On Fri, Apr 18, 2008 at 12:42 PM, Eric Butera <eric.butera@xxxxxxxxx> wrote: > On Fri, Apr 18, 2008 at 12:32 PM, Al <news@xxxxxxxxxxxxx> wrote: > > I've not bothered to try and figure out where it came from because hackers > > spoof their ID anyhow. > > I meant the wide open flood gate on your system, not who did it. That's the same thing I was trying to suggest earlier in the thread. I probably didn't explain it properly, but check the Apache logs to see what SCRIPT was being executed with that code as the QUERY_STRING, not from which REMOTE_ADDR the attack originated. Thanks, Eric. Sometimes I think English is my second language, and that it's less than conversational. :-\ -- </Daniel P. Brown> Dedicated Servers - Intel 2.4GHz w/2TB bandwidth/mo. starting at just $59.99/mo. with no contract! Dedicated servers, VPS, and hosting from $2.50/mo. -- PHP General Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php