Snort: by author

567 messages starting May 30 15 and ending Jun 26 15
Date index | Thread index | Author index


??????

thank you for your answer ?????? (May 30)

강명훈

about 'WEB-MISC weblogic/tomcat .jsp view source attempt' 강명훈 (Jun 30)
About HTTP INSPECT 강명훈 (Jun 07)
about http_inspection 강명훈 (Jun 09)

Abdallah Jabbour

Re: Snort-users Digest, Vol 108, Issue 2 Abdallah Jabbour (May 03)
Re: snort inline mode does not capture traffic destined to other machine on the internal network Abdallah Jabbour (May 08)
Re: snort inline mode does not capture traffic destined to other machine on the internal network Abdallah Jabbour (May 08)
Re: snort inline mode does not capture traffic destined to other machine on the internal network Abdallah Jabbour (May 10)
snort inline mode does not capture traffic destined to other machine on the internal network Abdallah Jabbour (May 08)
Re: Snort-users Digest, Vol 108, Issue 2 Abdallah Jabbour (May 03)
Re: snort inline mode does not capture traffic destined to other machine on the internal network Abdallah Jabbour (May 10)
snort inline mode in CentOS 6.6 Abdallah Jabbour (May 02)

Adam Ring

snort as a service Adam Ring (May 06)

adrianc

Fwd: Can we change the documentation for the -c flag please? adrianc (May 07)

Akshita Tyagi

Snort Heap Profiling using tcmalloc Akshita Tyagi (May 06)

Alessandro Sforzin

Active Rules & Management Alessandro Sforzin (Jun 11)

Alex McDonnell

Re: Question on the relationship between byte_jump and content options Alex McDonnell (Jun 24)
Re: Signature Question Community Rules Alex McDonnell (Jun 08)
Re: FILE-IDENTIFY FON font file download request (1:20269) Alex McDonnell (May 11)
Re: Classify rules by offset and the usage of byte_jump Alex McDonnell (Jun 30)
Re: Question on the relationship between byte_jump and content options Alex McDonnell (Jun 24)

Al Lewis (allewi)

Re: possible to tailor the SDF combination alert message, or override with custom rule? Al Lewis (allewi) (Jun 15)
Re: Should I setup NIC sensor with IP address or without IP address ? Al Lewis (allewi) (Jun 08)
Re: Building Alert rule Al Lewis (allewi) (May 07)
Re: Trigger anomalies (on LXC container versus host) Al Lewis (allewi) (May 05)
Re: False positives on mysql traffic Al Lewis (allewi) (Apr 28)
Re: Snort only alerting about IP its running on Al Lewis (allewi) (Jun 26)
Re: ssp_ssl: Invalid Client HELLO after Server HELLO Detected Al Lewis (allewi) (May 16)
Re: Snort Rule generating snort.u2 zero (the use of variables indeed) Al Lewis (allewi) (Jun 05)
Re: questions about snort behavior Al Lewis (allewi) (Apr 15)
Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) Al Lewis (allewi) (May 04)
Re: Trigger anomalies (on LXC container versus host) Al Lewis (allewi) (May 03)
Re: Trigger anomalies (on LXC container versus host) Al Lewis (allewi) (May 03)
Re: ModSecurity CRS Parser Al Lewis (allewi) (May 03)
Re: Snort Install Al Lewis (allewi) (Apr 02)
Re: TTL & Byte rate limit Al Lewis (allewi) (Jun 02)
Re: IDS or IPS Al Lewis (allewi) (Apr 15)
Re: About HTTP INSPECT Al Lewis (allewi) (Jun 07)
Re: Reg: Snort Rule for HTTP traffic Al Lewis (allewi) (Apr 07)
Re: Snort not alerting although tcpdump shows packet Al Lewis (allewi) (Apr 17)
Re: tag:host Al Lewis (allewi) (Apr 15)
Re: Super slow inline performance of snort 2.9.6.0 Al Lewis (allewi) (Apr 22)
Re: Snort only alerting about IP its running on Al Lewis (allewi) (Jun 26)
Re: Trigger anomalies (on LXC container versus host) Al Lewis (allewi) (May 03)
Re: Snort-sigs Digest, Vol 109, Issue 19 Al Lewis (allewi) (Jun 28)
Re: Unknown ClassType: sdf Al Lewis (allewi) (Apr 04)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Al Lewis (allewi) (May 21)
Re: Snort Install Al Lewis (allewi) (Apr 02)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Al Lewis (allewi) (May 20)
Re: Design and Hardware. Al Lewis (allewi) (Apr 03)
Re: Fw: Snort Malicious Traffic Redirection to other IP Al Lewis (allewi) (Apr 01)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Al Lewis (allewi) (May 21)
Re: Post-Detection keyword [logto] not working Al Lewis (allewi) (Apr 16)
Re: question Al Lewis (allewi) (May 06)
Re: Snort-users Digest, Vol 108, Issue 2 Al Lewis (allewi) (May 03)
Re: problem with snortsam patch Al Lewis (allewi) (Apr 24)
Re: snort inline mode does not capture traffic destined to other machine on the internal network Al Lewis (allewi) (May 08)
Re: False positives on mysql traffic Al Lewis (allewi) (Apr 28)
Re: Parallel running of snort Al Lewis (allewi) (May 05)
Re: Trigger anomalies (on LXC container versus host) Al Lewis (allewi) (May 03)
Re: snortsam agent doesn't block ip in external firewall Al Lewis (allewi) (Apr 28)
Re: tag:host Al Lewis (allewi) (Apr 15)

Andre DiMino

Re: Error 422 with snortrules-snapshot-2972.tar.gz Andre DiMino (Jun 26)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Andre DiMino (Jun 26)

Andrew Shagayev

Unknown ClassType: sdf Andrew Shagayev (Apr 03)

Anshuman Anil Deshmukh

Re: Segregating drop alerts Anshuman Anil Deshmukh (May 25)
Segregating drop alerts Anshuman Anil Deshmukh (May 15)
Re: Segregating drop alerts Anshuman Anil Deshmukh (May 26)
Re: Segregating drop alerts [RESOLVED] Anshuman Anil Deshmukh (May 27)
Re: Segregating drop alerts [RESOLVED] Anshuman Anil Deshmukh (May 27)
Re: Segregating drop alerts Anshuman Anil Deshmukh (May 22)
Flowbits set rule to a noalert Anshuman Anil Deshmukh (Jun 24)
Re: Segregating drop alerts Anshuman Anil Deshmukh (May 22)
Re: Segregating drop alerts Anshuman Anil Deshmukh (May 26)
Re: Segregating drop alerts Anshuman Anil Deshmukh (May 26)

Antonio Augusto Santos

[Call for help] Help shape the future of machine learning research for IDSs Antonio Augusto Santos (Jun 15)

Avery Rozar

u2 binary format question Avery Rozar (May 26)
Re: u2 binary format question Avery Rozar (May 27)

Big Whale

ModSecurity CRS Parser Big Whale (May 03)

Bill Parker

Snort -T additional output Bill Parker (May 27)
Improved strncpy for Snort... Bill Parker (May 22)
PoC for Tracking Canada Bank Swift Codes Bill Parker (May 20)
Inconsistent use of memset() in snort<nnnn>/src/sfutil/acsmx2.c & ascmx.c Bill Parker (May 25)
Add Link-Local Address Network Assignment Block (IPv4) to sf_ip.h in Snort 3/Snort++ Bill Parker (Jun 10)
Minor error in PoC for Canada Swift Transaction Codes Bill Parker (May 20)
Possible memory leaks in Snort-3.0.0-a1 (144/145) found... Bill Parker (Apr 10)
Lack of sanity checks and possible memory leak in 2.9.7.x Bill Parker (Apr 13)
PoC Software for Magnetic Stripe Processing of Credit/Debit Cards for Snort SDF Bill Parker (Jun 20)

Binde Dig

Design and Hardware. Binde Dig (Apr 02)

Bogdan Harjoc

Re: Log snort input pcap file along with alert Bogdan Harjoc (Jun 24)
Log snort input pcap file along with alert Bogdan Harjoc (Jun 24)

Brian Diehl

Error 404 when fetching https://www.snort.org/downloads/registered/snortrules-snapshot-2962.tar.gz.md5 Brian Diehl (Apr 30)

c0c0n International Information Security Conference

c0c0n 2015 | The cy0ps c0n - CFP & CFW - Extended Deadline: 14 June, 2015 c0c0n International Information Security Conference (Jun 01)
c0c0n 2015 | The cy0ps c0n - Call For Papers & Call For Workshops c0c0n International Information Security Conference (Apr 22)

Cahit Eyigünlü

TTL & Byte rate limit Cahit Eyigünlü (Jun 01)

Cameron

Reduce Alerts - Pulledpork Cameron (Jun 22)

Carter Waxman (cwaxman)

Re: False Snort Alert [119:31:1] triggering Carter Waxman (cwaxman) (Jun 17)
Re: unixsock output plugin for snort Alerts Carter Waxman (cwaxman) (May 13)
Re: XFF/ExtraData not always logged for drop rules Carter Waxman (cwaxman) (Jun 25)
Re: Bugs in Packet I/O Totals section Carter Waxman (cwaxman) (May 27)
Re: Snort Runs But Stops Working Carter Waxman (cwaxman) (Jun 16)
Re: output config Carter Waxman (cwaxman) (Jun 15)
Re: Snort Runs But Stops Working Carter Waxman (cwaxman) (Jun 04)
Re: Error with LuaJIT when compiling 2.9.7.x on OS X with OpenAppID Carter Waxman (cwaxman) (May 29)
Re: output config Carter Waxman (cwaxman) (Jun 16)

Chris

Re: Trigger anomalies (on LXC container versus host) Chris (May 03)
Re: Trigger anomalies (on LXC container versus host) Chris (May 05)
Re: Trigger anomalies (on LXC container versus host) Chris (May 03)
Trigger anomalies (on LXC container versus host) Chris (May 03)
Re: Trigger anomalies (on LXC container versus host) Chris (May 05)
Re: Trigger anomalies (on LXC container versus host) Chris (May 03)

Cloherty, Sean E

Re: Snort Runs But Stops Working Cloherty, Sean E (Jun 08)
Snort Runs But Stops Working Cloherty, Sean E (Jun 01)
Re: Snort Runs But Stops Working Cloherty, Sean E (Jun 01)

Cynthia Leonard (cyleonar)

Re: Inconsistent use of memset() in snort<nnnn>/src/sfutil/acsmx2.c & ascmx.c Cynthia Leonard (cyleonar) (May 25)
Re: /var/log/messages filling up Cynthia Leonard (cyleonar) (May 18)
Re: /var/log/messages filling up Cynthia Leonard (cyleonar) (May 19)
Re: Minor error in PoC for Canada Swift Transaction Codes Cynthia Leonard (cyleonar) (May 25)
Re: Snort Runs But Stops Working Cynthia Leonard (cyleonar) (Jun 01)

Daniel Einspanjer

Config parsing issue with a poor config section Daniel Einspanjer (May 21)

Daniel Lopez

problem with snortsam patch Daniel Lopez (Apr 24)
How to make interface to listen in promiscous mode? Daniel Lopez (May 28)
snort snort don't recognize plugin sid set by me Daniel Lopez (May 14)
Snort as IPS and correlation Daniel Lopez (Apr 10)
snortsam agent doesn't block ip in external firewall Daniel Lopez (Apr 27)

Diego Batigoal

Snort Rules Enquiry Diego Batigoal (May 25)
Re: about rules commented Diego Batigoal (May 27)
Re: about rules commented Diego Batigoal (May 27)

Dilipan Janarthanan (djanarth)

Re: unixsock output plugin for snort Alerts Dilipan Janarthanan (djanarth) (May 14)
unixsock output plugin for snort Alerts Dilipan Janarthanan (djanarth) (May 11)
Re: unixsock output plugin for snort Alerts Dilipan Janarthanan (djanarth) (May 13)

Doug Burks

Re: Trigger anomalies (on LXC container versus host) Doug Burks (May 03)

elof

Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
Re: Bugs in Packet I/O Totals section elof (May 27)
Re: Snort++: how to get multithreading to work? elof (Jun 22)
Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 03)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 08)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
Re: Bugs in Packet I/O Totals section elof (May 27)
Re: preprocessor stream5_global prune_log_max 0 elof (May 28)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
SOLVED: Re: Bugs in Packet I/O Totals section elof (May 29)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 elof (Jun 04)
Re: preprocessor stream5_global prune_log_max 0 elof (May 27)

elof2

Re: Unable to kill a non-zombie process with -9 elof2 (May 12)
Re: Bugs in Packet I/O Totals section elof2 (May 12)

Emiliano Fausto

Re: Post-Detection keyword [logto] not working Emiliano Fausto (Apr 17)
Re: Post-Detection keyword [logto] not working Emiliano Fausto (Apr 16)
Re: Updating Snort Rules Offline Emiliano Fausto (May 07)
Post-Detection keyword [logto] not working Emiliano Fausto (Apr 13)
Re: Post-Detection keyword [logto] not working Emiliano Fausto (Apr 13)

emmanuel

SNORT DNS TUNNELING emmanuel (May 13)
Re: SNORT DNS TUNNELING emmanuel (May 14)

Eugenio Perez

File preprocessor and snort daemon Eugenio Perez (May 07)

Farnsworth, Robert

Re: Using Barnyard2 with Snort Farnsworth, Robert (Jun 29)
Re: Using Barnyard2 with Snort Farnsworth, Robert (Jun 22)
Re: Using Barnyard2 with Snort Farnsworth, Robert (Jun 19)
Re: Using Barnyard2 with Snort Farnsworth, Robert (Jun 26)
Using Barnyard2 with Snort Farnsworth, Robert (Jun 19)

Filipe Palma

Re: Forbidden Filipe Palma (Jun 03)

filipe.palma () scms pt

Re: Forbidden filipe.palma () scms pt (May 28)
Forbidden filipe.palma () scms pt (May 27)

Filippo Carletti

[PATCH] useradd -r in snort.spec Filippo Carletti (May 13)

For Sinton

Re: False positives on mysql traffic For Sinton (Apr 27)

GAM Intelligence

CVE 2015-3034 GAM Intelligence (Apr 15)

Gaurav Nagare (gnagare)

Re: False Snort Alert [119:31:1] triggering Gaurav Nagare (gnagare) (Jun 17)

Gaurav Srivastava

Snort not alerting although tcpdump shows packet Gaurav Srivastava (Apr 17)

Geoffrey Serrao

Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) Geoffrey Serrao (May 04)

Glenn Forbes Fleming Larratt

Re: Segregating drop alerts Glenn Forbes Fleming Larratt (May 22)
Re: Segregating drop alerts Glenn Forbes Fleming Larratt (May 22)
Re: Segregating drop alerts Glenn Forbes Fleming Larratt (May 26)

Gonçalo Fonseca

Problem downloading nor rules Gonçalo Fonseca (May 29)

Gregory W. MacPherson

Re: snort inline mode does not capture traffic destined to other machine on the internal network Gregory W. MacPherson (May 09)

Hafez Kamal

[HITB-Announce] FINAL CALL: HITB GSEC Call for Papers Hafez Kamal (Jun 11)
[HITB-Announce] REMINDER: Call for Papers for HITB GSEC Hafez Kamal (May 25)
[HITB-Announce] HITB GSEC 2015 Singapore - Call for Papers Hafez Kamal (Apr 08)

Hui cao

Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Hui cao (Jun 03)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Hui cao (Jun 04)
Re: File preprocessor fails to capture files Hui cao (May 08)

Hui Cao (huica)

Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Hui Cao (huica) (Jun 12)
Re: File preprocessor and snort daemon Hui Cao (huica) (May 08)
Re: File preprocessor fails to capture files Hui Cao (huica) (May 08)
Re: File preprocessor: suspected bug found and solved Hui Cao (huica) (May 22)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Hui Cao (huica) (Jun 04)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Hui Cao (huica) (Jun 04)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Hui Cao (huica) (Jun 04)
Re: File preprocessor fails to capture files Hui Cao (huica) (May 08)
Re: File preprocessor fails to capture files Hui Cao (huica) (May 08)

Ikenna Chiadikaobi

Rules Ikenna Chiadikaobi (Jun 25)

Incera, Matthew

Signature Question Community Rules Incera, Matthew (Jun 08)

Jacobi, Michael W CIV NSWCCD Philadelphia, 10432

PulledPork v0.7.0 no honoring proxy Jacobi, Michael W CIV NSWCCD Philadelphia, 10432 (Apr 08)
Re: False positives on mysql traffic Jacobi, Michael W CIV NSWCCD Philadelphia, 10432 (Apr 28)

James Lay

KrakenHTTP botnet sig James Lay (Apr 17)
Re: threshold.conf - event_filter dificulties. James Lay (Apr 10)
Re: Snort inline with Squid James Lay (Apr 24)
Re: snort inline mode in CentOS 6.6 James Lay (May 02)
Quantum Insert detection for Snort James Lay (Apr 24)
Re: Using Barnyard2 with Snort James Lay (Jun 26)
Re: Snort as IPS and correlation James Lay (Apr 10)
Re: Using Barnyard2 with Snort James Lay (Jun 24)
Re: Ensuring all pulledpork issues are documented (migration from google-code) James Lay (Apr 23)
Re: Snort inline with Squid James Lay (Apr 24)
Re: threshold.conf - event_filter dificulties. James Lay (Apr 10)
Compromised vBulletin sig James Lay (Apr 16)
Re: Odp: Re: Snort inline with Squid James Lay (Apr 25)
Re: Fwd: Can we change the documentation for the -c flag please? James Lay (May 07)
Mumblehard sig James Lay (May 01)
Re: Using Barnyard2 with Snort James Lay (Jun 30)
Re: Using Barnyard2 with Snort James Lay (Jun 19)
Re: Post-Detection keyword [logto] not working James Lay (Apr 13)
Dridex sig James Lay (Jun 17)
Re: Odp: Re: Snort inline with Squid James Lay (Apr 26)
Re: Using Barnyard2 with Snort James Lay (Jun 26)
Re: Snort inline IPS NFQ iptables James Lay (Apr 01)
Re: Post-Detection keyword [logto] not working James Lay (Apr 14)
Re: Using Barnyard2 with Snort James Lay (Jun 19)
Magento CVE-2015-1397, CVE-2015-1398, CVE-2015-1399 Sig James Lay (Apr 24)
Sguil assist James Lay (Jun 23)
Re: Sguil assist James Lay (Jun 23)
Dridex/Kryptik Pascal Library X-Mailer sig James Lay (May 21)
Re: Odp: Re: Odp: Re: Snort inline with Squid James Lay (Apr 27)
Re: Barnyard2, Syslog and formatting. James Lay (May 18)
Re: Odp: Re: Odp: Re: Odp: Re: Snort inline with Squid James Lay (Apr 27)
README.sfportscan doc update James Lay (May 03)
Re: [Emerging-Sigs] Dridex sig James Lay (Jun 17)
Re: PulledPork error 400 when fetching ruleset James Lay (Apr 17)

Jamie Riden

Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) Jamie Riden (May 07)
Re: Snort Rules Enquiry Jamie Riden (May 25)

Jean-Pierre Zurbrügg

Re: threshold.conf - event_filter dificulties. Jean-Pierre Zurbrügg (Apr 14)
threshold.conf - event_filter dificulties. Jean-Pierre Zurbrügg (Apr 10)

Jefferson, Shawn

Re: Hosts Attribute exception/override? Jefferson, Shawn (Apr 17)

Jeff Hammett

Negation of appid keywords Jeff Hammett (Apr 09)

jesler

Re: Signature Question Community Rules jesler (Jun 09)

jihene ksiksi

about rules commented jihene ksiksi (May 27)

Joel Cornett (jocornet)

Re: RPM Build Failure for Snort 2.9.7.3-1 from source RPM (Tomas Hajek) Joel Cornett (jocornet) (May 20)

Joel Esler (jesler)

Re: (no subject) Joel Esler (jesler) (Jun 27)
Re: Rules division, divide, split Joel Esler (jesler) (May 22)
Re: Rules division, divide, split Joel Esler (jesler) (May 26)
Re: about rules commented Joel Esler (jesler) (May 29)
Re: Problems installing/configuring Snort on Fedora Joel Esler (jesler) (May 07)
Re: thank you for your answer Joel Esler (jesler) (Jun 01)
Re: (no subject) Joel Esler (jesler) (Jun 29)
Re: IDs rule Joel Esler (jesler) (Jun 16)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Joel Esler (jesler) (May 29)
Re: SNORT DNS TUNNELING Joel Esler (jesler) (May 13)
Re: Unable to download Talos registered rules. Certificate problem. Joel Esler (jesler) (Jun 22)
Re: about rules commented Joel Esler (jesler) (May 27)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Joel Esler (jesler) (May 22)
Re: Snort Rules Enquiry Joel Esler (jesler) (May 26)
Re: PulledPork stopped updating and starts duplicate Joel Esler (jesler) (May 29)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Joel Esler (jesler) (Jun 26)
Re: Building Alert rule Joel Esler (jesler) (May 07)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Joel Esler (jesler) (Jun 26)
Re: Segregating drop alerts Joel Esler (jesler) (May 26)
Re: Forbidden Joel Esler (jesler) (May 29)
Re: PulledPork and empty Emerging ruleset Joel Esler (jesler) (Jun 01)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Joel Esler (jesler) (Jun 08)
Re: Segregating drop alerts Joel Esler (jesler) (May 26)
Re: Snort Rules Enquiry Joel Esler (jesler) (May 26)
Re: Strange events happening after installing PulledPork Joel Esler (jesler) (Apr 28)
Re: Hosts Attribute exception/override? Joel Esler (jesler) (Apr 17)
Re: Problem downloading nor rules Joel Esler (jesler) (May 29)
Re: Super slow inline performance of snort 2.9.6.0 Joel Esler (jesler) (Apr 20)
Re: need help Joel Esler (jesler) (Jun 24)
Re: Rule sets omitted from default snort.conf in 2.9.7.3 Joel Esler (jesler) (May 26)
Re: Problems installing/configuring Snort on Fedora Joel Esler (jesler) (May 07)
Re: Strange events happening after installing PulledPork Joel Esler (jesler) (Apr 28)
Re: Error 404 when fetching https://www.snort.org/downloads/registered/snortrules-snapshot-2962.tar.gz.md5 Joel Esler (jesler) (Apr 30)
Re: Rule sets omitted from default snort.conf in 2.9.7.3 Joel Esler (jesler) (May 29)

John Mummery

question John Mummery (May 06)

Johnson, Neil.X, Vodafone Group

Updating Snort Rules Offline Johnson, Neil.X, Vodafone Group (May 07)

Joseph Feather

Re: [Emerging-Sigs] Dridex sig Joseph Feather (Jun 18)

Juan Jesus Prieto

Re: snort.stats key-value mapping (Solved) Juan Jesus Prieto (Apr 14)
Re: snort.stats key-value mapping (Solved) Juan Jesus Prieto (Apr 14)
Re: snort.stats key-value mapping Juan Jesus Prieto (Apr 06)
Re: snort.stats key-value mapping Juan Jesus Prieto (Apr 13)

Justin Dodd

Re: ipcop Justin Dodd (Apr 21)
ipcop Justin Dodd (Apr 21)

Karolis

Re: snort.stats key-value mapping Karolis (Apr 09)
Re: snort.stats key-value mapping (Solved) Karolis (Apr 14)
Re: snort.stats key-value mapping (Solved) Karolis (Apr 13)

katwell80

Re: False Snort Alert [119:31:1] triggering katwell80 (Jun 17)
False Snort Alert [119:31:1] triggering katwell80 (Jun 17)

Kumarswamy H N (kumhn)

Re: Snort not alerting although tcpdump shows packet Kumarswamy H N (kumhn) (Apr 17)

Laszlo Toth

Re: output config Laszlo Toth (Jun 16)
output config Laszlo Toth (Jun 12)
Re: output config Laszlo Toth (Jun 16)

Leon Vergottini

Snort Install Leon Vergottini (Apr 02)
Re: Snort Install Leon Vergottini (Apr 02)

Li, Ricky

How to enable multi-thread processing with Snort3? Li, Ricky (Apr 21)
Re: How to enable multi-thread processing with Snort3? Li, Ricky (Apr 21)
Re: How to enable multi-thread processing with Snort3? Li, Ricky (Apr 21)

lists () packetmail net

Re: Snort as IPS and correlation lists () packetmail net (Apr 10)
Re: need help lists () packetmail net (Jun 23)
Re: problem with snortsam patch lists () packetmail net (Apr 24)
Re: need help lists () packetmail net (Jun 25)

Marcio Guerreiro

Snort Rule generating snort.u2 zero (the use of variables indeed) Marcio Guerreiro (Jun 05)
NICs - GRO and LRO Marcio Guerreiro (Jun 11)
Re: how to span traffic to snort Marcio Guerreiro (Jun 13)
Should I setup NIC sensor with IP address or without IP address ? Marcio Guerreiro (Jun 08)
payload to craft rules Marcio Guerreiro (May 24)
how to span traffic to snort Marcio Guerreiro (Jun 13)
TCP HEADER (options -> data) Marcio Guerreiro (Jun 19)
what is the latest IDS management tool ? Marcio Guerreiro (May 29)
IDS or IPS Marcio Guerreiro (Apr 15)

Matt Brichetto

Rule Checkup Matt Brichetto (Jun 18)

Matthew Mickel

Re: Dridex/Kryptik Pascal Library X-Mailer sig Matthew Mickel (May 26)

Matthew Ritenburg

suppress not working for emerging threats rules Matthew Ritenburg (Jun 02)

Matt Mickel

Re: Compromised vBulletin sig Matt Mickel (May 04)
Re: KrakenHTTP botnet sig Matt Mickel (May 04)
Re: Magento CVE-2015-1397, CVE-2015-1398, CVE-2015-1399 Sig Matt Mickel (May 14)
Re: Dridex/Kryptik Pascal Library X-Mailer sig Matt Mickel (Jun 19)

Maurizio

ssp_ssl: Invalid Client HELLO after Server HELLO Detected Maurizio (May 15)

May Smith

Building Alert rule May Smith (May 07)
questions about snort behavior May Smith (Apr 15)

mehrdad hajizadeh

Re: Fw: Snort Malicious Traffic Redirection to other IP mehrdad hajizadeh (Apr 02)
Fw: Snort Malicious Traffic Redirection to other IP mehrdad hajizadeh (Mar 31)

Michael B

ARPspoof preprocessor, barnyard, & BASE Michael B (Apr 23)
Pulledpork: preprocessors, ips_policy and snort.conf Michael B (Apr 26)
Re: ARPspoof preprocessor, barnyard, & BASE Michael B (Apr 26)
Maximum oversize_dir_length Michael B (Apr 27)
FTP rules, different port Michael B (Apr 26)

Michael Brown

Re: Problems installing/configuring Snort on Fedora Michael Brown (May 07)
Re: Problems installing/configuring Snort on Fedora Michael Brown (May 07)
Re: Problems installing/configuring Snort on Fedora Michael Brown (May 07)
Re: Problems installing/configuring Snort on Fedora Michael Brown (May 08)

Michael Steele

PulledPork 0.7.1 hangs Michael Steele (Apr 21)
WARNING: No preprocessors configured for policy 0 Michael Steele (May 18)
Rule sets omitted from default snort.conf in 2.9.7.3 Michael Steele (May 26)
Re: Strange events happening after installing PulledPork Michael Steele (Apr 28)
Re: Rule sets omitted from default snort.conf in 2.9.7.3 Michael Steele (May 26)
Re: Forbidden Michael Steele (May 27)
Strange events happening after installing PulledPork Michael Steele (Apr 27)

Michal Keníž

Re: unified2 extra data - howto Michal Keníž (Apr 18)

Mike Cox

Re: XFF/ExtraData not always logged for drop rules Mike Cox (Jun 25)
XFF/ExtraData not always logged for drop rules Mike Cox (Jun 24)
Re: XFF/ExtraData not always logged for drop rules Mike Cox (Jun 26)
Stream5/6 marking RST as invalid when it shouldn't? Mike Cox (Apr 08)
Re: XFF/ExtraData not always logged for drop rules Mike Cox (Jun 25)

Miller, Mike

Re: Snort-users Digest, Vol 108, Issue 36 Miller, Mike (May 20)
Barnyard2, Syslog and formatting. Miller, Mike (May 18)

Mustafa Qasim

Security Consultant in CA Mustafa Qasim (May 20)

Mustaque

PROTOCOL-DNS DNS query amplification attempt (1:28556) Mustaque (May 04)
Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) Mustaque (May 12)

Mustaque Ahmad

Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) Mustaque Ahmad (May 07)

N0de

Super slow inline performance of snort 2.9.6.0 N0de (Apr 22)
Re: Super slow inline performance of snort 2.9.6.0 N0de (Apr 20)
[repost] Super slow performance of snort 2.9.6.0 in inline mode N0de (Apr 22)

Nick Randolph

Re: Are these rules from community.rules redundant? Nick Randolph (Jun 22)

Pablo Cantos Polaino

Re: File preprocessor fails to capture files Pablo Cantos Polaino (May 08)
Re: File preprocessor fails to capture files Pablo Cantos Polaino (May 08)
Re: File preprocessor fails to capture files Pablo Cantos Polaino (May 15)
Re: File preprocessor fails to capture files Pablo Cantos Polaino (May 08)
Re: Getting alerts for every file Snort detects and File Services preprocessor Pablo Cantos Polaino (Apr 07)
File preprocessor fails to capture files Pablo Cantos Polaino (May 08)
Re: Estimating Snort's speed in processing pcaps Pablo Cantos Polaino (May 28)
File Preprocessor: Features developed (ExtraData fields in events and S3 storage) Pablo Cantos Polaino (May 25)
Re: File preprocessor fails to capture files Pablo Cantos Polaino (May 16)
Re: Getting alerts for every file Snort detects and File Services preprocessor Pablo Cantos Polaino (Apr 09)
Re: File preprocessor: suspected bug found and solved Pablo Cantos Polaino (May 25)
Re: File preprocessor fails to capture files Pablo Cantos Polaino (May 18)
Re: Getting alerts for every file Snort detects and File Services preprocessor Pablo Cantos Polaino (Apr 01)
Re: Estimating Snort's speed in processing pcaps Pablo Cantos Polaino (May 29)
Re: unified2 extra data - howto Pablo Cantos Polaino (Apr 18)
Re: Getting alerts for every file Snort detects and File Services preprocessor Pablo Cantos Polaino (Apr 02)
File preprocessor: suspected bug found and solved Pablo Cantos Polaino (May 21)
Re: Getting alerts for every file Snort detects and File Services preprocessor Pablo Cantos Polaino (Apr 16)

Patrick Mullen

Re: Are these rules from community.rules redundant? Patrick Mullen (Jun 23)

Pratik Narang

Re: Estimating Snort's speed in processing pcaps Pratik Narang (May 29)
Re: Estimating Snort's speed in processing pcaps Pratik Narang (Jun 03)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Pratik Narang (May 25)
Estimating Snort's speed in processing pcaps Pratik Narang (May 28)
Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Pratik Narang (May 20)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Pratik Narang (May 20)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Pratik Narang (May 20)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps Pratik Narang (May 21)

Praveen D

Relative to content or byte_jump Praveen D (Jun 16)

Prude, Terrell (SCC)

Snort++: how to get multithreading to work? Prude, Terrell (SCC) (Jun 17)

Rahul Bhonsale

Snort only alerting about IP its running on Rahul Bhonsale (Jun 26)

Rahul Burman (rahburma)

Re: Config parsing issue with a poor config section Rahul Burman (rahburma) (May 25)

Ravi Menon

Re: Reg: Snort Rule for HTTP traffic Ravi Menon (Apr 07)
Reg: Snort Rule for HTTP traffic Ravi Menon (Apr 07)

reniykec

IDs rule reniykec (Jun 16)

Research

Snort Subscriber Rules Update 2015-05-12 Research (May 12)
Snort Subscriber Rules Update 2015-06-04 Research (Jun 04)
Sourcefire VRT Certified Snort Rules Update 2015-04-21 Research (Apr 21)
Sourcefire VRT Certified Snort Rules Update 2015-04-14 Research (Apr 15)
Snort Subscriber Rules Update 2015-05-26 Research (May 26)
Snort Subscriber Rules Update 2015-06-18 Research (Jun 18)
Snort Subscriber Rules Update 2015-05-21 Research (May 21)
Snort Subscriber Rules Update 2015-06-09 Research (Jun 09)
Sourcefire VRT Certified Snort Rules Update 2015-04-23 Research (Apr 23)
Sourcefire VRT Certified Snort Rules Update 2015-04-07 Research (Apr 07)
Sourcefire VRT Certified Snort Rules Update 2015-04-02 Research (Apr 02)
Snort Subscriber Rules Update 2015-06-02 Research (Jun 02)
Sourcefire VRT Certified Snort Rules Update 2015-04-28 Research (Apr 28)
Snort Subscriber Rules Update 2015-06-10 Research (Jun 10)
Snort Subscriber Rules Update 2015-06-30 Research (Jun 30)
Snort Subscriber Rules Update 2015-05-14 Research (May 14)
Sourcefire VRT Certified Snort Rules Update 2015-04-09 Research (Apr 09)
Snort Subscriber Rules Update 2015-06-16 Research (Jun 18)
Snort Subscriber Rules Update 2015-06-23 Research (Jun 23)
Sourcefire VRT Certified Snort Rules Update 2015-04-30 Research (Apr 30)
Snort Subscriber Rules Update 2015-05-07 Research (May 07)
Snort Subscriber Rules Update 2015-05-28 Research (May 28)
Sourcefire VRT Certified Snort Rules Update 2015-04-16 Research (Apr 16)
Snort Subscriber Rules Update 2015-05-19 Research (May 19)
Sourcefire VRT Certified Snort Rules Update 2015-05-05 Research (May 05)
Snort Subscriber Rules Update 2015-06-24 Research (Jun 24)

Ricky Li

What are "detect", " rule eval" stand for in the profiling result of Snort preprocessor? Ricky Li (Jun 09)

rmkml

Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) rmkml (May 04)
Re: PROTOCOL-DNS DNS query amplification attempt (1:28556) rmkml (May 04)

Robert Lasota

Odp: Re: PulledPork and empty Emerging ruleset Robert Lasota (Jun 02)
Odp: Re: Rules division, divide, split Robert Lasota (May 22)
Odp: Re: PulledPork stopped updating and starts duplicate Robert Lasota (May 30)
PulledPork and empty Emerging ruleset Robert Lasota (May 30)
Odp: Re: PulledPork and empty Emerging ruleset Robert Lasota (May 30)
Odp: Re: Odp: Re: PulledPork and empty Emerging ruleset Robert Lasota (May 30)
Odp: Re: Odp: PulledPork stopped updating and starts duplicate Robert Lasota (May 29)
Pulledpork and changing rules in modifysid.conf Robert Lasota (May 28)
Odp: Odp: Re: Odp: Re: Odp: Re: Odp: Re: Snort inline with Squid Robert Lasota (May 22)
PulledPork stopped updating and starts duplicate Robert Lasota (May 29)
Snort inline with Squid Robert Lasota (Apr 24)
Odp: Re: Odp: Re: Odp: Re: Odp: Re: Snort inline with Squid Robert Lasota (Apr 28)
Rules managing Robert Lasota (May 26)
Odp: Re: Snort inline with Squid Robert Lasota (Apr 24)
Odp: Re: Odp: Re: Odp: Re: PulledPork and empty Emerging ruleset Robert Lasota (Jun 01)
Odp: Re: Odp: Re: Snort inline with Squid Robert Lasota (Apr 27)
Rules division, divide, split Robert Lasota (May 22)
Odp: PulledPork stopped updating and starts duplicate Robert Lasota (May 29)
Odp: Re: Odp: Re: Odp: Re: Snort inline with Squid Robert Lasota (Apr 27)
Odp: Re: Snort inline with Squid Robert Lasota (Apr 25)

Rodgers, Anthony (DTMB)

FILE-IDENTIFY FON font file download request (1:20269) Rodgers, Anthony (DTMB) (May 11)
Re: what is the latest IDS management tool ? Rodgers, Anthony (DTMB) (May 29)
MALWARE-CNC Win.Trojan.Zeus P2P-proxy C2 Write command (1:26839) Rodgers, Anthony (DTMB) (Jun 09)
Re: Segregating drop alerts Rodgers, Anthony (DTMB) (May 26)
Re: Sguil assist Rodgers, Anthony (DTMB) (Jun 23)
Re: FILE-IDENTIFY FON font file download request (1:20269) Rodgers, Anthony (DTMB) (May 11)

rohit Kulkarni

(no subject) rohit Kulkarni (Apr 29)

Russ

Re: File preprocessor fails to capture files Russ (May 17)
Re: Snort++: Inline Mode Russ (Apr 28)
Re: Snort++: Bugs? Russ (Apr 29)
Re: Snort++: how to get multithreading to work? Russ (Jun 17)
Re: File preprocessor fails to capture files Russ (May 15)
Re: Snort++: Bugs? Russ (Apr 30)
Re: Snort++: Specifying more than one daq vars Russ (Apr 29)
Re: Possible memory leaks in Snort-3.0.0-a1 (144/145) found... Russ (Apr 13)
Re: Snort++: Bugs? Russ (Apr 27)
Re: How to enable multi-thread processing with Snort3? Russ (Apr 21)
Re: Add Link-Local Address Network Assignment Block (IPv4) to sf_ip.h in Snort 3/Snort++ Russ (Jun 10)
Re: Snort -T additional output Russ (May 27)
Re: Snort++: how to get multithreading to work? Russ (Jun 17)
Re: Bus errors and segmentation faults after upgrade to 2.9.7.3 and daq 2.0.5 Russ (Jun 04)
Re: Snort++: Bugs? Russ (May 04)
Re: How to enable multi-thread processing with Snort3? Russ (Apr 21)
Re: Snort++: Inline Mode Russ (Apr 17)

samaru zoka

Unable to download Talos registered rules. Certificate problem. samaru zoka (Jun 22)

Sancho Panza

Snort++: Bugs? Sancho Panza (Apr 27)
Snort++: Inline Mode Sancho Panza (Apr 17)
Re: Snort++: Bugs? Sancho Panza (May 04)
Snort++: snort2lua bug Sancho Panza (May 15)
Snort++: Specifying more than one daq vars Sancho Panza (Apr 29)
Re: Snort++: Bugs? Sancho Panza (Apr 29)
Error 422 with snortrules-snapshot-2972.tar.gz Scott Link (May 22)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Scott Link (Jun 08)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Scott Link (May 29)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Scott Link (May 29)

Sean

possible to tailor the SDF combination alert message, or override with custom rule? Sean (Jun 15)

Shin Mura

Determination of ssl_state Shin Mura (Apr 16)

Shirkdog

Re: Error 422 with snortrules-snapshot-2972.tar.gz Shirkdog (May 22)
Re: PulledPork 0.7.1 hangs Shirkdog (Apr 21)
Ensuring all pulledpork issues are documented (migration from google-code) Shirkdog (Apr 23)
Re: Pulledpork and changing rules in modifysid.conf Shirkdog (May 29)
Re: Odp: PulledPork stopped updating and starts duplicate Shirkdog (May 29)

snort

Re: Odp: Re: PulledPork and empty Emerging ruleset snort (May 30)
Re: Odp: Re: Odp: Re: PulledPork and empty Emerging ruleset snort (May 30)

Snort Releases

Snort++ Build 150 Available Now Snort Releases (Apr 30)
Snort 2.9.7.3 Now Available Snort Releases (May 19)
Snort++ Build 150 Available Now Snort Releases (Apr 30)
Snort 2.9.7.3 Now Available Snort Releases (May 19)
Snort++ Build 155 Available Now Snort Releases (Jun 01)
Snort++ Build 155 Available Now Snort Releases (Jun 01)

Snort User

Fwd: Parse UnixSock output with Perl Script Snort User (Jun 08)

snort_user

Problems installing/configuring Snort on Fedora snort_user (May 07)
Re: Problems installing/configuring Snort on Fedora snort_user (May 08)

Sree Raj

Re: ipcop Sree Raj (Apr 21)
Re: ipcop Sree Raj (Apr 21)

stephane.nasdrovisky

Re: Snort as IPS and correlation stephane.nasdrovisky (Apr 10)
Re: snortsam agent doesn't block ip in external firewall stephane.nasdrovisky (Apr 28)

Stephen Gantz

Re: question Stephen Gantz (May 06)

Steven Tonge

SSL Initiation Rule Steven Tonge (May 13)

subscription sites

Snort inline IPS NFQ iptables subscription sites (Apr 01)

syazareen

Re: Snort-sigs Digest, Vol 109, Issue 19 syazareen (Jun 27)
need help syazareen (Jun 23)
Re: need help syazareen (Jun 25)

Tawanda Purazi

Re: Snort 2.9.7.2 and barnyard2 1.13 on RHEL via RPM Tawanda Purazi (Apr 14)

Teo En Ming

Singapore Government Hackers Have Hacked Into Teo En Ming's Computer Again Teo En Ming (Jun 19)

Teo En Ming (Zhang Enming)

Re: [HITB-Announce] HITB GSEC 2015 Singapore - Call for Papers Teo En Ming (Zhang Enming) (Apr 08)

test engineer

Re: /var/log/messages filling up test engineer (May 18)
/var/log/messages filling up test engineer (May 12)

Throw Away

PulledPork error 400 when fetching ruleset Throw Away (Apr 16)

Tomas Hajek

Re: Snort 2.9.7.2 and barnyard2 1.13 on RHEL via RPM Tomas Hajek (Apr 15)
Snort 2.9.7.2 and barnyard2 1.13 on RHEL via RPM Tomas Hajek (Apr 14)
Re: questions about snort behavior Tomas Hajek (Apr 15)
RPM Build Failure for Snort 2.9.7.3-1 from source RPM Tomas Hajek (May 20)

Tommy Lin

Classify rules by offset and the usage of byte_jump Tommy Lin (Jun 30)

tomsun.0.7

About Snort's configure files tomsun.0.7 (May 12)

tushar sharma

I want to add NETAD as a preprocessor in snort tushar sharma (Jun 21)

Tyler Smith

Question on the relationship between byte_jump and content options Tyler Smith (Jun 24)
Re: Are these rules from community.rules redundant? Tyler Smith (Jun 22)
Re: Question on the relationship between byte_jump and content options Tyler Smith (Jun 24)
Are these rules from community.rules redundant? Tyler Smith (Jun 22)

Véronique B .

Fwd: Parse UnixSock output with Perl Script Véronique B . (Jun 11)

Victor Roemer

Re: Fwd: Parse UnixSock output with Perl Script Victor Roemer (Jun 15)
Re: Getting alerts for every file Snort detects and File Services preprocessor Victor Roemer (Apr 08)
Re: What are "detect", " rule eval" stand for in the profiling result of Snort preprocessor? Victor Roemer (Jun 10)
Re: Getting alerts for every file Snort detects and File Services preprocessor Victor Roemer (Apr 01)
Re: u2 binary format question Victor Roemer (May 27)
Re: preprocessor stream5_global prune_log_max 0 Victor Roemer (May 27)

waldo kitty

Re: Forbidden waldo kitty (May 28)
Re: Reduce Alerts - Pulledpork waldo kitty (Jun 22)
Re: Flowbits set rule to a noalert waldo kitty (Jun 25)
Re: Snort 2.9.7.2 throws ERROR: Cannot decode data link type 113 while reading pcaps waldo kitty (May 20)
Re: Forbidden waldo kitty (May 27)
Re: about rules commented waldo kitty (May 27)
Re: Trigger anomalies (on LXC container versus host) waldo kitty (May 04)
Re: Segregating drop alerts waldo kitty (May 26)
Re: thank you for your answer waldo kitty (May 30)
Re: Odp: Re: Odp: Re: Odp: Re: PulledPork and empty Emerging ruleset waldo kitty (Jun 01)
Re: Active Rules & Management waldo kitty (Jun 11)
Re: Segregating drop alerts waldo kitty (May 26)
Re: Rule sets omitted from default snort.conf in 2.9.7.3 waldo kitty (May 26)
Re: Forbidden waldo kitty (May 28)
Re: Snort Rules Enquiry waldo kitty (May 26)
Re: Snort-users Digest, Vol 108, Issue 36 waldo kitty (May 20)
Re: Active Rules & Management waldo kitty (Jun 11)
Re: Security Consultant in CA waldo kitty (May 20)
Re: ipcop waldo kitty (Apr 23)

Wil Mail

Error with LuaJIT when compiling 2.9.7.x on OS X with OpenAppID Wil Mail (May 08)
Re: Error with LuaJIT when compiling 2.9.7.x on OS X with OpenAppID Wil Mail (May 27)
Re: Error with LuaJIT when compiling 2.9.7.x on OS X with OpenAppID Wil Mail (May 29)

Xander

Re: NICs - GRO and LRO Xander (Jun 11)
Re: Active Rules & Management Xander (Jun 11)
Re: Active Rules & Management Xander (Jun 11)

Xin, Qiao

Re: tag:host Xin, Qiao (Apr 15)
tag:host Xin, Qiao (Apr 15)

Y M

Re: Using Barnyard2 with Snort Y M (Jun 26)
Re: SSL Initiation Rule Y M (May 15)
Re: Sguil assist Y M (Jun 23)
Re: PulledPork and empty Emerging ruleset Y M (May 30)
Re: Pulledpork and changing rules in modifysid.conf Y M (May 28)
Re: threshold.conf - event_filter dificulties. Y M (Apr 10)
Re: Odp: Re: Odp: PulledPork stopped updating and starts duplicate Y M (May 29)
Re: Rules managing Y M (May 26)
Re: Pulledpork: preprocessors, ips_policy and snort.conf Y M (Apr 26)
Re: Problems installing/configuring Snort on Fedora Y M (May 08)
Re: snort snort don't recognize plugin sid set by me Y M (May 15)
Re: Estimating Snort's speed in processing pcaps Y M (May 28)
Re: FTP rules, different port Y M (Apr 26)
Re: Error 422 with snortrules-snapshot-2972.tar.gz Y M (Jun 26)
Re: Problems installing/configuring Snort on Fedora Y M (May 08)

Yogesh C U

Parallel running of snort Yogesh C U (May 05)

Yudhi

Re: (no subject) Yudhi (Jun 27)

yudhi ardiyanto

(no subject) yudhi ardiyanto (Jun 26)