Buffer overflow attack attempt?
-
Looking at my IIS's logs, I saw the following entry.. Looks like an attempt at a buffer overflow attack to me, does anyone have any thought or comments on this? 2003-03-28 01:57:37 66.233.131.161 - XXX.XXX.XXX.XXX 80 GET /default.ida XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX%u9090%u6858%ucbd3%u78 01%u9090%u6858%ucbd3%u7801%u9090%u6858%ucbd3%u7801%u9090%u9090%u8190%u00c3%u0003%u8b0 0%u531b%u53ff%u0078%u0000%u00=a 403 - Thanks /CMH
-
Looking at my IIS's logs, I saw the following entry.. Looks like an attempt at a buffer overflow attack to me, does anyone have any thought or comments on this? 2003-03-28 01:57:37 66.233.131.161 - XXX.XXX.XXX.XXX 80 GET /default.ida XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX%u9090%u6858%ucbd3%u78 01%u9090%u6858%ucbd3%u7801%u9090%u6858%ucbd3%u7801%u9090%u9090%u8190%u00c3%u0003%u8b0 0%u531b%u53ff%u0078%u0000%u00=a 403 - Thanks /CMH
Who knows. But you made The Lounge go very wiiiiiiiiiiiiiiiiiiiddddddddeee.... :-)
Software is everything. It also sucks. Charles Fishman [^] Awasu 1.0.2 (beta)[^]: A free RSS reader with support for Code Project.
-
Who knows. But you made The Lounge go very wiiiiiiiiiiiiiiiiiiiddddddddeee.... :-)
Software is everything. It also sucks. Charles Fishman [^] Awasu 1.0.2 (beta)[^]: A free RSS reader with support for Code Project.
-
lol! I was thinking the same thing! ;P - Nitron
"Those that say a task is impossible shouldn't interrupt the ones who are doing it." - Chinese Proverb
Nitron wrote: lol! I was thinking the same thing! :confused: Nish
Author of the romantic comedy Summer Love and Some more Cricket [New Win] Review by Shog9 Click here for review[NW]
-
Who knows. But you made The Lounge go very wiiiiiiiiiiiiiiiiiiiddddddddeee.... :-)
Software is everything. It also sucks. Charles Fishman [^] Awasu 1.0.2 (beta)[^]: A free RSS reader with support for Code Project.
Taka Muraoka wrote: But you made The Lounge go very wiiiiiiiiiiiiiiiiiiiddddddddeee.... Nope, not for me! Nish
Author of the romantic comedy Summer Love and Some more Cricket [New Win] Review by Shog9 Click here for review[NW]
-
Taka Muraoka wrote: But you made The Lounge go very wiiiiiiiiiiiiiiiiiiiddddddddeee.... Nope, not for me! Nish
Author of the romantic comedy Summer Love and Some more Cricket [New Win] Review by Shog9 Click here for review[NW]
He fixed it! :rolleyes:
Software is everything. It also sucks. Charles Fishman [^] Awasu 1.0.2 (beta)[^]: A free RSS reader with support for Code Project.
-
He fixed it! :rolleyes:
Software is everything. It also sucks. Charles Fishman [^] Awasu 1.0.2 (beta)[^]: A free RSS reader with support for Code Project.
Taka Muraoka wrote: He fixed it! So you say, have you any proof for that? I won't believe a word of this unless you produce some proof. And I want it fast. Time is running out. Nish :suss:
Author of the romantic comedy Summer Love and Some more Cricket [New Win] Review by Shog9 Click here for review[NW]
-
Taka Muraoka wrote: He fixed it! So you say, have you any proof for that? I won't believe a word of this unless you produce some proof. And I want it fast. Time is running out. Nish :suss:
Author of the romantic comedy Summer Love and Some more Cricket [New Win] Review by Shog9 Click here for review[NW]
Nishant S wrote: So you say, have you any proof for that? I won't believe a word of this unless you produce some proof. And I want it fast. Time is running out. How long have you been in the States? You're already starting to sound very presidential! :laugh:
Software is everything. It also sucks. Charles Fishman [^] Awasu 1.0.2 (beta)[^]: A free RSS reader with support for Code Project.
-
Looking at my IIS's logs, I saw the following entry.. Looks like an attempt at a buffer overflow attack to me, does anyone have any thought or comments on this? 2003-03-28 01:57:37 66.233.131.161 - XXX.XXX.XXX.XXX 80 GET /default.ida XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX%u9090%u6858%ucbd3%u78 01%u9090%u6858%ucbd3%u7801%u9090%u6858%ucbd3%u7801%u9090%u9090%u8190%u00c3%u0003%u8b0 0%u531b%u53ff%u0078%u0000%u00=a 403 - Thanks /CMH
Yes, looks like a buffer overflow attack... Looks very like something that appeared in my one of my Linux security logs last week just about the time the machine was rooted... :((&:-O Niall