我单位内网被黑,瑞星监控防火墙都开着.我找到可以的访问日志,请高手帮我分析漏洞在哪里?
怀疑10.176.48.135入侵修改了/index/default.asp.我要如何防止类似情况发生。谢谢
日志内容
2006-03-10 06:45:54 10.176.48.135 - 10.131.8.142 80 GET /Default.asp - 302 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:54 10.176.48.135 - 10.131.8.142 80 GET /index/default.asp - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:55 10.176.48.135 - 10.131.8.142 80 GET /public/smza.CSS - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:55 10.176.48.135 - 10.131.8.142 80 GET /img/tbg.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:55 10.176.48.135 - 10.131.8.142 80 GET /img/zazdlogo.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:55 10.176.48.135 - 10.131.8.142 80 GET /img/menubg.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:55 10.176.48.135 - 10.131.8.142 80 GET /img/flash1.swf - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:55 10.176.48.135 - 10.131.8.142 80 GET /index/欢迎来到中国模板网.files/tbg.gif - 404 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/tmt.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/leftline.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/ball2.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.131.105.7 - 10.131.8.142 80 GET /hotel.htm - 304 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+MyIE2)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/ljindex/loginbt1.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/ljindex/loginpeople.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/bg.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/menubg.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:56 10.176.48.135 - 10.131.8.142 80 GET /img/ljindex/sbt1.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/wjcx.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/bszn.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/hotel.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/bikelogo3.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/czxx.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/dq.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.176.48.135 - 10.131.8.142 80 GET /img/glb.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:57 10.131.117.142 - 10.131.8.142 80 GET /hotel.htm - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.0)
2006-03-10 06:45:59 10.176.48.135 - 10.131.8.142 80 GET /img/bgxsx.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:59 10.176.48.135 - 10.131.8.142 80 GET /img/bt1.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:59 10.176.48.135 - 10.131.8.142 80 GET /img/fk.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:59 10.176.48.135 - 10.131.8.142 80 GET /img/arrow1.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:45:59 10.176.48.135 - 10.131.8.142 80 GET /img/wbxw.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:00 10.176.48.135 - 10.131.8.142 80 GET /img/new.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:00 10.176.48.135 - 10.131.8.142 80 GET /img/gadhnew.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:00 10.176.48.135 - 10.131.8.142 80 GET /img/fwrs2.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:00 10.176.48.135 - 10.131.8.142 80 GET /img/counter/0.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:01 10.176.48.135 - 10.131.8.142 80 GET /img/counter/6.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:01 10.176.48.135 - 10.131.8.142 80 GET /img/counter/3.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:01 10.176.48.135 - 10.131.8.142 80 GET /img/counter/2.jpg - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:01 10.176.48.135 - 10.131.8.142 80 GET /img/jh_small.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:02 10.176.48.135 - 10.131.8.142 80 GET /img/tch.gif - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:02 10.131.7.52 - 10.131.8.142 80 GET /hotel.htm - 304 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+.NET+CLR+1.1.4322)
2006-03-10 06:46:04 10.176.48.135 - 10.131.8.142 80 GET /manage/newsfile/200602175778783.JPG - 200 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+NT+5.1;+SV1)
2006-03-10 06:46:07 10.176.48.135 - 10.131.8.142 80 GET /_vti_inf.html - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:07 10.176.48.135 - 10.131.8.142 80 POST /_vti_bin/shtml.dll - 200 MSFrontPage/6.0
2006-03-10 06:46:07 10.176.48.135 - 10.131.8.142 80 POST /_vti_bin/shtml.dll - 200 MSFrontPage/6.0
2006-03-10 06:46:08 10.176.48.135 - 10.131.8.142 80 POST /_vti_bin/_vti_aut/author.dll - 200 MSFrontPage/6.0
2006-03-10 06:46:10 10.176.48.135 - 10.131.8.142 80 POST /_vti_bin/_vti_aut/author.dll - 200 MSFrontPage/6.0
2006-03-10 06:46:11 10.176.48.135 - 10.131.8.142 80 GET /public/smza.CSS - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:11 10.176.48.135 - 10.131.8.142 80 GET /img/tmt.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:11 10.176.48.135 - 10.131.8.142 80 GET /img/leftline.jpg - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:11 10.176.48.135 - 10.131.8.142 80 GET /img/menubg.jpg - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:11 10.176.48.135 - 10.131.8.142 80 GET /img/ljindex/loginbt1.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:11 10.176.48.135 - 10.131.8.142 80 GET /img/ar.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:12 10.176.48.135 - 10.131.8.142 80 GET /img/ljindex/sbt1.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:12 10.176.48.135 - 10.131.8.142 80 GET /img/wjcx.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:12 10.176.48.135 - 10.131.8.142 80 GET /img/bikelogo3.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:12 10.176.48.135 - 10.131.8.142 80 GET /img/bszn.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)
2006-03-10 06:46:12 10.176.48.135 - 10.131.8.142 80 GET /img/hotel.gif - 200 Mozilla/4.0+(compatible;+MS+FrontPage+6.0)