weird log file entries...

octane

I have issues, OK!
Hi all, since I got my G4 connected to net with broadband and a fixed IP, I've been getting some odd log entries.

Quite apart from the regular viral crap that's looking for some Microsoft IIS files, I've been getting this kind of thing, that to be quite honest, worries me:

xxx.xxx.xxx.xxx - - [05/Mar/2004:10:50:26 +0000] "GET http://www.yahoo.com/ HTTP/1.1" 200 26340
xxx.xxx.xxx.xxx - - [05/Mar/2004:10:52:41 +0000] "GET / HTTP/1.1" 200 26340
xxx.xxx.xxx.xxx - - [05/Mar/2004:11:55:11 +0000] "GET / HTTP/1.1" 200 26340
xxx.xxx.xxx.xxx - - [05/Mar/2004:12:30:11 +0000] "GET / HTTP/1.1" 200 26340
xxx.xxx.xxx.xxx - - [05/Mar/2004:12:41:15 +0000] "GET / HTTP/1.1" 200 26340

What does it mean? How can someone going to the Yahoo web site from my mac?

This segment from the log file appears at least once a day and sometimes three or four times.

Odd...
 
Also, I have Snort running on my mac via HenWen.

I've looked through the log files for the NIDS and there's nothing showing up that would otherwise be untoward.

I've got a hardware firewall in my broadband router / modem, I have the ipfw firewall running on my mac in addition to Snort...
 
Back
Top