Nowe posty

Autor Wątek: Dziwny problem z serwerem HTTP  (Przeczytany 2536 razy)

ra-v

  • Gość
Dziwny problem z serwerem HTTP
« dnia: 2008-07-21, 09:13:46 »
Jeśli dodam do HTML zwykły tekst:
drwxrwxrwx
...to wyskakuje coś takiego:

[Mon Jul 21 00:18:44 2008] [error] [client 192.168.1.10] ModSecurity: Access denied with code 404 (phase 4). Pattern match "(?:[^<]*?(?:\\\\\\\\b(?:(?:c(?:ehennemden|gi-telnet)|gamma web shell)\\\\\\\\b|imhabirligi phpftp)|(?:r(?:emote explorer|57shell)|aventis klasvayv|zehir)\\\\\\\\b|\\\\\\\\.::(?:news remote php shell injection::\\\\\\\\.| rhtools\\\\\\\\b)|ph(?:p(?:(?: commander|-terminal)\\\\\\\\b|remot ..." at RESPONSE_BODY. [id "950922"] [msg "Backdoor access"] [severity "CRITICAL"] [hostname "linux.ra-v.local.pl"] [uri "/index.php"] [unique_id "@VGHKcCoAQoAABg2WhoAAAAB"]</code></pre></div>Jeśli zrobię<br />d rwxrwxrwx      // ze spacją<br />...to jest OK.<br /><br />W czym jest problem?</div>
							</div>
						</div>
						<div class="moderatorbar">
							<div class="smalltext modified" id="modified_85093">
							</div>
							<div class="smalltext reportlinks">
								<img src="https://forum.linux.pl/Themes/default/images/ip.gif" alt="" />
								Zapisane
							</div>
						</div>
					</div>
					<span class="botslice"><span></span></span>
				</div>
				<hr class="post_separator" />
				<a id="msg85096"></a><a id="new"></a>
				<div class="windowbg2">
					<span class="topslice"><span></span></span>
					<div class="post_wrapper">
						<div class="poster">
							<h4>
								halik
							</h4>
							<ul class="reset smalltext" id="msg_85096_extra_info">
								<li class="membergroup">Gość</li>
							</ul>
						</div>
						<div class="postarea">
							<div class="flow_hidden">
								<div class="keyinfo">
									<div class="messageicon">
										<img src="https://forum.linux.pl/Themes/default/images/post/xx.gif" alt="" />
									</div>
									<h5 id="subject_85096">
										<a href="https://forum.linux.pl/index.php/topic,12442.msg85096.html?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf#msg85096" rel="nofollow">Dziwny problem z serwerem HTTP</a>
									</h5>
									<div class="smalltext">« <strong>Odpowiedź #1 dnia:</strong> 2008-07-21, 13:20:28 »</div>
									<div id="msg_85096_quick_mod"></div>
								</div>
							</div>
							<div class="post">
								<div class="inner" id="msg_85096">wszystko masz napisane w zacytowanej linii<br /><br />"ModSecurity: Access denied"<br />"remote php shell injection"<br /><br />modsecurity drze gapę.<br /><br />MK</div>
							</div>
						</div>
						<div class="moderatorbar">
							<div class="smalltext modified" id="modified_85096">
							</div>
							<div class="smalltext reportlinks">
								<img src="https://forum.linux.pl/Themes/default/images/ip.gif" alt="" />
								Zapisane
							</div>
						</div>
					</div>
					<span class="botslice"><span></span></span>
				</div>
				<hr class="post_separator" />
				<div class="windowbg">
					<span class="topslice"><span></span></span>
	
					<div align="center"><div align="center"><!--/*
  *
  * Revive Adserver Javascript Tag
  * - Generated with Revive Adserver v3.1.0
  *
  */-->

<script type='text/javascript'><!--//<![CDATA[
   var m3_u = (location.protocol=='https:'?'https://adserver.linux.pl/www/delivery/ajs.php':'http://adserver.linux.pl/www/delivery/ajs.php');
   var m3_r = Math.floor(Math.random()*99999999999);
   if (!document.MAX_used) document.MAX_used = ',';
   document.write ("<scr"+"ipt type='text/javascript' src='"+m3_u);
   document.write ("?zoneid=2");
   document.write ('&cb=' + m3_r);
   if (document.MAX_used != ',') document.write ("&exclude=" + document.MAX_used);
   document.write (document.charset ? '&charset='+document.charset : (document.characterSet ? '&charset='+document.characterSet : ''));
   document.write ("&loc=" + escape(window.location));
   if (document.referrer) document.write ("&referer=" + escape(document.referrer));
   if (document.context) document.write ("&context=" + escape(document.context));
   if (document.mmm_fo) document.write ("&mmm_fo=1");
   document.write ("'></scr"+"ipt>");
//]]>--></script><noscript><a href='http://adserver.linux.pl/www/delivery/ck.php?n=af46b77d&cb=INSERT_RANDOM_NUMBER_HERE' target='_blank'><img src='http://adserver.linux.pl/www/delivery/avw.php?zoneid=2&cb=INSERT_RANDOM_NUMBER_HERE&n=af46b77d' border='0' alt='' /></a></noscript>
</div></div>
	
					<span class="botslice"><span></span></span>
				</div>
				<hr class="post_separator" />
			
				</form>
			</div>
			<a id="lastPost"></a>
			<div class="pagesection">
				
		<div class="buttonlist floatright">
			<ul>
				<li><a class="button_strip_print" href="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&action=printpage;topic=12442.0" rel="new_win nofollow"><span class="last">Drukuj</span></a></li>
			</ul>
		</div>
				<div class="pagelinks floatleft">Strony: [<strong>1</strong>]     <a href="#top"><strong>Do góry</strong></a></div>
				<div class="nextlinks_bottom"><a href="https://forum.linux.pl/index.php/topic,12442.0/prev_next,prev.html?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf#new">« poprzedni</a> <a href="https://forum.linux.pl/index.php/topic,12442.0/prev_next,next.html?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf#new">następny »</a></div>
			</div>
	<div class="navigate_section">
		<ul>
			<li>
				<a href="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&"><span>Forum Linux.pl</span></a> »
			</li>
			<li>
				<a href="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&#c1"><span>System</span></a> »
			</li>
			<li>
				<a href="https://forum.linux.pl/index.php/board,3.0.html?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf"><span>Administracja</span></a> »
			</li>
			<li class="last">
				<a href="https://forum.linux.pl/index.php/topic,12442.0.html?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf"><span>Dziwny problem z serwerem HTTP</span></a>
			</li>
		</ul>
	</div>
			<div id="moderationbuttons"></div>
			<div class="plainbox" id="display_jump_to"> </div>
		<br class="clear" />
				<script type="text/javascript" src="https://forum.linux.pl/Themes/default/scripts/topic.js"></script>
				<script type="text/javascript"><!-- // --><![CDATA[
					var oQuickReply = new QuickReply({
						bDefaultCollapsed: true,
						iTopicId: 12442,
						iStart: 0,
						sScriptUrl: smf_scripturl,
						sImagesUrl: "https://forum.linux.pl/Themes/default/images",
						sContainerId: "quickReplyOptions",
						sImageId: "quickReplyExpand",
						sImageCollapsed: "collapse.gif",
						sImageExpanded: "expand.gif",
						sJumpAnchor: "quickreply"
					});
					if ('XMLHttpRequest' in window)
					{
						var oQuickModify = new QuickModify({
							sScriptUrl: smf_scripturl,
							bShowModify: true,
							iTopicId: 12442,
							sTemplateBodyEdit: '\n\t\t\t\t\t\t\t\t<div id="quick_edit_body_container" style="width: 90%">\n\t\t\t\t\t\t\t\t\t<div id="error_box" style="padding: 4px;" class="error"><' + '/div>\n\t\t\t\t\t\t\t\t\t<textarea class="editor" name="message" rows="12" style="width: 100%; margin-bottom: 10px;" tabindex="1">%body%<' + '/textarea><br />\n\t\t\t\t\t\t\t\t\t<input type="hidden" name="a505b3040" value="a1512da2a2cea18297097d68c577f9d2" />\n\t\t\t\t\t\t\t\t\t<input type="hidden" name="topic" value="12442" />\n\t\t\t\t\t\t\t\t\t<input type="hidden" name="msg" value="%msg_id%" />\n\t\t\t\t\t\t\t\t\t<div class="righttext">\n\t\t\t\t\t\t\t\t\t\t<input type="submit" name="post" value="Zapisz" tabindex="2" onclick="return oQuickModify.modifySave(\'a1512da2a2cea18297097d68c577f9d2\', \'a505b3040\');" accesskey="s" class="button_submit" />  <input type="submit" name="cancel" value="Anuluj" tabindex="3" onclick="return oQuickModify.modifyCancel();" class="button_submit" />\n\t\t\t\t\t\t\t\t\t<' + '/div>\n\t\t\t\t\t\t\t\t<' + '/div>',
							sTemplateSubjectEdit: '<input type="text" style="width: 90%;" name="subject" value="%subject%" size="80" maxlength="80" tabindex="4" class="input_text" />',
							sTemplateBodyNormal: '%body%',
							sTemplateSubjectNormal: '<a hr'+'ef="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&'+'?topic=12442.msg%msg_id%#msg%msg_id%" rel="nofollow">%subject%<' + '/a>',
							sTemplateTopSubject: 'Wątek: %subject%  (Przeczytany 2536 razy)',
							sErrorBorderStyle: '1px solid red'
						});

						aJumpTo[aJumpTo.length] = new JumpTo({
							sContainerId: "display_jump_to",
							sJumpToTemplate: "<label class=\"smalltext\" for=\"%select_id%\">Skocz do:<" + "/label> %dropdown_list%",
							iCurBoardId: 3,
							iCurBoardChildLevel: 0,
							sCurBoardName: "Administracja",
							sBoardChildLevelIndicator: "==",
							sBoardPrefix: "=> ",
							sCatSeparator: "-----------------------------",
							sCatPrefix: "",
							sGoButtonLabel: "Idź"
						});

						aIconLists[aIconLists.length] = new IconList({
							sBackReference: "aIconLists[" + aIconLists.length + "]",
							sIconIdPrefix: "msg_icon_",
							sScriptUrl: smf_scripturl,
							bShowModify: true,
							iBoardId: 3,
							iTopicId: 12442,
							sSessionId: "a1512da2a2cea18297097d68c577f9d2",
							sSessionVar: "a505b3040",
							sLabelIconList: "Ikona wiadomości",
							sBoxBackground: "transparent",
							sBoxBackgroundHover: "#ffffff",
							iBoxBorderWidthHover: 1,
							sBoxBorderColorHover: "#adadad" ,
							sContainerBackground: "#ffffff",
							sContainerBorder: "1px solid #adadad",
							sItemBorder: "1px solid #ffffff",
							sItemBorderHover: "1px dotted gray",
							sItemBackground: "transparent",
							sItemBackgroundHover: "#e0e0f0"
						});
					}
				// ]]></script>
		<script type="text/javascript" src="https://forum.linux.pl/Themes/default/scripts/highlight.pack.js"></script>
		<script type="text/javascript">hljs.tabReplace = "   "; hljs.initHighlightingOnLoad();</script>
			<script type="text/javascript"><!-- // --><![CDATA[
				var verificationpostHandle = new smfCaptcha("https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&action=verificationcode;vid=post;rand=eef10158a8ce2ff2d61cc6351a96d1ee", "post", 0);
			// ]]></script></td></tr></table>
		</div>
	</div></div>
	<div id="footer_section"><div class="frame">
		<ul class="reset">
			<li class="copyright">
			<span class="smalltext" style="display: inline; visibility: visible; font-family: Verdana, Arial, sans-serif;"><a href="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&action=credits" title="Simple Machines Forum" target="_blank" class="new_win">SMF 2.0.15</a> |
<a href="http://www.simplemachines.org/about/smf/license.php" title="License" target="_blank" class="new_win">SMF © 2017</a>, <a href="http://www.simplemachines.org" title="Simple Machines" target="_blank" class="new_win">Simple Machines</a><br /><span class="smalltext"><a href="http://www.smfads.com" target="_blank">SMFAds</a> for <a href="http://www.createaforum.com" title="Forum Hosting" target="_blank">Free Forums</a></span>
			</span></li>
			<li><a id="button_xhtml" href="http://validator.w3.org/check?uri=referer" target="_blank" class="new_win" title="Prawidłowy XHTML 1.0!"><span>XHTML</span></a></li>
			<li><a id="button_rss" href="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&action=.xml;type=rss" class="new_win"><span>RSS</span></a></li>
			<li class="last"><a id="button_wap2" href="https://forum.linux.pl/index.php?PHPSESSID=unf1qp5t1kgvh63cdl82gf7esf&wap2" class="new_win"><span>WAP2</span></a></li>
		</ul>
		<p>Strona wygenerowana w 0.03 sekund z 37 zapytaniami.</p>
	</div></div>
</div>

<script>
  (function(i,s,o,g,r,a,m){i['GoogleAnalyticsObject']=r;i[r]=i[r]||function(){
  (i[r].q=i[r].q||[]).push(arguments)},i[r].l=1*new Date();a=s.createElement(o),
  m=s.getElementsByTagName(o)[0];a.async=1;a.src=g;m.parentNode.insertBefore(a,m)
  })(window,document,'script','//www.google-analytics.com/analytics.js','ga');

  ga('create', 'UA-2119257-5', 'auto');
  ga('send', 'pageview');

</script>	
	
</body></html>