絕服務攻擊" ruleid="10113" visible="true" />
			<rule action=" db  screen " enabled="true" group="229638427" module="0" name="ISS RealSecure/BlackICE协议分析模块SMB解析堆溢出攻击" name_en_US="ISS RealSecure/BlackICE Protocol Analysis Module SMB Resolution Heap Overflow" name_zh_CN="ISS RealSecure/BlackICE协议分析模块SMB解析堆溢出攻击" name_zh_TW="ISS RealSecure/BlackICE協議分析模塊SMB解析堆溢出攻擊" ruleid="10110" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Web Portal System wps_shop.cgi脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Web Portal System wps_shop.cgi Script Vulnerability" name_zh_CN="Web Portal System wps_shop.cgi脚本漏洞远程执行命令" name_zh_TW="Web Portal System wps_shop.cgi腳本漏洞遠程執行命令" ruleid="20516" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="eFiction上传图像文件执行命令攻击" name_en_US="eFiction Image File Upload Code Execution" name_zh_CN="eFiction上传图像文件执行命令攻击" name_zh_TW="eFiction上傳圖像文件執行命令攻擊" ruleid="20689" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422494" module="0" name="SMB srv!SrvVerifyShare()处理Tree Connect报文远程拒绝服务攻击" name_en_US="SMB srv!SrvVerifyShare() Address Tree Connect Packet Remote DoS Attack" name_zh_CN="SMB srv!SrvVerifyShare()处理Tree Connect报文远程拒绝服务攻击" name_zh_TW="SMB srv!SrvVerifyShare()處理Tree Connect報文遠程拒絕服務攻擊" ruleid="10258" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="QnECMS adminfolderpath变量远程文件包含攻击" name_en_US="QnECMS adminfolderpath Variable Remote File Inclusion" name_zh_CN="QnECMS adminfolderpath变量远程文件包含攻击" name_zh_TW="QnECMS adminfolderpath變量遠程文件包含攻擊" ruleid="20681" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497771" module="0" name="Ipswitch IMail SMTP Server畸形参数缓冲区溢出攻击" name_en_US="Ipswitch IMail SMTP Server Malformed Parameter Buffer Overflow" name_zh_CN="Ipswitch IMail SMTP Server畸形参数缓冲区溢出攻击" name_zh_TW="Ipswitch IMail SMTP Server畸形參數緩沖區溢出攻擊" ruleid="20680" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375467" module="0" name="HTTP协议请求超长Authorization选项远程缓冲区溢出攻击" name_en_US="HTTP Protocol Request Over-Long Authorization Option Remote Buffer Overflow" name_zh_CN="HTTP协议请求超长Authorization选项远程缓冲区溢出攻击" name_zh_TW="HTTP協議請求超長Authorization選項遠程緩沖區溢出攻擊" ruleid="20683" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Ultimate PHP Board _CONFIG[skin_dir]变量远程文件包含攻击" name_en_US="Ultimate PHP Board _CONFIG[skin_dir] Variable Remote File Inclusion" name_zh_CN="Ultimate PHP Board _CONFIG[skin_dir]变量远程文件包含攻击" name_zh_TW="Ultimate PHP Board _CONFIG[skin_dir]變量遠程文件包含攻擊" ruleid="20682" visible="true" />
			<rule action=" db  screen " enabled="true" group="93323563" module="0" name="HP Node Manager SNMP服务远程缓冲区溢出攻击" name_en_US="HP Node Manager SNMP Service Remote Buffer Overflow" name_zh_CN="HP Node Manager SNMP服务远程缓冲区溢出攻击" name_zh_TW="HP Node Manager SNMP服務遠程緩沖區溢出攻擊" ruleid="20685" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="WordPress functions.php脚本远程文件包含攻击" name_en_US="WordPress functions.php Script Remote File Inclusion" name_zh_CN="WordPress functions.php脚本远程文件包含攻击" name_zh_TW="WordPress functions.php腳本遠程文件包含攻擊" ruleid="20684" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpBB viewtopic.php topic_id远程SQL注入攻击" name_en_US="phpBB viewtopic.php topic_id Remote SQL Injection" name_zh_CN="phpBB viewtopic.php topic_id远程SQL注入攻击" name_zh_TW="phpBB viewtopic.php topic_id遠程SQL注入攻擊" ruleid="20687" visible="true" />
			<rule action=" db  screen " enabled="true" group="93323563" module="0" name="NodeManager Professional SNMP Trap处理远程缓冲区溢出攻击" name_en_US="NodeManager Professional SNMP Trap Handling Remote Buffer Overflow" name_zh_CN="NodeManager Professional SNMP Trap处理远程缓冲区溢出攻击" name_zh_TW="NodeManager Professional SNMP Trap處理遠程緩沖區溢出攻擊" ruleid="20686" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616811" module="0" name="Microsoft Windows Embedded OpenType字体引擎远程代码执行攻击" name_en_US="Microsoft Windows Embedded OpenType Font Engine Remote Code Execution Attack" name_zh_CN="Microsoft Windows Embedded OpenType字体引擎远程代码执行攻击" name_zh_TW="Microsoft Windows Embedded OpenType字體引擎遠程代碼執行攻擊" ruleid="20999" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft DirectShow QuickTime解析验证Size Field远程代码执行攻击" name_en_US="Microsoft DirectShow QuickTime Parse Validate Size Field Remote Code Execution Attack" name_zh_CN="Microsoft DirectShow QuickTime解析验证Size Field远程代码执行攻击" name_zh_TW="Microsoft DirectShow QuickTime解析驗證Size Field遠程代碼執行攻擊" ruleid="20998" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft Office Web 组件Spreadsheet对象远程代码执行攻击" name_en_US="Microsoft Office Web Components Spreadsheet Object Remote Code Execution Attack" name_zh_CN="Microsoft Office Web 组件Spreadsheet对象远程代码执行攻击" name_zh_TW="Microsoft Office Web 組件Spreadsheet對象遠程代碼執行攻擊" ruleid="20995" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft DirectShow QuickTime解析验证NumberOfEntries远程代码执行攻击" name_en_US="Microsoft DirectShow QuickTime Parse Validate NumberOfEntries  Remote Code Execution Attack" name_zh_CN="Microsoft DirectShow QuickTime解析验证NumberOfEntries远程代码执行攻击" name_zh_TW="Microsoft DirectShow QuickTime解析驗證NumberOfEntries遠程代碼執行攻擊" ruleid="20997" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft DirectShow解析QuickTime文件格式远程代码执行攻击" name_en_US="Microsoft DirectShow Parse QuickTime Format Remote Code Execution Attack" name_zh_CN="Microsoft DirectShow解析QuickTime文件格式远程代码执行攻击" name_zh_TW="Microsoft DirectShow解析QuickTime文件格式遠程代碼執行攻擊" ruleid="20996" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Windows后台打印程序允许远程代码执行攻击" name_en_US="Windows Print Spooler Allow Remote Code Execution" name_zh_CN="Windows后台打印程序允许远程代码执行攻击" name_zh_TW="Windows後台打印程序允許遠程代碼執行攻擊" ruleid="20991" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft IIS WebDAV插件特权提升攻击" name_en_US="WebDAV plugin for IIS Elevation Of Privilege" name_zh_CN="Microsoft IIS WebDAV插件特权提升攻击" name_zh_TW="Microsoft IIS WebDAV插件特權提升攻擊" ruleid="20990" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft DirectShow MPEG2TuneRequest组件溢出攻击" name_en_US="Microsoft DirectShow MPEG2TuneRequest Component Overflow" name_zh_CN="Microsoft DirectShow MPEG2TuneRequest组件溢出攻击" name_zh_TW="Microsoft DirectShow MPEG2TuneRequest組件溢出攻擊" ruleid="20993" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616826" module="0" name="Windows后台打印程序信息泄露攻击" name_en_US="Windows Print Spooler Information Disclosure " name_zh_CN="Windows后台打印程序信息泄露攻击" name_zh_TW="Windows後台打印程序信息泄露攻擊" ruleid="20992" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware TIBS下载安装程序" name_en_US="Adware TIBS Downloading Installer on Windows" name_zh_CN="Windows系统下Adware TIBS下载安装程序" name_zh_TW="Windows系統下Adware TIBS下載安裝程序" ruleid="40739" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware ExactSearchBar下载安装程序" name_en_US="Adware ExactSearchBar Downloading Installer on Windows" name_zh_CN="Windows系统下Adware ExactSearchBar下载安装程序" name_zh_TW="Windows系統下Adware ExactSearchBar下載安裝程序" ruleid="40738" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware NewDotNet下载安装程序" name_en_US="Adware NewDotNet Downloading Installer on Windows" name_zh_CN="Windows系统下Adware NewDotNet下载安装程序" name_zh_TW="Windows系統下Adware NewDotNet下載安裝程序" ruleid="40733" visible="true" />
			<rule action=" db  screen " enabled="true" group="224657482" module="0" name="BOT僵尸程序远程控制频道通信" name_en_US="BOT Zombies Remote Control of Communication" name_zh_CN="BOT僵尸程序远程控制频道通信" name_zh_TW="BOT僵屍程序遠程控制頻道通信" ruleid="40732" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序黑客之门通信" name_en_US="Backdoor/Trojan Hacker's Door Communication " name_zh_CN="木马后门程序黑客之门通信" name_zh_TW="木馬後門程序黑客之門通信" ruleid="40731" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序sqlserver管理器ASP后门访问" name_en_US="Backdoor/Trojan sqlserver Manager ASP Backdoor " name_zh_CN="木马后门程序sqlserver管理器ASP后门访问" name_zh_TW="木馬後門程序sqlserver管理器ASP後門訪問" ruleid="40730" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware ISTbar下载安装更新程序" name_en_US="Adware ISTbar Downloading Installer on Windows" name_zh_CN="Windows系统下Adware ISTbar下载安装更新程序" name_zh_TW="Windows系統下Adware ISTbar下載安裝更新程序" ruleid="40737" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware FavoriteMan下载安装程序" name_en_US="Adware FavoriteMan Downloading Installer on Windows" name_zh_CN="Windows系统下Adware FavoriteMan下载安装程序" name_zh_TW="Windows系統下Adware FavoriteMan下載安裝程序" ruleid="40736" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware ABetterInternet下载安装程序" name_en_US="Adware ABetterInternet Downloading Installer on Windows" name_zh_CN="Windows系统下Adware ABetterInternet下载安装程序" name_zh_TW="Windows系統下Adware ABetterInternet下載安裝程序" ruleid="40735" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware SecondThought下载安装程序" name_en_US="Adware SecondThought Downloading Installer on Windows" name_zh_CN="Windows系统下Adware SecondThought下载安装程序" name_zh_TW="Windows系統下Adware SecondThought下載安裝程序" ruleid="40734" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="VBulletin index.php CGI脚本漏洞远程执行命令" name_en_US="Remote Command Execution via VBulletin index.php CGI Script Vulnerability" name_zh_CN="VBulletin index.php CGI脚本漏洞远程执行命令" name_zh_TW="VBulletin index.php CGI腳本漏洞遠程執行命令" ruleid="20425" visible="true" />
			<rule action=" db  screen " enabled="true" group="141558063" module="0" name="SSH守护程序缓冲区溢出攻击" name_en_US="SSH Daemon Buffer Overflow" name_zh_CN="SSH守护程序缓冲区溢出攻击" name_zh_TW="SSH守護程序緩沖區溢出攻擊" ruleid="20356" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315047" module="0" name="Logbook logbook.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution Via Logbook logbook.pl Script Vulnerability" name_zh_CN="Logbook logbook.pl脚本漏洞远程执行命令" name_zh_TW="Logbook logbook.pl腳本漏洞遠程執行命令" ruleid="20354" visible="true" />
			<rule action=" db  screen " enabled="true" group="210764358" module="0" name="IMAP服务暴力猜测口令攻击" name_en_US="IMAP Service Password Brute Force" name_zh_CN="IMAP服务暴力猜测口令攻击" name_zh_TW="IMAP服務暴力猜測口令攻擊" ruleid="20352" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080966" module="0" name="MS-SQL服务用户暴力猜解口令攻击" name_en_US="MS-SQL Service User Password Brute Force" name_zh_CN="MS-SQL服务用户暴力猜解口令攻击" name_zh_TW="MS-SQL服務用戶暴力猜解口令攻擊" ruleid="20351" visible="true" />
			<rule action=" db  screen " enabled="true" group="206570054" module="0" name="POP3服务暴力猜测口令攻击" name_en_US="POP3 Service Password Brute Force" name_zh_CN="POP3服务暴力猜测口令攻击" name_zh_TW="POP3服務暴力猜測口令攻擊" ruleid="20350" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423915" module="0" name="PHP Input/Ouput Wrapper远程包含函数执行命令攻击" name_en_US="PHP Input/Ouput Wrapper Remote function Inclusion Command Execution" name_zh_CN="PHP Input/Ouput Wrapper远程包含函数执行命令攻击" name_zh_TW="PHP Input/Ouput Wrapper遠程包含函數執行命令攻擊" ruleid="20429" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="Cisco ACS管理CGI程序远程缓冲区溢出攻击" name_en_US="Cisco ACS Management CGI Remote Buffer Overflow" name_zh_CN="Cisco ACS管理CGI程序远程缓冲区溢出攻击" name_zh_TW="Cisco ACS管理CGI程序遠程緩沖區溢出攻擊" ruleid="20359" visible="true" />
			<rule action=" db  screen " enabled="true" group="162529579" module="0" name="Samba服务器call_trans2open远程缓冲区溢出攻击" name_en_US="Samba Server call_trans2open Remote Buffer Overflow" name_zh_CN="Samba服务器call_trans2open远程缓冲区溢出攻击" name_zh_TW="Samba服務器call_trans2open遠程緩沖區溢出攻擊" ruleid="20358" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159510" module="0" name="John Roy Pi3Web tstisapi.dll远程拒绝服务攻击" name_en_US="John Roy Pi3Web tstisapi.dll Remote Denial of Service" name_zh_CN="John Roy Pi3Web tstisapi.dll远程拒绝服务攻击" name_zh_TW="John Roy Pi3Web tstisapi.dll遠程拒絕服務攻擊" ruleid="20195" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="HIS Auktion脚本漏洞扫描利用" name_en_US="HIS Auktion Script Vulnerability Detection" name_zh_CN="HIS Auktion脚本漏洞扫描利用" name_zh_TW="HIS Auktion腳本漏洞掃描利用" ruleid="20194" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="BizDB bizdb-search.cgi脚本漏洞扫描利用" name_en_US="BizDB bizdb-search.cgi Script Vulnerability Detection" name_zh_CN="BizDB bizdb-search.cgi脚本漏洞扫描利用" name_zh_TW="BizDB bizdb-search.cgi腳本漏洞掃描利用" ruleid="20197" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="search.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via  search.cgi Script Vulnerability" name_zh_CN="search.cgi脚本漏洞远程执行命令" name_zh_TW="search.cgi腳本漏洞遠程執行命令" ruleid="20196" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Virgil virgil.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Virgil virgil.cgi Script Vulnerability" name_zh_CN="Virgil virgil.cgi脚本漏洞远程执行命令" name_zh_TW="Virgil virgil.cgi腳本漏洞遠程執行命令" ruleid="20191" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="vpopmail-CGIApps vadddomain脚本漏洞远程执行命令" name_en_US="Remote Code Execution via vpopmail-CGIApps vadddomain Script Vulnerability" name_zh_CN="vpopmail-CGIApps vadddomain脚本漏洞远程执行命令" name_zh_TW="vpopmail-CGIApps vadddomain腳本漏洞遠程執行命令" ruleid="20190" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Erazer Lite木马通信" name_en_US="Backdoor/Trojan Erazer Lite Communication " name_zh_CN="木马后门程序Erazer Lite木马通信" name_zh_TW="木馬後門程序Erazer Lite木馬通信" ruleid="40715" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="add-subject.php脚本漏洞非法上传文件" name_en_US="Illegal File Upload via add-subject.php Script Vulnerability" name_zh_CN="add-subject.php脚本漏洞非法上传文件" name_zh_TW="add-subject.php腳本漏洞非法上傳文件" ruleid="20192" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Guestbook wguest.exe程序漏洞扫描探测" name_en_US="Guestbook wguest.exe Vulnerability Detection" name_zh_CN="Guestbook wguest.exe程序漏洞扫描探测" name_zh_TW="Guestbook wguest.exe程序漏洞掃描探測" ruleid="30118" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE Daxctle.OCX KeyFrame Method堆溢出攻击" name_en_US="Microsoft IE Daxctle.OCX KeyFrame Method Heap Overflow" name_zh_CN="Microsoft IE Daxctle.OCX KeyFrame Method堆溢出攻击" name_zh_TW="Microsoft IE Daxctle.OCX KeyFrame Method堆溢出攻擊" ruleid="20876" visible="true" />
			<rule action=" db  screen " enabled="false" group="361824350" module="0" name="Cisco IOS ILMI SNMP共同体串访问" name_en_US="Cisco IOS ILMI SNMP Community String" name_zh_CN="Cisco IOS ILMI SNMP共同体串访问" name_zh_TW="Cisco IOS ILMI SNMP共同體串訪問" ruleid="30448" visible="true" />
			<rule action=" db  screen " enabled="true" group="75497770" module="0" name="SoftiaCom WMailserver 1.0缓冲区溢出攻击" name_en_US="SoftiaCom WMailserver 1.0 Buffer Overflow" name_zh_CN="SoftiaCom WMailserver 1.0缓冲区溢出攻击" name_zh_TW="SoftiaCom WMailserver 1.0緩沖區溢出攻擊" ruleid="20877" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="SysAdmin Magazine man.sh脚本漏洞扫描探测" name_en_US="SysAdmin Magazine man.sh Script Vulnerability Detection" name_zh_CN="SysAdmin Magazine man.sh脚本漏洞扫描探测" name_zh_TW="SysAdmin Magazine man.sh腳本漏洞掃描探測" ruleid="30110" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="shop.pl脚本漏洞扫描探测" name_en_US="shop.pl Script Vulnerability Detection" name_zh_CN="shop.pl脚本漏洞扫描探测" name_zh_TW="shop.pl腳本漏洞掃描探測" ruleid="30447" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="arpanet perlshop.cgi脚本漏洞扫描探测" name_en_US="arpanet perlshop.cgi Script Vulnerability Detection" name_zh_CN="arpanet perlshop.cgi脚本漏洞扫描探测" name_zh_TW="arpanet perlshop.cgi腳本漏洞掃描探測" ruleid="30113" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="NCSA phf脚本漏洞扫描探测" name_en_US="NCSA phf Script Vulnerability Detection" name_zh_CN="NCSA phf脚本漏洞扫描探测" name_zh_TW="NCSA phf腳本漏洞掃描探測" ruleid="30114" visible="true" />
			<rule action=" db  screen " enabled="true" group="202375466" module="0" name="HTTP协议Proxy-Authorization字段超长缓冲区溢出攻击" name_en_US="HTTP Protocol Over-Long Proxy-Authorization Field Buffer Overflow" name_zh_CN="HTTP协议Proxy-Authorization字段超长缓冲区溢出攻击" name_zh_TW="HTTP協議Proxy-Authorization字段超長緩沖區溢出攻擊" ruleid="20874" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="获取QuikStore quikstore.cfg配置文件" name_en_US="QuikStore quikstore.cfg File Disclosure" name_zh_CN="获取QuikStore quikstore.cfg配置文件" name_zh_TW="獲取QuikStore quikstore.cfg配置文件" ruleid="30116" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Guestbook rguest.exe程序漏洞扫描探测" name_en_US="Guestbook rguest.exe Vulnerability Detection" name_zh_CN="Guestbook rguest.exe程序漏洞扫描探测" name_zh_TW="Guestbook rguest.exe程序漏洞掃描探測" ruleid="30117" visible="true" />
			<rule action=" db  screen " enabled="true" group="203432009" module="0" name="Frontpage fpadmin.htm文件扫描探测" name_en_US="Frontpage fpadmin.htm File Detection" name_zh_CN="Frontpage fpadmin.htm文件扫描探测" name_zh_TW="Frontpage fpadmin.htm文件掃描探測" ruleid="40355" visible="true" />
			<rule action=" db  screen " enabled="true" group="203432009" module="0" name="Frontpage fpsrvadm.exe文件扫描探测" name_en_US="Frontpage fpsrvadm.exe File Detection" name_zh_CN="Frontpage fpsrvadm.exe文件扫描探测" name_zh_TW="Frontpage fpsrvadm.exe文件掃描探測" ruleid="40354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序WebServect木马通信" name_en_US="Backdoor/Trojan WebServect Communication " name_zh_CN="木马后门程序WebServect木马通信" name_zh_TW="木馬後門程序WebServect木馬通信" ruleid="40605" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA BrightStor Agent for Microsoft SQL缓冲区溢出攻击" name_en_US="CA BrightStor Agent for Microsoft SQL Buffer Overflow" name_zh_CN="CA BrightStor Agent for Microsoft SQL缓冲区溢出攻击" name_zh_TW="CA BrightStor Agent for Microsoft SQL緩沖區溢出攻擊" ruleid="20875" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PHP/FI mlog.phtml脚本漏洞扫描探测" name_en_US="PHP/FI mlog.phtml Script Vulnerability Detection" name_zh_CN="PHP/FI mlog.phtml脚本漏洞扫描探测" name_zh_TW="PHP/FI mlog.phtml腳本漏洞掃描探測" ruleid="40351" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Voodoo Doll木马通信" name_en_US="Backdoor/Trojan Voodoo Doll Communication " name_zh_CN="木马后门程序Voodoo Doll木马通信" name_zh_TW="木馬後門程序Voodoo Doll木馬通信" ruleid="40602" visible="true" />
			<rule action=" db  screen " enabled="true" group="203432009" module="0" name="Frontpage fpremadm.exe文件扫描探测" name_en_US="Frontpage fpremadm.exe File Detection" name_zh_CN="Frontpage fpremadm.exe文件扫描探测" name_zh_TW="Frontpage fpremadm.exe文件掃描探測" ruleid="40353" visible="true" />
			<rule action=" db  screen " enabled="true" group="203432009" module="0" name="Frontpage fpadmcgi.exe文件扫描探测" name_en_US="Frontpage fpadmcgi.exe File Detection" name_zh_CN="Frontpage fpadmcgi.exe文件扫描探测" name_zh_TW="Frontpage fpadmcgi.exe文件掃描探測" ruleid="40352" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="IASystemInfo.DLL ActiveX控件远程栈溢出攻击" name_en_US="IASystemInfo.DLL ActiveX Control Remote Stack Overflow" name_zh_CN="IASystemInfo.DLL ActiveX控件远程栈溢出攻击" name_zh_TW="IASystemInfo.DLL ActiveX控件遠程棧溢出攻擊" ruleid="20872" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序WinCrash 2.0木马建立连接" name_en_US="Backdoor/Trojan WinCrash 2.0 Connection " name_zh_CN="木马后门程序WinCrash 2.0木马建立连接" name_zh_TW="木馬後門程序WinCrash 2.0木馬建立連接" ruleid="40359" visible="true" />
			<rule action=" db  screen " enabled="true" group="69271622" module="0" name="Web服务执行.bat程序" name_en_US="Web Service .bat Program Execution" name_zh_CN="Web服务执行.bat程序" name_zh_TW="Web服務執行.bat程序" ruleid="40358" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Xanadu 1.1木马通信" name_en_US="Backdoor/Trojan Xanadu 1.1 Communication " name_zh_CN="木马后门程序Xanadu 1.1木马通信" name_zh_TW="木馬後門程序Xanadu 1.1木馬通信" ruleid="40609" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Nullsoft Winamp畸形播放列表文件处理远程缓冲区溢出攻击" name_en_US="Nullsoft Winamp Malformed Playlist File Processing Remote Buffer Overflow" name_zh_CN="Nullsoft Winamp畸形播放列表文件处理远程缓冲区溢出攻击" name_zh_TW="Nullsoft Winamp畸形播放列表文件處理遠程緩沖區溢出攻擊" ruleid="20873" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472619" module="0" name="FTP服务器LIST命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server LIST Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器LIST命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器LIST命令超長參數遠程緩沖區溢出攻擊" ruleid="20870" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="皮皮在线流媒体播放器界面节目及广告信息获取" name_en_US="PiPi Online Streaming Media Player Obtain Programs And Advertisements Information" name_zh_CN="皮皮在线流媒体播放器界面节目及广告信息获取" name_zh_TW="皮皮在線流媒體播放器界面節目及廣告信息獲取" ruleid="50350" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通讯工具飞秋聊天软件登陆" name_en_US="Insant Messaging Tool Feiqiu IM Login" name_zh_CN="即时通讯工具飞秋聊天软件登陆" name_zh_TW="即時通訊工具飛秋聊天軟件登陸" ruleid="50352" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MiniBB absolute_path参数远程文件包含攻击" name_en_US="MiniBB absolute_path Variable Remote File Inclusion" name_zh_CN="MiniBB absolute_path参数远程文件包含攻击" name_zh_TW="MiniBB absolute_path參數遠程文件包含攻擊" ruleid="20707" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="即时通讯工具飞秋聊天软件消息传送" name_en_US="Insant Messaging Tool Feiqiu IM Message Transfer" name_zh_CN="即时通讯工具飞秋聊天软件消息传送" name_zh_TW="即時通訊工具飛秋聊天軟件消息傳送" ruleid="50354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏征途客户端连接服务器" name_en_US="Online Game ZhengTu Client Connect  Server" name_zh_CN="网络游戏征途客户端连接服务器" name_zh_TW="網絡遊戲征途客戶端連接服務器" ruleid="50357" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425831" module="0" name="WebPALS pals-cgi程序漏洞远程执行命令" name_en_US="Remote Code Execution via WebPALS pals-cgi Vulnerability" name_zh_CN="WebPALS pals-cgi程序漏洞远程执行命令" name_zh_TW="WebPALS pals-cgi程序漏洞遠程執行命令" ruleid="20223" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="NAI PGP Keyserver cs.exe脚本漏洞扫描利用" name_en_US="NAI PGP Keyserver cs.exe Script Vulnerability Detection" name_zh_CN="NAI PGP Keyserver cs.exe脚本漏洞扫描利用" name_zh_TW="NAI PGP Keyserver cs.exe腳本漏洞掃描利用" ruleid="20222" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214262" module="0" name="NAI PGP Keyserver console.exe脚本漏洞扫描利用" name_en_US="NAI PGP Keyserver console.exe Script Vulnerability Detection" name_zh_CN="NAI PGP Keyserver console.exe脚本漏洞扫描利用" name_zh_TW="NAI PGP Keyserver console.exe腳本漏洞掃描利用" ruleid="20221" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序DeepThroat木马通信" name_en_US="Backdoor/Trojan DeepThroat Communication " name_zh_CN="木马后门程序DeepThroat木马通信" name_zh_TW="木馬後門程序DeepThroat木馬通信" ruleid="40023" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞扫描探测" name_en_US="Trend Micro OfficeScan jdkRqNotify.exe Script Vulnerability Detection" name_zh_CN="Trend Micro OfficeScan jdkRqNotify.exe脚本漏洞扫描探测" name_zh_TW="Trend Micro OfficeScan jdkRqNotify.exe腳本漏洞掃描探測" ruleid="20227" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="JJ CGI例子程序漏洞扫描利用" name_en_US="JJ CGI Sample Vulnerability Detection" name_zh_CN="JJ CGI例子程序漏洞扫描利用" name_zh_TW="JJ CGI例子程序漏洞掃描利用" ruleid="20226" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="DCForum dcboard.cgi脚本漏洞扫描利用" name_en_US="DCForum dcboard.cgi Script Vulnerability Detection" name_zh_CN="DCForum dcboard.cgi脚本漏洞扫描利用" name_zh_TW="DCForum dcboard.cgi腳本漏洞掃描利用" ruleid="20225" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="WebPALS pals-cgi CGI程序漏洞扫描探测" name_en_US="WebPALS pals-cgi CGI Vulnerability Detection" name_zh_CN="WebPALS pals-cgi CGI程序漏洞扫描探测" name_zh_TW="WebPALS pals-cgi CGI程序漏洞掃描探測" ruleid="20224" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Informix Webdriver CGI程序漏洞扫描探测" name_en_US="Informix Webdriver CGI Vulnerability Detection" name_zh_CN="Informix Webdriver CGI程序漏洞扫描探测" name_zh_TW="Informix Webdriver CGI程序漏洞掃描探測" ruleid="20229" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="Vignette Application Portal远程敏感信息获取攻击" name_en_US="Vignette Application Portal Remote Sensitive Information Disclosure" name_zh_CN="Vignette Application Portal远程敏感信息获取攻击" name_zh_TW="Vignette Application Portal遠程敏感信息獲取攻擊" ruleid="30548" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.bootparamd服务存在性TCP扫描探测" name_en_US="Solaris rpc.bootparamd Service TCP Detection" name_zh_CN="Solaris rpc.bootparamd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.bootparamd服務存在性TCP掃描探測" ruleid="30204" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rusersd服务存在性UDP扫描探测" name_en_US="Solaris rpc.rusersd Service UDP Detection" name_zh_CN="Solaris rpc.rusersd服务存在性UDP扫描探测" name_zh_TW="Solaris rpc.rusersd服務存在性UDP掃描探測" ruleid="30205" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypserv服务存在性TCP扫描探测" name_en_US="Solaris rpc.ypserv Service Existence TCP Detection" name_zh_CN="Solaris rpc.ypserv服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.ypserv服務存在性TCP掃描探測" ruleid="30206" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.admind服务存在性TCP扫描探测" name_en_US="Solaris rpc.admind Service Existence TCP Detection" name_zh_CN="Solaris rpc.admind服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.admind服務存在性TCP掃描探測" ruleid="30207" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Verity's Search`97 search97.vts脚本漏洞远程遍历目录" name_en_US="Remote Directory Traversal via Verity's Search`97 search97.vts Script Vulnerability" name_zh_CN="Verity's Search`97 search97.vts脚本漏洞远程遍历目录" name_zh_TW="Verity's Search`97 search97.vts腳本漏洞遠程遍曆目錄" ruleid="30200" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.ypupdated服务存在性TCP扫描探测" name_en_US="Solaris rpc.ypupdated Service TCP Detection" name_zh_CN="Solaris rpc.ypupdated服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.ypupdated服務存在性TCP掃描探測" ruleid="30201" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Linux rpc.mountd服务存在性UDP扫描探测" name_en_US="Linux rpc.mountd Service Existence UDP Detection" name_zh_CN="Linux rpc.mountd服务存在性UDP扫描探测" name_zh_TW="Linux rpc.mountd服務存在性UDP掃描探測" ruleid="30202" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Linux rpc.mountd服务存在性TCP扫描探测" name_en_US="Linux rpc.mountd Service Existence TCP Detection" name_zh_CN="Linux rpc.mountd服务存在性TCP扫描探测" name_zh_TW="Linux rpc.mountd服務存在性TCP掃描探測" ruleid="30203" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Microsoft IIS 4.0 srch.htm文件扫描探测" name_en_US="Microsoft IIS 4.0 srch.htm File Detection" name_zh_CN="Microsoft IIS 4.0 srch.htm文件扫描探测" name_zh_TW="Microsoft IIS 4.0 srch.htm文件掃描探測" ruleid="40283" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003194" module="0" name="Solaris rpc.rstatd服务存在性TCP扫描探测" name_en_US="Solaris rpc.rstatd Service TCP Detection" name_zh_CN="Solaris rpc.rstatd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rstatd服務存在性TCP掃描探測" ruleid="30208" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="Solaris rpc.rexd服务存在性TCP扫描探测" name_en_US="Solaris rpc.rexd Service TCP Detection" name_zh_CN="Solaris rpc.rexd服务存在性TCP扫描探测" name_zh_TW="Solaris rpc.rexd服務存在性TCP掃描探測" ruleid="30209" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Fore木马建立连接" name_en_US="Backdoor/Trojan Fore Connection " name_zh_CN="木马后门程序Fore木马建立连接" name_zh_TW="木馬後門程序Fore木馬建立連接" ruleid="40022" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Ghost木马通信" name_en_US="Backdoor/Trojan Ghost Communication " name_zh_CN="木马后门程序Ghost木马通信" name_zh_TW="木馬後門程序Ghost木馬通信" ruleid="40513" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Frenzy木马连接建立" name_en_US="Backdoor/Trojan Frenzy Trojan Connection " name_zh_CN="木马后门程序Frenzy木马连接建立" name_zh_TW="木馬後門程序Frenzy木馬連接建立" ruleid="40512" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Frenzy木马通信" name_en_US="Backdoor/Trojan Frenzy Communication " name_zh_CN="木马后门程序Frenzy木马通信" name_zh_TW="木馬後門程序Frenzy木馬通信" ruleid="40511" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Forced Entry木马通信" name_en_US="Backdoor/Trojan Forced Entry Communication " name_zh_CN="木马后门程序Forced Entry木马通信" name_zh_TW="木馬後門程序Forced Entry木馬通信" ruleid="40510" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Hell-Driver木马通信" name_en_US="Backdoor/Trojan Hell-Driver Communication " name_zh_CN="木马后门程序Hell-Driver木马通信" name_zh_TW="木馬後門程序Hell-Driver木馬通信" ruleid="40517" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Hackers World木马通信" name_en_US="Backdoor/Trojan Hackers World Communication " name_zh_CN="木马后门程序Hackers World木马通信" name_zh_TW="木馬後門程序Hackers World木馬通信" ruleid="40516" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序G-Spot木马通信" name_en_US="Backdoor/Trojan G-Spot Communication " name_zh_CN="木马后门程序G-Spot木马通信" name_zh_TW="木馬後門程序G-Spot木馬通信" ruleid="40515" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Gift木马通信" name_en_US="Backdoor/Trojan Gift Communication " name_zh_CN="木马后门程序Gift木马通信" name_zh_TW="木馬後門程序Gift木馬通信" ruleid="40514" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Host Control木马通信" name_en_US="Backdoor/Trojan Host Control Communication " name_zh_CN="木马后门程序Host Control木马通信" name_zh_TW="木馬後門程序Host Control木馬通信" ruleid="40519" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Hellz Addiction木马通信" name_en_US="Backdoor/Trojan Hellz Addiction Communication " name_zh_CN="木马后门程序Hellz Addiction木马通信" name_zh_TW="木馬後門程序Hellz Addiction木馬通信" ruleid="40518" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序黑洞通信" name_en_US="Backdoor/Trojan Collapsar Communication " name_zh_CN="木马后门程序黑洞通信" name_zh_TW="木馬後門程序黑洞通信" ruleid="40711" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Gatecrasher木马建立连接" name_en_US="Backdoor/Trojan Gatecrasher Connection " name_zh_CN="木马后门程序Gatecrasher木马建立连接" name_zh_TW="木馬後門程序Gatecrasher木馬建立連接" ruleid="40021" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络语音聊天工具Gizmo Project用户登录" name_en_US="Internet Voice Chat Tool for Users to Log on Gizmo Project" name_zh_CN="网络语音聊天工具Gizmo Project用户登录" name_zh_TW="網絡語音聊天工具Gizmo Project用戶登錄" ruleid="50342" visible="true" />
			<rule action=" db  screen " enabled="true" group="211820597" module="0" name="DNS服务获取服务器版本号请求操作" name_en_US="DNS Service Server Version Number Request" name_zh_CN="DNS服务获取服务器版本号请求操作" name_zh_TW="DNS服務獲取服務器版本號請求操作" ruleid="30061" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Apple CUPS Text-to-PostScript texttops Filter Integer 溢出漏洞" name_en_US="HTTP: Apple CUPS Text-to-PostScript texttops Filter Integer Overflow" name_zh_CN="Apple CUPS Text-to-PostScript texttops Filter Integer 溢出漏洞" name_zh_TW="Apple CUPS Text-to-PostScript texttops Filter Integer 溢出漏洞" ruleid="29154" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器ISS扫描FTP服务尝试登录" name_en_US="Vulnerability Scanner ISS Scanning FTP Service Login Attempt" name_zh_CN="漏洞扫描器ISS扫描FTP服务尝试登录" name_zh_TW="漏洞掃描器ISS掃描FTP服務嘗試登錄" ruleid="30064" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器Saint扫描FTP服务" name_en_US="Vulnerability Scanner Saint Scanning FTP Service" name_zh_CN="漏洞扫描器Saint扫描FTP服务" name_zh_TW="漏洞掃描器Saint掃描FTP服務" ruleid="30066" visible="true" />
			<rule action=" db  screen " enabled="true" group="204480566" module="0" name="漏洞扫描器SATAN扫描FTP服务" name_en_US="Vulnerability Scanner SATAN Scanning FTP Service" name_zh_CN="漏洞扫描器SATAN扫描FTP服务" name_zh_TW="漏洞掃描器SATAN掃描FTP服務" ruleid="30067" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏联众好友客户端连接服务器" name_en_US="Online Game Our Friend Client Connect Server" name_zh_CN="网络游戏联众好友客户端连接服务器" name_zh_TW="網絡遊戲聯衆好友客戶端連接服務器" ruleid="50283" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件安信同花顺用户登录" name_en_US="Stock Market Analysis Software Anxin Tonghuashun User Login" name_zh_CN="股票行情分析操作软件安信同花顺用户登录" name_zh_TW="股票行情分析操作軟件安信同花順用戶登錄" ruleid="50280" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件和讯股道用户登录" name_en_US="Stock Market Analysis Software Hexungudao User Login" name_zh_CN="股票行情分析操作软件和讯股道用户登录" name_zh_TW="股票行情分析操作軟件和訊股道用戶登錄" ruleid="50281" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序CNNSC远程控制木马通信" name_en_US="Backdoor/Trojan CNNSC Remote Control Communication " name_zh_CN="木马后门程序CNNSC远程控制木马通信" name_zh_TW="木馬後門程序CNNSC遠程控制木馬通信" ruleid="40710" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="在线流媒体播放QVOD网络连接" name_en_US="Online Streaming Media QVOD Network TV  Connect" name_zh_CN="在线流媒体播放QVOD网络连接" name_zh_TW="在線流媒體播放QVOD網絡連接" ruleid="50287" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏网易泡泡客户端连接（TCP）服务器" name_en_US="Online Game NETEASE POPO Client Connect Server" name_zh_CN="网络游戏网易泡泡客户端连接（TCP）服务器" name_zh_TW="網絡遊戲網易泡泡客戶端連接（TCP）服務器" ruleid="50284" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Priority木马通信" name_en_US="Backdoor/Trojan Priority Communication " name_zh_CN="木马后门程序Priority木马通信" name_zh_TW="木馬後門程序Priority木馬通信" ruleid="40127" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618890" module="0" name="Windows系统下Adware GameSpy Arcade下载安装程序" name_en_US="Adware GameSpy Arcade Downloading Installer on Windows" name_zh_CN="Windows系统下Adware GameSpy Arcade下载安装程序" name_zh_TW="Windows系統下Adware GameSpy Arcade下載安裝程序" ruleid="40747" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="网络聊天软件新浪XChat 2.8.7c用户登录" name_en_US="Web Chat Software XChat 2.8.7c User Login" name_zh_CN="网络聊天软件新浪XChat 2.8.7c用户登录" name_zh_TW="網絡聊天軟件新浪XChat 2.8.7c用戶登錄" ruleid="50341" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Bandook木马通信" name_en_US="Backdoor/Trojan Bandook Communication " name_zh_CN="木马后门程序Bandook木马通信" name_zh_TW="木馬後門程序Bandook木馬通信" ruleid="40713" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具POCO用户登录" name_en_US="P2P File Sharing Tool POCO User Login" name_zh_CN="P2P文件共享工具POCO用户登录" name_zh_TW="P2P文件共享工具POCO用戶登錄" ruleid="50130" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体WMV连接" name_en_US="Online Stream Media WMV  Connect" name_zh_CN="在线流媒体WMV连接" name_zh_TW="在線流媒體WMV連接" ruleid="50131" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体RM连接" name_en_US="Online Stream Media Content Online RM  Connect" name_zh_CN="在线流媒体RM连接" name_zh_TW="在線流媒體RM連接" ruleid="50132" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="即时通讯工具Skype语音聊天" name_en_US="Insant Messaging Tool Skype P2P Voice Chat" name_zh_CN="即时通讯工具Skype语音聊天" name_zh_TW="即時通訊工具Skype語音聊天" ruleid="50133" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏魔兽世界（World of Warcraft）网络对战客户端连接服务器" name_en_US="Online Game &quot;World of Warcraft&quot; Client Connect Server" name_zh_CN="网络游戏魔兽世界（World of Warcraft）网络对战客户端连接服务器" name_zh_TW="網絡遊戲魔獸世界（World of Warcraft）網絡對戰客戶端連接服務器" ruleid="50134" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Netsky.P@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.P@mm" name_zh_CN="SMTP服务发送W32.Netsky.P@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.P@mm蠕蟲病毒郵件" ruleid="40614" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具Kamun用户登录" name_en_US="P2P File Sharing Tool Kamun User Login" name_zh_CN="P2P文件共享工具Kamun用户登录" name_zh_TW="P2P文件共享工具Kamun用戶登錄" ruleid="50137" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具OPENEXT用户登录" name_en_US="P2P File Sharing Tool OPENEXT User Login" name_zh_CN="P2P文件共享工具OPENEXT用户登录" name_zh_TW="P2P文件共享工具OPENEXT用戶登錄" ruleid="50138" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏江湖用户登录" name_en_US="Online Game Jianghu User Login" name_zh_CN="网络游戏江湖用户登录" name_zh_TW="網絡遊戲江湖用戶登錄" ruleid="50139" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信管理工具Digsby Beta用户登录" name_en_US="Instant Messaging Tool Digsby Beta User Login Attempt" name_zh_CN="即时通信管理工具Digsby Beta用户登录" name_zh_TW="即時通信管理工具Digsby Beta用戶登錄" ruleid="50340" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序NCPH远程控制木马通信" name_en_US="Backdoor/Trojan NCPH Remote Control Communication" name_zh_CN="木马后门程序NCPH远程控制木马通信" name_zh_TW="木馬後門程序NCPH遠程控制木馬通信" ruleid="40712" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="HP SiteScope SOAP Call getFileInternal远程文件访问漏洞" name_en_US="HP SiteScope SOAP Call getFileInternal Remote File Access Vulnerability" name_zh_CN="HP SiteScope SOAP Call getFileInternal远程文件访问漏洞" name_zh_TW="HP SiteScope SOAP Call getFileInternal遠程文件訪問漏洞" ruleid="22449" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer Vector Markup Language 内存破坏漏洞(CVE-2013-0030)(MS13-010)" name_en_US="Microsoft Internet Explorer Vector Markup Language Memory Corruption(CVE-2013-0030)(MS13-010)" name_zh_CN="Microsoft Internet Explorer Vector Markup Language 内存破坏漏洞(CVE-2013-0030)(MS13-010)" name_zh_TW="Microsoft Internet Explorer Vector Markup Language 內存破壞漏洞(CVE-2013-0030)(MS13-010)" ruleid="22643" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616807" module="0" name="EMC AlphaStor NetWorker命令处理器命令注入漏洞" name_en_US="EMC AlphaStor Device Manager Command Execution" name_zh_CN="EMC AlphaStor NetWorker命令处理器命令注入漏洞" name_zh_TW="EMC AlphaStor NetWorker命令處理器命令注入漏洞" ruleid="22684" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer CHTML 释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer CHTML Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer CHTML 释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer CHTML 釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22642" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows矢量标记语言缓冲区溢出攻击" name_en_US="Microsoft Windows Vector Markup Language Buffer Overflow" name_zh_CN="Microsoft Windows矢量标记语言缓冲区溢出攻击" name_zh_TW="Microsoft Windows矢量標記語言緩沖區溢出攻擊" ruleid="40805" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer CObjectElem释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer CObjectElem Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer CObjectElem释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer CObjectElem釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22641" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159535" module="0" name="Microsoft Internet Explorer CPasteComma释放后重用远程代码执行漏洞（MS13-009）" name_en_US="Microsoft Internet Explorer CPasteComma Use After Free Remote Code Execution（MS13-009）" name_zh_CN="Microsoft Internet Explorer CPasteComma释放后重用远程代码执行漏洞（MS13-009）" name_zh_TW="Microsoft Internet Explorer CPasteComma釋放後重用遠程代碼執行漏洞（MS13-009）" ruleid="22640" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Shaft分布端和主控端通信" name_en_US="Communication Between DDOS Shaft Distributed End and Console" name_zh_CN="DDOS工具Shaft分布端和主控端通信" name_zh_TW="DDOS工具Shaft分布端和主控端通信" ruleid="40375" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Shaft主控端和分布端通信" name_en_US="Communication Between DDOS Shaft Console and Distributed End" name_zh_CN="DDOS工具Shaft主控端和分布端通信" name_zh_TW="DDOS工具Shaft主控端和分布端通信" ruleid="40374" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows Object Linking and Embedding (OLE) Automation远程代码执行漏洞(MS13-020)" name_en_US="Microsoft Windows Object Linking and Embedding (OLE) Automation Remote Code Execution(MS13-020)" name_zh_CN="Microsoft Windows Object Linking and Embedding (OLE) Automation远程代码执行漏洞(MS13-020)" name_zh_TW="Microsoft Windows Object Linking and Embedding (OLE) Automation遠程代碼執行漏洞(MS13-020)" ruleid="22645" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615023" module="0" name="Microsoft IE畸形VML文档处理缓冲区溢出攻击" name_en_US="Microsoft IE Malformed VML Document Handling Buffer Overflow" name_zh_CN="Microsoft IE畸形VML文档处理缓冲区溢出攻击" name_zh_TW="Microsoft IE畸形VML文檔處理緩沖區溢出攻擊" ruleid="40804" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft DirectShow 远程代码执行漏洞(CVE-2013-0077) (MS13-011)" name_en_US="Microsoft DirectShow Remote Code Execution(CVE-2013-0077) (MS13-011)" name_zh_CN="Microsoft DirectShow 远程代码执行漏洞(CVE-2013-0077) (MS13-011)" name_zh_TW="Microsoft DirectShow 遠程代碼執行漏洞(CVE-2013-0077) (MS13-011)" ruleid="22644" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具TFN主控端向分布端发送指令" name_en_US="DDOS Tool TFN Console Sending Command to Distributed End" name_zh_CN="DDOS工具TFN主控端向分布端发送指令" name_zh_TW="DDOS工具TFN主控端向分布端發送指令" ruleid="40379" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具TFN服务器端回应" name_en_US="DDOS TFN Server Response" name_zh_CN="DDOS工具TFN服务器端回应" name_zh_TW="DDOS工具TFN服務器端回應" ruleid="40378" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送Plexus蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with Plexus" name_zh_CN="SMTP服务发送Plexus蠕虫病毒邮件" name_zh_TW="SMTP服務發送Plexus蠕蟲病毒郵件" ruleid="40618" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序BDoor木马通信" name_en_US="Backdoor/Trojan BDoor Communication " name_zh_CN="木马后门程序BDoor木马通信" name_zh_TW="木馬後門程序BDoor木馬通信" ruleid="40748" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="Microsoft DirectPlay堆溢出漏洞(MS12-082)(CVE-2012-1537)" name_en_US="Microsoft DirectPlay Heap Overflow Vulnerability(MS12-082)(CVE-2012-1537)" name_zh_CN="Microsoft DirectPlay堆溢出漏洞(MS12-082)(CVE-2012-1537)" name_zh_TW="Microsoft DirectPlay堆溢出漏洞(MS12-082)(CVE-2012-1537)" ruleid="22593" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Apache Tomcat FORM身份验证安全绕过漏洞" name_en_US="Apache Tomcat FORM Security Bypass" name_zh_CN="Apache Tomcat FORM身份验证安全绕过漏洞" name_zh_TW="Apache Tomcat FORM身份驗證安全繞過漏洞" ruleid="22592" visible="true" />
			<rule action=" db  screen " enabled="true" group="300943403" module="0" name="Cisco WAG120N远程命令执行漏洞" name_en_US="Cisco WAG120N Remote Command Execution Vulnerability" name_zh_CN="Cisco WAG120N远程命令执行漏洞" name_zh_TW="Cisco WAG120N遠程命令執行漏洞" ruleid="22590" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft TrueType字体解析漏洞(MS12-078)(CVE-2012-4786)" name_en_US="Microsoft TrueType Font Parsing Vulnerability(MS12-078)(CVE-2012-4786)" name_zh_CN="Microsoft TrueType字体解析漏洞(MS12-078)(CVE-2012-4786)" name_zh_TW="Microsoft TrueType字體解析漏洞(MS12-078)(CVE-2012-4786)" ruleid="22597" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Windows文件名解析漏洞(MS12-081)(CVE-2012-4774)" name_en_US="Microsoft Windows Filename Parsing Vulnerability(MS12-081)(CVE-2012-4774)" name_zh_CN="Microsoft Windows文件名解析漏洞(MS12-081)(CVE-2012-4774)" name_zh_TW="Microsoft Windows文件名解析漏洞(MS12-081)(CVE-2012-4774)" ruleid="22596" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft OpenType字体解析漏洞(MS12-078)(CVE-2012-2556)" name_en_US="Microsoft OpenType Font Parsing Vulnerability(MS12-078)(CVE-2012-2556)" name_zh_CN="Microsoft OpenType字体解析漏洞(MS12-078)(CVE-2012-2556)" name_zh_TW="Microsoft OpenType字體解析漏洞(MS12-078)(CVE-2012-2556)" ruleid="22595" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834538" module="0" name="Microsoft Word RTF 'listoverridecount'远程代码执行漏洞(MS12-079)(CVE-2012-2539)" name_en_US="Microsoft Word RTF 'listoverridecount' Remote Code Execution Vulnerability(MS12-079)(CVE-2012-2539)" name_zh_CN="Microsoft Word RTF 'listoverridecount'远程代码执行漏洞(MS12-079)(CVE-2012-2539)" name_zh_TW="Microsoft Word RTF 'listoverridecount'遠程代碼執行漏洞(MS12-079)(CVE-2012-2539)" ruleid="22594" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="OracleMySQL/MariaDB acl_get()和check_grant_db_routine()函数缓冲区溢出漏洞" name_en_US="OracleMySQL/MariaDB acl_get() and check_grant_db_routine() function buffer overflow vulnerability" name_zh_CN="OracleMySQL/MariaDB acl_get()和check_grant_db_routine()函数缓冲区溢出漏洞" name_zh_TW="OracleMySQL/MariaDB acl_get()和check_grant_db_routine()函數緩沖區溢出漏洞" ruleid="22599" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft IE Improper Ref Counting释放后重用漏洞(MS12-077)" name_en_US="Microsoft IE Improper Ref Counting Use After Free Vulnerability(MS12-077)" name_zh_CN="Microsoft IE Improper Ref Counting释放后重用漏洞(MS12-077)" name_zh_TW="Microsoft IE Improper Ref Counting釋放後重用漏洞(MS12-077)" ruleid="22598" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Newmm Webshell检测" name_en_US="Backdoor/Trojan Newmm Webshell Detection" name_zh_CN="木马后门程序Newmm Webshell检测" name_zh_TW="木馬後門程序Newmm Webshell檢測" ruleid="40963" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537941" module="0" name="FTP服务anonymous匿名用户认证" name_en_US="FTP Service Anonymous User Authentication" name_zh_CN="FTP服务anonymous匿名用户认证" name_zh_TW="FTP服務anonymous匿名用戶認證" ruleid="40044" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Lyyshell通信" name_en_US="Backdoor/Trojan Lyyshell Communication " name_zh_CN="木马后门程序Lyyshell通信" name_zh_TW="木馬後門程序Lyyshell通信" ruleid="40749" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具GTalk用户登录" name_en_US="Instant Messaging Tool GTalk User Login" name_zh_CN="即时通信工具GTalk用户登录" name_zh_TW="即時通信工具GTalk用戶登錄" ruleid="50238" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMail IMAP4D Delete命令超长参数缓冲区溢出漏洞" name_en_US="IMail IMAP4D Delete Command Over-Long Parameter Overflow Vulnerability" name_zh_CN="IMail IMAP4D Delete命令超长参数缓冲区溢出漏洞" name_zh_TW="IMail IMAP4D Delete命令超長參數緩沖區溢出漏洞" ruleid="21905" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Windows Kernel-Mode Drivers Elevated Privileges Vulnerability" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21169" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Windows Kernel-Mode Drivers Elevated Privileges Vulnerabilities" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21168" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="IE 8远程代码执行漏洞" name_en_US="IE 8 Remote Code Execution Vulnerabilities" name_zh_CN="IE 8远程代码执行漏洞" name_zh_TW="IE 8遠程代碼執行漏洞" ruleid="21163" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE未初始化对象select标签内存破坏漏洞(CVE-2010-3343)" name_en_US="Microsoft IE Uninitialized Object select lable Memory Corruption Vulnerability(CVE-2010-3343)" name_zh_CN="Microsoft IE未初始化对象select标签内存破坏漏洞(CVE-2010-3343)" name_zh_TW="Microsoft IE未初始化對象select標簽內存破壞漏洞(CVE-2010-3343)" ruleid="21162" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE未初始化对象ActiveX控件内存破坏漏洞" name_en_US="Microsoft IE Uninitialized ActiveX Control Memory Corruption Vulnerability" name_zh_CN="Microsoft IE未初始化对象ActiveX控件内存破坏漏洞" name_zh_TW="Microsoft IE未初始化對象ActiveX控件內存破壞漏洞" ruleid="21161" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞 (CVE-2010-3959)" name_en_US="Microsoft Windows OpenType Font (OTF) Format Driver Remote Code Execution Vulnerabilities (CVE-2010-3959)" name_zh_CN="Microsoft Windows OpenType Font (OTF) Format Driver远程代码执行漏洞 (CVE-2010-3959)" name_zh_TW="Microsoft Windows OpenType Font (OTF) Format Driver遠程代碼執行漏洞 (CVE-2010-3959)" ruleid="21160" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Windows Kernel-Mode Drivers Elevated Privileges Vulnerabilities" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21167" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Windows Kernel-Mode Drivers Elevated Privileges Vulnerabilities" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21166" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows Kernel-Mode Drivers权限提升漏洞" name_en_US="Windows Kernel-Mode Drivers Elevated Privileges Vulnerabilities" name_zh_CN="Windows Kernel-Mode Drivers权限提升漏洞" name_zh_TW="Windows Kernel-Mode Drivers權限提升漏洞" ruleid="21165" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="IE处理HTML+Time远程代码执行漏洞" name_en_US="IE Handling HTML+Time Remote Code Execution Vulnerabilities" name_zh_CN="IE处理HTML+Time远程代码执行漏洞" name_zh_TW="IE處理HTML+Time遠程代碼執行漏洞" ruleid="21164" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏石器时代客户端连接服务器" name_en_US="Online Game &quot;Stone Age&quot;Client Connect Server " name_zh_CN="网络游戏石器时代客户端连接服务器" name_zh_TW="網絡遊戲石器時代客戶端連接服務器" ruleid="50109" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏坦克宝贝客户端连接服务器" name_en_US="Online Game &quot;Tankbaay&quot; Client Connect Server " name_zh_CN="网络游戏坦克宝贝客户端连接服务器" name_zh_TW="網絡遊戲坦克寶貝客戶端連接服務器" ruleid="50108" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Ultimate PHP Board远程管理页面admin_cat.php访问" name_en_US="Access to Ultimate PHP Board Remote Admin Page admin_cat.php" name_zh_CN="Ultimate PHP Board远程管理页面admin_cat.php访问" name_zh_TW="Ultimate PHP Board遠程管理頁面admin_cat.php訪問" ruleid="20178" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680341" module="0" name="连接可疑IP超过预定值" name_en_US="Connect More Than The Scheduled Value Of Suspicious IP" name_zh_CN="连接可疑IP超过预定值" name_zh_TW="連接可疑IP超過預定值" ruleid="50232" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具安信证券活动  " name_en_US="Securities Analyzing/Trading Software ANXIN Securities Activity" name_zh_CN="证券分析交易工具安信证券活动  " name_zh_TW="證券分析交易工具安信證券活動  " ruleid="50373" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="phpGB savesettings.php脚本漏洞扫描探测" name_en_US="phpGB savesettings.php Script Vulnerability Detection" name_zh_CN="phpGB savesettings.php脚本漏洞扫描探测" name_zh_TW="phpGB savesettings.php腳本漏洞掃描探測" ruleid="20175" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="WEB服务远程SQL注入攻击" name_en_US="WEB Service Remote SQL Injection" name_zh_CN="WEB服务远程SQL注入攻击" name_zh_TW="WEB服務遠程SQL注入攻擊" ruleid="21347" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Adobe Reader/Acrobat堆破坏漏洞(CVE-2011-4371)" name_en_US="Adobe Reader/Acrobat Heap Corruption Vulnerability(CVE-2011-4371)" name_zh_CN="Adobe Reader/Acrobat堆破坏漏洞(CVE-2011-4371)" name_zh_TW="Adobe Reader/Acrobat堆破壞漏洞(CVE-2011-4371)" ruleid="21346" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Adobe Reader/Acrobat内存破坏漏洞(CVE-2011-4373)" name_en_US="Adobe Reader/Acrobat Memory Corruption Vulnerability(CVE-2011-4373)" name_zh_CN="Adobe Reader/Acrobat内存破坏漏洞(CVE-2011-4373)" name_zh_TW="Adobe Reader/Acrobat內存破壞漏洞(CVE-2011-4373)" ruleid="21345" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="wordtrans-web wordtrans.php脚本漏洞扫描探测" name_en_US="wordtrans-web wordtrans.php Script Vulnerability Detection" name_zh_CN="wordtrans-web wordtrans.php脚本漏洞扫描探测" name_zh_TW="wordtrans-web wordtrans.php腳本漏洞掃描探測" ruleid="20174" visible="true" />
			<rule action=" db  screen " enabled="true" group="233832747" module="0" name="Adobe Reader/Acrobat内存破坏漏洞(CVE-2011-4370)" name_en_US="Adobe Reader/Acrobat Memory Corruption Vulnerability(CVE-2011-4373)" name_zh_CN="Adobe Reader/Acrobat内存破坏漏洞(CVE-2011-4370)" name_zh_TW="Adobe Reader/Acrobat內存破壞漏洞(CVE-2011-4370)" ruleid="21343" visible="true" />
			<rule action=" db  screen " enabled="true" group="95422506" module="0" name="Windows Object Packager远程代码执行漏洞(MS12-002,CVE-2012-0009)" name_en_US="Windows Object Packager Remote Code Execution Vulnerability(MS12-002,CVE-2012-0009)" name_zh_CN="Windows Object Packager远程代码执行漏洞(MS12-002,CVE-2012-0009)" name_zh_TW="Windows Object Packager遠程代碼執行漏洞(MS12-002,CVE-2012-0009)" ruleid="21342" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft AntiXSS Library Sanitization模块安全限制绕过漏洞(MS12-007,CVE-2012-0007)" name_en_US="Microsoft Anti-XSS Library Sanitization Module Security Restrictions Bypass Vulnerability(MS12-007,CVE-2012-0007)" name_zh_CN="Microsoft AntiXSS Library Sanitization模块安全限制绕过漏洞(MS12-007,CVE-2012-0007)" name_zh_TW="Microsoft AntiXSS Library Sanitization模塊安全限制繞過漏洞(MS12-007,CVE-2012-0007)" ruleid="21341" visible="false" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="ICMP-Flood淹没拒绝服务攻击" name_en_US="ICMP-Flood Denial of Service Attacks" name_zh_CN="ICMP-Flood淹没拒绝服务攻击" name_zh_TW="ICMP-Flood淹沒拒絕服務攻擊" ruleid="10058" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834518" module="0" name="SYN-Flood半开TCP连接淹没拒绝服务攻击" name_en_US="SYN-Flood Half-open TCP Connection Denial of Service Attack" name_zh_CN="SYN-Flood半开TCP连接淹没拒绝服务攻击" name_zh_TW="SYN-Flood半開TCP連接淹沒拒絕服務攻擊" ruleid="10056" visible="true" />
			<rule action=" db  screen " enabled="false" group="233840694" module="0" name="漏洞扫描器Cybercop Scanner模拟UDP BOMB攻击" name_en_US="Cybercop Scanner UDP BOMB Simulation" name_zh_CN="漏洞扫描器Cybercop Scanner模拟UDP BOMB攻击" name_zh_TW="漏洞掃描器Cybercop Scanner模擬UDP BOMB攻擊" ruleid="10055" visible="true" />
			<rule action=" db  screen " enabled="true" group="206570571" module="0" name="POP3服务接收Worm.SoBig蠕虫病毒邮件" name_en_US="POP3 Service Receiving Mails with Worm.SoBig" name_zh_CN="POP3服务接收Worm.SoBig蠕虫病毒邮件" name_zh_TW="POP3服務接收Worm.SoBig蠕蟲病毒郵件" ruleid="50061" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412331" module="0" name="BSD系统telnetd远程堆溢出漏洞攻击" name_en_US="BSD System telnetd Remote Heap Overflow" name_zh_CN="BSD系统telnetd远程堆溢出漏洞攻击" name_zh_TW="BSD系統telnetd遠程堆溢出漏洞攻擊" ruleid="20165" visible="true" />
			<rule action=" db  screen " enabled="true" group="138420282" module="0" name="BSD系统telnetd远程堆溢出漏洞探测" name_en_US="BSD System telnetd Remote Heap Overflow Detection" name_zh_CN="BSD系统telnetd远程堆溢出漏洞探测" name_zh_TW="BSD系統telnetd遠程堆溢出漏洞探測" ruleid="20166" visible="true" />
			<rule action=" db  screen " enabled="false" group="203424330" module="0" name="SQL注入枚举数据攻击" name_en_US="SQL Injection Enumerating Data " name_zh_CN="SQL注入枚举数据攻击" name_zh_TW="SQL注入枚舉數據攻擊" ruleid="21348" visible="false" />
			<rule action=" db  screen " enabled="true" group="233898058" module="0" name="ARP欺骗相关攻击" name_en_US="ARP spoofing related attacks" name_zh_CN="ARP欺骗相关攻击" name_zh_TW="ARP欺騙相關攻擊" ruleid="41038" visible="true" />
			<rule action=" db  screen " enabled="true" group="204537942" module="0" name="FTP服务客户端使用空口令登录" name_en_US="FTP Service Client Null Password Login" name_zh_CN="FTP服务客户端使用空口令登录" name_zh_TW="FTP服務客戶端使用空口令登錄" ruleid="40041" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Claroline E-Learning应用多个远程SQL注入攻击" name_en_US="Claroline E-Learning Application multiple Remote SQL Injections" name_zh_CN="Claroline E-Learning应用多个远程SQL注入攻击" name_zh_TW="Claroline E-Learning應用多個遠程SQL注入攻擊" ruleid="20768" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315051" module="0" name="Pico Server远程命令注入攻击" name_en_US="Pico Server Remote Command Injection" name_zh_CN="Pico Server远程命令注入攻击" name_zh_TW="Pico Server遠程命令注入攻擊" ruleid="20769" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316971" module="0" name="Neteyes NexusWay Border Gateway远程命令执行攻击" name_en_US="Neteyes NexusWay Border Gateway Remote Code Execution" name_zh_CN="Neteyes NexusWay Border Gateway远程命令执行攻击" name_zh_TW="Neteyes NexusWay Border Gateway遠程命令執行攻擊" ruleid="20766" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MidiCart ASP searchstring参数远程SQL注入攻击" name_en_US="MidiCart ASP searchstring Parameter Remote SQL Injection" name_zh_CN="MidiCart ASP searchstring参数远程SQL注入攻击" name_zh_TW="MidiCart ASP searchstring參數遠程SQL注入攻擊" ruleid="20767" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Contrexx pid变量远程SQL注入攻击" name_en_US="Contrexx pid Variable Remote SQL Injection" name_zh_CN="Contrexx pid变量远程SQL注入攻击" name_zh_TW="Contrexx pid變量遠程SQL注入攻擊" ruleid="20764" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="Peercast URL格式串处理攻击" name_en_US="Peercast URL String Handling Vulnerability" name_zh_CN="Peercast URL格式串处理攻击" name_zh_TW="Peercast URL格式串處理攻擊" ruleid="20765" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="RunCMS newtopic.php远程SQL注入攻击" name_en_US="RunCMS newtopic.php Remote SQL Injection" name_zh_CN="RunCMS newtopic.php远程SQL注入攻击" name_zh_TW="RunCMS newtopic.php遠程SQL注入攻擊" ruleid="20762" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="MyBB search.php脚本远程SQL注入攻击" name_en_US="MyBB search.php Script Remote SQL Injection" name_zh_CN="MyBB search.php脚本远程SQL注入攻击" name_zh_TW="MyBB search.php腳本遠程SQL注入攻擊" ruleid="20763" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316970" module="0" name="man2web CGI脚本远程命令执行攻击" name_en_US="man2web CGI Script Remote Code Execution" name_zh_CN="man2web CGI脚本远程命令执行攻击" name_zh_TW="man2web CGI腳本遠程命令執行攻擊" ruleid="20760" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="phpLDAPadmin welcome.php远程命令执行攻击" name_en_US="phpLDAPadmin welcome.php Remote Code Execution" name_zh_CN="phpLDAPadmin welcome.php远程命令执行攻击" name_zh_TW="phpLDAPadmin welcome.php遠程命令執行攻擊" ruleid="20761" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏封神榜客户端连接服务器" name_en_US="Online Game &quot;The Gods' Myth&quot; Client Ciient Server " name_zh_CN="网络游戏封神榜客户端连接服务器" name_zh_TW="網絡遊戲封神榜客戶端連接服務器" ruleid="50105" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏大话西游客户端连接服务器" name_en_US="Online Game &quot;Dahuaxiyou&quot; Client Client Server" name_zh_CN="网络游戏大话西游客户端连接服务器" name_zh_TW="網絡遊戲大話西遊客戶端連接服務器" ruleid="50104" visible="true" />
			<rule action=" db  screen " enabled="true" group="206570571" module="0" name="POP3服务接收Worm.MiMail蠕虫病毒邮件" name_en_US="POP3 Service Sending Mails with Worm.MiMail" name_zh_CN="POP3服务接收Worm.MiMail蠕虫病毒邮件" name_zh_TW="POP3服務接收Worm.MiMail蠕蟲病毒郵件" ruleid="50060" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="HP OpenView NNM ov.dll _OVBuildPath远程代码执行漏洞" name_en_US="HP OpenView NNM ov.dll _OVBuildPath Remote Code Execution Vulnerability" name_zh_CN="HP OpenView NNM ov.dll _OVBuildPath远程代码执行漏洞" name_zh_TW="HP OpenView NNM ov.dll _OVBuildPath遠程代碼執行漏洞" ruleid="21372" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpBB highlight变量远程任意命令执行攻击" name_en_US="phpBB highlight Variable Remote Arbitrary Command Execution" name_zh_CN="phpBB highlight变量远程任意命令执行攻击" name_zh_TW="phpBB highlight變量遠程任意命令執行攻擊" ruleid="20508" visible="true" />
			<rule action=" db  screen " enabled="true" group="95420719" module="0" name="Microsoft Windows入站SMB报文验证远程溢出攻击" name_en_US="Microsoft Windows Inbound SMB Message Authentication Remote Buffer Overflow" name_zh_CN="Microsoft Windows入站SMB报文验证远程溢出攻击" name_zh_TW="Microsoft Windows入站SMB報文驗證遠程溢出攻擊" ruleid="20509" visible="true" />
			<rule action=" db  screen " enabled="true" group="142608427" module="0" name="bsmtpd远程命令注入攻击" name_en_US="bsmtpd Remote Command Injection" name_zh_CN="bsmtpd远程命令注入攻击" name_zh_TW="bsmtpd遠程命令注入攻擊" ruleid="20774" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725654" module="0" name="IDENT服务淹没拒绝服务攻击" name_en_US="IDENT Service Flood Denial of Service" name_zh_CN="IDENT服务淹没拒绝服务攻击" name_zh_TW="IDENT服務淹沒拒絕服務攻擊" ruleid="10123" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="OpenBB read.php CGI脚本SQL注入攻击" name_en_US="OpenBB read.php CGI Script SQL Injection" name_zh_CN="OpenBB read.php CGI脚本SQL注入攻击" name_zh_TW="OpenBB read.php CGI腳本SQL注入攻擊" ruleid="20503" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616794" module="0" name="Microsoft Windows 2000 IKE拒绝服务攻击" name_en_US="Microsoft Windows 2000 IKE Denial of Service" name_zh_CN="Microsoft Windows 2000 IKE拒绝服务攻击" name_zh_TW="Microsoft Windows 2000 IKE拒絕服務攻擊" ruleid="10121" visible="false" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="PostNuke pnModFunc函数本地文件包含攻击" name_en_US="PostNuke pnModFunc function Local File Inclusion" name_zh_CN="PostNuke pnModFunc函数本地文件包含攻击" name_zh_TW="PostNuke pnModFunc函數本地文件包含攻擊" ruleid="20501" visible="true" />
			<rule action=" db  screen " enabled="false" group="143655211" module="0" name="GNU Mailutils 0.6 imap4d TAG格式串溢出攻击" name_en_US="GNU Mailutils 0.6 imap4d TAG Format String Buffer Overflow" name_zh_CN="GNU Mailutils 0.6 imap4d TAG格式串溢出攻击" name_zh_TW="GNU Mailutils 0.6 imap4d TAG格式串溢出攻擊" ruleid="20506" visible="false" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Mambo com_content模块user_rating远程SQL注入漏洞" name_en_US="Mambo com_content Module user_rating Remote SQL Injection" name_zh_CN="Mambo com_content模块user_rating远程SQL注入漏洞" name_zh_TW="Mambo com_content模塊user_rating遠程SQL注入漏洞" ruleid="20507" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Qualiteam X-Cart giftcert.php CGI脚本SQL注入攻击" name_en_US="Qualiteam X-Cart giftcert.php CGI Script SQL Injection" name_zh_CN="Qualiteam X-Cart giftcert.php CGI脚本SQL注入攻击" name_zh_TW="Qualiteam X-Cart giftcert.php CGI腳本SQL注入攻擊" ruleid="20504" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546343" module="0" name="Ipswitch IMAP超长LOGIN命令参数缓冲区溢出攻击" name_en_US="Ipswitch IMAP Over-long LOGIN Command Buffer Overflow" name_zh_CN="Ipswitch IMAP超长LOGIN命令参数缓冲区溢出攻击" name_zh_TW="Ipswitch IMAP超長LOGIN命令參數緩沖區溢出攻擊" ruleid="20505" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="HP OpenView网络节点管理器缓冲区溢出和命令注入漏洞" name_en_US="HP OpenView Network Node Manager ovalarm.exe CGI Buffer Overflow Vulnerability" name_zh_CN="HP OpenView网络节点管理器缓冲区溢出和命令注入漏洞" name_zh_TW="HP OpenView網絡節點管理器緩沖區溢出和命令注入漏洞" ruleid="21743" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206315" module="0" name="HP OpenView网络节点管理器缓冲区溢出和命令注入漏洞" name_en_US="HP OpenView Network Node Manager OvWebHelp.exe CGI Buffer Overflow Vulnerability" name_zh_CN="HP OpenView网络节点管理器缓冲区溢出和命令注入漏洞" name_zh_TW="HP OpenView網絡節點管理器緩沖區溢出和命令注入漏洞" ruleid="21742" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="ASPNuke article.asp articleid变量远程SQL注入攻击" name_en_US="ASPNuke article.asp articleid Variable Remote SQL Injection" name_zh_CN="ASPNuke article.asp articleid变量远程SQL注入攻击" name_zh_TW="ASPNuke article.asp articleid變量遠程SQL注入攻擊" ruleid="20698" visible="true" />
			<rule action=" db  screen " enabled="true" group="203427887" module="0" name="Kuwebs企业网站管理系统后门漏洞" name_en_US="Kuwebs Enterprise Web Site Management System Back Door Vulnerability " name_zh_CN="Kuwebs企业网站管理系统后门漏洞" name_zh_TW="Kuwebs企業網站管理系統後門漏洞" ruleid="21371" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit文件操作" name_en_US="Backdoor/Trojan Rootkit Files Operation" name_zh_CN="木马后门程序Rootkit文件操作" name_zh_TW="木馬後門程序Rootkit文件操作" ruleid="40974" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="phpBB Hacks List模块hack_id远程SQL注入攻击" name_en_US="phpBB Hacks List Module hack_id Remote SQL Injection" name_zh_CN="phpBB Hacks List模块hack_id远程SQL注入攻击" name_zh_TW="phpBB Hacks List模塊hack_id遠程SQL注入攻擊" ruleid="20692" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="GrayCMS error.php远程文件包含攻击" name_en_US="GrayCMS error.php Remote File Inclusion" name_zh_CN="GrayCMS error.php远程文件包含攻击" name_zh_TW="GrayCMS error.php遠程文件包含攻擊" ruleid="20771" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Complete PHP Counter list.php远程SQL注入攻击" name_en_US="Complete PHP Counter list.php Remote SQL Injection" name_zh_CN="Complete PHP Counter list.php远程SQL注入攻击" name_zh_TW="Complete PHP Counter list.php遠程SQL注入攻擊" ruleid="20690" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="SimpleBlog edit.asp远程SQL注入攻击" name_en_US="SimpleBlog edit.asp Remote SQL Injection" name_zh_CN="SimpleBlog edit.asp远程SQL注入攻击" name_zh_TW="SimpleBlog edit.asp遠程SQL注入攻擊" ruleid="20691" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Zixforum layid变量远程SQL注入攻击" name_en_US="Zixforum layid Variable Remote SQL Injection" name_zh_CN="Zixforum layid变量远程SQL注入攻击" name_zh_TW="Zixforum layid變量遠程SQL注入攻擊" ruleid="20696" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Arki-DB catid变量远程SQL注入攻击" name_en_US="Arki-DB catid Variable Remote SQL Injection" name_zh_CN="Arki-DB catid变量远程SQL注入攻击" name_zh_TW="Arki-DB catid變量遠程SQL注入攻擊" ruleid="20697" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="ActionApps GLOBALS[AA_INC_PATH]变量远程文件包含攻击" name_en_US="ActionApps GLOBALS[AA_INC_PATH] Variable Remote File Inclusion" name_zh_CN="ActionApps GLOBALS[AA_INC_PATH]变量远程文件包含攻击" name_zh_TW="ActionApps GLOBALS[AA_INC_PATH]變量遠程文件包含攻擊" ruleid="20694" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Albinator Config_rootdir变量远程文件包含攻击" name_en_US="Albinator Config_rootdir Variable Remote File Inclusion" name_zh_CN="Albinator Config_rootdir变量远程文件包含攻击" name_zh_TW="Albinator Config_rootdir變量遠程文件包含攻擊" ruleid="20695" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序石破天惊通信" name_en_US="Backdoor/Trojan Rock Sky Communication " name_zh_CN="木马后门程序石破天惊通信" name_zh_TW="木馬後門程序石破天驚通信" ruleid="40752" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="IceCast XSL远程绕过认证攻击" name_en_US="IceCast XSL Remote Authentication Bypass" name_zh_CN="IceCast XSL远程绕过认证攻击" name_zh_TW="IceCast XSL遠程繞過認證攻擊" ruleid="20773" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="IE浏览器跨域攻击" name_en_US="IE Cross-Domain Attack" name_zh_CN="IE浏览器跨域攻击" name_zh_TW="IE浏覽器跨域攻擊" ruleid="20988" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159530" module="0" name="Microsoft IIS要求验证特权提升攻击" name_en_US="Microsoft IIS Requires Authentication Elevation Of Privilege" name_zh_CN="Microsoft IIS要求验证特权提升攻击" name_zh_TW="Microsoft IIS要求驗證特權提升攻擊" ruleid="20989" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS 6.0 WebDAV远程绕过认证攻击" name_en_US="Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Attack" name_zh_CN="Microsoft IIS 6.0 WebDAV远程绕过认证攻击" name_zh_TW="Microsoft IIS 6.0 WebDAV遠程繞過認證攻擊" ruleid="20986" visible="true" />
			<rule action=" db  screen " enabled="true" group="82839595" module="0" name="LDAP请求RDN解析远程代码执行攻击" name_en_US="LDAP Request RDN Parse Remote Code Execution" name_zh_CN="LDAP请求RDN解析远程代码执行攻击" name_zh_TW="LDAP請求RDN解析遠程代碼執行攻擊" ruleid="20987" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft PowerPoint OutlineTextRefAtom 对象解析内存破坏攻击" name_en_US="Microsoft PowerPoint OutlineTextRefAtom Object Parse Memory Corruption Attack" name_zh_CN="Microsoft PowerPoint OutlineTextRefAtom 对象解析内存破坏攻击" name_zh_TW="Microsoft PowerPoint OutlineTextRefAtom 對象解析內存破壞攻擊" ruleid="20984" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Symantec pcAnywhere awhost32组件远程代码执行漏洞" name_en_US="Symantec pcAnywhere awhost32 Components Remote Code Execution Vulnerability" name_zh_CN="Symantec pcAnywhere awhost32组件远程代码执行漏洞" name_zh_TW="Symantec pcAnywhere awhost32組件遠程代碼執行漏洞" ruleid="21375" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="网络蠕虫Conficker攻击 (HTTP)" name_en_US="Network Worm Conficker Attack (HTTP)" name_zh_CN="网络蠕虫Conficker攻击 (HTTP)" name_zh_TW="網絡蠕蟲Conficker攻擊 (HTTP)" ruleid="20982" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="网络蠕虫Conficker攻击 (TCP)" name_en_US="Network Worm Conficker Attack (TCP)" name_zh_CN="网络蠕虫Conficker攻击 (TCP)" name_zh_TW="網絡蠕蟲Conficker攻擊 (TCP)" ruleid="20983" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596714" module="0" name="Microsoft Windows DNS缓存中毒攻击(ANY Query)" name_en_US="Microsoft Windows DNS Cache Poisoning Attack(ANY Query)" name_zh_CN="Microsoft Windows DNS缓存中毒攻击(ANY Query)" name_zh_TW="Microsoft Windows DNS緩存中毒攻擊(ANY Query)" ruleid="20980" visible="true" />
			<rule action=" db  screen " enabled="true" group="77596714" module="0" name="Microsoft Windows DNS 缓存中毒攻击(Case Sensitive Query)" name_en_US="Microsoft Windows DNS Cache Poisoning Attack (Case Sensitive Query)" name_zh_CN="Microsoft Windows DNS 缓存中毒攻击(Case Sensitive Query)" name_zh_TW="Microsoft Windows DNS 緩存中毒攻擊(Case Sensitive Query)" ruleid="20981" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Pcshare2005通信" name_en_US="Backdoor/Trojan Pcshare2005 Communication " name_zh_CN="木马后门程序Pcshare2005通信" name_zh_TW="木馬後門程序Pcshare2005通信" ruleid="40757" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序rmtsvc通信" name_en_US="Backdoor/Trojan rmtsvc Communication " name_zh_CN="木马后门程序rmtsvc通信" name_zh_TW="木馬後門程序rmtsvc通信" ruleid="40756" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Print Topic Mod printview.php SQL注入攻击" name_en_US="Print Topic Mod printview.php SQL Injection" name_zh_CN="Print Topic Mod printview.php SQL注入攻击" name_zh_TW="Print Topic Mod printview.php SQL注入攻擊" ruleid="20436" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="AntiBoard antiboard.php SQL注入攻击" name_en_US="AntiBoard antiboard.php SQL Injection" name_zh_CN="AntiBoard antiboard.php SQL注入攻击" name_zh_TW="AntiBoard antiboard.php SQL注入攻擊" ruleid="20437" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315055" module="0" name="Extropia WebStore web_store.cgi脚本漏洞远程执行命令" name_en_US="Remote Command Execution via Extropia WebStore web_store.cgi Script Vulnerability" name_zh_CN="Extropia WebStore web_store.cgi脚本漏洞远程执行命令" name_zh_TW="Extropia WebStore web_store.cgi腳本漏洞遠程執行命令" ruleid="20434" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHP-Nuke Search功能SQL注入攻击" name_en_US="PHP-Nuke Search Function SQL Injection" name_zh_CN="PHP-Nuke Search功能SQL注入攻击" name_zh_TW="PHP-Nuke Search功能SQL注入攻擊" ruleid="20435" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157743" module="0" name="Microsoft IIS 5.0 WebDAV远程缓冲区溢出攻击" name_en_US="Microsoft IIS 5.0 WebDAV Remote Buffer Overflow" name_zh_CN="Microsoft IIS 5.0 WebDAV远程缓冲区溢出攻击" name_zh_TW="Microsoft IIS 5.0 WebDAV遠程緩沖區溢出攻擊" ruleid="20344" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="phpBB viewtopic.php CGI脚本SQL注入攻击" name_en_US="phpBB viewtopic.php CGI Script SQL Injection" name_zh_CN="phpBB viewtopic.php CGI脚本SQL注入攻击" name_zh_TW="phpBB viewtopic.php CGI腳本SQL注入攻擊" ruleid="20433" visible="true" />
			<rule action=" db  screen " enabled="true" group="160497753" module="0" name="Solaris SNMP默认共同体串访问" name_en_US="Solaris SNMP Default Community String" name_zh_CN="Solaris SNMP默认共同体串访问" name_zh_TW="Solaris SNMP默認共同體串訪問" ruleid="20346" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472902" module="0" name="FTP服务暴力猜测用户口令" name_en_US="FTP Service User Password Brute Force" name_zh_CN="FTP服务暴力猜测用户口令" name_zh_TW="FTP服務暴力猜測用戶口令" ruleid="20347" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898073" module="0" name="虚拟局域网组建软件 Hamachi 通信行为" name_en_US="VLAN Formation Software Hamachi Communiction" name_zh_CN="虚拟局域网组建软件 Hamachi 通信行为" name_zh_TW="虛擬局域網組建軟件 Hamachi 通信行爲" ruleid="50442" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE畸形COM对象实例化代码邮件引用" name_en_US="Microsoft IE Malformed COM Object Instantiation Vulnerability Mail" name_zh_CN="Microsoft IE畸形COM对象实例化代码邮件引用" name_zh_TW="Microsoft IE畸形COM對象實例化代碼郵件引用" ruleid="40787" visible="true" />
			<rule action=" db  screen " enabled="true" group="137365547" module="0" name="OpenFTPD SITE MSG命令远程格式串漏洞攻击" name_en_US="OpenFTPD SITE MSG Command Remote Format String Vulnerability" name_zh_CN="OpenFTPD SITE MSG命令远程格式串漏洞攻击" name_zh_TW="OpenFTPD SITE MSG命令遠程格式串漏洞攻擊" ruleid="20438" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="CSVForm csvform.pl脚本漏洞远程执行命令" name_en_US="Remote Code Execution via CSVForm csvform.pl Script Vulnerability" name_zh_CN="CSVForm csvform.pl脚本漏洞远程执行命令" name_zh_TW="CSVForm csvform.pl腳本漏洞遠程執行命令" ruleid="20186" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208103" module="0" name="Apache Win32批处理脚本漏洞远程执行命令" name_en_US="Apache Win32 Batch Script Remote Code Execution Vulnerability" name_zh_CN="Apache Win32批处理脚本漏洞远程执行命令" name_zh_TW="Apache Win32批處理腳本漏洞遠程執行命令" ruleid="20187" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Abe Timmerman zml.cgi脚本漏洞扫描探测" name_en_US="Abe Timmerman zml.cgi Script Vulnerability Detection" name_zh_CN="Abe Timmerman zml.cgi脚本漏洞扫描探测" name_zh_TW="Abe Timmerman zml.cgi腳本漏洞掃描探測" ruleid="20184" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316967" module="0" name="IRIX webdist.cgi脚本漏洞远程执行命令" name_en_US="IRIX webdist.cgi Script Remote Code Execution Vulnerability" name_zh_CN="IRIX webdist.cgi脚本漏洞远程执行命令" name_zh_TW="IRIX webdist.cgi腳本漏洞遠程執行命令" ruleid="20185" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Achievo class.atkdateattribute.js.php脚本漏洞执行命令" name_en_US="Code Execution via Achievo class.atkdateattribute.js.php Script Vulnerability" name_zh_CN="Achievo class.atkdateattribute.js.php脚本漏洞执行命令" name_zh_TW="Achievo class.atkdateattribute.js.php腳本漏洞執行命令" ruleid="20182" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Mantis summary_graph_functions.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Mantis summary_graph_functions.php Script Vulnerability" name_zh_CN="Mantis summary_graph_functions.php脚本漏洞远程执行命令" name_zh_TW="Mantis summary_graph_functions.php腳本漏洞遠程執行命令" ruleid="20183" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="site_searcher.cgi脚本漏洞远程执行命令" name_en_US="Remote Code Execution via site_searcher.cgi Script Vulnerability" name_zh_CN="site_searcher.cgi脚本漏洞远程执行命令" name_zh_TW="site_searcher.cgi腳本漏洞遠程執行命令" ruleid="20180" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="Marcus S. directory.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via Marcus S. directory.php Script Vulnerability" name_zh_CN="Marcus S. directory.php脚本漏洞远程执行命令" name_zh_TW="Marcus S. directory.php腳本漏洞遠程執行命令" ruleid="20188" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Gamethief/PSW.Magania网络数据通信" name_en_US="Backdoor/Trojan Gamethief/PSW.Magania Checkin" name_zh_CN="木马后门程序Gamethief/PSW.Magania网络数据通信" name_zh_TW="木馬後門程序Gamethief/PSW.Magania網絡數據通信" ruleid="40871" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问.rhosts文件" name_en_US="FTP Service Client Accessing .rhosts File" name_zh_CN="FTP服务客户端访问.rhosts文件" name_zh_TW="FTP服務客戶端訪問.rhosts文件" ruleid="40039" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="QuikStore Shopping Cart quikstore.cgi脚本漏洞扫描探测" name_en_US="QuikStore Shopping Cart quikstore.cgi Script Vulnerability Detection" name_zh_CN="QuikStore Shopping Cart quikstore.cgi脚本漏洞扫描探测" name_zh_TW="QuikStore Shopping Cart quikstore.cgi腳本漏洞掃描探測" ruleid="30479" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="phpWebFileManager index.php脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via phpWebFileManager index.php Script Vulnerability" name_zh_CN="phpWebFileManager index.php脚本漏洞遍历目录攻击" name_zh_TW="phpWebFileManager index.php腳本漏洞遍曆目錄攻擊" ruleid="30478" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618895" module="0" name="木马后门程序Black Hole通信" name_en_US="Backdoor/Trojan Black Hole Communication " name_zh_CN="木马后门程序Black Hole通信" name_zh_TW="木馬後門程序Black Hole通信" ruleid="41033" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Keylogger.ane网络数据通信" name_en_US="Backdoor/Trojan Keylogger.ane Checkin" name_zh_CN="木马后门程序Keylogger.ane网络数据通信" name_zh_TW="木馬後門程序Keylogger.ane網絡數據通信" ruleid="40872" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412614" module="0" name="TELNET服务暴力猜测用户口令" name_en_US="TELNET Service User Password Brute Force" name_zh_CN="TELNET服务暴力猜测用户口令" name_zh_TW="TELNET服務暴力猜測用戶口令" ruleid="30473" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="0" name="ICMP子网掩码应答消息" name_en_US="ICMP Netmask Response Message" name_zh_CN="ICMP子网掩码应答消息" name_zh_TW="ICMP子網掩碼應答消息" ruleid="40031" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="扫描探测MatrikzGB Guestbook脚本漏洞" name_en_US="MatrikzGB Guestbook Script Vulnerability Detection" name_zh_CN="扫描探测MatrikzGB Guestbook脚本漏洞" name_zh_TW="掃描探測MatrikzGB Guestbook腳本漏洞" ruleid="30471" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808885" module="0" name="FINGER服务代理查询操作" name_en_US="FINGER Service Proxy Query" name_zh_CN="FINGER服务代理查询操作" name_zh_TW="FINGER服務代理查詢操作" ruleid="40033" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316986" module="0" name="CommerceSQL Shopping Cart index.cgi脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via CommerceSQL Shopping Cart index.cgi Script Vulnerability" name_zh_CN="CommerceSQL Shopping Cart index.cgi脚本漏洞遍历目录攻击" name_zh_TW="CommerceSQL Shopping Cart index.cgi腳本漏洞遍曆目錄攻擊" ruleid="30477" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="PeopleSoft PeopleTools psdoccgi.exe CGI程序漏洞扫描探测" name_en_US="PeopleSoft PeopleTools psdoccgi.exe CGI Program Vulnerability Detection" name_zh_CN="PeopleSoft PeopleTools psdoccgi.exe CGI程序漏洞扫描探测" name_zh_TW="PeopleSoft PeopleTools psdoccgi.exe CGI程序漏洞掃描探測" ruleid="30476" visible="true" />
			<rule action=" db  screen " enabled="true" group="146808902" module="0" name="FINGER服务请求安全敏感文件攻击" name_en_US="FINGER Service Security Sensitive File Request" name_zh_CN="FINGER服务请求安全敏感文件攻击" name_zh_TW="FINGER服務請求安全敏感文件攻擊" ruleid="30475" visible="true" />
			<rule action=" db  screen " enabled="true" group="83894333" module="0" name="Windows RPC DCOM接口长主机名溢出漏洞扫描" name_en_US="Windows RPC DCOM Interface Long Host Name Buffer Overflow Detection" name_zh_CN="Windows RPC DCOM接口长主机名溢出漏洞扫描" name_zh_TW="Windows RPC DCOM接口長主機名溢出漏洞掃描" ruleid="30474" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Xlog木马通信" name_en_US="Backdoor/Trojan Xlog Communication " name_zh_CN="木马后门程序Xlog木马通信" name_zh_TW="木馬後門程序Xlog木馬通信" ruleid="40610" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425866" module="0" name="Web服务 .&quot;./字串突破CGI脚本过滤访问上级目录" name_en_US="Web Service CGI Script Filter Bypass And Upper Directory Access via .&quot;./ String" name_zh_CN="Web服务 .&quot;./字串突破CGI脚本过滤访问上级目录" name_zh_TW="Web服務 .&quot;./字串突破CGI腳本過濾訪問上級目錄" ruleid="40347" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序YAT木马通信" name_en_US="Backdoor/Trojan YAT Communication " name_zh_CN="木马后门程序YAT木马通信" name_zh_TW="木馬後門程序YAT木馬通信" ruleid="40612" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Sober.F@mm蠕虫病毒邮件" name_en_US="SMTP Service Sendinng Mails with W32.Sober.F@mm" name_zh_CN="SMTP服务发送W32.Sober.F@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Sober.F@mm蠕蟲病毒郵件" ruleid="40613" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323126" module="0" name="ads.cgi脚本漏洞扫描利用" name_en_US="ads.cgi Script Vulnerability Detection" name_zh_CN="ads.cgi脚本漏洞扫描利用" name_zh_TW="ads.cgi腳本漏洞掃描利用" ruleid="30309" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Netsky.Y@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.Y@mm" name_zh_CN="SMTP服务发送W32.Netsky.Y@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.Y@mm蠕蟲病毒郵件" ruleid="40615" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序GirlFriend木马连接建立" name_en_US="Backdoor/Trojan GirlFriend Communication " name_zh_CN="木马后门程序GirlFriend木马连接建立" name_zh_TW="木馬後門程序GirlFriend木馬連接建立" ruleid="40340" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序BackOrifice 2000木马通信" name_en_US="Backdoor/Trojan BackOrifice 2000 Communication " name_zh_CN="木马后门程序BackOrifice 2000木马通信" name_zh_TW="木馬後門程序BackOrifice 2000木馬通信" ruleid="40341" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315066" module="0" name="通过Web服务访问JRun默认配置文件jrun.ini" name_en_US="Access to JRun Default Congif File jrun.ini" name_zh_CN="通过Web服务访问JRun默认配置文件jrun.ini" name_zh_TW="通過Web服務訪問JRun默認配置文件jrun.ini" ruleid="30305" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="CGIScript.NET CSSearch.cgi脚本漏洞扫描利用" name_en_US="CGIScript.NET CSSearch.cgi Script Vulnerability Detection" name_zh_CN="CGIScript.NET CSSearch.cgi脚本漏洞扫描利用" name_zh_TW="CGIScript.NET CSSearch.cgi腳本漏洞掃描利用" ruleid="30304" visible="true" />
			<rule action=" db  screen " enabled="true" group="69214265" module="0" name="Windows NT IIS MSDAC RDS远程命令执行漏洞扫描探测" name_en_US="Windows NT IIS MSDAC RDS Remote Command Execution Detection" name_zh_CN="Windows NT IIS MSDAC RDS远程命令执行漏洞扫描探测" name_zh_TW="Windows NT IIS MSDAC RDS遠程命令執行漏洞掃描探測" ruleid="30307" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Networking_Utils.php脚本漏洞扫描利用" name_en_US="Networking_Utils.php Script Vulnerability Detection" name_zh_CN="Networking_Utils.php脚本漏洞扫描利用" name_zh_TW="Networking_Utils.php腳本漏洞掃描利用" ruleid="30306" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423929" module="0" name="register.php脚本漏洞扫描利用" name_en_US="register.php Script Vulnerability Detection" name_zh_CN="register.php脚本漏洞扫描利用" name_zh_TW="register.php腳本漏洞掃描利用" ruleid="30301" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="add-subject.php脚本漏洞扫描探测" name_en_US="add-subject.php Script Vulnerability Detection" name_zh_CN="add-subject.php脚本漏洞扫描探测" name_zh_TW="add-subject.php腳本漏洞掃描探測" ruleid="30300" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Nortel Contivity cgiproc脚本漏洞扫描探测" name_en_US="Nortel Contivity cgiproc Script Vulnerability Detection" name_zh_CN="Nortel Contivity cgiproc脚本漏洞扫描探测" name_zh_TW="Nortel Contivity cgiproc腳本漏洞掃描探測" ruleid="30303" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206202" module="0" name="通过Web服务访问Global.asa文件获取敏感信息" name_en_US="Sensitive Information Disclosure from Global.asa File via Web Service" name_zh_CN="通过Web服务访问Global.asa文件获取敏感信息" name_zh_TW="通過Web服務訪問Global.asa文件獲取敏感信息" ruleid="30302" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序B.F. Evolution木马通信" name_en_US="Backdoor/Trojan B.F. Evolution Communication " name_zh_CN="木马后门程序B.F. Evolution木马通信" name_zh_TW="木馬後門程序B.F. Evolution木馬通信" ruleid="40473" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序LCX Webshell检测" name_en_US="Backdoor/Trojan LCX Webshell Detection" name_zh_CN="木马后门程序LCX Webshell检测" name_zh_TW="木馬後門程序LCX Webshell檢測" ruleid="40961" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159562" module="0" name="Web服务&quot;../&quot;路径串目录遍历攻击" name_en_US="Web Service Directory Traversal Attack" name_zh_CN="Web服务&quot;../&quot;路径串目录遍历攻击" name_zh_TW="Web服務&quot;../&quot;路徑串目錄遍曆攻擊" ruleid="40297" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159546" module="0" name="Microsoft IIS远东版畸形字符编码获取文件内容攻击" name_en_US="Microsoft IIS Far East Edition Malformed Character Encoding File Content Disclosure" name_zh_CN="Microsoft IIS远东版畸形字符编码获取文件内容攻击" name_zh_TW="Microsoft IIS遠東版畸形字符編碼獲取文件內容攻擊" ruleid="40290" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208134" module="0" name="Web服务 ..&quot;/字串突破CGI脚本过滤访问上级目录" name_en_US="Web Service ..&quot;/ String CGI Script Filter Bypass And Upper Directory Access" name_zh_CN="Web服务 ..&quot;/字串突破CGI脚本过滤访问上级目录" name_zh_TW="Web服務 ..&quot;/字串突破CGI腳本過濾訪問上級目錄" ruleid="40293" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="SquirrelMail left_main.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via SquirrelMail left_main.php Script Vulnerability" name_zh_CN="SquirrelMail left_main.php脚本漏洞远程执行命令" name_zh_TW="SquirrelMail left_main.php腳本漏洞遠程執行命令" ruleid="20234" visible="true" />
			<rule action=" db  screen " enabled="true" group="141558055" module="0" name="OpenSSH挑战响应机制SKEY/BSD_AUTH验证远程缓冲区溢出攻击" name_en_US="OpenSSH Challenge-Response Mechanism SKEY/BSD_AUTH Authentication Remote Buffer Overflow" name_zh_CN="OpenSSH挑战响应机制SKEY/BSD_AUTH验证远程缓冲区溢出攻击" name_zh_TW="OpenSSH挑戰響應機制SKEY/BSD_AUTH驗證遠程緩沖區溢出攻擊" ruleid="20235" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Basic Hell木马通信" name_en_US="Backdoor/Trojan Basic Hell Communication " name_zh_CN="木马后门程序Basic Hell木马通信" name_zh_TW="木馬後門程序Basic Hell木馬通信" ruleid="40477" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Webspeed wsisa.dll CGI程序漏洞获取管理权" name_en_US="Gaining Admin Privilege via Webspeed wsisa.dll CGI Vulnerability" name_zh_CN="Webspeed wsisa.dll CGI程序漏洞获取管理权" name_zh_TW="Webspeed wsisa.dll CGI程序漏洞獲取管理權" ruleid="20230" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315046" module="0" name="DNSTools dnstools.php脚本漏洞控制应用程序" name_en_US="Application Control via DNSTools dnstools.php Script Vulnerability" name_zh_CN="DNSTools dnstools.php脚本漏洞控制应用程序" name_zh_TW="DNSTools dnstools.php腳本漏洞控制應用程序" ruleid="20231" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="Blahz-DNS dostuff.php脚本漏洞控制应用程序" name_en_US="Application Control via Blahz-DNS dostuff.php Script Vulnerability" name_zh_CN="Blahz-DNS dostuff.php脚本漏洞控制应用程序" name_zh_TW="Blahz-DNS dostuff.php腳本漏洞控制應用程序" ruleid="20232" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423910" module="0" name="SquirrelSpell check_me.mod.php脚本漏洞远程执行命令" name_en_US="Remote Code Execution via SquirrelSpell check_me.mod.php Script Vulnerability" name_zh_CN="SquirrelSpell check_me.mod.php脚本漏洞远程执行命令" name_zh_TW="SquirrelSpell check_me.mod.php腳本漏洞遠程執行命令" ruleid="20233" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Sun i-Runbook none.php脚本漏洞扫描利用" name_en_US="Sun i-Runbook none.php Script Vulnerability Detection" name_zh_CN="Sun i-Runbook none.php脚本漏洞扫描利用" name_zh_TW="Sun i-Runbook none.php腳本漏洞掃描利用" ruleid="30271" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="NULL字节漏洞获取JRun JSP源代码攻击" name_en_US="JRun JSP Source Code Disclosure via NULL Byte Vulnerability" name_zh_CN="NULL字节漏洞获取JRun JSP源代码攻击" name_zh_TW="NULL字節漏洞獲取JRun JSP源代碼攻擊" ruleid="30270" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Webmin edit_action.cgi脚本漏洞扫描利用" name_en_US="Webmin edit_action.cgi Script Vulnerability Detection" name_zh_CN="Webmin edit_action.cgi脚本漏洞扫描利用" name_zh_TW="Webmin edit_action.cgi腳本漏洞掃描利用" ruleid="30273" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="Matrix lastlines.cgi脚本漏洞扫描利用" name_en_US="Matrix lastlines.cgi Script Vulnerability Detection" name_zh_CN="Matrix lastlines.cgi脚本漏洞扫描利用" name_zh_TW="Matrix lastlines.cgi腳本漏洞掃描利用" ruleid="30272" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="//WEB-INF/漏洞获取JRun JSP源代码攻击" name_en_US="JRun JSP Source Code Disclosure via //WEB-INF/ Vulnerabilities" name_zh_CN="//WEB-INF/漏洞获取JRun JSP源代码攻击" name_zh_TW="//WEB-INF/漏洞獲取JRun JSP源代碼攻擊" ruleid="30275" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316983" module="0" name="IRIX webdist.cgi脚本漏洞扫描探测" name_en_US="IRIX webdist.cgi Script Vulnerability Detection" name_zh_CN="IRIX webdist.cgi脚本漏洞扫描探测" name_zh_TW="IRIX webdist.cgi腳本漏洞掃描探測" ruleid="30274" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423930" module="0" name="通过Web服务访问Trend Micro OfficeScan Virus Buster配置文件攻击" name_en_US="Trend Micro OfficeScan Virus Buster Config File Access via Web Service" name_zh_CN="通过Web服务访问Trend Micro OfficeScan Virus Buster配置文件攻击" name_zh_TW="通過Web服務訪問Trend Micro OfficeScan Virus Buster配置文件攻擊" ruleid="30277" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CSVForm csvform.pl脚本漏洞扫描探测" name_en_US="CSVForm csvform.pl Script Vulnerability Detection" name_zh_CN="CSVForm csvform.pl脚本漏洞扫描探测" name_zh_TW="CSVForm csvform.pl腳本漏洞掃描探測" ruleid="30276" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315062" module="0" name="Richard Lawrence faqmanager.cgi脚本漏洞读取文件攻击" name_en_US="Reading File via Richard Lawrence faqmanager.cgi Script Vulnerability" name_zh_CN="Richard Lawrence faqmanager.cgi脚本漏洞读取文件攻击" name_zh_TW="Richard Lawrence faqmanager.cgi腳本漏洞讀取文件攻擊" ruleid="30279" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Richard Lawrence faqmanager.cgi脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via Richard Lawrence faqmanager.cgi Script Vulnerability" name_zh_CN="Richard Lawrence faqmanager.cgi脚本漏洞遍历目录攻击" name_zh_TW="Richard Lawrence faqmanager.cgi腳本漏洞遍曆目錄攻擊" ruleid="30278" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序AngelShell通信" name_en_US="Backdoor/Trojan AngelShell Communication " name_zh_CN="木马后门程序AngelShell通信" name_zh_TW="木馬後門程序AngelShell通信" ruleid="40728" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序黑暗天使通信" name_en_US="Backdoor/Trojan Dark Angel Communication" name_zh_CN="木马后门程序黑暗天使通信" name_zh_TW="木馬後門程序黑暗天使通信" ruleid="40729" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具Mstream主分布端连接主控端" name_en_US="Connection Between DDOS Tool Mstream Mian Distributed End and the Console" name_zh_CN="DDOS工具Mstream主分布端连接主控端" name_zh_TW="DDOS工具Mstream主分布端連接主控端" ruleid="40380" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序F-Backdoor木马通信" name_en_US="Backdoor/Trojan F-Backdoor Communication " name_zh_CN="木马后门程序F-Backdoor木马通信" name_zh_TW="木馬後門程序F-Backdoor木馬通信" ruleid="40508" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序File Nail木马通信" name_en_US="Backdoor/Trojan File Nail Communication " name_zh_CN="木马后门程序File Nail木马通信" name_zh_TW="木馬後門程序File Nail木馬通信" ruleid="40509" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Duddie木马通信" name_en_US="Backdoor/Trojan Duddie Communication " name_zh_CN="木马后门程序Duddie木马通信" name_zh_TW="木馬後門程序Duddie木馬通信" ruleid="40504" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Eclypse木马通信" name_en_US="Backdoor/Trojan Eclypse Communication " name_zh_CN="木马后门程序Eclypse木马通信" name_zh_TW="木馬後門程序Eclypse木馬通信" ruleid="40505" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Event Horizon木马通信" name_en_US="Backdoor/Trojan Event Horizon Communication " name_zh_CN="木马后门程序Event Horizon木马通信" name_zh_TW="木馬後門程序Event Horizon木馬通信" ruleid="40506" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Exploiter木马通信" name_en_US="Backdoor/Trojan Exploiter Communication " name_zh_CN="木马后门程序Exploiter木马通信" name_zh_TW="木馬後門程序Exploiter木馬通信" ruleid="40507" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Digital Rootbeer木马通信" name_en_US="Backdoor/Trojan Digital Rootbeer Communication " name_zh_CN="木马后门程序Digital Rootbeer木马通信" name_zh_TW="木馬後門程序Digital Rootbeer木馬通信" ruleid="40500" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Doly木马通信" name_en_US="Backdoor/Trojan Doly Communication " name_zh_CN="木马后门程序Doly木马通信" name_zh_TW="木馬後門程序Doly木馬通信" ruleid="40501" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Drat木马通信" name_en_US="Backdoor/Trojan Drat Communication " name_zh_CN="木马后门程序Drat木马通信" name_zh_TW="木馬後門程序Drat木馬通信" ruleid="40502" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序dtr木马通信" name_en_US="Backdoor/Trojan dtr Communication " name_zh_CN="木马后门程序dtr木马通信" name_zh_TW="木馬後門程序dtr木馬通信" ruleid="40503" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="CGISCRIPT.NET csNews.cgi脚本漏洞扫描探测" name_en_US="CGISCRIPT.NET csNews.cgi Script Vulnerability Detection" name_zh_CN="CGISCRIPT.NET csNews.cgi脚本漏洞扫描探测" name_zh_TW="CGISCRIPT.NET csNews.cgi腳本漏洞掃描探測" ruleid="30099" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="CGISCRIPT.NET csLiveSupport.cgi脚本漏洞扫描探测" name_en_US="CGISCRIPT.NET csLiveSupport.cgi Script Vulnerability Detection" name_zh_CN="CGISCRIPT.NET csLiveSupport.cgi脚本漏洞扫描探测" name_zh_TW="CGISCRIPT.NET csLiveSupport.cgi腳本漏洞掃描探測" ruleid="30098" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Big Brother bb-hostsvc.sh脚本漏洞遍历主机目录" name_en_US="Remote Host Directory Traversal via Big Brother bb-hostsvc.sh Script Vulnerability" name_zh_CN="Big Brother bb-hostsvc.sh脚本漏洞遍历主机目录" name_zh_TW="Big Brother bb-hostsvc.sh腳本漏洞遍曆主機目錄" ruleid="30095" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="NCSA nph-test-cgi脚本漏洞扫描探测" name_en_US="NCSA nph-test-cgi Script Vulnerability Detection" name_zh_CN="NCSA nph-test-cgi脚本漏洞扫描探测" name_zh_TW="NCSA nph-test-cgi腳本漏洞掃描探測" ruleid="30094" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="CGISCRIPT.NET csChatRBox.cgi脚本漏洞扫描探测" name_en_US="CGISCRIPT.NET csChatRBox.cgi Script Vulnerability Detection" name_zh_CN="CGISCRIPT.NET csChatRBox.cgi脚本漏洞扫描探测" name_zh_TW="CGISCRIPT.NET csChatRBox.cgi腳本漏洞掃描探測" ruleid="30097" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="BigIP bigconf.cgi脚本漏洞扫描探测" name_en_US="BigIP bigconf.cgi Script Vulnerability Detection" name_zh_CN="BigIP bigconf.cgi脚本漏洞扫描探测" name_zh_TW="BigIP bigconf.cgi腳本漏洞掃描探測" ruleid="30096" visible="true" />
			<rule action=" db  screen " enabled="true" group="203423926" module="0" name="获取PHP-Survey Global.INC文件攻击" name_en_US="PHP-Survey Global.INC File Disclosure" name_zh_CN="获取PHP-Survey Global.INC文件攻击" name_zh_TW="獲取PHP-Survey Global.INC文件攻擊" ruleid="30090" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Big Brother bb-hostsvc.sh脚本漏洞扫描探测" name_en_US="Big Brother bb-hostsvc.sh Script Vulnerability Detection" name_zh_CN="Big Brother bb-hostsvc.sh脚本漏洞扫描探测" name_zh_TW="Big Brother bb-hostsvc.sh腳本漏洞掃描探測" ruleid="30093" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377278" module="0" name="Caucho Resin WEB-INF目录遍历攻击" name_en_US="Caucho Resin WEB-INF Directory Traversal" name_zh_CN="Caucho Resin WEB-INF目录遍历攻击" name_zh_TW="Caucho Resin WEB-INF目錄遍曆攻擊" ruleid="20906" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="WordPress插件远程文件包含攻击" name_en_US="WordPress Plugin Remote File Inclusion" name_zh_CN="WordPress插件远程文件包含攻击" name_zh_TW="WordPress插件遠程文件包含攻擊" ruleid="20907" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MyBB calendar.php脚本远程SQL注入攻击" name_en_US="MyBB calendar.php Script Remote SQL Injection" name_zh_CN="MyBB calendar.php脚本远程SQL注入攻击" name_zh_TW="MyBB calendar.php腳本遠程SQL注入攻擊" ruleid="20904" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Psychward木马通信" name_en_US="Backdoor/Trojan Psychward Communication " name_zh_CN="木马后门程序Psychward木马通信" name_zh_TW="木馬後門程序Psychward木馬通信" ruleid="40571" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="WEBinsta FM login.php远程文件包含攻击" name_en_US="WEBinsta FM login.php Remote File Inclusion" name_zh_CN="WEBinsta FM login.php远程文件包含攻击" name_zh_TW="WEBinsta FM login.php遠程文件包含攻擊" ruleid="20905" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Apache Struts ParametersInterceptor远程命令执行" name_en_US="Apache Struts ParametersInterceptor Remote Code Execution" name_zh_CN="Apache Struts ParametersInterceptor远程命令执行" name_zh_TW="Apache Struts ParametersInterceptor遠程命令執行" ruleid="22680" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Project Next木马通信" name_en_US="Backdoor/Trojan Project Next Communication " name_zh_CN="木马后门程序Project Next木马通信" name_zh_TW="木馬後門程序Project Next木馬通信" ruleid="40570" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="雅虎通Webcam Viewer ActiveX控件远程栈溢出攻击" name_en_US="Yahoo! Messenger Webcam Viewer ActiveX Control Remote Stack Overflow" name_zh_CN="雅虎通Webcam Viewer ActiveX控件远程栈溢出攻击" name_zh_TW="雅虎通Webcam Viewer ActiveX控件遠程棧溢出攻擊" ruleid="20902" visible="true" />
			<rule action=" db  screen " enabled="true" group="150995239" module="0" name="Solaris rpc.ttdbserverd远程栈缓冲区溢出攻击" name_en_US="Solaris rpc.ttdbserverd Remote Stack Buffer Overflow" name_zh_CN="Solaris rpc.ttdbserverd远程栈缓冲区溢出攻击" name_zh_TW="Solaris rpc.ttdbserverd遠程棧緩沖區溢出攻擊" ruleid="20455" visible="true" />
			<rule action=" db  screen " enabled="true" group="368050475" module="0" name="SonicWALL SSL-VPN ActiveX控件远程缓冲区溢出攻击" name_en_US="SonicWALL SSL-VPN ActiveX Control Remote Buffer Overflow" name_zh_CN="SonicWALL SSL-VPN ActiveX控件远程缓冲区溢出攻击" name_zh_TW="SonicWALL SSL-VPN ActiveX控件遠程緩沖區溢出攻擊" ruleid="20901" visible="true" />
			<rule action=" db  screen " enabled="true" group="68159526" module="0" name="Intersil (Boa) HTTPd基本认证密码重置漏洞" name_en_US="Intersil (Boa) HTTPd Basic Authentication Password Reset Vulnerability" name_zh_CN="Intersil (Boa) HTTPd基本认证密码重置漏洞" name_zh_TW="Intersil (Boa) HTTPd基本認證密碼重置漏洞" ruleid="22328" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏平台联众用户登录" name_en_US="Online Game Platform Lian Zhong  User Login" name_zh_CN="网络游戏平台联众用户登录" name_zh_TW="網絡遊戲平台聯衆用戶登錄" ruleid="50387" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络游戏神仙平台用户登录" name_en_US="Online Game Platform ShenXian User Login" name_zh_CN="网络游戏神仙平台用户登录" name_zh_TW="網絡遊戲神仙平台用戶登錄" ruleid="50386" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序War Trojan木马通信" name_en_US="Backdoor/Trojan War Trojan Communication " name_zh_CN="木马后门程序War Trojan木马通信" name_zh_TW="木馬後門程序War Trojan木馬通信" ruleid="40604" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序网络笨猪通信" name_en_US="Backdoor/Trojan NetPig Communication " name_zh_CN="木马后门程序网络笨猪通信" name_zh_TW="木馬後門程序網絡笨豬通信" ruleid="40754" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="1" name="股票交易分析工具申银万国神网E通活动" name_en_US="Stock Analyzing/Trading Software  Shenyin Wanguo Shenwang Etong Activity" name_zh_CN="股票交易分析工具申银万国神网E通活动" name_zh_TW="股票交易分析工具申銀萬國神網E通活動" ruleid="50435" visible="false" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票交易分析工具和讯股道黄金版活动" name_en_US="Stock Analyzing/Trading Software Hexungudao Gold Edition Activity" name_zh_CN="股票交易分析工具和讯股道黄金版活动" name_zh_TW="股票交易分析工具和訊股道黃金版活動" ruleid="50434" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具中投证券卓越版活动" name_en_US="Securities Analyzing/Trading Software China Investment Securities Zhuoyue Edition Activity" name_zh_CN="证券分析交易工具中投证券卓越版活动" name_zh_TW="證券分析交易工具中投證券卓越版活動" ruleid="50437" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Remote Boot木马通信" name_en_US="Backdoor/Trojan Remote Boot Communication " name_zh_CN="木马后门程序Remote Boot木马通信" name_zh_TW="木馬後門程序Remote Boot木馬通信" ruleid="40576" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="1" name="股票交易分析工具益盟操盘手软件活动" name_en_US="Stock Analyzing/Trading Software Yimeng Caopanshou Activity" name_zh_CN="股票交易分析工具益盟操盘手软件活动" name_zh_TW="股票交易分析工具益盟操盤手軟件活動" ruleid="50431" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 DRAT （暗组）设备注册" name_en_US="Remote Control Program DRAT(AnZu) Device Registration" name_zh_CN="远程控制程序 DRAT （暗组）设备注册" name_zh_TW="遠程控制程序 DRAT （暗組）設備注冊" ruleid="41000" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="1" name="股票交易分析工具和讯股道黄金版活动" name_en_US="Stock Analyzing/Trading Software Hexungudao Gold Edition Activity" name_zh_CN="股票交易分析工具和讯股道黄金版活动" name_zh_TW="股票交易分析工具和訊股道黃金版活動" ruleid="50433" visible="false" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Sielco Sistemi Winlog缓冲区溢出漏洞 (CVE-2012-3815)" name_en_US="Sielco Sistemi Winlog Buffer Overflow Vulnerability (CVE-2012-3815)" name_zh_CN="Sielco Sistemi Winlog缓冲区溢出漏洞 (CVE-2012-3815)" name_zh_TW="Sielco Sistemi Winlog緩沖區溢出漏洞 (CVE-2012-3815)" ruleid="22327" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft System Center Configuration Manager反射型跨站脚本漏洞(MS12-062)(CVE-2012-2536)" name_en_US="Microsoft System Center Configuration Manager Reflected XSS Vulnerability(MS12-062)(CVE-2012-2536)" name_zh_CN="Microsoft System Center Configuration Manager反射型跨站脚本漏洞(MS12-062)(CVE-2012-2536)" name_zh_TW="Microsoft System Center Configuration Manager反射型跨站腳本漏洞(MS12-062)(CVE-2012-2536)" ruleid="22452" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208110" module="0" name="Microsoft Visual Studio Team Foundation Server跨站脚本漏洞(MS12-061)(CVE-2012-1892)" name_en_US="Microsoft Visual Studio Team Foundation Server XSS Vulnerability(MS12-061)(CVE-2012-1892)" name_zh_CN="Microsoft Visual Studio Team Foundation Server跨站脚本漏洞(MS12-061)(CVE-2012-1892)" name_zh_TW="Microsoft Visual Studio Team Foundation Server跨站腳本漏洞(MS12-061)(CVE-2012-1892)" ruleid="22453" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="JBoss Console / Web Management直接请求身份验证绕过漏洞（通过JMXInvokerServlet利用）" name_en_US="JBoss DeploymentFileRepository WAR Deployment (via JMXInvokerServlet)" name_zh_CN="JBoss Console / Web Management直接请求身份验证绕过漏洞（通过JMXInvokerServlet利用）" name_zh_TW="JBoss Console / Web Management直接請求身份驗證繞過漏洞（通過JMXInvokerServlet利用）" ruleid="22456" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="HP SiteScope SOAP Call loadFileContent 远程文件存取" name_en_US="HP SiteScope SOAP Call loadFileContent Remote File Access" name_zh_CN="HP SiteScope SOAP Call loadFileContent 远程文件存取" name_zh_TW="HP SiteScope SOAP Call loadFileContent 遠程文件存取" ruleid="22457" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="PostgreSQL 'xslt_process()'函数任意文件创建和覆盖漏洞" name_en_US="PostgreSQL 'xslt_process ()' Arbitrary File Create and Coverage Vulnerability" name_zh_CN="PostgreSQL 'xslt_process()'函数任意文件创建和覆盖漏洞" name_zh_TW="PostgreSQL 'xslt_process()'函數任意文件創建和覆蓋漏洞" ruleid="22454" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="PostgreSQL 'xml_parse()'函数任意文件访问漏洞" name_en_US="PostgreSQL 'xml_parse ()' Arbitrary File Access Vulnerability" name_zh_CN="PostgreSQL 'xml_parse()'函数任意文件访问漏洞" name_zh_TW="PostgreSQL 'xml_parse()'函數任意文件訪問漏洞" ruleid="22455" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序上兴远控视频监控" name_en_US="Remote Control Program ShangXing Remote Control Video Monitor" name_zh_CN="远程控制程序上兴远控视频监控" name_zh_TW="遠程控制程序上興遠控視頻監控" ruleid="41006" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208122" module="0" name="HP SiteScope SOAP Call getSiteScopeConfiguration 配置存取" name_en_US="HP SiteScope SOAP Call getSiteScopeConfiguration Configuration Access" name_zh_CN="HP SiteScope SOAP Call getSiteScopeConfiguration 配置存取" name_zh_TW="HP SiteScope SOAP Call getSiteScopeConfiguration 配置存取" ruleid="22458" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序甲壳虫 Gh0st 文件操作" name_en_US="Remote Control Program Beetle Gh0st Files Operation" name_zh_CN="远程控制程序甲壳虫 Gh0st 文件操作" name_zh_TW="遠程控制程序甲殼蟲 Gh0st 文件操作" ruleid="41007" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="Metasploit Java漏洞利用检测" name_en_US="Metasploit Java Exploit Detection" name_zh_CN="Metasploit Java漏洞利用检测" name_zh_TW="Metasploit Java漏洞利用檢測" ruleid="22692" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Remote Desktop ActiveX控件远程代码执行漏洞(CVE-2013-1296)(MS13-029)" name_en_US="Microsoft Remote Desktop ActiveX Control Remote Code Execution(CVE-2013-1296)(MS13-029)" name_zh_CN="Microsoft Remote Desktop ActiveX控件远程代码执行漏洞(CVE-2013-1296)(MS13-029)" name_zh_TW="Microsoft Remote Desktop ActiveX控件遠程代碼執行漏洞(CVE-2013-1296)(MS13-029)" ruleid="22693" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft SharePoint HTML注入漏洞(CVE-2013-1289)(MS13-035)" name_en_US="Microsoft SharePoint HTML Injection (CVE-2013-1289)(MS13-035)" name_zh_CN="Microsoft SharePoint HTML注入漏洞(CVE-2013-1289)(MS13-035)" name_zh_TW="Microsoft SharePoint HTML注入漏洞(CVE-2013-1289)(MS13-035)" ruleid="22694" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序上兴远控文件操作" name_en_US="Remote Control Program ShangXing Remote Control Files Operation" name_zh_CN="远程控制程序上兴远控文件操作" name_zh_TW="遠程控制程序上興遠控文件操作" ruleid="41004" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序上兴远控终端操作" name_en_US="Remote Control Program ShangXing Remote Control Terminal Operation" name_zh_CN="远程控制程序上兴远控终端操作" name_zh_TW="遠程控制程序上興遠控終端操作" ruleid="41005" visible="true" />
			<rule action=" db  screen " enabled="true" group="77660249" module="0" name="NETLOGON域用户登录检测" name_en_US="NETLOGON Domain User Login Detection" name_zh_CN="NETLOGON域用户登录检测" name_zh_TW="NETLOGON域用戶登錄檢測" ruleid="50401" visible="true" />
			<rule action=" db  screen " enabled="false" group="99616811" module="0" name="Microsoft Publisher远程代码执行攻击" name_en_US="Microsoft Publisher Remote Code Execution Attack" name_zh_CN="Microsoft Publisher远程代码执行攻击" name_zh_TW="Microsoft Publisher遠程代碼執行攻擊" ruleid="21000" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Microsoft Video ActiveX控件远程代码执行攻击" name_en_US="Microsoft Video ActiveX Control Remote Code Execution Attack" name_zh_CN="Microsoft Video ActiveX控件远程代码执行攻击" name_zh_TW="Microsoft Video ActiveX控件遠程代碼執行攻擊" ruleid="21001" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208106" module="0" name="Microsoft FrontPage Server Extensions 跨站脚本攻击漏洞" name_en_US="HTTP: Microsoft FrontPage Server Extensions Cross Site Scripting Vulnerability" name_zh_CN="Microsoft FrontPage Server Extensions 跨站脚本攻击漏洞" name_zh_TW="Microsoft FrontPage Server Extensions 跨站腳本攻擊漏洞" ruleid="29205" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Windows TCP/IP小时间戳远程代码执行攻击" name_en_US="Windows TCP/IP Smaller Timestamp Remote Code Execution" name_zh_CN="Windows TCP/IP小时间戳远程代码执行攻击" name_zh_TW="Windows TCP/IP小時間戳遠程代碼執行攻擊" ruleid="21046" visible="true" />
			<rule action=" db  screen " enabled="true" group="73402389" module="0" name="Windows NT services.exe拒绝服务攻击" name_en_US="Windows NT services.exe Denial of Service" name_zh_CN="Windows NT services.exe拒绝服务攻击" name_zh_TW="Windows NT services.exe拒絕服務攻擊" ruleid="10116" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="亲朋棋牌游戏用户登录" name_en_US="Qinpeng Card Games User Login" name_zh_CN="亲朋棋牌游戏用户登录" name_zh_TW="親朋棋牌遊戲用戶登錄" ruleid="50305" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="Microsoft Windows消息队列服务远程缓冲区溢出攻击" name_en_US="Microsoft Windows Message Queuing Service Remote Buffer Overflow" name_zh_CN="Microsoft Windows消息队列服务远程缓冲区溢出攻击" name_zh_TW="Microsoft Windows消息隊列服務遠程緩沖區溢出攻擊" ruleid="20510" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PHPAuction adsearch.php/viewnews.php远程SQL注入攻击" name_en_US="PHPAuction adsearch.php/viewnews.php Remote SQL Injection" name_zh_CN="PHPAuction adsearch.php/viewnews.php远程SQL注入攻击" name_zh_TW="PHPAuction adsearch.php/viewnews.php遠程SQL注入攻擊" ruleid="20513" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="UBBThreads download.php远程SQL注入攻击" name_en_US="UBBThreads download.php Remote SQL Injection" name_zh_CN="UBBThreads download.php远程SQL注入攻击" name_zh_TW="UBBThreads download.php遠程SQL注入攻擊" ruleid="20512" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898075" module="0" name="Samsung打印机固件管理账号后门" name_en_US="Samsung Printer Firmware Management Account Backdoor" name_zh_CN="Samsung打印机固件管理账号后门" name_zh_TW="Samsung打印機固件管理賬號後門" ruleid="22588" visible="true" />
			<rule action="" enabled="true" group="368115797" module="0" name="FTP服务root用户" name_en_US="FTP Service root Account" name_zh_CN="FTP服务root用户" name_zh_TW="FTP服務root用戶" ruleid="78999" visible="false" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMAP服务程序CREATE命令远程缓冲区溢出攻击" name_en_US="IMAP Server CREATE Command Remote Buffer Overflow" name_zh_CN="IMAP服务程序CREATE命令远程缓冲区溢出攻击" name_zh_TW="IMAP服務程序CREATE命令遠程緩沖區溢出攻擊" ruleid="20515" visible="true" />
			<rule action=" db  screen " enabled="true" group="233834539" module="0" name="CA ARCserve Backup RPC Services RPC 服务崩溃漏洞" name_en_US="CA ARCserve Backup RPC Services RPC service crash vulnerability" name_zh_CN="CA ARCserve Backup RPC Services RPC 服务崩溃漏洞" name_zh_TW="CA ARCserve Backup RPC Services RPC 服務崩潰漏洞" ruleid="22586" visible="true" />
			<rule action=" db  screen " enabled="true" group="218105899" module="0" name="CA ARCserve Backup RPC Services RPC请求任意代码执行漏洞" name_en_US="CA ARCserve Backup RPC Services RPC arbitrary code execution vulnerability" name_zh_CN="CA ARCserve Backup RPC Services RPC请求任意代码执行漏洞" name_zh_TW="CA ARCserve Backup RPC Services RPC請求任意代碼執行漏洞" ruleid="22587" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Schneckenkorn木马通信" name_en_US="Backdoor/Trojan Schneckenkorn Communication " name_zh_CN="木马后门程序Schneckenkorn木马通信" name_zh_TW="木馬後門程序Schneckenkorn木馬通信" ruleid="40586" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="PunBB profile.php temp变量远程SQL注入攻击" name_en_US="PunBB profile.php temp Variable Remote SQL Injection" name_zh_CN="PunBB profile.php temp变量远程SQL注入攻击" name_zh_TW="PunBB profile.php temp變量遠程SQL注入攻擊" ruleid="20514" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208111" module="0" name="Product Cart viewPrd.asp远程SQL注入攻击" name_en_US="Product Cart viewPrd.asp Remote SQL Injection" name_zh_CN="Product Cart viewPrd.asp远程SQL注入攻击" name_zh_TW="Product Cart viewPrd.asp遠程SQL注入攻擊" ruleid="20517" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="即时通信工具MSN Messenger用户登录" name_en_US="Instant Messaging Tool MSN Messenger User Login" name_zh_CN="即时通信工具MSN Messenger用户登录" name_zh_TW="即時通信工具MSN Messenger用戶登錄" ruleid="50075" visible="true" />
			<rule action=" db  screen " enabled="true" group="75499562" module="0" name="Microsoft Visual Studio .NET msdds.dll远程代码执行攻击" name_en_US="Microsoft Visual Studio .NET msdds.dll Remote Code Execution Attack" name_zh_CN="Microsoft Visual Studio .NET msdds.dll远程代码执行攻击" name_zh_TW="Microsoft Visual Studio .NET msdds.dll遠程代碼執行攻擊" ruleid="40789" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE畸形CSS内存破坏0day漏洞(CVE-2010-3971)" name_en_US="Microsoft IE Malformed CSS File Reference Remote Code Execution Vulnerability(CVE-2010-3971)" name_zh_CN="Microsoft IE畸形CSS内存破坏0day漏洞(CVE-2010-3971)" name_zh_TW="Microsoft IE畸形CSS內存破壞0day漏洞(CVE-2010-3971)" ruleid="21174" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Windows “CreateSizedDIBSECTION()”缩略视图栈缓冲区溢出漏洞" name_en_US="Microsoft Windows 'CreateSizedDIBSECTION()' Thumbnail View Stack Buffer Overflow Vulnerability" name_zh_CN="Microsoft Windows “CreateSizedDIBSECTION()”缩略视图栈缓冲区溢出漏洞" name_zh_TW="Microsoft Windows “CreateSizedDIBSECTION()”縮略視圖棧緩沖區溢出漏洞" ruleid="21175" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft Windows MHTML脚本代码注入漏洞(CVE-2011-0096)" name_en_US="Microsoft Windows MHTML Script Code Injection Vulnerability(CVE-2011-0096)" name_zh_CN="Microsoft Windows MHTML脚本代码注入漏洞(CVE-2011-0096)" name_zh_TW="Microsoft Windows MHTML腳本代碼注入漏洞(CVE-2011-0096)" ruleid="21176" visible="false" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE未初始化内存远程代码执行漏洞(MS11-003)" name_en_US="Microsoft IE Uninitialized Memory Remote Code Execution Vulnerability(MS11-003)" name_zh_CN="Microsoft IE未初始化内存远程代码执行漏洞(MS11-003)" name_zh_TW="Microsoft IE未初始化內存遠程代碼執行漏洞(MS11-003)" ruleid="21177" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208111" module="0" name="Symantec IM Manager sql注入漏洞(CVE-2010-0112)" name_en_US="Symantec IM Manager SQL Injection(CVE-2010-0112)" name_zh_CN="Symantec IM Manager sql注入漏洞(CVE-2010-0112)" name_zh_TW="Symantec IM Manager sql注入漏洞(CVE-2010-0112)" ruleid="21170" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="www.openssl.cn代码注入" name_en_US="www.openssl.cn Code Injection" name_zh_CN="www.openssl.cn代码注入" name_zh_TW="www.openssl.cn代碼注入" ruleid="21171" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="PhpMyAdmin的客户端0Day重定向链接代码注入" name_en_US="PhpMyAdmin Client Side Oday Code Injection and Redirect Link Falsification" name_zh_CN="PhpMyAdmin的客户端0Day重定向链接代码注入" name_zh_TW="PhpMyAdmin的客戶端0Day重定向鏈接代碼注入" ruleid="21172" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE HtmlDlgHelper内存破坏攻击" name_en_US="Microsoft IE HtmlDlgHelper Memory Corruption" name_zh_CN="Microsoft IE HtmlDlgHelper内存破坏攻击" name_zh_TW="Microsoft IE HtmlDlgHelper內存破壞攻擊" ruleid="21173" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE 'mshtml.dll'内存远程代码执行漏洞" name_en_US="Microsoft Internet Explorer 'mshtml.dll' Dangling Pointer Vulnerability" name_zh_CN="Microsoft IE 'mshtml.dll'内存远程代码执行漏洞" name_zh_TW="Microsoft IE 'mshtml.dll'內存遠程代碼執行漏洞" ruleid="21178" visible="true" />
			<rule action=" db  screen " enabled="true" group="70256683" module="0" name="Microsoft IIS FTP Service 远程代码执行漏洞" name_en_US="Microsoft IIS FTP Service Could Allow Remote Code Execution" name_zh_CN="Microsoft IIS FTP Service 远程代码执行漏洞" name_zh_TW="Microsoft IIS FTP Service 遠程代碼執行漏洞" ruleid="21179" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Danton木马通信" name_en_US="Backdoor/Trojan Danton Communication " name_zh_CN="木马后门程序Danton木马通信" name_zh_TW="木馬後門程序Danton木馬通信" ruleid="40497" visible="true" />
			<rule action=" db  screen " enabled="true" group="151003190" module="0" name="IRIX rpc.espd服务存在性UDP扫描探测" name_en_US="IRIX rpc.espd Service UDP Detection" name_zh_CN="IRIX rpc.espd服务存在性UDP扫描探测" name_zh_TW="IRIX rpc.espd服務存在性UDP掃描探測" ruleid="30085" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745885" module="1" name="P2P文件共享工具BitTorrent获取文件信息" name_en_US="P2P File Sharing Tool BitTorrent Obtainning File Information" name_zh_CN="P2P文件共享工具BitTorrent获取文件信息" name_zh_TW="P2P文件共享工具BitTorrent獲取文件信息" ruleid="50077" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425850" module="0" name="SQL注入通过DNS析取数据攻击" name_en_US="SQL Injection Extraction Data By DNS" name_zh_CN="SQL注入通过DNS析取数据攻击" name_zh_TW="SQL注入通過DNS析取數據攻擊" ruleid="21350" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425867" module="0" name="SQL注入通过HTTP协议析取数据攻击" name_en_US="SQL Injection Data Extraction via HTTP Protocol" name_zh_CN="SQL注入通过HTTP协议析取数据攻击" name_zh_TW="SQL注入通過HTTP協議析取數據攻擊" ruleid="21351" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Web服务远程SQL注入查询数据库信息" name_en_US="Web Service Remote SQL Injection Query Database Information" name_zh_CN="Web服务远程SQL注入查询数据库信息" name_zh_TW="Web服務遠程SQL注入查詢數據庫信息" ruleid="21352" visible="true" />
			<rule action=" db  screen " enabled="true" group="74453039" module="0" name="Putty中文版被植入后门回传登录帐号信息" name_en_US="Putty Chinese Version Backdoor Returning User Login Account Information" name_zh_CN="Putty中文版被植入后门回传登录帐号信息" name_zh_TW="Putty中文版被植入後門回傳登錄帳號信息" ruleid="21353" visible="true" />
			<rule action=" db  screen " enabled="true" group="138412331" module="0" name="FreeBSD telnetd密钥处理缓冲区溢出漏洞" name_en_US="FreeBSD telnetd Daemon Remote Buffer Overflow Vulnerability" name_zh_CN="FreeBSD telnetd密钥处理缓冲区溢出漏洞" name_zh_TW="FreeBSD telnetd密鑰處理緩沖區溢出漏洞" ruleid="21354" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Indeo Audio Codec不安全库加载远程代码执行漏洞(MS12-014,CVE-2010-3138)" name_en_US="Indeo Audio Codec Insecure Library Loading Remote Code Vulnerability(MS12-014,CVE-2010-3138)" name_zh_CN="Indeo Audio Codec不安全库加载远程代码执行漏洞(MS12-014,CVE-2010-3138)" name_zh_TW="Indeo Audio Codec不安全庫加載遠程代碼執行漏洞(MS12-014,CVE-2010-3138)" ruleid="21355" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="Color Control Panel(colorui.dll)不安全库加载远程代码执行漏洞(MS12-012,CVE-2010-5082)" name_en_US="Color Control Panel(colorui.dll) Insecure Library Loading Remote Code Execution Vulnerability(MS12-012,CVE-2010-5082)" name_zh_CN="Color Control Panel(colorui.dll)不安全库加载远程代码执行漏洞(MS12-012,CVE-2010-5082)" name_zh_TW="Color Control Panel(colorui.dll)不安全庫加載遠程代碼執行漏洞(MS12-012,CVE-2010-5082)" ruleid="21356" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="GDI访问违规远程代码执行漏洞(MS12-008,CVE-2011-5046)" name_en_US="GDI Access Violation Remote Code Execution Vulnerability(MS12-008,CVE-2011-5046)" name_zh_CN="GDI访问违规远程代码执行漏洞(MS12-008,CVE-2011-5046)" name_zh_TW="GDI訪問違規遠程代碼執行漏洞(MS12-008,CVE-2011-5046)" ruleid="21357" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE HtmlLayout远程代码执行漏洞(MS12-010,CVE-2012-0011)" name_en_US="Microsoft IE HtmlLayout Remote Code Execution Vulnerability(MS12-010,CVE-2012-0011)" name_zh_CN="Microsoft IE HtmlLayout远程代码执行漏洞(MS12-010,CVE-2012-0011)" name_zh_TW="Microsoft IE HtmlLayout遠程代碼執行漏洞(MS12-010,CVE-2012-0011)" ruleid="21358" visible="true" />
			<rule action=" db  screen " enabled="false" group="233834518" module="0" name="IP/UDP畸形分片包Jolt2拒绝服务攻击" name_en_US="IP/UDP Malformed Fragmented Packet Jolt2 Denial of Service" name_zh_CN="IP/UDP畸形分片包Jolt2拒绝服务攻击" name_zh_TW="IP/UDP畸形分片包Jolt2拒絕服務攻擊" ruleid="10041" visible="false" />
			<rule action=" db  screen " enabled="true" group="69208085" module="0" name="Microsoft FrontPage shtml.exe恶意访问攻击" name_en_US="Microsoft FrontPage shtml.exe Malicious Access" name_zh_CN="Microsoft FrontPage shtml.exe恶意访问攻击" name_zh_TW="Microsoft FrontPage shtml.exe惡意訪問攻擊" ruleid="10044" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208085" module="0" name="Microsoft FrontPage shtml.dll恶意访问攻击" name_en_US="Microsoft FrontPage shtml.dll Malicious Access" name_zh_CN="Microsoft FrontPage shtml.dll恶意访问攻击" name_zh_TW="Microsoft FrontPage shtml.dll惡意訪問攻擊" ruleid="10045" visible="true" />
			<rule action=" db  screen " enabled="false" group="95422486" module="0" name="Microsoft网络共享器SMB请求远程拒绝服务攻击(CVE-2002-0724)" name_en_US="Microsoft Share Provider SMB Request Remote Denial of Service(CVE-2002-0724)" name_zh_CN="Microsoft网络共享器SMB请求远程拒绝服务攻击(CVE-2002-0724)" name_zh_TW="Microsoft網絡共享器SMB請求遠程拒絕服務攻擊(CVE-2002-0724)" ruleid="10046" visible="false" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Stylemotion WEB//NEWS多个远程SQL注入攻击" name_en_US="Stylemotion WEB//NEWS multiple Remote SQL Injections" name_zh_CN="Stylemotion WEB//NEWS多个远程SQL注入攻击" name_zh_TW="Stylemotion WEB//NEWS多個遠程SQL注入攻擊" ruleid="20759" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="PHP-Nuke多个模块远程SQL注入攻击" name_en_US="PHP-Nuke multiple Modules Remote SQL Injection" name_zh_CN="PHP-Nuke多个模块远程SQL注入攻击" name_zh_TW="PHP-Nuke多個模塊遠程SQL注入攻擊" ruleid="20758" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Revize CMS query_results.jsp远程SQL注入攻击" name_en_US="Revize CMS query_results.jsp Remote SQL Injection" name_zh_CN="Revize CMS query_results.jsp远程SQL注入攻击" name_zh_TW="Revize CMS query_results.jsp遠程SQL注入攻擊" ruleid="20753" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="Google搜索工具ProxyStyleSheet远程文件包含攻击" name_en_US="Google Search Appliance ProxyStyleSheet Remote File Inclusion" name_zh_CN="Google搜索工具ProxyStyleSheet远程文件包含攻击" name_zh_TW="Google搜索工具ProxyStyleSheet遠程文件包含攻擊" ruleid="20752" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="PluggedOut Blog index.php远程SQL注入攻击" name_en_US="PluggedOut Blog index.php Remote SQL Injection" name_zh_CN="PluggedOut Blog index.php远程SQL注入攻击" name_zh_TW="PluggedOut Blog index.php遠程SQL注入攻擊" ruleid="20751" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Cars Portal index.php远程SQL注入攻击" name_en_US="Cars Portal index.php Remote SQL Injection" name_zh_CN="Cars Portal index.php远程SQL注入攻击" name_zh_TW="Cars Portal index.php遠程SQL注入攻擊" ruleid="20750" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472619" module="0" name="FTP服务器USER命令超长参数远程缓冲区溢出攻击" name_en_US="FTP Server USER Command Over-long Parameter Remote Buffer Overflow" name_zh_CN="FTP服务器USER命令超长参数远程缓冲区溢出攻击" name_zh_TW="FTP服務器USER命令超長參數遠程緩沖區溢出攻擊" ruleid="20757" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Xoops多个脚本远程SQL注入攻击" name_en_US="Xoops multiple Scripts Remote SQL Injection" name_zh_CN="Xoops多个脚本远程SQL注入攻击" name_zh_TW="Xoops多個腳本遠程SQL注入攻擊" ruleid="20756" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Wizz Forum多个脚本远程SQL注入攻击" name_en_US="Wizz Forum multiple Scripts Remote SQL Injection" name_zh_CN="Wizz Forum多个脚本远程SQL注入攻击" name_zh_TW="Wizz Forum多個腳本遠程SQL注入攻擊" ruleid="20755" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Unclassified NewsBoard forum.php远程SQL注入攻击" name_en_US="Unclassified NewsBoard forum.php Remote SQL Injection" name_zh_CN="Unclassified NewsBoard forum.php远程SQL注入攻击" name_zh_TW="Unclassified NewsBoard forum.php遠程SQL注入攻擊" ruleid="20754" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="ECShop flow.php远程SQL注入漏洞" name_en_US="ECShop flow.php Remote SQL Injection Vulnerability" name_zh_CN="ECShop flow.php远程SQL注入漏洞" name_zh_TW="ECShop flow.php遠程SQL注入漏洞" ruleid="22612" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="CA Unicenter CAM log_security()远程缓冲区溢出攻击" name_en_US="CA Unicenter CAM log_security() Remote Buffer Overflow" name_zh_CN="CA Unicenter CAM log_security()远程缓冲区溢出攻击" name_zh_TW="CA Unicenter CAM log_security()遠程緩沖區溢出攻擊" ruleid="20537" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546347" module="0" name="IMAP服务器STATUS命令超长参数远程缓冲区溢出攻击" name_en_US="IMAP Server STATUS Command Over-Long Parameter Remote Buffer Overflow" name_zh_CN="IMAP服务器STATUS命令超长参数远程缓冲区溢出攻击" name_zh_TW="IMAP服務器STATUS命令超長參數遠程緩沖區溢出攻擊" ruleid="20536" visible="true" />
			<rule action=" db  screen " enabled="true" group="156238119" module="0" name="HP-UX LPD远程命令执行攻击" name_en_US="HP-UX LPD Remote Command Execution" name_zh_CN="HP-UX LPD远程命令执行攻击" name_zh_TW="HP-UX LPD遠程命令執行攻擊" ruleid="20535" visible="true" />
			<rule action=" db  screen " enabled="true" group="76546343" module="0" name="Mercury/32 IMAP RENAME命令远程缓冲区溢出攻击" name_en_US="Mercury/32 IMAP RENAME Command Remote Buffer Overflow" name_zh_CN="Mercury/32 IMAP RENAME命令远程缓冲区溢出攻击" name_zh_TW="Mercury/32 IMAP RENAME命令遠程緩沖區溢出攻擊" ruleid="20534" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="My Little Forum search.php CGI脚本SQL注入攻击" name_en_US="My Little Forum search.php CGI Script SQL Injection" name_zh_CN="My Little Forum search.php CGI脚本SQL注入攻击" name_zh_TW="My Little Forum search.php CGI腳本SQL注入攻擊" ruleid="20533" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425839" module="0" name="TWiki rev参数远程执行命令攻击" name_en_US="TWiki rev Parameter Remote Command Execution" name_zh_CN="TWiki rev参数远程执行命令攻击" name_zh_TW="TWiki rev參數遠程執行命令攻擊" ruleid="20532" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615019" module="0" name="DameWare Mini Remote Control Server预认证用户名溢出攻击" name_en_US="DameWare Mini Remote Control Server Pre-authentication Username Overflow" name_zh_CN="DameWare Mini Remote Control Server预认证用户名溢出攻击" name_zh_TW="DameWare Mini Remote Control Server預認證用戶名溢出攻擊" ruleid="20531" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425835" module="0" name="MyBulletinBoard 多个CGI脚本SQL注入攻击" name_en_US="MyBulletinBoard multiple CGI Scripts SQL Injection" name_zh_CN="MyBulletinBoard 多个CGI脚本SQL注入攻击" name_zh_TW="MyBulletinBoard 多個CGI腳本SQL注入攻擊" ruleid="20530" visible="true" />
			<rule action=" db  screen " enabled="true" group="166725659" module="0" name="FreeBSD nfsd畸形mount请求远程拒绝服务攻击" name_en_US="FreeBSD nfsd Malformed mount Request Remote Denial of Service" name_zh_CN="FreeBSD nfsd畸形mount请求远程拒绝服务攻击" name_zh_TW="FreeBSD nfsd畸形mount請求遠程拒絕服務攻擊" ruleid="10138" visible="true" />
			<rule action=" db  screen " enabled="true" group="160434203" module="0" name="Linux Kernel SNMP NAT Helper远程拒绝服务攻击" name_en_US="Linux Kernel SNMP NAT Helper Remote Denial of Service" name_zh_CN="Linux Kernel SNMP NAT Helper远程拒绝服务攻击" name_zh_TW="Linux Kernel SNMP NAT Helper遠程拒絕服務攻擊" ruleid="10139" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615015" module="0" name="RSA SecurID Web Agent for IIS ISAPI远程缓冲区溢出攻击" name_en_US="RSA SecurID Web Agent for IIS ISAPI Remote Buffer Overflow" name_zh_CN="RSA SecurID Web Agent for IIS ISAPI远程缓冲区溢出攻击" name_zh_TW="RSA SecurID Web Agent for IIS ISAPI遠程緩沖區溢出攻擊" ruleid="20538" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425834" module="0" name="Oracle Application Server Portal 跨站脚本攻击" name_en_US="HTTP: Oracle Application Server Portal Cross Site Scripting" name_zh_CN="Oracle Application Server Portal 跨站脚本攻击" name_zh_TW="Oracle Application Server Portal 跨站腳本攻擊" ruleid="29228" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="1" name="股票行情分析操作软件东莞证券大智慧用户登录" name_en_US="Stock Market Analysis Software dongwan Dazhihui User Login" name_zh_CN="股票行情分析操作软件东莞证券大智慧用户登录" name_zh_TW="股票行情分析操作軟件東莞證券大智慧用戶登錄" ruleid="50272" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare 终端操作" name_en_US="Remote Control Program PCShare Terminal Operation" name_zh_CN="远程控制程序 PCShare 终端操作" name_zh_TW="遠程控制程序 PCShare 終端操作" ruleid="40999" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare 桌面监控" name_en_US="Remote Control Program PCShare Desktop Monitor" name_zh_CN="远程控制程序 PCShare 桌面监控" name_zh_TW="遠程控制程序 PCShare 桌面監控" ruleid="40998" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616811" module="0" name="IE 绕过安全限制和地址欺骗" name_en_US="HTTP: IE Security Zone Bypass and Address Spoofing" name_zh_CN="IE 绕过安全限制和地址欺骗" name_zh_TW="IE 繞過安全限制和地址欺騙" ruleid="29220" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare 终端更新" name_en_US="Remote Control Program PCShare Update Terminal" name_zh_CN="远程控制程序 PCShare 终端更新" name_zh_TW="遠程控制程序 PCShare 終端更新" ruleid="40996" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare URL下发" name_en_US="Remote Control Program PCShare URL Issue" name_zh_CN="远程控制程序 PCShare URL下发" name_zh_TW="遠程控制程序 PCShare URL下發" ruleid="40995" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare 文件下发" name_en_US="Remote Control Program PCShare Files Issue" name_zh_CN="远程控制程序 PCShare 文件下发" name_zh_TW="遠程控制程序 PCShare 文件下發" ruleid="40994" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="远程控制程序 PCShare 终端注册" name_en_US="Remote Control Program PCShare Terminal Register" name_zh_CN="远程控制程序 PCShare 终端注册" name_zh_TW="遠程控制程序 PCShare 終端注冊" ruleid="40993" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Srizbi请求垃圾邮件" name_en_US="Backdoor/Trojan Srizbi Request Spam" name_zh_CN="木马后门程序Srizbi请求垃圾邮件" name_zh_TW="木馬後門程序Srizbi請求垃圾郵件" ruleid="40992" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Darksk ASP木马下载文件" name_en_US="Backdoor/Trojan Darksk ASP Trojan Download Files" name_zh_CN="木马后门程序Darksk ASP木马下载文件" name_zh_TW="木馬後門程序Darksk ASP木馬下載文件" ruleid="40991" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Darksk asp木马上传文件" name_en_US="Backdoor/Trojan Darksk asp Trojan Upload Files" name_zh_CN="木马后门程序Darksk asp木马上传文件" name_zh_TW="木馬後門程序Darksk asp木馬上傳文件" ruleid="40990" visible="true" />
			<rule action=" db  screen " enabled="true" group="166723883" module="0" name="Fake Identd远程缓冲区溢出攻击" name_en_US="Fake Identd Remote Buffer Overflow" name_zh_CN="Fake Identd远程缓冲区溢出攻击" name_zh_TW="Fake Identd遠程緩沖區溢出攻擊" ruleid="20777" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序WORM SDBot通信" name_en_US="Backdoor/Trojan WORM SDBot Communication" name_zh_CN="木马后门程序WORM SDBot通信" name_zh_TW="木馬後門程序WORM SDBot通信" ruleid="40945" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k请求文件片断(TCP)" name_en_US="P2P File Sharing Tool eDonkey/ed2k File Request Fragment (TCP)" name_zh_CN="P2P文件共享工具eDonkey/ed2k请求文件片断(TCP)" name_zh_TW="P2P文件共享工具eDonkey/ed2k請求文件片斷(TCP)" ruleid="50073" visible="true" />
			<rule action=" db  screen " enabled="true" group="70254778" module="0" name="通过Web服务访问ws_ftp.ini文件" name_en_US="Access to ws_ftp.ini File via Web Service" name_zh_CN="通过Web服务访问ws_ftp.ini文件" name_zh_TW="通過Web服務訪問ws_ftp.ini文件" ruleid="40191" visible="true" />
			<rule action=" db  screen " enabled="true" group="233898077" module="1" name="网上银行中国工商银行用户登录" name_en_US="Internet Banking Industrial and Commercial Bank of China User Login" name_zh_CN="网上银行中国工商银行用户登录" name_zh_TW="網上銀行中國工商銀行用戶登錄" ruleid="50311" visible="true" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="P2P文件共享工具eDonkey/ed2k搜索文件" name_en_US="P2P File Sharing Tool eDonkey/ed2k Searching Files" name_zh_CN="P2P文件共享工具eDonkey/ed2k搜索文件" name_zh_TW="P2P文件共享工具eDonkey/ed2k搜索文件" ruleid="50072" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Cart32 cart32.exe CGI漏洞获取口令" name_en_US="Password Disclosure via Cart32 cart32.exe CGI Vulnerability" name_zh_CN="Cart32 cart32.exe CGI漏洞获取口令" name_zh_TW="Cart32 cart32.exe CGI漏洞獲取口令" ruleid="20403" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315045" module="0" name="Squid cachemgr.cgi脚本漏洞非授权连接主机" name_en_US="Unauthorized Host Connection via Squid cachemgr.cgi Script Vulnerability" name_zh_CN="Squid cachemgr.cgi脚本漏洞非授权连接主机" name_zh_TW="Squid cachemgr.cgi腳本漏洞非授權連接主機" ruleid="20402" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208103" module="0" name="Web服务器处理请求文件名漏洞执行命令攻击" name_en_US="Web Server Requested Filename Handling Command Execution" name_zh_CN="Web服务器处理请求文件名漏洞执行命令攻击" name_zh_TW="Web服務器處理請求文件名漏洞執行命令攻擊" ruleid="20401" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206319" module="0" name="Windows Media服务NSIISlog.DLL超长MX_STATS_LogLine参数远程缓冲区溢出攻击" name_en_US="Windows Media Service NSIISlog.DLL Over-Long MX_STATS_LogLine Parameter Remote Buffer Overflow" name_zh_CN="Windows Media服务NSIISlog.DLL超长MX_STATS_LogLine参数远程缓冲区溢出攻击" name_zh_TW="Windows Media服務NSIISlog.DLL超長MX_STATS_LogLine參數遠程緩沖區溢出攻擊" ruleid="20400" visible="true" />
			<rule action=" db  screen " enabled="true" group="135266603" module="0" name="Apache Web Server分块编码传输方式远程溢出攻击" name_en_US="Apache Web Server Chunked Encoding Transmission Remote Buffer Overflow" name_zh_CN="Apache Web Server分块编码传输方式远程溢出攻击" name_zh_TW="Apache Web Server分塊編碼傳輸方式遠程溢出攻擊" ruleid="20407" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206310" module="0" name="Allaire JRun超长JSP文件名溢出攻击" name_en_US="Allaire JRun Over-long JSP Filename Buffer Overflow" name_zh_CN="Allaire JRun超长JSP文件名溢出攻击" name_zh_TW="Allaire JRun超長JSP文件名溢出攻擊" ruleid="20406" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206310" module="0" name="Allaire Forums超长CFM文件名溢出攻击" name_en_US="Allaire Forums Over-long CFM Filename Buffer Overflow" name_zh_CN="Allaire Forums超长CFM文件名溢出攻击" name_zh_TW="Allaire Forums超長CFM文件名溢出攻擊" ruleid="20405" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Cart32 cart32.exe CGI漏洞收集系统信息" name_en_US="System Information Disclosure via Cart32 cart32.exe CGI Vulnerability" name_zh_CN="Cart32 cart32.exe CGI漏洞收集系统信息" name_zh_TW="Cart32 cart32.exe CGI漏洞收集系統信息" ruleid="20404" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472615" module="0" name="FTP服务LIST命令超长参数溢出攻击" name_en_US="FTP Service LIST Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务LIST命令超长参数溢出攻击" name_zh_TW="FTP服務LIST命令超長參數溢出攻擊" ruleid="20409" visible="true" />
			<rule action=" db  screen " enabled="true" group="204472619" module="0" name="FTP服务DELE命令超长参数溢出攻击" name_en_US="FTP Service DELE Command Over-Long Parameter Buffer Overflow" name_zh_CN="FTP服务DELE命令超长参数溢出攻击" name_zh_TW="FTP服務DELE命令超長參數溢出攻擊" ruleid="20408" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Geeklog users.php脚本漏洞扫描探测" name_en_US="Geeklog users.php Script Vulnerability Detection" name_zh_CN="Geeklog users.php脚本漏洞扫描探测" name_zh_TW="Geeklog users.php腳本漏洞掃描探測" ruleid="30464" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Philboard philboard_admin.asp脚本漏洞扫描探测" name_en_US="Philboard philboard_admin.asp Script Vulnerability Detection" name_zh_CN="Philboard philboard_admin.asp脚本漏洞扫描探测" name_zh_TW="Philboard philboard_admin.asp腳本漏洞掃描探測" ruleid="30465" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="phpBB admin_styles.php脚本漏洞扫描探测" name_en_US="phpBB admin_styles.php Script Vulnerability Detection" name_zh_CN="phpBB admin_styles.php脚本漏洞扫描探测" name_zh_TW="phpBB admin_styles.php腳本漏洞掃描探測" ruleid="30466" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="HappyMall E-Commerce normal_html.cgi脚本漏洞扫描探测" name_en_US="HappyMall E-Commerce normal_html.cgi Script Vulnerability Detection" name_zh_CN="HappyMall E-Commerce normal_html.cgi脚本漏洞扫描探测" name_zh_TW="HappyMall E-Commerce normal_html.cgi腳本漏洞掃描探測" ruleid="30460" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="BLNews objects.inc.php4脚本漏洞扫描探测" name_en_US="BLNews objects.inc.php4 Script Vulnerability Detection" name_zh_CN="BLNews objects.inc.php4脚本漏洞扫描探测" name_zh_TW="BLNews objects.inc.php4腳本漏洞掃描探測" ruleid="30461" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Ultimate PHP Board admin_iplog.php脚本漏洞扫描探测" name_en_US="Ultimate PHP Board admin_iplog.php Script Vulnerability Detection" name_zh_CN="Ultimate PHP Board admin_iplog.php脚本漏洞扫描探测" name_zh_TW="Ultimate PHP Board admin_iplog.php腳本漏洞掃描探測" ruleid="30462" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="shoutbox脚本漏洞扫描探测" name_en_US="shoutbox Script Vulnerability Detection" name_zh_CN="shoutbox脚本漏洞扫描探测" name_zh_TW="shoutbox腳本漏洞掃描探測" ruleid="30463" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序P2P_Iroffer_IRC_Bot文件广播网络数据通信" name_en_US="Backdoor/Trojan P2P iroffer IRC Bot offered files advertisement" name_zh_CN="木马后门程序P2P_Iroffer_IRC_Bot文件广播网络数据通信" name_zh_TW="木馬後門程序P2P_Iroffer_IRC_Bot文件廣播網絡數據通信" ruleid="40862" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Routing Header 检测" name_en_US="Routing Header Check" name_zh_CN="Routing Header 检测" name_zh_TW="Routing Header 檢測" ruleid="41020" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Fragment Header 检测" name_en_US="Fragment Header Check" name_zh_CN="Fragment Header 检测" name_zh_TW="Fragment Header 檢測" ruleid="41021" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="ESP header 检测" name_en_US="ESP header Check" name_zh_CN="ESP header 检测" name_zh_TW="ESP header 檢測" ruleid="41022" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="Authentication 头部检测" name_en_US="Authentication header Check" name_zh_CN="Authentication 头部检测" name_zh_TW="Authentication 頭部檢測" ruleid="41023" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680345" module="0" name="No Next 头部检测" name_en_US="No Next Header Check" name_zh_CN="No Next 头部检测" name_zh_TW="No Next 頭部檢測" ruleid="41024" visible="true" />
			<rule action=" db  screen " enabled="false" group="99680345" module="0" name="目的地头部选项检测" name_en_US="Destination Options Header Check" name_zh_CN="目的地头部选项检测" name_zh_TW="目的地頭部選項檢測" ruleid="41025" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序 qqspy 间谍软件" name_en_US="Backdoor/Trojan qqspy Spyware" name_zh_CN="木马后门程序 qqspy 间谍软件" name_zh_TW="木馬後門程序 qqspy 間諜軟件" ruleid="41026" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616842" module="0" name="HTTP 协议异常头部攻击" name_en_US="HTTP Protocol Abnormal Header Attack" name_zh_CN="HTTP 协议异常头部攻击" name_zh_TW="HTTP 協議異常頭部攻擊" ruleid="41027" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="PcRat远程管理软件" name_en_US="PcRat Remote Management Software" name_zh_CN="PcRat远程管理软件" name_zh_TW="PcRat遠程管理軟件" ruleid="41028" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序天启远控通信" name_en_US="Backdoor/Trojan Apocalypse Remote Control Communication" name_zh_CN="木马后门程序天启远控通信" name_zh_TW="木馬後門程序天啓遠控通信" ruleid="41029" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问.forward文件" name_en_US="FTP Service Client Accessing .forward File" name_zh_CN="FTP服务客户端访问.forward文件" name_zh_TW="FTP服務客戶端訪問.forward文件" ruleid="40372" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429062" module="0" name="FTP服务客户端访问UNIX口令文件" name_en_US="FTP Service Client Accessing UNIX Password File" name_zh_CN="FTP服务客户端访问UNIX口令文件" name_zh_TW="FTP服務客戶端訪問UNIX口令文件" ruleid="40371" visible="true" />
			<rule action=" db  screen " enabled="true" group="137429061" module="0" name="FTP服务客户端访问.shosts文件" name_en_US="FTP Service Client Accessing .shosts File" name_zh_CN="FTP服务客户端访问.shosts文件" name_zh_TW="FTP服務客戶端訪問.shosts文件" ruleid="40370" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具TFN主控端向分布端发送指令" name_en_US="DDOS Tool TFN Console Sending Command to Distributed End" name_zh_CN="DDOS工具TFN主控端向分布端发送指令" name_zh_TW="DDOS工具TFN主控端向分布端發送指令" ruleid="40377" visible="true" />
			<rule action=" db  screen " enabled="true" group="166727755" module="0" name="DDOS工具TFN2K主控端向分布端发送指令" name_en_US="DDOS Tool TFN2K Console Sending Command to Distributed End" name_zh_CN="DDOS工具TFN2K主控端向分布端发送指令" name_zh_TW="DDOS工具TFN2K主控端向分布端發送指令" ruleid="40376" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="web_store.cgi脚本漏洞遍历目录攻击" name_en_US="Directory Traversal via web_store.cgi Script Vulnerability" name_zh_CN="web_store.cgi脚本漏洞遍历目录攻击" name_zh_TW="web_store.cgi腳本漏洞遍曆目錄攻擊" ruleid="30318" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="cgiforum.pl脚本漏洞扫描利用" name_en_US="cgiforum.pl Script Vulnerability Detection" name_zh_CN="cgiforum.pl脚本漏洞扫描利用" name_zh_TW="cgiforum.pl腳本漏洞掃描利用" ruleid="30319" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206201" module="0" name="IRIX windmail.exe程序漏洞扫描利用" name_en_US="IRIX windmail.exe Vulnerability Detection" name_zh_CN="IRIX windmail.exe程序漏洞扫描利用" name_zh_TW="IRIX windmail.exe程序漏洞掃描利用" ruleid="30316" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="web_store.cgi脚本漏洞扫描探测" name_en_US="web_store.cgi Script Vulnerability Detection" name_zh_CN="web_store.cgi脚本漏洞扫描探测" name_zh_TW="web_store.cgi腳本漏洞掃描探測" ruleid="30317" visible="true" />
			<rule action=" db  screen " enabled="true" group="136316982" module="0" name="Tomcat 3.0远程目录遍历攻击" name_en_US="Tomcat 3.0 Remote Directory Traversal" name_zh_CN="Tomcat 3.0远程目录遍历攻击" name_zh_TW="Tomcat 3.0遠程目錄遍曆攻擊" ruleid="30314" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="IRIX infosrch.cgi脚本漏洞扫描利用" name_en_US="IRIX infosrch.cgi Script Vulnerability Detection" name_zh_CN="IRIX infosrch.cgi脚本漏洞扫描利用" name_zh_TW="IRIX infosrch.cgi腳本漏洞掃描利用" ruleid="30315" visible="true" />
			<rule action=" db  screen " enabled="true" group="202377270" module="0" name="利用weblogic漏洞获取JSP脚本源码攻击" name_en_US="JSP Script Source Code Disclosure via weblogic Vulnerability" name_zh_CN="利用weblogic漏洞获取JSP脚本源码攻击" name_zh_TW="利用weblogic漏洞獲取JSP腳本源碼攻擊" ruleid="30312" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="Tomcat漏洞获取JSP脚本源码攻击" name_en_US="JSP Source Code Disclosure via Tomcat Vulnerabilities" name_zh_CN="Tomcat漏洞获取JSP脚本源码攻击" name_zh_TW="Tomcat漏洞獲取JSP腳本源碼攻擊" ruleid="30313" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="main.cgi脚本漏洞扫描利用" name_en_US="main.cgi Script Vulnerability Detection" name_zh_CN="main.cgi脚本漏洞扫描利用" name_zh_TW="main.cgi腳本漏洞掃描利用" ruleid="30310" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序TroDjan网络数据通信" name_en_US="Backdoor/Trojan TroDjan 2.0 FTP Channel Open Command" name_zh_CN="木马后门程序TroDjan网络数据通信" name_zh_TW="木馬後門程序TroDjan網絡數據通信" ruleid="40941" visible="true" />
			<rule action=" db  screen " enabled="true" group="143655211" module="0" name="Wu-imapd部分Mailbox属性远程缓冲区溢出攻击" name_en_US="Wu-imapd Partial Mailbox Attribute Remote Buffer Overflow" name_zh_CN="Wu-imapd部分Mailbox属性远程缓冲区溢出攻击" name_zh_TW="Wu-imapd部分Mailbox屬性遠程緩沖區溢出攻擊" ruleid="20248" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425838" module="0" name="Web服务远程跨站脚本执行攻击" name_en_US="Web Service Remote Cross-Site Scripting" name_zh_CN="Web服务远程跨站脚本执行攻击" name_zh_TW="Web服務遠程跨站腳本執行攻擊" ruleid="29002" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="网络蠕虫Sasser（震荡波）FTP后门缓冲区溢出攻击" name_en_US="Network Worm Sasser FTP Backdoor Buffer Overflow" name_zh_CN="网络蠕虫Sasser（震荡波）FTP后门缓冲区溢出攻击" name_zh_TW="網絡蠕蟲Sasser（震蕩波）FTP後門緩沖區溢出攻擊" ruleid="20424" visible="true" />
			<rule action=" db  screen " enabled="true" group="136323125" module="0" name="RedHat Piranha passwd.php3 CGI漏洞扫描利用" name_en_US="RedHat Piranha passwd.php3 CGI Vulnerability Detection" name_zh_CN="RedHat Piranha passwd.php3 CGI漏洞扫描利用" name_zh_TW="RedHat Piranha passwd.php3 CGI漏洞掃描利用" ruleid="20241" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="count.cgi脚本漏洞扫描探测" name_en_US="count.cgi Script Vulnerability Detection" name_zh_CN="count.cgi脚本漏洞扫描探测" name_zh_TW="count.cgi腳本漏洞掃描探測" ruleid="20240" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="VirusWall FtpSave.dll脚本漏洞扫描探测" name_en_US="VirusWall FtpSave.dll Script Vulnerability Detection" name_zh_CN="VirusWall FtpSave.dll脚本漏洞扫描探测" name_zh_TW="VirusWall FtpSave.dll腳本漏洞掃描探測" ruleid="20243" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Cart32 c32web.exe CGI漏洞更改应用口令" name_en_US="Password Modification via Cart32 c32web.exe CGI Vulnerability" name_zh_CN="Cart32 c32web.exe CGI漏洞更改应用口令" name_zh_TW="Cart32 c32web.exe CGI漏洞更改應用口令" ruleid="20242" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206182" module="0" name="Cart32 c32web.exe CGI漏洞执行命令" name_en_US="Remote Code Execution via Cart32 c32web.exe CGI Vulnerability" name_zh_CN="Cart32 c32web.exe CGI漏洞执行命令" name_zh_TW="Cart32 c32web.exe CGI漏洞執行命令" ruleid="20245" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="VirusWall catinfo脚本漏洞扫描探测" name_en_US="VirusWall catinfo Script Vulnerability Detection" name_zh_CN="VirusWall catinfo脚本漏洞扫描探测" name_zh_TW="VirusWall catinfo腳本漏洞掃描探測" ruleid="20244" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="IBM Net.Commerce orderdspc.d2w脚本漏洞扫描探测" name_en_US="IBM Net.Commerce orderdspc.d2w Script Vulnerability Detection" name_zh_CN="IBM Net.Commerce orderdspc.d2w脚本漏洞扫描探测" name_zh_TW="IBM Net.Commerce orderdspc.d2w腳本漏洞掃描探測" ruleid="20246" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Psyrat通信" name_en_US="Backdoor/Trojan Psyrat Communication " name_zh_CN="木马后门程序Psyrat通信" name_zh_TW="木馬後門程序Psyrat通信" ruleid="40751" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Bnlite通信" name_en_US="Backdoor/Trojan Bnlite Communication " name_zh_CN="木马后门程序Bnlite通信" name_zh_TW="木馬後門程序Bnlite通信" ruleid="40750" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Only1通信" name_en_US="Backdoor/Trojan Only1 Communication " name_zh_CN="木马后门程序Only1通信" name_zh_TW="木馬後門程序Only1通信" ruleid="40753" visible="true" />
			<rule action=" db  screen " enabled="true" group="163578159" module="0" name="CVS多次Entry已被修改或未被修改标记插入操作堆溢出攻击" name_en_US="CVS Multiple Entry Modified or Unmodified Mark Insert Operation Heap Overflow" name_zh_CN="CVS多次Entry已被修改或未被修改标记插入操作堆溢出攻击" name_zh_TW="CVS多次Entry已被修改或未被修改標記插入操作堆溢出攻擊" ruleid="20426" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Achievo class.atkdateattribute.js.php脚本漏洞扫描探测" name_en_US="Achievo class.atkdateattribute.js.php Script Vulnerability Detection" name_zh_CN="Achievo class.atkdateattribute.js.php脚本漏洞扫描探测" name_zh_TW="Achievo class.atkdateattribute.js.php腳本漏洞掃描探測" ruleid="30266" visible="true" />
			<rule action=" db  screen " enabled="true" group="203431993" module="0" name="Mantis summary_graph_functions.php脚本漏洞扫描探测" name_en_US="Mantis summary_graph_functions.php Script Vulnerability Detection" name_zh_CN="Mantis summary_graph_functions.php脚本漏洞扫描探测" name_zh_TW="Mantis summary_graph_functions.php腳本漏洞掃描探測" ruleid="30267" visible="true" />
			<rule action=" db  screen " enabled="true" group="233840698" module="0" name="服务器端口扫描－UDP端口扫描" name_en_US="Server Port Scan - UDP Scan" name_zh_CN="服务器端口扫描－UDP端口扫描" name_zh_TW="服務器端口掃描－UDP端口掃描" ruleid="30264" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157622" module="0" name="获取Apache 2.0 for Windows绝对安装路径攻击" name_en_US="Apache 2.0 for Windows Absolute Installation Path Disclosure" name_zh_CN="获取Apache 2.0 for Windows绝对安装路径攻击" name_zh_TW="獲取Apache 2.0 for Windows絕對安裝路徑攻擊" ruleid="30265" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序uprun通信" name_en_US="Backdoor/Trojan uprun Communication " name_zh_CN="木马后门程序uprun通信" name_zh_TW="木馬後門程序uprun通信" ruleid="40759" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Pcshare2006通信" name_en_US="Backdoor/Trojan Pcshare2006 Communication " name_zh_CN="木马后门程序Pcshare2006通信" name_zh_TW="木馬後門程序Pcshare2006通信" ruleid="40758" visible="true" />
			<rule action=" db  screen " enabled="true" group="69206198" module="0" name="获取Midicart ASP客户信息数据库文件攻击" name_en_US="Midicart ASP Client Information Database File Disclosure" name_zh_CN="获取Midicart ASP客户信息数据库文件攻击" name_zh_TW="獲取Midicart ASP客戶信息數據庫文件攻擊" ruleid="30268" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="iPlanet Web服务程序搜索组件远程文件泄露漏洞" name_en_US="iPlanet Web Server Searcher Remote File Disclosure" name_zh_CN="iPlanet Web服务程序搜索组件远程文件泄露漏洞" name_zh_TW="iPlanet Web服務程序搜索組件遠程文件泄露漏洞" ruleid="30269" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit数据库信息" name_en_US="Backdoor/Trojan Rootkit Database Information" name_zh_CN="木马后门程序Rootkit数据库信息" name_zh_TW="木馬後門程序Rootkit數據庫信息" ruleid="40979" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Rootkit用户管理" name_en_US="Backdoor/Trojan Rootkit User Management" name_zh_CN="木马后门程序Rootkit用户管理" name_zh_TW="木馬後門程序Rootkit用戶管理" ruleid="40978" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615823" module="0" name="网络蠕虫Sasser（震荡波）传播" name_en_US="Network Worm Sasser Spreading" name_zh_CN="网络蠕虫Sasser（震荡波）传播" name_zh_TW="網絡蠕蟲Sasser（震蕩波）傳播" ruleid="20422" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616810" module="0" name="Microsoft IE布局处理释放后重用远程内存破坏漏洞(MS11-018)(CVE-2011-0094)" name_en_US="Microsoft IE Layout Handling User-After-Free Remote Memory Corruption Vulnerability (MS11-018)(CVE-2011-0094)" name_zh_CN="Microsoft IE布局处理释放后重用远程内存破坏漏洞(MS11-018)(CVE-2011-0094)" name_zh_TW="Microsoft IE布局處理釋放後重用遠程內存破壞漏洞(MS11-018)(CVE-2011-0094)" ruleid="21222" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具安信证券交易II活动" name_en_US="Securities Analyzing/Trading Software Essence Securities Transaction II Activity" name_zh_CN="证券分析交易工具安信证券交易II活动" name_zh_TW="證券分析交易工具安信證券交易II活動" ruleid="51015" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Remote Process Monitor木马通信" name_en_US="Backdoor/Trojan Remote Process Monitor Communication " name_zh_CN="木马后门程序Remote Process Monitor木马通信" name_zh_TW="木馬後門程序Remote Process Monitor木馬通信" ruleid="40579" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Remote Hack木马通信" name_en_US="Backdoor/Trojan Remote Hack Communication " name_zh_CN="木马后门程序Remote Hack木马通信" name_zh_TW="木馬後門程序Remote Hack木馬通信" ruleid="40578" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="Share(P2P)文件下载" name_en_US="Share(P2P) File DownLoading" name_zh_CN="Share(P2P)文件下载" name_zh_TW="Share(P2P)文件下載" ruleid="50368" visible="true" />
			<rule action=" db  screen " enabled="true" group="75498574" module="0" name="SMTP服务发送W32.Netsky.D@mm蠕虫病毒邮件" name_en_US="SMTP Service Sending Mails with W32.Netsky.D@mm" name_zh_CN="SMTP服务发送W32.Netsky.D@mm蠕虫病毒邮件" name_zh_TW="SMTP服務發送W32.Netsky.D@mm蠕蟲病毒郵件" ruleid="40459" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE JavaScript跨域信息泄露漏洞(MS11-018)" name_en_US="Microsoft IE JavaScript Cross-Domain Information Disclosure Vulnerability (MS11-018)" name_zh_CN="Microsoft IE JavaScript跨域信息泄露漏洞(MS11-018)" name_zh_TW="Microsoft IE JavaScript跨域信息泄露漏洞(MS11-018)" ruleid="21224" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序R0xr4t木马通信" name_en_US="Backdoor/Trojan R0xr4t Communication " name_zh_CN="木马后门程序R0xr4t木马通信" name_zh_TW="木馬後門程序R0xr4t木馬通信" ruleid="40573" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Qwertos木马通信" name_en_US="Backdoor/Trojan Qwertos Communication " name_zh_CN="木马后门程序Qwertos木马通信" name_zh_TW="木馬後門程序Qwertos木馬通信" ruleid="40572" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序RatHeaD木马通信" name_en_US="Backdoor/Trojan RatHeaD Communication " name_zh_CN="木马后门程序RatHeaD木马通信" name_zh_TW="木馬後門程序RatHeaD木馬通信" ruleid="40575" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序R3C木马通信" name_en_US="Backdoor/Trojan R3C Communication " name_zh_CN="木马后门程序R3C木马通信" name_zh_TW="木馬後門程序R3C木馬通信" ruleid="40574" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618887" module="0" name="木马后门程序Remote Explorer木马通信" name_en_US="Backdoor/Trojan Remote Explorer Communication " name_zh_CN="木马后门程序Remote Explorer木马通信" name_zh_TW="木馬後門程序Remote Explorer木馬通信" ruleid="40577" visible="true" />
			<rule action=" db  screen " enabled="true" group="99616815" module="0" name="Microsoft IE远程代码执行漏洞" name_en_US="Microsoft IE Remote Code Execution Vulnerabilities" name_zh_CN="Microsoft IE远程代码执行漏洞" name_zh_TW="Microsoft IE遠程代碼執行漏洞" ruleid="21225" visible="true" />
			<rule action=" db  screen " enabled="true" group="68157738" module="0" name="迅雷ActiveX控件DownURL2方式远程缓冲区溢出攻击" name_en_US="Xunlei ActiveX Control DownURL2 Method Remote Buffer Overflow" name_zh_CN="迅雷ActiveX控件DownURL2方式远程缓冲区溢出攻击" name_zh_TW="迅雷ActiveX控件DownURL2方式遠程緩沖區溢出攻擊" ruleid="20896" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="联众世界游戏大厅GLItemCom.DLL ActiveX控件堆溢出攻击" name_en_US="Ourgame World Game Hall GLItemCom.DLL ActiveX Control Heap Overflow" name_zh_CN="联众世界游戏大厅GLItemCom.DLL ActiveX控件堆溢出攻击" name_zh_TW="聯衆世界遊戲大廳GLItemCom.DLL ActiveX控件堆溢出攻擊" ruleid="20897" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序魏玮刀木马通信" name_en_US="Backdoor/Trojan Weihuidao Communication " name_zh_CN="木马后门程序魏玮刀木马通信" name_zh_TW="木馬後門程序魏玮刀木馬通信" ruleid="40725" visible="true" />
			<rule action=" db  screen " enabled="true" group="99615018" module="0" name="Microsoft Office Web组件ActiveX控件缓冲区溢出漏洞（MS09-043）" name_en_US="Microsoft OWC Spreadsheet HTMLURL Buffer Overflow Vulnerability（MS09-043）" name_zh_CN="Microsoft Office Web组件ActiveX控件缓冲区溢出漏洞（MS09-043）" name_zh_TW="Microsoft Office Web組件ActiveX控件緩沖區溢出漏洞（MS09-043）" ruleid="21383" visible="true" />
			<rule action=" db  screen " enabled="true" group="99622965" module="0" name="Check Point Firewall-1 SecureRemote获得网络信息攻击" name_en_US="Check Point Firewall-1 SecureRemote Network Information Disclosure" name_zh_CN="Check Point Firewall-1 SecureRemote获得网络信息攻击" name_zh_TW="Check Point Firewall-1 SecureRemote獲得網絡信息攻擊" ruleid="30087" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486045" module="0" name="Windows 2000 SMB建立连接" name_en_US="Windows 2000 SMB Connection Establishment" name_zh_CN="Windows 2000 SMB建立连接" name_zh_TW="Windows 2000 SMB建立連接" ruleid="30084" visible="true" />
			<rule action=" db  screen " enabled="true" group="69208107" module="0" name="HP Openview Network Node Manager 代码执行漏洞" name_en_US="HTTP: HP Openview Network Node Manager Code Execution" name_zh_CN="HP Openview Network Node Manager 代码执行漏洞" name_zh_TW="HP Openview Network Node Manager 代碼執行漏洞" ruleid="29177" visible="true" />
			<rule action=" db  screen " enabled="true" group="68165685" module="0" name="Microsoft IIS .IDA / .IDQ ISAPI扩展远程路径泄露漏洞" name_en_US="Microsoft IIS .IDA / .IDQ ISAPI Extension Remote Path Disclosure" name_zh_CN="Microsoft IIS .IDA / .IDQ ISAPI扩展远程路径泄露漏洞" name_zh_TW="Microsoft IIS .IDA / .IDQ ISAPI擴展遠程路徑泄露漏洞" ruleid="30082" visible="true" />
			<rule action=" db  screen " enabled="true" group="203425846" module="0" name="Netscape Enterprise Server Web Publisher泄露目录列表攻击" name_en_US="Netscape Enterprise Server Web Publisher Directory List Disclosure Attacks" name_zh_CN="Netscape Enterprise Server Web Publisher泄露目录列表攻击" name_zh_TW="Netscape Enterprise Server Web Publisher泄露目錄列表攻擊" ruleid="30081" visible="true" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Love66通信" name_en_US="Backdoor/Trojan Love66 Communication " name_zh_CN="木马后门程序Love66通信" name_zh_TW="木馬後門程序Love66通信" ruleid="40726" visible="true" />
			<rule action=" db  screen " enabled="true" group="95486045" module="0" name="Windows SMB访问默认共享" name_en_US="Windows SMB Accessing the Default Share" name_zh_CN="Windows SMB访问默认共享" name_zh_TW="Windows SMB訪問默認共享" ruleid="40407" visible="true" />
			<rule action=" db  screen " enabled="true" group="88080966" module="0" name="MS-SQL数据库用户登录SQL服务器 失败" name_en_US="MS-SQL Database User Login Fail" name_zh_CN="MS-SQL数据库用户登录SQL服务器 失败" name_zh_TW="MS-SQL數據庫用戶登錄SQL服務器 失敗" ruleid="40401" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315065" module="0" name="FreeStats edit.pl脚本漏洞扫描利用" name_en_US="FreeStats edit.pl Script Vulnerability Detection" name_zh_CN="FreeStats edit.pl脚本漏洞扫描利用" name_zh_TW="FreeStats edit.pl腳本漏洞掃描利用" ruleid="40400" visible="true" />
			<rule action=" db  screen " enabled="true" group="136315050" module="0" name="通过Web服务访问/etc/passwd文件" name_en_US="Access to File /etc/passwd via Web Service" name_zh_CN="通过Web服务访问/etc/passwd文件" name_zh_TW="通過Web服務訪問/etc/passwd文件" ruleid="40402" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具财富证券活动 " name_en_US="Securities Analyzing/Trading Software Fortune Securities Activity" name_zh_CN="证券分析交易工具财富证券活动 " name_zh_TW="證券分析交易工具財富證券活動 " ruleid="50424" visible="false" />
			<rule action=" db  screen " enabled="true" group="99618891" module="0" name="木马后门程序Banker.OT网络数据通信" name_en_US="Backdoor/Trojan Banker.OT Checkin 2 packet" name_zh_CN="木马后门程序Banker.OT网络数据通信" name_zh_TW="木馬後門程序Banker.OT網絡數據通信" ruleid="40864" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具财富证券活动 " name_en_US="Securities Analyzing/Trading Software Fortune Securities Activity" name_zh_CN="证券分析交易工具财富证券活动 " name_zh_TW="證券分析交易工具財富證券活動 " ruleid="50425" visible="true" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="互动快报软件用户登陆" name_en_US="Hudong Kuaibao Software Users Login" name_zh_CN="互动快报软件用户登陆" name_zh_TW="互動快報軟件用戶登陸" ruleid="50399" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具华融证券活动 " name_en_US="Securities Analyzing/Trading Software  Huarong Securities Activity" name_zh_CN="证券分析交易工具华融证券活动 " name_zh_TW="證券分析交易工具華融證券活動 " ruleid="50428" visible="false" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具华融证券活动 " name_en_US="Securities Analyzing/Trading Software  Huarong Securities activity" name_zh_CN="证券分析交易工具华融证券活动 " name_zh_TW="證券分析交易工具華融證券活動 " ruleid="50429" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具宏源证券活动 " name_en_US="Securities Analyzing/Trading Software  Hongyuan Securities Activity" name_zh_CN="证券分析交易工具宏源证券活动 " name_zh_TW="證券分析交易工具宏源證券活動 " ruleid="50426" visible="false" />
			<rule action=" db  screen " enabled="true" group="99745881" module="1" name="在线视频暴风影音连接" name_en_US="Online Streaming Media Storm Video Connect" name_zh_CN="在线视频暴风影音连接" name_zh_TW="在線視頻暴風影音連接" ruleid="50395" visible="true" />
			<rule action=" db  screen " enabled="true" group="99680349" module="1" name="网络JJ比赛游戏客户端连接服务器" name_en_US="Online JJ Match Games Client Connect Server" name_zh_CN="网络JJ比赛游戏客户端连接服务器" name_zh_TW="網絡JJ比賽遊戲客戶端連接服務器" ruleid="50396" visible="true" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具渤海证券活动 " name_en_US="Securities Analyzing/Trading Software  Bohai Securities Activity" name_zh_CN="证券分析交易工具渤海证券活动 " name_zh_TW="證券分析交易工具渤海證券活動 " ruleid="50421" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具华泰证券活动 " name_en_US="Securities Analyzing/Trading Software Huotai Securities Activity" name_zh_CN="证券分析交易工具华泰证券活动 " name_zh_TW="證券分析交易工具華泰證券活動 " ruleid="50422" visible="false" />
			<rule action=" db  screen " enabled="true" group="68223065" module="1" name="证券分析交易工具华泰证券活动 " name_en_US="Securities Analyzing/Trading Software Huotai Securities Activity" name_zh_CN="证券分析交易工具华泰证券活动 " name_zh_TW="證券分析交易工具華泰證券活動 " ruleid="50423" visible="true" />
			<rule action=" db  screen " enabled="false" group="68223065" module="1" name="证券分析交易工具渤海证券活动 " name_en_US="Securities Analyzing/Trading Software  Bohai Securities Activity" name_zh_CN="证券分析交易工具渤海证券活动 " name_zh_TW="證券分析交易工具渤海證券活動 " ruleid="50420" visible="false" />
			<rule action=" db  screen " enabled="true" group="233963613" module="1" name="在线流媒体芒果TV连接" name_en_US="Online Streaming Media Imgo.tv Connection" name_zh_CN="在线流媒体芒果TV连接" name_zh_TW="在線流媒體芒果TV連接" ruleid="50393" visible="true" />
		</rules>
	</sysruledesc>
	<sysruletext></sysruletext>
	<tsysruletext>
		<rules />
	</tsysruletext>
	<sysruletext2></sysruletext2>
<sysruletextcrypt2 rules="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" />
<sysruletextcrypt rules="KbiE1U55qH8hfpE8uIw2syqpefL1zFoHDE6jyPc/Bckck0+qvMibSgNGGnsoIFP2KkZjoXB0dL4iyYmvYwFPfK6JhpaP+gfUl6o2IyOhY8fELnQpnZjLTkj6nV2uzrAXxtU+E8fIAlzp8AYzNhxjGWXM1zbWQWN/md/HcAkUwCIG8U1xb0EF8yCPwu5uwU1b7DAX1ro2bKoB2n+PYl8Ccj93nFg6FSBDPb5/cJ37LkINXACWfS6Jicv3AdPcB5LDrCiNufY9tk1AdZxgPoVhM/99o3TPBi3Pcn34xrafwuUlamlp32ARTeWz9yLcSPzJwIlxjf3w2ZfyRsMoGjirlVAmg9FSUUByCRUdwPg8cK6/jcd3W/FJSmCGe/cuQuONM3HmPhkwr/Wb715PCkQi/VVG2x+Wbs7eYbvsMfW0PVfo2lxIuuo1ot+RxMEHpxsHXQpw3ZISGRZ6ZXm+IzfmVRccujMDPXlBPUqh0u3HTHXYhDo+h4pbAVQg5raKrSwt3bodV2OcfeSpzzrb2oO7CIvPj9xRlHDpx7ddYEW4LRlO2Bd7uZAZguBofp+cl2ZnqY0iMuXgnzl4N49hzVC54fKOqKy9wkqJaaVRAIDechR0w8OVUb1z7FenSbh6wv/90sfS0TMkUOOJduAtMr9SwJv5L5gMR5bkO6jZ3O8DUzmeJGoq3Jdlmk28348pvmVtgAKHcStMDeDiIphzlLKlODoaIVI0ofac33jSPdO1dzeSaz1ROseqUQXTvWMGObgmogCSNVqKMNRdAdn3SLc48sa0jPohtNo7C30zL82yyEXaKBIB6dOUixOYXpLpaJUEEEmpgWcvS0PZeLnoI770ZtYtChtgh9IgRqRhFr0Q1vsbpxyV+B9KM4BU2GqJQ2L9pt54oewWKq1iaqc4xPQFTlowT3qnRf9Q7CrkETUsZMiUELxf+WyQCxPFxP5di6BZqivxsTdad1Dn/qKx5d9RNUR7Hw1eKvowivs2V+wpnxEix0QJcHCg5QZEuwEY8vkCBmnXMhhAyUps9QRjIv1YOmnFX6y9JFSlU8L/B85pbiszTXS4m/y3zD/SAjzGO3H5De9V4ZpFQk2I8K144rZVPWcomhEFfbSeF6BhhgX2CILZ/oDQxBKljyxUgetnF/MO3B0+9w2M3WyxtU/kC5nEiqmw2D0Iruar6JNH/ONDFgHxP5GAe5VcYqqG0i7N7EIRGp23G4LRTvzLJfZeq+vBkXDM3coxE/iL1wcPKXEZS1awBdtFB8IYSySlBfZ2rTHDOWxLdg0veQF0//cMrYKJlATrwdRPz4SOsac0SgmljuO6xLZWZo/Q8bK7hioIbD5nff25/Zubs6l/8z9SAMbc+xQstVX+jGFUvgLmf6086l4bRMaFzwkCTXvQ4NlxhHa+RDmBS5MpwQ3o1J+Z0ClzEDtSr6+evG93f1IQj/vlMHIZhAk8D65x6MXXIw38YNGO4s9mQvSZAoWjp7A64wdAAt0T4lEFpiCHoo1O5AlYdcUsOvczJDiJZQMJnukyNaIvFGfhwZNnn6vC+5hMSAKh8XwqPfiGtFy0LfxhJ8pdaOu36PwWwRfZomjEDRoY2hyp5BaFuItHXoVsCBpGgrmVrIwcq5FrweCR/Ds0td8woO7VQLd3jWJ9SyeEHhVvCiElDLhSlzGrD74F0gYjeHNX0oKFZTbtpKNaU8QN0b0AjvXv1WDqFQPbLZFjAMYe8E4v2NjiL0oqXLPw+LyN8QFPtBnvM5yGtQNLhCIM+ukIhsjDwofJHqUcMBgYK82/5B9xhvtonWrGjszdGAq3kf26W8xFaMtvh4eKLfTZqEp0htaHAIWG+w/og6mgcz6Rrff2u8scKSp5bRVb/vGggaMfYfa1SDtwrsgpnVrt7tO/s7smLpvh/07wlLyJKTl1Ej9g59rbKTKYk+6tm0RgDzxwHx9iToO1USa19U6AicCKOQhueqkIJ5zC8tm6MFI4hUdLaCmv6e7WGy3MxeVk5pepjYUKbWuNn49SLOSidpAGpfPHqimDReIT5MgCyDqqXOAfMwPn2GIR8zQ94j4fUaIvz8YkD/y/Ai3FokaDzUtjj1czycOcJUTcHlamMnTxlXzdBBI2QhPz15KO5/G9taZW9d/e7C+xvyEYkAFaOvOhafDV4flbB0IG7BF+iCqHTgOJEKEbGBpqk6DCMfPgaVSpX97u56lTv+51QxzPpUYBpyO4RLdgT2nJQeF2fhsWYKCgGM+10JsgI/22qd4ExsRD/oFXruHbf7xozXnnB0nxoGdWd8oyPibVE4Hhu/q2Vu4OQGrsq/xws6Xp188saJYMwgOpD8PL8GZsEjnkafPiZTYVzCDGJFhwlbBuNRS00Tajy9/88tpSkT3RRvOX29ft921W2Oj+u9D9HO8ts71jUE+JhlpSJkPikEPpVa70hRrqs5V86ISaeR8cvX/LM8LhFTUgu1uIy+XkNsvJsp1ZrqwAYY95k3DrmRk6gptN7ZEnuZdQZ+2FzCmgTRBV7KmiSK4AxLsoTOFm0N9YNIV4cDncC6F7pfDwbuN4mDpjtIwNzxllsvwXE7FZZu8orEm33DaUsH/oiGsro6kulQsMkD4Uv8KJZ880tPaWgljdo6M9LDjiHAvf7iZ34EvAaJPuI4SLsD+geJwDbA4+D+2pP5jFq8wVffGygzeWF7Sblvlxrt8Rc4eCEMyL3Bb50QPfJKnwRSJObP4/bAtNr66GBhFTZmVgBuK7u3gGxjSBIkCtOzk1RRyBrRElvsOMChabunc/Jk2beJfW9iNcnQLkVJwI35YlkzoEdSlbdAw9Y1rETFEWMK9AbJ6e1X8+lmIWvc2X61ip49OcGuuX6J/4tLPp8bUKS2w1gKXZmhApqZvSS1Vja10nyYhE1N6SjqQjJ+pwffon+zw/C/LKYov9egicuwUx4w2ZuOkjmMN18etYbQ4JeJB4IasILW3dsbdeUMFAqD8uUY+Taop3++DMZa3twPz9zG9CuDy00F1jZhEwv8KqeWIlW9vxleFZrk+q1q35G71hP9tZPeBfOC64fXDGcWCYjQ+pTX7QSZLX2WMMIUjUux0C9s35I78NakeFS5Tsx5p05hsJ2MIau8kR/Mj3kOybdQqBRBAbtlIyUY0ybMHcavdNKAAppFGBw7Oy471s305XHEbNI2y5+Hw9M7VucHdEeJlMIwlxxxbADJ6g75w6GYLaaQIZeC0d3S5g2puvRyvjWs1uSvMxvnHYo5JpaTXtnxtXwvpIs9VspBK/6k+r2HBD99jHNukOB1RlcSBsqsGJd9EyCLgCXvxUr6tNMI1oOPv85lRgYf0VzxF4BKRuypHhaehTRlaxrr/osWMD1aAGr/t6xsPvB9MVbR5yIXz9lpd+6OwZSMxVL7cxz5kPJOOWUc95L4DukCKNRmGLkprBkQVTJkmoKDMviJQPIp6rgdB/jytirvoygMV+//QLM6ZADbfj0BLOP1KkP2P0HInEnn/nUYVJXfiWJOOB1HwFpnBFZazO8W70wwBULXooo6uA3d8HETYdpYQxJefXejXPyUKBVHw47xt7ygapV1pMAV0QfYnj2qs7n8OrxFYFm+FTw/PzQjobUf9zZptIVPifLivUCVxoMhbzzWml2W9M7diL+/s7uCQ4dSRw8MPYSUBVwxT9GX8GbKcOmxiDXEr6B3ALncm9ZVNj+P2+p1EUt0lSk0G/l7MrZl3JqAyNsSaFIkvAhmm/zeWYpcVXwFrhhaYJ7cL6T4w2V5UCGyPbYRw+7RMk0EUlwS/3VihyEa3r9VFg0znweAODTx/uRZao/g76ixhCnVOXe7cBMai9WgkgmpXcGBBfwq3IWo1GELp3BeyobPyXeS2K0oVjXrJXAU8XseEYpNc9aetyH2BKnR/UjeDizkztojB2VviAcfYFGX7O6nwV+RHFaeR+bkoHOWAL5xFgymVGzp+lMRbPt1cm5UAdS02TykP/fx/qzxKvy28iclVIHJuhB5EAs1+aa6B0OP8+KWSgkJsmrlEEqs6A/aII4kvSvyfPadFYpzDUbhFxWBGEKLgNR8+CeFta/vX0B5Gj80NCQam9sFqxrkJSRsDDIjrrXOcl8umd5O5Ytmno81/U5JLQ5Ek5StVgN5OKB8kKtTBM7pmpPEmaG/hD1vabQmDbWpjM9bOE7ybTJKYJSOabgXg6EQKXSKNzX33GrfzXKhh9hGiswm8EPGcIxJueP3IiUMgVnIcgFyEjFTEQsp68UEEsHtfFTZGzMjiyfi3Q531D2cc/GmmD4TQUMz8bHWVHySthljUZxI7i+mJT5DhCw2o4zjEDFvkmSlVaMGbtYObKS2MiE2JXZ8m6NAw+7g7QKj2ZXD4y8ChQdpqBFpn7mHaTcpBcTZ0XPyIEbKkfW9YI4c5f8gBtGNk4sPci8dPCHpxFofZw1frosznMkhmVOeioL+EjY6r6ORCow8SM+P772xGLwHcQJwRttrwvL7YkfceLdVg21JhkAu7boPKNlmFYpY+doMSZ4pQ2XnAnHsOKyeXTghXU3inXMfchDqk4TnfJLRtHE36hmxTa+Lnd5osDKZ4qr0HxOqkWrS13mE5yGq45JpSofNm8CCWxXJX/97dhEEny1oYOwUjtz60XKl5CHENadn1aGgkh3tTQzBZ71nmnpPH3SRNQCvbltaClzJJ5ZuFy5Gfzav8UQFoTI1z8UduH1IffgakPyTflZZRpUZBi6m/LuEvwSeReaO+Ca97pXf3RwhEH2pu4T5gSdNqb1hzC3uB0/c7Ypi3N5Rsmgzc2bc1eR1xwArMgYkordJ6YphX64QpZKRzrJPJYhJMq8xuaKuSm/8FSAknDUYmcNRbvXiDURffR8snvOPGI0W+s1NWLw7w0kVc9NmzdU/NVOLqNoQuTtSClxoTf23wGHvcz3YVWzVadCFinL03o9tdC9QkqC8JkZXKgqveS4dTn1PyEikYwuN4UY49HqAhXUq5lOQqAo8O7ZryuIFstzhTz296MpOgnGZf7v8DtJKaGk3n6SuUPtPHvpuRmleMppvNrIdEjEnzlgE69iYTRSAaxdzvabCdcYpucz1VIcN+YGYebG0OyUb102ZvlvvTrD5MWRG0DuV7fzH6dgqU757oHr2BgHYkYp6fgyGn5s8FXUYqQ71VEb0zzRTeMr/6Vc9xcLQMRzvH+NduIWzPbbYEBT7PoMERRcRykK/YZKbn1pqxA8T48EfHaRGuThmMceaQEWUhbysf5Ncvv/lKwO3VQXM4fcc/TjypSOqfGth35Ee2xxAUiAHc+lF4Olgd7l8gB8M336DoG1/zxsnoEpG9s1PgJ9rNAxy10tVjwUm/YhXOYKB5NGCATxOAVj84hqF7VYLjMwVKMm8wR+ZyBXUQNzZUTxWaDQRpf94XeLw4X48zaLVy29CqUMwS39lsr7CmxVJFJoRVsO3x1FTXAkBarSjEkPH8zonhkrCGkdX4sKqVM1egUpIXVmBJvZD43oo60i23iugXIe3oBIwSgyCRQF/DTCgpPZTezMU1phgr1aGeB0x96HrGGZiRRZAvkfYO5VquM1gqdRP0JRd6HmlgBDYwEiDmb4m7P8814jazkr6kSRzfeLCCmPfP9NBhaG61KtNP4SwhcYhCdZ5wfKtK3Qq2rCPEtTk5zObd3DK21z8lHKtDNN1YCdeINp8HvgdK+z3r2Ze6vmBLYaYZZRGD9aLcMhYZn20P/4aIy2Y2J4fjQUvHGGxreMWTR5glid/2rqybsypAtdib0ITdd7Rk0iRkr8+T65E3ms1LavxP9wbhEdCm7ybozcLFYqLF+erkH1ZHK1CYsb7MI4vjt2xgFiNID/gDRU2jhsd1f47ckDeK4QeWCICh4xk8sD4SUCBWKHf9jnu3uELAIJSqCYMXN66/zypIA/gxQddeKLWZ7BrHyguWCF0aGKvdoznM51v2pPOsfgvj/2dAamnAv539ff15u1hzBy0yPk/kCEIEJlneBEOgHiVQW9GNdchg7XG2KiO7GF7hLwuT35armGMUCcBHtbByUhF0i2HDWhf9RA0f49ri4ZgLunuTrRFKxF8tP1jUk2uB3f+5aEzy5sa9x/j+bcT1WDKOsLNgeIXXb8GWyJ0mU73zsP0LDdPwS24d9nxR8Lsi/bND7xWsBD+RA0JkbCpIicGyAl9cBNMVdYOiRPi0gVsrBPJEtAHuZqGOBxmLyW5nEzKA/iAueG5b4rq4woohTEmXherC/H8FAooJgbLb/zYhnsEWzGeuNQ8V4+T/bOEmv7+od9Id+JY/jUJk0rBFrlaLV7a3Sc6QLKMdNR2CnNAVCOkdogT9RUSJwGLAPCCB8YdsFaDCeom1Zes7nJUci0xrAexFaDA/kK3BfY+k5uAlB/1GTxxbgju1IIVymKRPJdfKo3aDHHRGLJqMwDJR/HENqa0drUbojnh+sEYKXz1pxzlD2PtY3wx/18Z6kyzl9dd3VBUIlaAX+nYVAUpSILDmx6RN7UNrPrvMVD4x9ZCKhWsMetzRJg6tlrJw3tVe0sGiJCtPncwR+w6O4K58Uy2l3p0z/3406V7HEL6uOhqsX/0+GVq9qh3CV5uXsXN0mDBFOyhtZ3MrhGdvWtmFlHFkotEEWjYdtylsmILZ/awq0HLhJHUsnnY4yVqx3waMOyjP3zcwoRkmv/IRaKK5cjG64tP58LqBq1IMlmNd9L9l0bZvgPIvChxWYNe688gYTikIFXJjHy7cWmR1MMPZSE6ilRE3Jyp9KBkA/RNp0s0X1ataFug8fpAOaiNxWSROkSFNsKQmxbYPL017RI+7Yhp1SOhvcZI/K9viLeDMy1dysEI9imGL7o0B0QNtG8PjizY99/UGmOEyw0zhoA+9DOQZaqzO1oFeh2ZaaJgjL5MCkSaVBjhghmUmk9moIWbdgh7BtRRjQp4aE3/Elv6WJNJvzg2/mRb8YQ5c8RQbwAVgVkCIau+PcpgUYyrUiTr8Cc8j/pJHavNHo74GETrPnXRt1v2sXJIlpXPOqXZT+QWN/qug8aMaJLjU36aOq1kFe1snuxSqO/JYNSVHmI/HNnYw8WmXkcSkrQUAf5rpBr5AM/j3nZAQ0RjkplLIhV6bp4+As9gkcDtEEg1H0+rAGbjL3Rr1iPqBCAzVBCYiHXYk/EDTrtlPEp+ievlhBvo4vRYpiFnerBGSXNQFfuKXD/OVP4KeI0FInC72VD4eQQNm1mBRFTKX/ZvXUkVI/9i26KwEU68/bvPBcSClDpmXTCrLKJZ3fIiIlB3hhN597kE6IDsXQcWx2WJebAAhDWelVBAeWTM7F9+W/Yl2D7Pz5I244fHzdYbYj6BUT+W+/P4tfzZ8ET5V9liQth17cQjmBs/za3VujOVtAOOz7oL87XJkmmnL9EAaEeBCzT+stilUsNfaQCi+VPCAGG354ytkV4ypImnMaIoIm7i6yamPmUJaG5aGJTxthsZZVKbGJf40U+YtcsR3pB300/MWchIiTqV1HTAu7cBB1k0xEmiTkuZqlQj2OkS0Bz1UrxAMWPVilaghZenzFJITSGVPAWPgjIPrxNox0WDxb/TdUatHCvaN8v2meicXdO8nVhllRrj4Fj8ORwY+d+SO6G2nc0YIaOlXhCY4hQQyLRUyfFWcTMcpxskxKpn4lNtKXL+fNYdc8DGuxIaBOmFwsti2sJSbVjTpXbeBtTvoJbkZtGRkVxyZFBL4hU4Mjg11am7xsdQmjjspWPuwxBsc3qxs4p69ZTg1LKrrUDxCbgXiCI9W2Z194T8Yv6aRAZ+yGvRcQqHuuOKJmC8GlPkIGR0HAhf/f667NIu/e0N91xYJ7S4qYgsDyEHrgH+Cb1SELt43/JNWwYJTEBjXchemC/D6PoE95RUm/DHU+0zkWcl5ECBkWJIrvmuacarao0ewuMcr9VnOcSRZG/oy3wBwPe+cBO7EswQ8qelJ4tRgeuLAyZXNKS7kfg8MtYR2jLfDhJY7/tVsO7ERut2wV0Q6JX3/E9GPFtzJFKFGUBHbbMdn+6+tCaqqcE7nabSoqmyCFhEXgZRXXtY8a38g7qjr8JvW2haAp3hBVTT2Z6KtW0QJ+nEDv0KrtX7zAsIk76MID8Ygk+XtIIHD3qDZY9a0Y1nutcjzBVvacQR8QqTlrJb/9E7rPhB6dabDll6UpgusA2ClSD+xjpyEkjJgwo7tJxnIrWqAvA5B7RuqyNm5bUHH6gRUobmTuOvUONbsd0qIbT9/xrXzAK6pHQOiNOpv0fb3AEnYQEhkgh/5vBVJ0SGbUHB+h5mmEH1yfFZQes3mRO8VZwadZq/4lBVXjxihr0+7kyHJLCj/Jv2kjwDn8idv4zyjOlswXZ0guAenTNHGo4//NqWhwqy8r1udzi47JHPJCaAa5x4MfOIA54nxf4gj9nEf/FZdUAXlXX+nDVkyIYkgERip/bZTJ10V9/kzYaW2HAVh6lniTB+lbEPaBhXB8AwXxmsFIkNaQU+ihY7XMYuv63KIR0bEmMPbADehN5T4LsXlpJynxx91gT2+X8xMYwQyJrhGsTYjI48J9a/Dyw9t83PSNtGn/AmBuyPG/M8HaS/cXav2PNrX2/tMwzfWRznWTThspGs3FUQdhVwxd6SEgwW6jC5ztQRS9DCFZr2f3Fws2fAcBGBcpHBc4Fe0figKtp8hyeSTAk8K6UjJzXzr9LuZ5dB4Wd9R+HSoRtCLAVkwv2MVRfvvUmwp1grK4jL5boyy4LX0zMNealt6JN/CUdmsTE3N+raY7czato74m5r7scOLElRQJ+ofTJ/ra5dsiZTM9v4Yqm3WoQ/5iWZ2wu/jW4lFVzUtfqmQeE1EtnD/iKfpoiXf2Dje3rBvXPKTzW6Do7yklLTTgzQ8Pcq2kFDG6Yc2pCLMPjAtfTl7QHn2ScXY79qLVcHdFRrPiN9C9/WtcOCOGL1Vr/AMaBKA4nqlAP5O7x7F4f/zU0xnZA/cN0jXI8SMECTjj/gyV3SyGD5OOtXgDNcKBFLf5HmtVK5v7RwDlRyM57NB1ry66fk0eXGH6NyTzIbbJIp0tgNs3Nb6JlMQqIlkuVltvDzSinq8vCbFnAouiOvXEiRu+pET7ydtyig/Qdv2ENfYuUBDIrhFmNzITCaDLWFUYOCZEUUq6ot4kxNEISocypcicAnlmUC8xeK168xf2gjixa6u7Dnsl8whNqN8rXt9KVZ79efne7e8jVA591jmEhXjUFMgw6Khyf7ZQGvjGpmkkXagh03JFUcsHwZCn2lMQ9lfSPrYUTAaExWnYw8v/2ro83XSMW1aH5U1eglzMtnPUB68k5tMExZ9asygQEDqPqg4ofn4De12xZ38qUPCqYNV6wUlkyT75isSlaq1aHhuTKGW/z1J4nkRCzGr+LGM7SxyNwe4bT0AtxItlduOYuDHMqUxBtA4lvTl3uu9UARDKR2CHRsUHGd/mpO6PzvpD3rUb3jG7TPbPnJPy/F6L+BU3I8gJnXRdM02ublHi7b5JPEsbfLkYPocV2DPPGrXK/NK8bSamESl+QHF8CiDwoSR/eZOm0wCfMCjhO0pEnawHimBpLRPJqIv0gpp318CMb4ToL+DWGUaW+9hm08/TVF0Ex6jfw0T0Va3ObtVt5zufibfU/3CU1g46E2XTqyIschnjcfnr1jfUv0sYf+ZX54+gGrunmXfy0ESsHVWPka3z3GUmVbTt01pzcNHzyVEhGA3/1OOOeX6to5NhdNFEI20SHPFw6mEqd488Qd4MqtfqZpTT4D1jVh5lR3oX0Ceh26UWfwvh76jPRaFsSqnLthhMSCak0vF3cLySv+JRU1PVHiYaDxggTmzixCbBN52cKZBhZX0FRAgYw9yh5b5z2eapZ0OoidMRTWAkc19qkN+vRXP1EcWvHloLCUZz2pA5GbaDoP5rNnb+M0skrN3jLpSOy4f/40owjWk9x82W4soLbcOX7qf/S4AdTbNleJHN8+vKf9Jw4+tLEj4HX9tHAXetdBfuEFDPhTBs9Yi1U4b+p7hFGvohz1OFCvlQikRZHUEW2aSduvOMqrPi8yA2EbuRCLUxe5jRKSCng6Z0XD6ROHdCsOojowSwd8/0Rgj1gTUnrNFhIdVBtTOaisyk/rnPa+1FJbOQBzwz9HLaNupk1j3JPC1VselSuVqVZyfelBUS6k1fDBgqatV02SEK07Z5WKJFpS3oRPFV3ZwqEwYrVMo5cFQJfAl0RmtJY9d7j3QtewGoqK7SXcZSFkm8ZIdKmXP81G3NUVI+uYcnvzL8hia9spRJSrYM4j8mOtWgbbI0zaVdPbar3IqZklB6P8pdKa9zb+ACQZTFiLZo3Tu+sXA7A5gY5zQFhZLGuJ8PARgf8ALC1OsdPGg22EpjGe75uglelv3UF1OOClizTHkGFTK7DhHdVkIJLh44UFbOvov+/KViuZr+OEICat2S+w/oLUNjGhjS1W3OX30NKYLpP4+oyqQI1DEOdiEmWaPPFe81uKmUBfIgm8ZvCWCXaaO7YznKKSiiqnhPhemVSEQ57OWaOUx4aLODOI5v1T66KeAC+sUIYkyOdkHazXAEZrTMMeEZCofepTIU/vvl3bo1kkz9fjyDRJse3npcG1wieR2cbnU36WfJDlWiCfK/J6sD3X0tpIKvrbFs0GYshe7yW2T0JVvcrBMH2dOmUCl/QTTDFsoRMcmizL0D93IyCgezN0/CaF5nFfezoq/VywbZDP5Xec++LVfiPe6XHbPM7omxN51p/6v2sTqoh9pGm+R8UHC1VorcTM/JYxL8QESD00WSjgbjyNCWxg3dXZKrJdvD62kmTtCiqJPDniWGnxVUp6A0RNHlepEUi0RbJm2JjtShJ1aLibh88ikQBA2yvQu9o5V/BFq3EC6Laf4Kepl6i3K1Ar0DaMWOjLMSd7ZQRXHcAK9dCnGpVB2/ZCldCInhuL1A15gNPDKFACMvKkhyBWMBN4/YgWGQlsdmvNIPlbKYoI94jYTj0vESxdVkSe9pef2CjM5BZ0b1d556G/ZgwBwTnuGtrOXDy8Z1o/AGwsGRSZyg9+OjTehz59AxAFpXxFnmmEPSTaN5LNCeCqf7Ti7DdKjRTqQHlLcQ+MGQ8S2YYpMnP9DYT53qtz49vtqI83m2ECtecpwRpVjaxDX0aLhbAaxLcQVzCHCOK4boM73cTeS7sN5mlP1PZBdo3mHvnK2o0dGNfoluzC28KeGkDOuU1znFNRTw6N5Kx9dNri+yUokeruQhD4GRmSAFWhfrHlNNaSEgYM27I8F4xz4AddmXDBpmjIW60D7vyLVpQjr+uWzfiIuJxlzLJY6WvYKeCFU9ik5kZ245+7lbCTTrG/GIzeI89Ed02Vj6qAdudRDnt4t5Ix9VOIU37LkrMG1u9IMGixOBVNYkxbDDJdmJguqDiwP4qDMfJAnrzN+HGteFFRjGA5DnHsW8dCXFVLRr5a1OM5u2T3N3dVJBnSUqSQA6tuEL3YCxt3hTT597cRGPTyW8qOchRcsRTXzoHOf0YIOLzxn6jmnAw+0POzWfav6l4IbkUxam0YMOurvyxvq05e99b1U00F20JNU62blDCB4ETx9XYKNr0VvMU1jbXJAju7apgXTJyFPFCqo9+UOswmR3au4o7KrvK7AKVJmvCQy+2YlMK42XVt0DyaJliv+98Yo7tGJCE2VLUkTRsk75ywZHgo2eO798tlpGg5AILb4UcbrF8nP0iMkqQokDXjhG78GFnMFrbvXst5WfZwZTvJ30yWX/sVICQ2nL8/uve1FHDLUPNSo6/+IB/xVokhDKULCKRb4kNCCCYKm7a1g2MqhZ2zOeH/0rq296SE+NnI9+CxAMCkH3J8dd5wE2G03w7mql3IF1IZB2MhLoqb2RbH2XCWl9NqWln6cw3B3UXHI8C2TlOfrDjNeu2pUTcc1cHQj09zyROZLW1UCHhgXeqF2jGuQqPtv93C2xwx3gUa29NzNUhwr95FxiL2KCwu0ad3nrwybLOBGraNnDAJL1DROgorUybI8R+5Fi4omVB37qg35MH0YBNFaCgrB1LixcCmnn7YH9K6/YhZBUjxKqrAaO2QZ4km8fLkVOGcBZaWTWkK+PHiK/R+M61NIPw3yxHDF+OGU1gzJK5KFsTH+k9iVmCzEuTIXU6yDk8p+zKKqz2CUCeCYWCqIkSGNrdHBoHp+XxmD+YOpgtExIthKdgCQT0yxMG4ct1PP/1qYvIOBXJPymAqLxD+qsDIrD1ekn6E1bGnl1xjZrAIT+HJBOby0CHSD8MmwSlkp6BOg0VKY0bNzRfYp6rSnYtqlebMDUQt1nGRBYNuMQ0xwIhCbu25kIMjELvqDTCFX2grt0DDm1NCZ/CXvnlw12dymvpQebIAIN5Gj1lwl1yuU999djO6wCXi+zFIS6FAKlX0LYX7EjyA81FntCB1yMsPmhQK6V2jFtEiwYWw3n0one+gxdUutZKtoTWCmFcgNFLdlU2btczqrHUasjn6Nz2RHN+9tMF3aPVB0ELSqBaOxw6DKJZHcZ+GDlMCbC0kf+++W9oGPIEfyGopTu3jANR7kfPxEHnYmR6HN84gnRiF4PrkH3mP6rUdzHwahTXxzR3rcEUKBeR4LkCRqkGTvv2PCn0bHqhQ9gLApBsM0xRvjca8/QPzU2g46Nnh11j8sSjYwmvOBn7qAs21QOl1L8SCrov2UHwaTlDUkYcLt4QpXvaJXFFMFyN+RPDXThfzcu8Wdjnii0JOw7I4Gi9liSbtCKxDTlChKWJJWlyH7haKqbCajFDJn6RWU6P50954Cr2rSMv1r8HBLF25Jh8bMm+9BGuTL+piq/BEZvdI1x3AjnrhB0yLpAytbEvbYq/uvS3ZTJENbw6qKb5uDYBli6ZL3BYMfYZ2Mj39Lo4DzjMCBdzOqDx9yWMeaIZGCtPIIrY5QQ/Bdnflj0lMbVI0JbhaJUHnaOmDTFIQQrU6ESj6zTJ28QdFuVAstKUAne1jtLNznJNSbt0TYsWvmb/AjdSPK3/fAdLBtcPyD7qFZnPMTVKvcM4q6AT9Z6DIbmEHyplLG+7jpkm3u5lkMukvYWAWcGlH0OowQ/Ty3oualWHfTqLKYs7fE9VftX6UNhwNj0qwBZQRZRePwxMJFEsXb5HzMTxWLwUJ882Q8TPeonfmRi0lr7YmRkJa3G+xZzfTiaBvuH5gu5RyZUNGegu8bRp9qI9u40tuta/zc9uTT/yfhUlNZ2eGu4+0wcD6Ynx5vVTBIwgp0ldx/FJr39CjmW4b9jSTU5hqkuLG4IDJvFB2supqFRkCdJ0XjtOlGSRYKZXDW5VLLSX109p5d3qfZVvLBITBJbBnuI7dK4Jdbh0EMokExEvx1oSwpsKVeJVerENstR3rg5u3c97xecDSdC0mubB0aQ7GdAbKz2NzPUrab/10x7vdbVtMJ1I1CgT2Kp1yU9gQ8d8vIdO46sTS8UiGZz2lJMqXpET4EBuLKUhVJxdTqVbhYIXFg8Ans7vxHCFXLH+greHbz/0MwFIhx+sjquxiW5ne3c2kbGhGz6qxSfjb81xpnat6FPdDtMCuUG0uVHnKq7TPXKDPAp8PAVCq0vg4Hn02lnLc7W7fPXYJfV7UHv4qogGjr+eDPHa+qNbeMwT03VRh3Z/kTnUYfXwZ5LYjZQARGaNu5XBJ+Zs0rfeQy44ORHsgg//R4q+rG3xeyeCW2i089TiD5W8aTrIKd7lnYD+Vw5QTIzGKMnge3yypPJj1TQqaYZ/xixsjGLhfzHh0OCVeT8dgLilb8EIW7WCFIHrXCd1PwFU+nt/08sNO/Gfiwhi7WCbqywdAglzNp69MEUrM+pleP+Q71AZE95wsuXJAKaRMuFGz3EY5mDfqIUnAl2/V6uTeswyxB44HeIw4hlQT8ja9f9bhsKs4F7vKSNVWAiea2X7ZNHoTfnBFe+USEDD4gN7VfEYEiwnG9vJQ8WDsxVGrbwhuuDs8Rnbme/B8Yw147fYCuoGIOoFaZJodK6BAFgM9SjsUGVhN9TM5dBYfTNPoKJZgSC33x56F1qWU0+1gHOl09OOl1kt/hoqFA+EbQh1t6Scq73Ditp4eOv1WEBgn8vIEEVcGowb+HB4GOkjDpwIJuPD2Wd49ebEGtTR3/RAqqKpsqgAS+iX/vNCLthEoWILXgr2AZ52hebWxY2nFGsCl30UXvt83ef8qrQ1zVUQr9baxtbmhq056AxgDLtn5p5XJ1GvXWl2PHRqrim4PFxc97vT42FwXnOLfqPpnXV+sUlqerGRbjM+mpIvJlOVALZrm0GXpY4DkSaImOkjHSl1GHC3mot4zV3bc9tSsJAP1SbybjOnjt1yrrTTlvzp95RrljVxRMlJdos8NASMa/TX421c/rFgqDy4yyZGeiIXGOYX1o5lH8sc4g+Dx1plOFasAinc1KOjiTJwtNNKcmahtWSfUoq6k4bXzg4UYhW/y7KiQJsoQvipVjBfnvq74o0QifDWQAKvdThcOo7MPRLxspqQ9fA2fghVXVWNfawrieVsSgTKMqh5qIGaTfXVMub8ZzvfiKvyHSrJQxhAJYEu/HO9vPkJTzkonzx++PXMxf3D8cAKDmP0YgVPKzlDy71+Gy1zeuQRbhywUevD3ZXik1g7wwxdlOv1GWrqYqXtgQIKzIG2ZM5DH5/kVE4cMjLwk9My9204lQsLKF4L30/EF0KvXjHJYKIyPBGr9Qbnp7NtQgPen+sVeDMvWNMomZOJDrmsZBY7PCnH4mJWkXRrHRvd42auEzFAfHJRfzG2z5eHvKuha3r/QrAMZDM5ek0QcLr+txd9bP1LHG7bT+Celi6QLovxUaQHXtst5xsYhIW0IsOoH7+LNa/9PWhIAkbzpfqIA/XeamBLzksIbuDlpCGQ7poNcCcFF8pPSqAZ5mFQ2gaUMVUSPI5ZkNesv8kdI7Xop1mJ3gacQIh30mxC3UGJ6SmlLmxrUVHM/wcD5zy5VF8etDdY9LNyo8jBFqRMum+EsDBgb8lhpKs1lJEs/8tTNHltZeWac7Zc/LYAbl+m/mEpisVhuRWW1Ix7Jl89yaqYiPU7LdTckR1rRHTbo4galxMKaZHTWrqy9cnQx1y/UaFQ2wt+KVAOTWu5tadlHasoT8d081eCn0oQf5/EPcFKuU58xYrcCf0ttPdpRkA9Ximcnrxc+/yQSLpVS1as1qoVgnxTTEJaojNfCjzVxb7f6bESXWWIqjyctokGbjlmZ0LuCNu0CAyjAcffLm0mmYaS3i2UXKpl0+JByxyvNCXlt0p94xW8+F7Hto87b5LfzK/21ljTerjmLJDyHjVFnfm0mVvdZxxyneV4MeduPrdObcaTh1ZUVI3z8y8P2yhajo74n95KilYg04uw4xzOIINk7JJz/JernV0OUuiuELy4g0Zluf7aIRIjWeKXv6Aqwceg1rTMAgooPnoXMVqehzDLvkAfsPAfqdBKDBZTEZaZsMgQdri4AEz/INyRqU8IvgqxXL83hZm75AJzfFSn+xyasUMzYNLZXaW8Yf80QlvevNYWxaSgE4NhP8dEpxNyYZuV43qahcPEZhqelFhErov1bDyZSyHkzDJc0DsvcXGTvZigr8wjEDIyVkOrkYqrzsiEVlwkEh4v6U0wiwON5FFRgPlRZznIZkcoBwegZpD94O+Sati06AfuQn4qQ2T/yZtCnDNDPgDu214TOLpIJxKExk1Oo8YtGgbCGBUDw/Daavgp5q4jUSWapd9YZHqYF+8XsHUppQE/vhh52W5t0jeIHDIMQTh4Co5+UQfatP9ocigOVJJK9dLYtMkjUYWvdcmXHDDjviNu/nfN9mT3Iv7CECgEAdWZzb9biD+m/hZyPd8SYmSg4c1t15QNISsJmscQdiZmOw6cvubO3x5XtLZNxRX6kWnpRcwOChLoR83Jotqj8PpE5NAd2YuNr69k/Hw4JpCCR8rOWeWzqCWpvcCybfB60fRQzW5PfMyVuJsXgku0voJaDeAHFg56W1L9BIHk8PQ6tNvGUE7P/REI/C7iznsowlWB50lUKxWDeIN7ODvtCMSU0gg2mOOoTemHNxP8frGQSjPLz9ztBM8Z3XnKMt8+F2BcLS9AvRoleYsTnwa2htDT4SKEbnm22pOxZrGpTW0sNr7qYTxVFvS7aLypYXBu3S6lrth+ziwEF3u1heONXSJS9Hno71D9vAh5Ekw4WqpqMTcbFfTmLZfPZ978mgwz0qF7ddTo89/4L3vpxjqkDzCOfc1OZvQehSCdmL5eLZ/Gk7shLa4s+OuL/ZCrQTtCf7zJNAzbRsT+VUg8kXpCNxJTMLcyz/ABBB+Nm+wyBAj0Sle+ZAKvy9r2KN65p2UdZ3niTz4KjZCaGaa/CiNtqPT6EquAdlqDnz2gsUITuLQnXMetz1CwBqaTulKYRsjRrkkOakILUKf65v0+wyWiCUopvBQq/9MkvpD3tx34BbQeUdki/aGdAp3xN6bDI4QbAk8G4LT2+3jM3cFWpGf35FHLmIdbiRrMGJUQJQJ0Ul126yOsh8D6B2GWYTpjOX+s8m6KTBP5w0jor4USfnzuTCbV7xkWAPAfz6SVwv1UKAdkBMnKmH38ByX87l9gJjsCsr1SQULF0VXqQzszc0SRVVwJMw2FU+gHX6V5hBC9awzvygPm5WN2w16A4UGmwm91QJITVnjyq1dboBiAM2ISVhmyhKzRplQuEZDoklLftLJ8AQlUOUe4p+tGIcCG/WSguQXYRi93OB6tSsU/vdLEAfe+KrCweyzVVtQRkjbWPPKraim1wWGdpwulGl98/hE+yiIApCLAv4rgkQY++Jdre4AS6RUpAONmnPf0HPSs3o5JwHABWGgqpivZLb5M+kbTUVRTwAiJGGVJzbQtyptaVzOFOK9ZbM1bt4wFWDeY0e7KcKLb74evz7ssrHwuqsFXD8tN9EIVxJ90J0nX1V4UlWUX9InkjujIz+uCsyyRIM6cqsj3HOGjvIWJF1Q5BGYFYhf3RvxEUCy7xcYAztP/lo6AsW/7vYoxsMEAdKxcJU7kIexpN+00yrAV9GhKwboMrMxJ6KbvxzK3egK328mN5EyjgtVCy+5b0FkOYR+S8Ajp1t52hq18AfQR0CHboXvfxKVPmuU6XSurixD7kM5l99uTgaoMGLSJyEbQZzlR+yjyvQwrThchL3bsgY0qWTp1nEg22bch2PvNAgRO4dJSc18bNEpCqAB1SOnBPMAVGflTq/hSvOJj/Z0k/ceF3uK5Djcvc8WlJ3tXTEf7HYvpN08Ru2HUrgs4bk5zp4CR9sIotQbeEyiavrr5zuACXrmPHUVTxg+oaXPD1V+JGv1E0SypBbFHJj6CWbOFwhRZnTJvasRuyUcXe2peBiJ1IRqkqwIyPZu1QWctpbAoxSW9waNx4Z8mA23pU/HjMtwrb7oVu5e+2zT07mjNSrRaPtKNOhad6fUB2hGlq97mMYqA0WUCOQBldN3GeMCRpQQ5x8HCLQ6WB20k2uSn/lySAAdYWXzpBxCWtILWPmjKsvitcWDftH8hs4I0j12Gvyr779ukzPyuCG+9NE7jqgeozEWktmTW7U9sbLwHO7pvaA4Ll3K2g90Wu2aaWia/q1YE30HU6XDEEYyeV/hGXagp5Vydtge3ZB7L3R5q2aebBP/MEeIlA4aW6/PjIF7CzIGFjTsO955UdYUYgKRlRjt/SQ3SvHTjZz2DvMCE8jcGjpbK5DDwSQXe9aaI3/1/WG/2F4skTJyO1e+pUncWu6i2R5bvpEL1EM0QsyBba+kNN4rA8+yUXbjVh3X27CORBQMh0su+VhirwxN+DiPCyYZxLcrTnkMmzYQCmU4otm1Cwj2vi8+uFNxDKkmIJHH3AfzpYhkVMCgSVF72Fl0qKK5/8MFKYZz3T1B0bnbZHPqwi+9Ytl96X+eqbcR8YELHOoai1X9zCMM/uk8Zt8/z/JDiUtdiy4rJ4BXIFRbavOpAfeu+zaXRuUh8DE4viBmePCp9Uhj11AJM6GDBvepmodyhgNg28h68X7VkzG4uJ88d/P7mX4JS9cLjv+laU7tHhC03XeeIRQmruDXMqCnsk/I9L5yRZRsYKNpyNBKO5nNvZb73Aducn1ZbE6uJr1ke/EpAj4INSvBYZkkRIgrsG5+ZMyoUorlA6yaIZRdkOTFbubGBTiRN/zmnAShCWG+jO6wDxael+XOGNGpV6tVpk5TRF14XjbydJJIGbPsrPmc0vDPTDVwtfWY07JvRVAA/5FuB12ma/LU0FXGASnzhqnTOAvBINkctywkDq7wmsgjvIcm+qqNm4BBZjKhejCzD/bk3hOgfwJU5hvMufoTUDTC/8sxkpp7JLAXA4XdX24ckShGPz8BXGMPOl+AcisMcz8i6TH/ZKev7vWKaEsKk7K9ehDxMxs2jECyNuKbuZ8zRN904JDVmSeL/GbvybaO7RF+r/RJW6XR2ix56k+b8qy0hc1JUzVee/ZCLeGQRMc7DqeFB9e/PzRhHwTLokl4o+kGrawkCPxmd/8hyYBsQjGAoLst5BqDQvCs+0EM4kwcJX07/hsaiko6z7lHPaSxrPEt1I99f7N/0pPy9WwF4iTv86pP4tpRXd6GYrFbE32W7Y9x+DacGPlRpTRdTuj9czGcJUDdjJoW+N9VA7M3JhZnGWPzbaWCkd10vcwq9UgDbetwbv1Vkkw3JLgfiU3ogwwHot2ElVjv+iFLEszzOp9Sz2VcCbv7343DpgZ2HlHHS2gusoJaZJ0t8BhaEOQB6LpsdrFKAR1tXzGVORjGlKBQzok9e+kbltQr5zAM0PEXXCruF7nG38Af4zKnXC4t1PgZZ+g8LJz4vK6EF9w0ik4LHB2BjMw97v4d5ObCEA9to06Q8EpLw50bo1O5q0jE9V0kwy/zaDGpSqSHg7fekL7XhDeyrhb+DxY3VvYWIaikqnISDSkhcajvNyGpICcRv95wCtbUAvUUQRX0j/NWl+M4AwysseV39jEw3ZF5r3f5UP0qRm/MTg/meXFIw2TwKt0ZhzkgIXUnJ+nxr7rlqTombAw9WfFFD6u84VYa24e2XHiyFnMm9NdsUUT1clSr6/mLM1iJ+VZfkRkWFCHX3Kjl9MxoJFrHrGvuYp94z4SooflxAaGkIxizFmiQju7NL98bt+GQubIA6mkH96c+5RPD8l7dJgy4m2pjvMhRk9Z/hnPrPxJSF4ofPZOcX9C/1weycIvBhV6STraFGbd63P1+YxYQZKIVhyzgqLONyDDDPYM4ynZEQLlnjRgo0KB6g4EpaJuek0HVg9aw8FOZaoRl4rkofBEWINNFop7llsp1o7V+1mVGYWBx9UwnUIav8zVmJImq8uB9mgneo8i4QAmJaKBjl6dt0Xd9B36ttOUyvZ61oJKMZ4wC1Fod3NlQeKaFtslMqc6/ylQXdMbBx9pKirTvsOA+QHhc9ivIykxJkhF9pqyOA7V9IgRmRqWBGy4lAx+kUdge/AwyUUpIcGpcTje/0c86mXiLs2BduA7quigul3T2qZeHqUjVhVZgu5pNmUGGWkBZ2FYCnC7Wuj0n48pXE/EfdaEt7lk2p5JCSxMk6pe84FUK8TBO1BqY1A0Kfd63q98xhsfS/MNSyLloeEGmKzO8maxUic/tXhiavS9pUik7wON1HGPnF/QS1aLeNg+ltyVUw3aiSZ3xeeweQYlE3T71SCmKcjPNSXuG3lxn4Lk7CUkJH6oobNyLb0ZVXE4HccoE0oW0WZljUr1doOB0eN/s/v8Ju9MLGLVGmpJgI11b8gU6p2YznH6Pz20NvE/E1ijUYwE6EWQXbIdr1CUDskTLs1mjh1GTV0swW27NgReEKO3osm65xmEFzCmmCBy46tUjvWrYvSH5xXgKbQrggF13AwjiPtt44tZT1Gk3H86gnL5k+wsxJ+dbyi5+1Bf9YAtH8Y2PJMzEBGKREHJ4pThiOl2RTwhXg0DHk/SYcHcRUlP+gFrruN1aiTJy5cJG6wjFZvxzS/rT7HdF+s70XMlcv4vtgXb6IYxWwD58SMqBxp6XBzFBN8lmqkJqDrZyUJ3zmH1C5h1yY2YuzLJbxnWWF04dslNCwKX1i40zj7IhS9blS6T4z+zDHC3Vm2UasVRMK2zNl8bilZ2rAUq9ot2g+vD4H24ZNdCgh0iG5fGn+hxhIFuZAo7iRAeGyxPkAKBQJOb4gCfrsVyf+MTBRyPUS9q8M/OsipnLjuR6wEFqZvzPZqxYpokpHqtiGMmSSBtYTK7fLTI2GKWd6ILyK7Xzbpu3oCJcmh2zpYTqJxYjq4y/aLXQ" />
</root>