Results 1 to 4 of 4

Thread: Need help regarding the log entry and its explanation.

  1. #1
    Join Date
    Feb 2011
    Posts
    78

    Need help regarding the log entry and its explanation.

    Hey friends i just got this entry on my log today. Could someone explain me what this could be or what this thing tried to do?
    xxx GET /phplist/admin/index.php _SERVER[ConfigFile]= ../../../../../../../../../../../../../../../../etc /passwd 80 - 94.63.246.3 HTTP/1.1 Mozilla/4.0+(compatible;+MSIE+6.0;+Windows+2002 ) - - 404 0 3 1814 298 296

  2. #2
    Join Date
    Apr 2008
    Posts
    3,424

    Re: Need help regarding the log entry and its explanation.

    I do know what he was trying to do! I have studied networking so I could easily understand what his real intentions are,First of all he was trying to get your /etc/passwd file, which is where the list of system users is stored on a *nix system. It looks like he tried to exploit some weakness in phpList, and he is able to override some variable that specifies the config file to use. most probably, this would cause some kind of error and the ipconfig file to be discarded, which in this case would be the contents of your password file.

  3. #3
    Join Date
    May 2008
    Posts
    3,516

    Re: Need help regarding the log entry and its explanation.

    The most important thing is that his attempt has failed, as it is seen by the 404 return codes. Possibly you don't yet have phpList installed! This might have just be an automated attack, or someone trying their luck. I get such kind of thing everyday on my servers: people trying to exploit software which is not even installed. Perhaps I would not worry about it , unless you do have phpList or you start to see the similar IP frequently trying other attacks. So stop worrying about. Your not subjected to any sort of risks

  4. #4
    Join Date
    Feb 2011
    Posts
    78

    Re: Need help regarding the log entry and its explanation.

    Thank you so much for this explanation. yet if I did see the 404 code that he ended receiving, I was worried a little. This was my first ever entry like that. Hope I won't get too much of these but I will probably be more relax... Thank again! I am really gladful that you helped me with this thing..Its nice to get some tips from the person who has lots of knowledge regarding such concepts..!!!

Similar Threads

  1. Keyboard key explanation
    By Baazigar in forum Tips & Tweaks
    Replies: 3
    Last Post: 29-03-2010, 07:47 PM
  2. Explanation about OpenSSL in PHP
    By hatred in forum Software Development
    Replies: 5
    Last Post: 07-03-2010, 04:10 AM
  3. Need Explanation for C# Case Break
    By hatred in forum Software Development
    Replies: 4
    Last Post: 15-01-2010, 06:19 PM
  4. Explanation of Firefox in Ubuntu
    By Antonio1 in forum Technology & Internet
    Replies: 3
    Last Post: 05-12-2009, 03:49 AM
  5. Explanation on Parser, Sax and Dom
    By Ernesto4 in forum Software Development
    Replies: 3
    Last Post: 21-11-2009, 04:03 AM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,713,563,489.65873 seconds with 17 queries