All Tagshacking (RSS)
  • Re: IIS 6 FTP Server brute force attacks, can I block IPs automatically after many failures?

    A very inexpensive solution for blocking FTP Attacks on IIS servers can be found at: http://www.ftpblocker.com/ It is very useful for smaller business who don't have hardware firewalls or sniffers to block these attacks.
    Posted to Forum by TolchinJ on 10-01-2009, 11:18 AM
  • URL Scan and __VIEWSTATE

    Ive been trying to write a filter based on __VIEWSTATE but I can only get it to scan and filter based on the viewstate if I use ScanAllRaw=1 URLScan rule: [ViewState] AppliesTo=.asp,.aspx DenyDataSection=ViewState Strings ScanUrl=0 ScanAllRaw=1 ScanQueryString=0 ScanHeaders= [ViewState Strings] -- %3b...
    Posted to Forum by Vissuluth on 08-27-2008, 2:36 AM
  • SQL Injection Attacks on IIS Web Servers

    This thread will contain the latest information regarding recent reports that have surfaced stating that web sites running on Microsoft’s Internet Information Services (IIS) 6.0 have been compromised. These reports allude to a possible vulnerability in IIS or issues related to Security Advisory 951306...
    Posted to Forum by bills on 04-25-2008, 11:41 PM
  • Re: Anyone know about www.nihaorr1.com/1.js?

    I would advise anyone affected by this attack to activate the SQL profiler (or equivalent) and set it to record only EXEC commands. If your website then becomes infected again you can quickly scroll through the profiler output and find the "suspicious" command where the injection has entered...
    Posted to Forum by nhertz on 04-24-2008, 5:11 PM
Page 1 of 1 (4 items)
Microsoft Communities