weird URL's in syslog
- From: "Mike" <m.mullins@xxxxxxxxxxxxxxx>
- Date: Sat, 25 Mar 2006 01:34:14 GMT
I have been monitoring a small LAn which was blacklisted for sending out
SPAM. I can see one host in there which is from time to time going to a
host using very strange URL's omn port 80. They look like....
304001: 192.168.1.10 Accessed URL
194.18.118.2:/1/?A4q6ADclfzEXNg%2F8klPB05SCdAAzDo%2BjJ7Jihuk6zhQZU29waG9zIFNtYWxsIEJ1c2luZXNzIFNvbHV0aW9ucwAxLCAwLCAyLCAwAFNvcGhvcyBwbGMARW5nbGlzaCAoVW5pdGVkIEtpbmdkb20pAEM6XFdJTkRPV1NcVGVtcFxzb3RtcDEuZGlyXEFMVXBkYXRlLmV4ZQAzMS8wMS8yMDA2IDEzOjQ0OjQy
Anyone know what this is?
Sorry, is anyone prepared to tell me :-)
.
- Follow-Ups:
- Re: weird URL's in syslog
- From: DigitalVinyl
- Re: weird URL's in syslog
- From: Sebastian Gottschalk
- Re: weird URL's in syslog
- Prev by Date: Re: NAT redundant w/firewall?
- Next by Date: Re: NAT redundant w/firewall?
- Previous by thread: Just want to keep the crap out!!
- Next by thread: Re: weird URL's in syslog
- Index(es):
Relevant Pages
|