security - Suspect malicious probing in my asp.net ecommerce app -
i receiving repeated errors asp.net ecommerce web app. beginning suspect automated malicious probe twelfth attempt access productid=69 not exist (productid 69 removed month ago ). have not found info via google , hope recognizes this. here log entry.
page location: /product.aspx?productid=69
message: violation of primary key constraint 'pk_shoppingcart'. cannot insert duplicate key in object 'dbo.shoppingcart'. statement has been terminated.
source: .net sqlclient data provider
method: void onerror(system.data.sqlclient.sqlexception, boolean)
stack trace:
at system.data.sqlclient.sqlconnection.onerror(sqlexception exception, boolean breakconnection) @ system.data.sqlclient.sqlinternalconnection.onerror(sqlexception exception, boolean breakconnection) @ system.data.sqlclient.tdsparser.throwexceptionandwarning(tdsparserstateobject stateobj) @ system.data.sqlclient.tdsparser.run(runbehavior runbehavior, sqlcommand cmdhandler, sqldatareader datastream, bulkcopysimpleresultset bulkcopyhandler, tdsparserstateobject stateobj) @ system.data.sqlclient.sqlcommand.finishexecutereader(sqldatareader ds, runbehavior runbehavior, string resetoptionsstring) @ system.data.sqlclient.sqlcommand.runexecutereadertds(commandbehavior cmdbehavior, runbehavior runbehavior, boolean returnstream, boolean async) @ system.data.sqlclient.sqlcommand.runexecutereader(commandbehavior cmdbehavior, runbehavior runbehavior, boolean returnstream, string method, dbasyncresult result) @ system.data.sqlclient.sqlcommand.internalexecutenonquery(dbasyncresult result, string methodname, boolean sendtopipe) @ system.data.sqlclient.sqlcommand.executenonquery() @ genericdataaccess.executenonquery(dbcommand command)
after observation conclude these page requests bots, search engines.
Comments
Post a Comment