TMS zl Module IPS/IDS Signature Reference Guide RLX.10.2.2.94

ProCurve TMS zl Module IPS/IDS Signature
Reference Guide Version RLX.10.2.2.94
611
cursors, each with a unique ID. It changes your mouse pointer when hovering over partner sites. This comes under
adwares that pops up ads. It monitors browser usage and accordingly delivers targeted advertisements. Basically, the
installed spyware downloads many exe from CometSystems for updates without user's knowledge. This signature will
generate log when the attack pkt contains cometsystems doain name.
Signature ID: 28088
Access to spyware CometSystem (Cursor) site Vulnerability
Threat Level: Warning
Signature Description: Comet Cursor secretly installs itself on a computer, and tracks visits to web sites that use its
cursors, each with a unique ID. It changes your mouse pointer when hovering over partner sites. This comes under
adwares that pops up ads. It monitors browser usage and accordingly delivers targeted advertisements. Basically, the
installed spyware downloads many exe from CometSystems for updates without user's knowledge.
Signature ID: 28089
Possible Malware Infection from 2nd Thought Trojan Horse Vulnerability
Threat Level: Warning
Signature Description: Second Thought is adware (advertising oriented spyware), which opens advertisements during a
user's Internet Explorer browsing session, depending on keywords entered by the user. Second Thought contains a
silent auto-update program, installing automatic updates and software applications without any user interaction. Second
Thought is spyware, collecting browsing session information to send it back to Second Thought servers(it monitors
browser usage and accordingly delivers targeted advertisements).
Signature ID: 28090
Access to adware Matcash site Vulnerability
Threat Level: Warning
Signature Description: Adware is any software application in which advertising is displayed while the program is
running. This adware program is in the form of a toolbar. Normally it will be installed from websites as an active X
control. This comes under adwares that pops up ads. It monitors browser usage and accordingly delivers targeted
advertisements. Matcash is an affiliate Toolbar that pays you each time a surfer installs our Toolbar on his computer.
Signature ID: 28091
Access to adware Altnet site Vulnerability
Threat Level: Warning
Signature Description: Altnet is this comes under adwares that pops up ads. It monitors browser usage and accordingly
delivers targeted advertisements. TopSearch, also known as Altnet, Altnet TopSearch, TopSearch, Altnet P2P Network,
Altnet Peer Points Manager, and PeerEnabler is a Browser Helper Object (BHO), a type of Dynamic Link Library
(DLL) that is used to attach third-party software add-ons to running processes of Microsoft Internet Explorer. It may
replace the home page in a user's Web browser and may impact the speed and performance of the Web browser.
Microsoft Windows 2000, Windows 2003 Server, Windows 95, Windows 98, Windows 98SE, Windows Me and
Windows XP are affected by this vulnerability.
Signature ID: 28092
Access to adware WinAd site Vulnerability
Threat Level: Warning
Signature Description: WinAD is an adware program (advertising oriented spyware) for Microsoft Windows operating
systems. It is adware trojan that hijacks victim browsers and forces them to display popup ads based on keywords in the
sites they are visiting. It monitors browser usage and accordingly delivers targeted advertisements. The program opens
advertisements during a user's Internet Explorer browsing session by downloading them from a server. WinAD may
replace the ads from other companies with its own.