All TagsURlScan SQL Injection (RSS)
  • What to do for a rootkit...

    I have recently found a rootkit on my computer through AVG and am wondering how to get this thing off. I tried to get AVG to delete it but it said it cannot. I heard you can re-install windows vista and also restore default settings but I am not sure if that deletes everything and I'll have to get...
    Posted to Forum by rgsnowman on 06-14-2009, 9:01 AM
  • URLScan Recycle

    In our URLScan logs we get the following quite a bit - - - - - - - - - - - - - - - - - - - - - - - - #Software: Microsoft UrlScan 3.0 #Version: 1.0 #Date: 2008-09-04 01:01:20 - - - - - - - - - - - - - - - - - - - - - - - - Does anyone know if this means that UrlScan is recycling and we have a period...
    Posted to Forum by jeremyn11 on 09-05-2008, 2:24 PM
  • URLScan 3.0 RTW: [AlwaysAllowedQueryStrings]

    Doing some testing, currently, and running into some issues with this. We've got a couple cases where things like 'cast' or 'open' are appropriate for our webpages. I've setup an AlwaysAllowedQueryStrings section: [AlwaysAllowedQueryStrings] branch=Openshaw branch=Newcastle+upon...
    Posted to Forum by jgraham on 09-02-2008, 9:46 AM
  • Re: urlScan 3.0 rtw [AlwaysAllowedUrls] not working? Wildcard/regex in [AlwaysAllowedQueryStrings]

    Hi Zhao, Thank you for your reply. I now understand how [AlwaysAllowedUrls] works and where the query string check is still performed on the allowed Urls. To clarify, here is what I would like to achieve. For instance, I would like the following 'url+query string' to be valid: http://www.domain...
    Posted to Forum by ytkaczyk on 08-28-2008, 11:46 AM
  • urlScan 3.0 rtw [AlwaysAllowedUrls] not working?

    I would like to allow a search page to accept all text in the query string. To do this I added the result page to the [AlwaysAllowedUrls]. One thing that is ambiguous from the documentation is if the [AlwaysAllowedUrls] settings also bypasses the custom rules and if the pages listed in [AlwaysAllowedUrls...
    Posted to Forum by ytkaczyk on 08-25-2008, 2:30 PM
  • Re: Requests to / and /default.aspx with URLScan 3.0 rtw handled differently

    You need to capture the 'extensionless' requests by adding the . extension to the ApplliesTo section: [SQL Injection Raw] AppliesTo=.asp,.aspx ,. Yves
    Posted to Forum by ytkaczyk on 08-25-2008, 2:27 PM
  • Re: UrlScan 3.0 Beta not capturing SQL Injection

    Rovastar, I can confirm that the workaround that KentZhou posted works. I have included below the contents of the RuleList section in the UrlScan.ini as I have it in my test box. After changing the rule though I issued an iisreset /restart command before I tested so the UrlScan.ini's settings were...
    Posted to Forum by apajlopez on 08-18-2008, 8:51 AM
Page 1 of 1 (7 items)
Microsoft Communities