TMS zl Module IPS/IDS Signature Reference Guide RLX.10.2.2.94

ProCurve TMS zl Module IPS/IDS Signature
Reference Guide Version RLX.10.2.2.94
279
Signature ID: 2052
VIRUS OUTBOUND .com file attachment
Threat Level: Information
Signature Description: This event indicates that an outgoing email message possibly containing a virus has been
detected. This rule generates an event when a filename extension commonly used by viruses is detected. Virus is a
computer program that can copy itself and infect a computer without permission or knowledge of the user. The team
'virus' is also commonly used, to refer to many different types of malware and adware programs. This rule will trigger
when attach '.com' file then blocks the attachment. When a prohibited attachment has been blocked, it will not deliver
the attachment to the recipient but the message will still be delivered. The sender will not receive any notification that
the attachment has been removed.
Signature ID: 2053
VIRUS OUTBOUND .sys file attachment
Threat Level: Information
Signature Description: Virus is a computer program that can copy itself and infect a computer without permission or
knowledge of the user. The team 'virus' is also commonly used, to refer to many different types of malware and adware
programs. This rule will trigger when attach '.sys' file then blocks the attachment. When a prohibited attachment has
been blocked, it will not deliver the attachment to the recipient but the message will still be delivered. The sender will
not receive any notification that the attachment has been removed.
Signature ID: 2054
VIRUS OUTBOUND .vxd file attachment
Threat Level: Information
Signature Description: Virus is a computer program that can copy itself and infect a computer without permission or
knowledge of the user. The team 'virus' is also commonly used, to refer to many different types of malware and adware
programs. This rule will trigger when attach '.vxd' file then blocks the attachment. When a prohibited attachment has
been blocked, it will not deliver the attachment to the recipient but the message will still be delivered. The sender will
not receive any notification that the attachment has been removed.
Signature ID: 2055
VIRUS OUTBOUND .dll file attachment
Threat Level: Information
Signature Description: Virus is a computer program that can copy itself and infect a computer without permission or
knowledge of the user. The team 'virus' is also commonly used, to refer to many different types of malware and adware
programs. This rule will trigger when attach '.dll' file then blocks the attachment. When a prohibited attachment has
been blocked, it will not deliver the attachment to the recipient but the message will still be delivered. The sender will
not receive any notification that the attachment has been removed.
Signature ID: 2056
VIRUS OUTBOUND .cpp file attachment
Threat Level: Information
Signature Description: Virus is a computer program that can copy itself and infect a computer without permission or
knowledge of the user. The team 'virus' is also commonly used, to refer to many different types of malware and adware
programs. This rule will trigger when attach '.cpp' file then blocks the attachment. When a prohibited attachment has
been blocked, it will not deliver the attachment to the recipient but the message will still be delivered. The sender will
not receive any notification that the attachment has been removed.