Hello all,

on Tue, 18 Sep 2001, at 16:33:35 local time (GMT -0600), Douglas wrote:

DH> none of them are coming in with atGuard stopping any and all attempts,

it's only dangerous if you're running IIS ...
over the past half hour i had 7 IP's probing port 80 several times ; it
seems to be a new worm W32.Nimda ...
(http://www.foxnews.com/story/0,2933,34575,00.html)

signature is "GET /scripts/..%255c../winnt/system32/cmd.exe?/c+dir
HTTP/1.0"

-- 
Rob
using The Bat! 1.53o

... Not only do I not know what's going on, but I wouldn't know what to do about it if 
I did.


-- 
________________________________________________________
Archives   : http://tbudl.thebat.dutaint.com
Moderators : mailto:[EMAIL PROTECTED]
TBTech List: mailto:[EMAIL PROTECTED]
Unsubscribe: mailto:[EMAIL PROTECTED]
Latest Vers: 1.53d

Reply via email to