[Dshield] What is web request for M83A

Brian Jameson bjameson at cix.co.uk
Wed Dec 10 11:24:51 GMT 2003


At 3:54am this morning I received a scan from a UK University on port 80 of
my public ip addresses for 'GET /M83A HTTP/1.0'. A search of google shows
that this turns up in many peoples web logs. Other than that I drew a blank!
The normal snort rules failed to pick it up. Can anyone enlighten me about
about this?

regards,
Brian




More information about the list mailing list