Re: Hackers Exploiting again win2000 and IIS... can anyone help???

From: Karl Levinson [x y] mvp (levinson_k_at_despammed.com)
Date: 08/31/04


Date: Tue, 31 Aug 2004 02:26:00 -0400

Most such hacking is a result of an old known vulnerability not being
addressed... missing patches, missing firewall, not having URLScan
installed, not following the www.nsa.gov/snac and
www.microsoft.com/technet/security guides to hardening IIS and Windows, etc.
If this was really a new hack, it's pretty hard to answer this question
[e.g. how you were hacked and what you can do] without knowing more of the
symptoms. But see here:

http://securityadmin.info/faq.asp#hacked
http://securityadmin.info/faq.asp#harden

"Jay_Reborn" <JayReborn@discussions.microsoft.com> wrote in message
news:E3B38DE8-5E18-4104-B88F-45293F525FF1@microsoft.com...
> There has been a sudden increase from hackers changing the the root files
on
> the webserver...
>
> They are exploiting something... but can someone help here???
>
> the message people get is "Fatal Error ownz YOU"
> a number of groups on irc.brasnet.org are hitting thousands of websites...
> it will soon become a epidemic... unless the security is not addresses...
>
> so i am stating this thread so people can discuss it... can anybody help
> here... as I know poieple who have already been hit by this...
>
>


Quantcast