Re: "suspicious" apache log entries


Doug Winter wrote:
It claimed that the HTTP libraries used by Nimda and Code Red were
generic, and could be fooled by sending a redirect response like:

Nice idea. Would it be enough to redirect them to the localhost-ip, or should the URI of the original request be appended to the redirection?

Bye, Mike

