From 56bfb439f85b3e4054bd7c6b849a6e06e5c2ac27 Mon Sep 17 00:00:00 2001 From: Luca Deri Date: Wed, 3 Mar 2021 00:41:07 +0100 Subject: Improved DGA detection with trigrams. Disadvantage: slower startup time Reworked Tor dissector embedded in TLS (fixes #1141) Removed false positive on HTTP User-Agent --- src/lib/protocols/smb.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'src/lib/protocols/smb.c') diff --git a/src/lib/protocols/smb.c b/src/lib/protocols/smb.c index 9f8364ec1..ec301c504 100644 --- a/src/lib/protocols/smb.c +++ b/src/lib/protocols/smb.c @@ -46,7 +46,7 @@ void ndpi_search_smb_tcp(struct ndpi_detection_module_struct *ndpi_struct, struc if(memcmp(&packet->payload[4], smbv1, sizeof(smbv1)) == 0) { if(packet->payload[8] != 0x72) /* Skip Negotiate request */ { ndpi_set_detected_protocol(ndpi_struct, flow, NDPI_PROTOCOL_SMBV1, NDPI_PROTOCOL_NETBIOS); - NDPI_SET_BIT(flow->risk, NDPI_SMB_INSECURE_VERSION); + ndpi_set_risk(flow, NDPI_SMB_INSECURE_VERSION); } } else ndpi_set_detected_protocol(ndpi_struct, flow, NDPI_PROTOCOL_SMBV23, NDPI_PROTOCOL_NETBIOS); -- cgit v1.2.3