Password hacker..

I got today on a new site already a password hacker. He was try it 4 times. this is his try and data: 

Total impact: 30
Affected tags: dt, id, lfi

Variable: REQUEST.go | Value: ./../../../../../../../../etc/passwd
Impact: 15 | Tags: dt, id, lfi
Description: Detects basic directory traversal | Tags: dt, id, lfi | ID: 10
Description: Detects specific directory and path traversal | Tags: dt, id, lfi | ID: 11
Description: Detects etc/passwd inclusion attempts | Tags: dt, id, lfi | ID: 12

Variable: GET.go | Value: ./../../../../../../../../etc/passwd
Impact: 15 | Tags: dt, id, lfi
Description: Detects basic directory traversal | Tags: dt, id, lfi | ID: 10
Description: Detects specific directory and path traversal | Tags: dt, id, lfi | ID: 11
Description: Detects etc/passwd inclusion attempts | Tags: dt, id, lfi | ID: 12

REMOTE_ADDR: 194.24.174.51
HTTP_X_FORWARDED_FOR:
HTTP_CLIENT_IP:
SCRIPT_FILENAME: /home/xxxx/domains/xxxxxl/public_html/index.php
QUERY_STRING: go=./../../../../../../../../etc/passwd
REQUEST_URI: /index.php?go=./../../../../../../../../etc/passwd
QUERY_STRING: go=./../../../../../../../../etc/passwd
SCRIPT_NAME: /index.php
PHP_SELF: /index.php

Kids first
Quote · 20 Mar 2010

Hey,

 

Looks like a Polish connection, these are not usually all that bad but i suppost to be politically correct i need to state that all countries have hackers.

May i suggest you block all connections from well known Hacking communities in Russia, China etc....

We host a massive amount of proxy websites and on all of our hardware firewalls we have blocked these due to ddos and hacking attempts.

 

Can you inform me what operating system you are using? i would further be able to provide you a method of stopping these instances in the future.

 

Best Regards,

lee

 

Quote · 20 Mar 2010

On the server we use linux.
This was only happen on dolphin domains.  I have the ip server blacklisted.

Kids first
Quote · 20 Mar 2010

Please do not flaw your thought Cool

 

You need to think on a mass scale my friend.

 

Please add me to what ever you use,

MSN = Lee@vilayer.com

Skype = lee.netarus

Googletalk = lee@vilayer.com

 

Note... I DO NOT CHARGE MONEY FOR SERVER HELP JUST WILLING TO HELP OUT!

Best Regards,

Lee

Quote · 20 Mar 2010

have added you

Kids first
Quote · 20 Mar 2010
 
 
Below is the legacy version of the Boonex site, maintained for Dolphin.Pro 7.x support.
The new Dolphin solution is powered by UNA Community Management System.