hacking hjælp!!!!
Hej alleJeg har seriøst brug for hjælp!!!!
Jeg tror der er nogle der hacker mit \"default web site\" på min iis 4.0
Jeg har kigget i min log fil til dette site og dette er hvad der står for idag:
#Software: Microsoft Internet Information Server 4.0
#Version: 1.0
#Date: 2001-12-11 01:33:22
#Fields: time c-ip cs-method cs-uri-stem sc-status
01:33:22 62.172.205.44 GET /scripts/root.exe 401
01:33:22 62.172.205.44 GET /MSADC/root.exe 401
01:33:25 62.172.205.44 GET /c/winnt/system32/cmd.exe 404
01:33:25 62.172.205.44 GET /d/winnt/system32/cmd.exe 404
01:33:29 62.172.205.44 GET /scripts/..%5c../winnt/system32/cmd.exe 401
03:55:14 62.188.213.177 GET /scripts/root.exe 401
03:55:22 62.188.213.177 GET /MSADC/root.exe 401
09:00:44 62.243.193.157 GET /scripts/root.exe 401
09:00:44 62.243.193.157 GET /MSADC/root.exe 401
09:00:44 62.243.193.157 GET /c/winnt/system32/cmd.exe 404
09:00:44 62.243.193.157 GET /d/winnt/system32/cmd.exe 404
09:00:44 62.243.193.157 GET /scripts/..%5c../winnt/system32/cmd.exe 401
09:00:45 62.243.193.157 GET /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
09:00:45 62.243.193.157 GET /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
09:00:45 62.243.193.157 GET /msadc/..%5c../..%5c../..%5c/..Á../..Á../..Á../winnt/system32/cmd.exe 401
09:00:45 62.243.193.157 GET /scripts/..Á../winnt/system32/cmd.exe 401
09:00:45 62.243.193.157 GET /scripts/winnt/system32/cmd.exe 401
09:00:45 62.243.193.157 GET /winnt/system32/cmd.exe 404
09:00:45 62.243.193.157 GET /winnt/system32/cmd.exe 404
09:00:46 62.243.193.157 GET /scripts/..%5c../winnt/system32/cmd.exe 401
09:00:46 62.243.193.157 GET /scripts/..%5c../winnt/system32/cmd.exe 401
09:00:46 62.243.193.157 GET /scripts/..%5c../winnt/system32/cmd.exe 401
09:00:46 62.243.193.157 GET /scripts/..%2f../winnt/system32/cmd.exe 401
11:49:00 192.168.1.6 OPTIONS / 200
11:49:00 192.168.1.6 PROPFIND /company 501
12:41:00 62.243.180.197 GET /scripts/root.exe 401
12:41:00 62.243.180.197 GET /MSADC/root.exe 401
12:41:02 62.243.180.197 GET /c/winnt/system32/cmd.exe 404
12:41:03 62.243.180.197 GET /d/winnt/system32/cmd.exe 404
12:41:03 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:41:04 62.243.180.197 GET /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
12:41:05 62.243.180.197 GET /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
12:41:05 62.243.180.197 GET /msadc/..%5c../..%5c../..%5c/..Á../..Á../..Á../winnt/system32/cmd.exe 401
12:41:07 62.243.180.197 GET /scripts/..Á../winnt/system32/cmd.exe 401
12:41:07 62.243.180.197 GET /scripts/winnt/system32/cmd.exe 401
12:41:08 62.243.180.197 GET /winnt/system32/cmd.exe 404
12:41:08 62.243.180.197 GET /winnt/system32/cmd.exe 404
12:41:08 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:41:10 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:41:10 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:41:11 62.243.180.197 GET /scripts/..%2f../winnt/system32/cmd.exe 401
12:42:06 62.243.180.197 GET /scripts/root.exe 401
12:42:06 62.243.180.197 GET /MSADC/root.exe 401
12:42:08 62.243.180.197 GET /c/winnt/system32/cmd.exe 404
12:42:09 62.243.180.197 GET /d/winnt/system32/cmd.exe 404
12:42:09 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:42:11 62.243.180.197 GET /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
12:42:11 62.243.180.197 GET /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
12:42:13 62.243.180.197 GET /msadc/..%5c../..%5c../..%5c/..Á../..Á../..Á../winnt/system32/cmd.exe 401
12:42:14 62.243.180.197 GET /scripts/..Á../winnt/system32/cmd.exe 401
12:42:14 62.243.180.197 GET /scripts/winnt/system32/cmd.exe 401
12:42:16 62.243.180.197 GET /winnt/system32/cmd.exe 404
12:42:16 62.243.180.197 GET /winnt/system32/cmd.exe 404
12:42:17 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:42:19 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:42:19 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
12:42:21 62.243.180.197 GET /scripts/..%2f../winnt/system32/cmd.exe 401
12:43:21 192.168.1.6 OPTIONS / 200
12:43:21 192.168.1.6 PROPFIND /Company 501
12:43:21 192.168.1.6 PROPFIND /mt 501
13:52:06 192.168.1.6 OPTIONS / 200
13:52:06 192.168.1.6 PROPFIND /company 501
14:09:26 192.168.1.6 OPTIONS / 200
14:09:26 192.168.1.6 PROPFIND /Company 501
14:09:26 192.168.1.6 PROPFIND /mt 501
14:26:21 192.168.1.6 OPTIONS / 200
14:26:21 192.168.1.6 PROPFIND /Company 501
14:26:21 192.168.1.6 PROPFIND /mt 501
17:38:39 62.243.180.197 GET /scripts/root.exe 401
17:38:42 62.243.180.197 GET /MSADC/root.exe 401
17:38:46 62.243.180.197 GET /c/winnt/system32/cmd.exe 404
17:38:49 62.243.180.197 GET /d/winnt/system32/cmd.exe 404
17:38:52 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
17:38:56 62.243.180.197 GET /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
17:38:59 62.243.180.197 GET /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
17:39:02 62.243.180.197 GET /msadc/..%5c../..%5c../..%5c/..Á../..Á../..Á../winnt/system32/cmd.exe 401
17:39:05 62.243.180.197 GET /scripts/..Á../winnt/system32/cmd.exe 401
17:39:08 62.243.180.197 GET /scripts/winnt/system32/cmd.exe 401
17:39:12 62.243.180.197 GET /winnt/system32/cmd.exe 404
17:39:15 62.243.180.197 GET /winnt/system32/cmd.exe 404
17:39:18 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
17:39:21 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
17:39:25 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
17:39:28 62.243.180.197 GET /scripts/..%2f../winnt/system32/cmd.exe 401
19:23:29 192.168.1.6 OPTIONS / 200
19:23:29 192.168.1.6 PROPFIND /Company 501
19:49:07 62.243.180.197 GET /scripts/root.exe 401
19:49:07 62.243.180.197 GET /MSADC/root.exe 401
19:49:07 62.243.180.197 GET /c/winnt/system32/cmd.exe 404
19:49:07 62.243.180.197 GET /d/winnt/system32/cmd.exe 404
19:49:07 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
19:49:07 62.243.180.197 GET /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
19:49:07 62.243.180.197 GET /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
19:49:07 62.243.180.197 GET /msadc/..%5c../..%5c../..%5c/..Á../..Á../..Á../winnt/system32/cmd.exe 401
19:49:08 62.243.180.197 GET /scripts/..Á../winnt/system32/cmd.exe 401
19:49:08 62.243.180.197 GET /scripts/winnt/system32/cmd.exe 401
19:49:08 62.243.180.197 GET /winnt/system32/cmd.exe 404
19:49:08 62.243.180.197 GET /winnt/system32/cmd.exe 404
19:49:08 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
19:49:08 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
19:49:08 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
19:49:08 62.243.180.197 GET /scripts/..%2f../winnt/system32/cmd.exe 401
20:10:18 62.243.180.197 GET /scripts/root.exe 401
20:10:18 62.243.180.197 GET /MSADC/root.exe 401
20:10:18 62.243.180.197 GET /c/winnt/system32/cmd.exe 404
20:10:18 62.243.180.197 GET /d/winnt/system32/cmd.exe 404
20:10:18 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
20:10:18 62.243.180.197 GET /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
20:10:18 62.243.180.197 GET /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe 500
20:10:18 62.243.180.197 GET /msadc/..%5c../..%5c../..%5c/..Á../..Á../..Á../winnt/system32/cmd.exe 401
20:10:19 62.243.180.197 GET /scripts/..Á../winnt/system32/cmd.exe 401
20:10:19 62.243.180.197 GET /scripts/winnt/system32/cmd.exe 401
20:10:19 62.243.180.197 GET /winnt/system32/cmd.exe 404
20:10:19 62.243.180.197 GET /winnt/system32/cmd.exe 404
20:10:19 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
20:10:19 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
20:10:19 62.243.180.197 GET /scripts/..%5c../winnt/system32/cmd.exe 401
20:10:19 62.243.180.197 GET /scripts/..%2f../winnt/system32/cmd.exe 401
20:16:00 192.168.1.6 OPTIONS / 200
20:16:00 192.168.1.6 PROPFIND /Company 501
Er der noget jeg har gjort forkert?? Hvad skal jeg lukke for...
HJÆLPPPPP!!!!!!!!