TELECOM Digest OnLine - Sorted: Re: Good News, Linux Users! A Worm Just for You


Re: Good News, Linux Users! A Worm Just for You


harold@hallikainen.com
11 Nov 2005 05:46:36 -0800

ellis@no.spam wrote:

> In article <telecom24.508.3@telecom-digest.org>, Nancy Weil
> <idg@telecom-digest.org> wrote:

>> Linux users should update antivirus software

> No, Linux users should intall the PHP updates that fix the XML-RPC
> problem.

> http://www.spinics.net/linux/

It DOES look like people are trying to exploit this. Here are a few of
the 404 errors from yesterday's log on my server.

/MSOffice/cltreq.asp?UL=1&ACT=4&BUILD=6403 ... MVER=4&CAPREQ=0:
1 Time(s)
/_vti_bin/owssvr.dll?UL=1&ACT=4&BUILD=6403 ... MVER=4&CAPREQ=0:
1 Time(s)
/awstats/awstats.pl?configdir=|echo;echo%2 ... cho%20YYY;echo|:
2 Time(s)
/blog/xmlrpc.php: 1 Time(s)
/blog/xmlsrv/xmlrpc.php: 1 Time(s)
/blogs/xmlsrv/xmlrpc.php: 1 Time(s)
/cgi-bin/awstats.pl?configdir=|echo;echo%2 ... cho%20YYY;echo|:
2 Time(s)
/cgi-bin/awstats/awstats.pl?configdir=|ech ... cho%20YYY;echo|:
1 Time(s)
/drupal/xmlrpc.php: 1 Time(s)
/live: 1 Time(s)
/phpgroupware/xmlrpc.php: 1 Time(s)
/wordpress/xmlrpc.php: 1 Time(s)
/xmlrpc.php: 2 Time(s)
/xmlrpc/xmlrpc.php: 1 Time(s)
/xmlsrv/xmlrpc.php: 1 Time(s)

Harold

Post Followup Article Use your browser's quoting feature to quote article into reply
Go to Next message: Steven Lichter: "Re: Phishers Lure Google Users With Bogus Google Cash Prizes"
Go to Previous message: Steve Sobol: "Re: Good News, Linux Users! A Worm Just for You"
May be in reply to: Nancy Weil: "Good News, Linux Users! A Worm Just for You"
TELECOM Digest: Home Page