Hi all I'm sure any of us here who administrer a website have seen these scans that come in every hour of the day looking for "cmd.exe" or "default.ida" and so on. After a bit of Googling about this I've noticed that there are two schools of thought, those who laugh and say that's an IIS exploit and I'm Apache, and those who get annoyed by this an try to put a stop to it with iptables and the like.
What do those of us in CLUG do? Laugh or fight back? ------------------------------------------------- Hamish McBrearty MCSE MCSA Network Engineer Rangi Ruru Girls' School 59 Hewitts Road Christchurch NEW ZEALAND Ph 03 355-6099 Fax 03 355-6027 CELL 021 999770 E-Mail: [EMAIL PROTECTED] --------------------------------------------------
