Re: Apache attacks

From: KillKenny (killkenny_at_fibertel.com.ar)
Date: 01/28/05

  • Next message: Yelland, Mike: "RE: tool for mount a dd image"
    To: <security-basics@securityfocus.com>
    Date:	Thu, 27 Jan 2005 21:01:26 -0300
    
    

    Hi Kenny ..

    Do you try whit any rootkit hunter to know if your machine is trojanized or
    owned?

    Good Luck!

    Killkenny

    ----- Original Message -----
    From: "Kenny" <kenny@codez.co.uk>
    To: <security-basics@securityfocus.com>
    Sent: Wednesday, January 26, 2005 5:56 PM
    Subject: Apache attacks

    > Hi List,
    >
    > Long time reader, first time poster...
    >
    > My server crashed yesturday and I had to restart it, to get it going
    > again. Now everything seems ok, however looking at my
    > /var/log/httpd/access_log.1 shows a visitor to the website posting some
    > big chunks of exploit code (containing a massive nop sled).
    > How do I know if this attacker actually got in or not?
    >
    > This is a redhat fedora core 2 box, and I would describe myself as an
    > "intermediate" linux user.
    >
    > Also, has anyone got any scripts that can detect attacks against apache
    > and ban the ip for a period of time?
    >
    > I will post the exploit on request.
    >
    > Thanks, Kenny


  • Next message: Yelland, Mike: "RE: tool for mount a dd image"

    Relevant Pages

    • Re: nimbda and other apache attacks
      ... nimbda and other apache attacks ... This should redirect any GETs that include requests for either cmd.exe ... handling multiple requests from the same infected host. ...
      (Focus-Linux)
    • Re: 3 in one session
      ... everyone attacks it until death. ... attack childs of the MTs mob and groups 5 to 8 attack childs of the second ... First time my group went in (2 guilds in cooperation + some ... Onyxia was killed for the first time by the Horde on our server ...
      (alt.games.warcraft)
    • Re: Shameful USCF Action - Life Members Alert
      ... even most of the dullards who voted for him the first time could see ... cheap shot worthy of the Fake Sam Sloan. ... against me that causes him to write thousands of these attacks on me ... We do not know what that sexual fixation is, ...
      (rec.games.chess.politics)
    • Re: Okay, what the HECK is going on in France?
      ... > bastardization of the Islamic religion, used to justify those attacks. ... > Now, for the first time, I declare Morgan's law, and officially end this ...
      (rec.aviation.piloting)
    • Re: Whos Who in MW
      ... I mention Stan vs. the number of posts in which he mentions me, ... The fact remains that Stan attacks ... And of course it was not the first time I ...
      (misc.writing)