OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: IIS http error log entries...

From: Pidgorny, Slav (slav.pidgornyanz.com)
Date: Tue Dec 12 2006 - 16:01:08 CST


Bot activity - safe to ignore (assuming you made any security effort in the past couple of years).

Just have this idea: I wonder if that would be possible to make these requests hitting Google Adwords on the site?

Regards

Slav

> -----Original Message-----
> From: listbouncesecurityfocus.com
> [mailto:listbouncesecurityfocus.com]On Behalf Of

>
> Hello list,
> i hope i got the right group,
> i just found these in my IIS logs:
>
> -----------------------
>
> 2006-12-08 11:38:18 87.17.7.5 2842 192.168.x.x 80 HTTP/1.0
> HEAD
> /PBServer/..%%35%63..%%35%63..%%35%63winnt/system32/cmd.exe?/c
> +dir+c:\ 400 - URL -

"This e-mail and any attachments to it (the "Communication") is, unless otherwise stated, confidential, may contain copyright material and is for the use only of the intended recipient. If you receive the Communication in error, please notify the sender immediately by return e-mail, delete the Communication and the return e-mail, and do not read, copy, retransmit or otherwise deal with it. Any views expressed in the Communication are those of the individual sender only, unless expressly stated to be those of Australia and New Zealand Banking Group Limited ABN 11 005 357 522, or any of its related entities including ANZ National Bank Limited (together "ANZ"). ANZ does not accept liability in connection with the integrity of or errors in the Communication, computer virus, data corruption, interference or delay arising from or in respect of the Communication."

---------------------------------------------------------------------------
---------------------------------------------------------------------------