Reply to comment

Re: Apache CodeRed Countermeasures

Yes, That is simpler.

What I posted was extracted from a larger script that also tracked timestamps from the log and fed all the data to a MySQL database for analysis so a quick one-liner wasn't appropriate.

Also I found that not all attacks were well-formed. Some didn't even show the "default.ida' but I could recognize them from other pieces of the data. So, I checked several signatures. This could be added to your one-liner, but then it would start to get a little complicated (still relatively short).

Reply

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <img> <a> <em> <strong> <cite> <code> <ul> <ol> <hr> <li> <dl> <dt> <dd> <pre> <b> <h1> <h2> <h3> <blockquote>
  • Lines and paragraphs break automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
3 + 0 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.