|
This
is what I was talking about earlier when it was suggested the server was hacked
because of the funny directory names. I was speculating there might be a
way to create those directories with the normal permissions given to the
anonymous account in a write enabled directory. The original post about
the server with the "aux" directory could very well have been hacked, I just
wasn't sure if the presence of those directories in a public FTP folder was
enough evidence to jump to that conclusion without looking at the
logs.
I did
some experimenting and found I can't create the "com1.scanned.by.zog+++/+++/"
directory under IIS5. Perhaps it can be done in IIS4? I'm running
Serv-U FTP on all of the IIS4 machines so I can't test it there. The
"+++COM2" and "null.upload" are legal though and can be deleted by normal
means.
On a
related note, I've been getting some of the same people connecting to my server,
some warez guys from France. I was watching their activity closely for
awhile because they don't have download permissions from the uploads directory
yet they continued to upload files which didn't make a lot of sense to me.
I saw attempts at downloading, but nothing to indicate they were successful or
coming in by other means, so I've just started banning their ip ranges because
I'm tired of cleaning up all of the garbage on the ftp site.
Jeff
http://www.sunbelt-software.com/ntsysadmin_list_charter.htm |
Title: Message
- RE: STRANGE undeletable directory Bunting, Jeff
- Re: STRANGE undeletable directory Gordon Montgomery
- Re: STRANGE undeletable directory Gordon Montgomery
- RE: STRANGE undeletable directory Brenden C. Bryan
- Re: STRANGE undeletable directory xylog
- RE: STRANGE undeletable directory C.E. GENE CONNOR
- RE: STRANGE undeletable directory Bunting, Jeff
- Re: STRANGE undeletable directory xylog
- Fw: STRANGE undeletable directory xylog
- RE: STRANGE undeletable directory Bunting, Jeff
- Re: STRANGE undeletable directory Bunting, Jeff
- Re: STRANGE undeletable directory xylog
- Re: STRANGE undeletable directory Joseph Hom
- RE: STRANGE undeletable directory Bunting, Jeff
- RE: STRANGE undeletable directory Hodson, Jason
- RE: STRANGE undeletable directory Bunting, Jeff
- RE: STRANGE undeletable directory Kevin Lundy
- RE: STRANGE undeletable directory Bunting, Jeff
- RE: STRANGE undeletable directory Kevin Lundy
- RE: STRANGE undeletable directory Kevin Lundy
- RE: STRANGE undeletable directory Sankaranarayanan_Ganapathy
