[ILUG] Bloody script kiddies

Justin MacCarthy macarthy at iol.ie
Fri Nov 16 14:43:11 GMT 2001


For anyone of you that has the good forture or admining NT boxes , look at
"securing windows NT/2000 server " by Oreilly really good guide of the
lovely task of securing NT /WIN2000 boxes

To be Recommended

BTW I have 7 NT boxes hosted co-lo'ed in the USA for huge amount of money
per month. The default installations of NT / 2000 , we got in the beginning
were the least hardened boxes I've ever seen. Dreadful.I mean ever if the
cmd.exe was ACLed !!!!.I think that NT admins are just lazy in comparision
to their *nix counterparts. That plus it much harder to remotely admin NT
boxes , but this has improved with termial services....

Are there many of you on the ILUG admin both wondoze and linux ? Is there a
Ireland windoze user group or mailing list???

Justin

-----Original Message-----
From: ilug-admin at linux.ie [mailto:ilug-admin at linux.ie]On Behalf Of Niall
O Broin
Sent: Friday, November 16, 2001 2:23 PM
To: ilug at linux.ie
Subject: [ILUG] Bloody script kiddies


Just had a look in the log file to which accesses to one of my web server
box's IP address goes i.e. requests not to one of the hosted domains. Since
Sept. there have been 23000+ attempts to get cmd.exe to do something and
4000+ attempts to find root.exe, and this is just on one lonely little box.
I wonder do script kiddies' attempts now use up more bandwidth than porn ?

And do some poor suckers actually have IIS boxes configured in such a way
that you can execute arbitray commands just by calling cmd.exe ?



Niall

--
Irish Linux Users' Group: ilug at linux.ie
http://www.linux.ie/mailman/listinfo/ilug for (un)subscription information.
List maintainer: listmaster at linux.ie






More information about the ILUG mailing list