Repeated Unsuccessful Attacks to OS and ???

From: Gary (1234@questionit.com)
Date: 02/12/03


From: "Gary" <1234@questionit.com>
Date: Wed, 12 Feb 2003 14:54:27 -0600


 We are running IIS 5.0 and we are getting repeated attacks (usually several
daily) to:

/sumthin
/default.ida NNNNNNNNNNNNNNNNNNNNNN (very long string)
/winnt/system32/cmd.exe
/scripts...

At this point they are all unsuccessful but I fear it is only a matter of
time before something makes it in. They are usually from a different IP on
each series of attacks.

What are these attacks and is there ANY way to stop them???

I have been told the only way is to be sure the server is updated and
properly patched since the requests come in on port 80. Is this true or is
there a known way to block these attacks? They come in on several of our
websites.

What are some recommended suggestions on the router or firewall? I would
appreciate any help...

Gary



Relevant Pages

  • Re: multiple inserts: advice needed
    ... avoid an entire array of attacks against your database. ... passed as a parameter cannot corrupt the SQL string itself, ... The attack mechanism is called SQL ... programmer helping programmers. ...
    (microsoft.public.dotnet.general)
  • Re: how to code to avoid SQL insertion attacks
    ... would be unkind, too many heart attacks. ... you can recover a password, from the oracle sql drivers. ... the purpose of an injection attack is not to string useless sql together, ...
    (comp.lang.java.programmer)
  • Re: Cant choose a time system
    ... Creatures that only bite ... Trample attacks that an animal ... You can have certain attacks put the target into special states. ... generic "sharp object" string. ...
    (rec.games.roguelike.development)
  • Re: IPtables rules to block by symbolic host name, not IP ?
    ... machine, use the string ... The following lines kill off the various windows attacks that I know of: ... matching strings into the iptables rules. ... > to block the offending machines based on host name, ...
    (comp.os.linux.security)
  • Nigeria Militants Threaten to Hit Tankers, Nine Foreign Oil Workers Seized
    ... Militants who seized nine foreign oil workers in a string of attacks ... across Nigeria's troubled delta region threatened Sunday to step up ...
    (alt.religion.islam)