Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Security Incidents: Re: Code Red, anyone?

Re: Code Red, anyone?

From: Pluto <pluto_at_stderr.de>
Date: Wed, 1 Aug 2001 17:29:29 +0200

On Wed, Aug 01, 2001 at 07:46:27AM -0700, Pat Wilson wrote:
> Just to confirm - I've spotted an infestation here (only one so
> far; we blocked access to machines that had been infested on the
> 19th and hadn't heard had been cleaned up). This one even had
> the Chinese Web site...

  Snort reported 9 "WEB-IIS ISAPI .ida attempt" in the last 20 min. Just
20 IP-numbers.

  Gruss

-- 
  Pluto   -   SysAdmin of Hades
  Free information! Freedom through knowledge. Wisdom for all!! =:-)
----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com
Received on Aug 01 2001
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos