Re: IIS web server hacked..any tips?

From: Ron (iago_at_valhallalegends.com)
Date: 12/16/04

  • Next message: Ganbold: "Strange command histories in hacked shell server"
    Date: Thu, 16 Dec 2004 15:29:05 -0600
    To: Valdis.Kletnieks@vt.edu
    
    

    That's like saying, "1 in 10 people is mentally insane, so look at the
    next 9 people you see: if they seem ok, you're the 1".

    The fallacy is in assuming that, because the number of compromised
    machines is (say, for the sake of argument) 50%, then if you have 1000
    networks of 10 machines, each of the networks has 5 compromised
    machines. It's far more likely that 500 of the networks have everything
    compromised, and 500 of the networks have nothing.

    To summarize: You can't say that every network is a microcosm of the
    Internet. The ones that are very bad skew the statistics.

    >Given that some estimates have anywhere from 60 million to 100 million zombies
    >out there, and other estimate have 50%-90% of systems infected with spyware, if
    >your organization has more than a half-dozen PC's, there's a good chance
    >there's at least one zombie inside already.
    >
    >


  • Next message: Ganbold: "Strange command histories in hacked shell server"

    Relevant Pages

    • RE: Wireless Networking Problem
      ... Do you know anything about wireless networking in Workgroup. ... > the wireless connection to a hardwired LinkSys 4 port router using XP. ... > machines were set to use DHCP for getting an IP address. ... > and made sure automatically connect to non-preferred networks was unchecked. ...
      (microsoft.public.windowsxp.network_web)
    • Re: Rash of corrupted documents
      ... > If the machines are networked, why are you transferring files by e-mail? ... Because Windows XP Pro does such a poor job with peer-2-peer networks. ...
      (microsoft.public.word.formatting.longdocs)
    • Re: networking problem win98 to win2k machine
      ... Forget the internet, it is not important, the trouble I was having was ... Setting local security policy to allow enumeration without explicit ... had common users and passwords on both machines, ... - Ensure that client for MS networks is there on both machines. ...
      (microsoft.public.win2000.networking)
    • Solution to browsing to a Windows 2000 machine from a 98 machine
      ... Forget the internet, it is not important, the trouble I was having was ... Setting local security policy to allow enumeration without explicit ... had common users and passwords on both machines, ... - Ensure that client for MS networks is there on both machines. ...
      (microsoft.public.security)
    • FreeBSD tunnels / performance etal (gif/tun etc.)
      ... We've routed multiple class C networks over the tunnel - only to find the ... If I do a transfer from the machines 'wan' facing addresses directly, ...
      (freebsd-questions)