Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Hack Attempt Script
Author Message
myrtletrees
Involved
Involved



Joined: Sep 13, 2005
Posts: 259
Location: Cornfields of Indiana

PostPosted: Fri Oct 30, 2009 8:16 am Reply with quote

I've been getting things like this occasionally from my Apache logwatch file.


Code:
 A total of 2 possible successful probes were detected (the following URLs

 contain strings that match one or more of a listing of strings that
 indicate a possible exploit):
 
    /errors.php?error=./../../../../../../../../etc/passwd HTTP Response 302
    /errors.php?error=./../../../../../../../../etc/passwd%00 HTTP Response 302


Do I need to be worried? I have blocked the IP address that the probing is coming from.
 
View user's profile Send private message
evaders99
Former Moderator in Good Standing



Joined: Apr 30, 2004
Posts: 3221

PostPosted: Fri Oct 30, 2009 7:48 pm Reply with quote

Yep, just bots looking for a way in. It's probably not even targeting phpNuke, as far as I know, it has never used errors.php

_________________
- Star Wars Rebellion Network -

Need help? Nuke Patched Core, Coding Services, Webmaster Services 
View user's profile Send private message Visit poster's website
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Hack Attempt Script

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©