This is a common attack. IIS returned 404 to the request. If you are
running URLScan and/or have the latest security patches you are fine. This
attack is about a year old.
Pat
"Miles Ashton" <mashton.TakeThisOut@tmw.co.uk> wrote in message
news:bb571f92.0405292230.34c7be8@posting.google.com...
> Can anybody explain this - never seen anything like it in a log
> before. I know I should have disabled the SEARCH verb using lockdown
> but damn it, I didn't. Concerned.
>
> #Software: Microsoft Internet Information Services 5.1
> #Version: 1.0
> #Date: 2004-05-09 02:06:51
> #Fields: time c-ip cs-method cs-uri-stem sc-status
> 02:06:51 218.69.208.66 SEARCH
>
/
>
>
>
>
>
>
>
>
>
>
> 404<!-- ~MESSAGE_AFTER~ -->
>> Stay informed about: Log entry symbols and carriage returns ?