best practices

From: Hernán Castelo (hcastelo_at_cedi.frba.utn.edu.ar)
Date: 06/28/04


Date: Mon, 28 Jun 2004 15:26:26 -0300

i deploy
the "best practices"
according to MS
but it was not enough

what should i do now?

how can i secure the web server now ?

-- 
atte,
Hernán 
  "Hernán Castelo" <hcastelo@cedi.frba.utn.edu.ar> escribió en el mensaje news:%23GBjOhRXEHA.2636@TK2MSFTNGP10.phx.gbl...
  hi
  someone was hacked my site
  i have 2 servers :
  web--> IIS 5 / w2k adv Srv IIS lockdown
  sql--> SQL2k / w2k adv Srv
  i found the web srv doing "beeps"
  soon i found it serves html pages
  but don't serves asp with an error like
  "Error in the server application"
  sql srv lost sa password
  and don't recognize the local admin
  then i can't access to sql applications
  except of that,
  servers appears to work normal
  the web srv log is saying
  that attacked the iwam_
  and many "login misses" under DCOMSCM
  and then, "login hits"
  i go now to restore
  my backup and images
  but
  what can i do to prevent the next attack ?
  how can i protect better the site ?
  thanks
  -- 
  atte,
  Hernán


Relevant Pages

  • Re: SRV RRs support in Internet Explorer?
    ... > nothing magical about SRV records. ... > reflect some explict or implicit order based on dynamic server loading and ... >> receives SRV RRs in a response to one of its A queries, ... The DNS Client works as ...
    (microsoft.public.win2000.dns)
  • Re: SRV RRs support in Internet Explorer?
    ... >> nothing magical about SRV records. ... >> reflect some explict or implicit order based on dynamic server loading ... The DNS Client works ... >>> domain, to move services from host to host with little fuss, and to ...
    (microsoft.public.win2000.dns)
  • Re: help:site hacked
    ... --Jonathan Maltz [Microsoft MVP - Windows Server, ... sql--> SQL2k / w2k adv Srv ... and then, "login hits" ... what can i do to prevent the next attack? ...
    (microsoft.public.windows.server.security)
  • Re: SRV RRs support in Internet Explorer?
    ... nothing magical about SRV records. ... that updates the recordon the DNS server to reflect current state of the ... > for host updates when new application ports are assigned, ... To be APSDR compatible, a DNS Client has, when it ...
    (microsoft.public.win2000.dns)
  • Unable to connect to database. Check database connection inf
    ... SharePoint Portal Srever 2003 installed on win srv 2003. ... My problem is that I went back to previuos config and now I'm ... 1.stoped services on SharePoint server. ...
    (microsoft.public.windows.server.setup)