Security Incidents mailing list archives
Re: Code Red, anyone?
From: Pluto <pluto () stderr de>
Date: Wed, 1 Aug 2001 17:29:29 +0200
On Wed, Aug 01, 2001 at 07:46:27AM -0700, Pat Wilson wrote:
Just to confirm - I've spotted an infestation here (only one so far; we blocked access to machines that had been infested on the 19th and hadn't heard had been cleaned up). This one even had the Chinese Web site...
Snort reported 9 "WEB-IIS ISAPI .ida attempt" in the last 20 min. Just 20 IP-numbers. Gruss -- Pluto - SysAdmin of Hades Free information! Freedom through knowledge. Wisdom for all!! =:-) ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
Current thread:
- Re: Code Red, anyone?, (continued)
- Re: Code Red, anyone? Ryan Russell (Aug 01)
- Re: Code Red, anyone? Kman (Aug 01)
- Re: Code Red, anyone? Ken Eichman (Aug 01)
- unsubscribe me please Christophe Bernigaud (Aug 01)
- RE: Code Red, anyone? Information Security (Aug 01)
- RE: Code Red, anyone? Chip McClure (Aug 01)
- RE: Code Red, anyone? Jürgen Nieveler (Aug 01)
- Re: Code Red, anyone? Seth Arnold (Aug 01)
- Re: Code Red, anyone? Pat Wilson (Aug 01)
- Re: Code Red, anyone? jan (Aug 01)
- Re: Code Red, anyone? Pluto (Aug 01)
- RE: Code Red, anyone? Thompson, John J (Aug 01)
- Re: Code Red, anyone? Alfred Huger (Aug 01)
- Re: Code Red, anyone? Dirk Brockhausen (Aug 01)
- Re: Code Red, anyone? Johannes B. Ullrich (Aug 01)
- Re: Code Red, anyone? Chris A. Mattingly (Aug 01)
- Re: Code Red, anyone? Ivan Andres Hernandez Puga (Aug 01)
- RE: Code Red, anyone? kerveros (Aug 01)
- RE: Code Red, anyone? Joe Lareau (Aug 01)
- Re: Code Red, anyone? Ryan Russell (Aug 01)