Article Announcement: Forensic Log Parsing with Microsoft's LogParser

From: Marc Fossi (mfossi_at_securityfocus.com)
Date: 07/21/03

  • Next message: Lee Evans: "RE: plugging old IIS FTP holes"
    Date: Mon, 21 Jul 2003 08:09:43 -0600 (MDT)
    To: Focus-MS <focus-ms@securityfocus.com>
    
    

    Forensic Log Parsing with Microsoft's LogParser
    By Mark Burnett Jul 18, 2003

    The purpose of this article is to demonstrate log file forensics for IIS
    using SQL queries with Microsoft's LogParser tool.

    http://www.securityfocus.com/infocus/1712

    Marc Fossi
    Symantec Corp.
    www.symantec.com

    -----------------------------------------------------------------------------
    ------------------------------------------------------------------------------


  • Next message: Lee Evans: "RE: plugging old IIS FTP holes"

    Relevant Pages

    • LogParser 2.1 question
      ... Question about logparser 2.1 (this is the closest newsgroup that I could ... I am using it to get monthly bandwidth from IIS, using this query: ... server] -driver:"SQL ...
      (microsoft.public.windows.server.scripting)
    • Re: xp_cmdshell dir...
      ... You might want to have a look at LogParser, it comes with IIS 6 but ... works in a Win2K environment. ... Adrian ...
      (microsoft.public.sqlserver.programming)
    • Re: Logfiles auswerten IIS6.0 Windows Server 2003
      ... > IIS 6.0 auslesen?? ... Mit den Logparser: ... MS MVP ASP / ASP.NET ...
      (microsoft.public.de.inetserver.iis)