I'm guessing that these entries are an attempt of the worm to compromise......my or the servers....With these entries in our logs does it mean it is trying to enter or has and compromised the system?
Help required ...my access log looks like the following all day each day....24.67.180.145 - - [21/Sep/2001:14:18:20 -0700] "GET /scripts/root.exe?/c+dir HTTP/1.0" 404 280
24.67.180.145 - - [21/Sep/2001:14:18:21 -0700] "GET /MSADC/root.exe?/c+dir HTTP/1.0" 404 278...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.