Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Security Incidents: Re: Code Red, anyone?

Re: Code Red, anyone?

From: Ivan Andres Hernandez Puga <iahp_at_usa.net>
Date: Wed Aug 01 17:13:39 2001

I have this fresh snort logs

[**] CodeRed IDA Overflow [**]
08/01-12:24:50.373465 211.112.0.4:2951 -> 200.42.132.76:80
TCP TTL:112 TOS:0x0 ID:4065 IpLen:20 DgmLen:1500 DF
***AP*** Seq: 0xA916AC88 Ack: 0x80067D66 Win: 0x4470 TcpLen: 20

[**] CodeRed Defacement [**]
08/01-12:24:51.695317 211.112.0.4:2951 -> 200.42.132.76:80
TCP TTL:112 TOS:0x0 ID:4385 IpLen:20 DgmLen:1155 DF
***AP*** Seq: 0xA916B7F0 Ack: 0x80067D66 Win: 0x4470 TcpLen: 20

Ivan Hernandez.

----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management
and tracking system please see: http://aris.securityfocus.com
Received on Aug 01 2001

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos