Hello all,
on Tue, 18 Sep 2001, at 16:33:35 local time (GMT -0600), Douglas wrote:
DH> none of them are coming in with atGuard stopping any and all attempts,
it's only dangerous if you're running IIS ...
over the past half hour i had 7 IP's probing port 80 several times ; it
seems to be a new worm W32.Nimda ...
(http://www.foxnews.com/story/0,2933,34575,00.html)
signature is "GET /scripts/..%255c../winnt/system32/cmd.exe?/c+dir
HTTP/1.0"
--
Rob
using The Bat! 1.53o
... Not only do I not know what's going on, but I wouldn't know what to do about it if
I did.
--
________________________________________________________
Archives : http://tbudl.thebat.dutaint.com
Moderators : mailto:[EMAIL PROTECTED]
TBTech List: mailto:[EMAIL PROTECTED]
Unsubscribe: mailto:[EMAIL PROTECTED]
Latest Vers: 1.53d