[**] [1:1256:7] WEB-IIS CodeRed v2 root.exe access [**] [Classification: Web Application Attack] [Priority: 1] 06/03-21:22:10.117336 24.239.167.179:1224 -> 192.168.1.6:80 TCP TTL:116 TOS:0x0 ID:34039 IpLen:20 DgmLen:112 DF ***AP*** Seq: 0x48008B3B Ack: 0x1D9C5B42 Win: 0x4470 TcpLen: 20 [Xref => http://www.cert.org/advisories/CA-2001-19.html] |
[**] [1:1256:7] WEB-IIS CodeRed v2 root.exe access [**] [Classification: Web Application Attack] [Priority: 1] 06/03-21:22:13.834845 24.239.167.179:1422 -> 192.168.1.6:80 TCP TTL:116 TOS:0x0 ID:35081 IpLen:20 DgmLen:110 DF ***AP*** Seq: 0x489F5EE8 Ack: 0x1D892424 Win: 0x4470 TcpLen: 20 [Xref => http://www.cert.org/advisories/CA-2001-19.html] |